• Stafford, Virginia
  • Autofill and Review
30+ days ago

Job Description

Job Description

The Security Analyst performs difficult technical work, ensuring that the County's digital assets are protected from unauthorized access. This involves executing Security Operations tasks, including monitoring the enterprise security posture, phishing simulations, vulnerability tracking, incident response, security awareness training, and supporting the implementation of policies, standards, controls, and guidelines to improve security, compliance, and audit posture. The Security Analyst works as a collaborative and supportive member of the Cyber Security Team to implement security measures and best practices. This individual must be capable of working in a fast-paced environment with time-sensitive materials, show initiative, self-motivation, and attention to detail, and maintain strict confidentiality due to the nature of the work. Work is performed under regular supervision.

Examples of Duties

  • Investigates reports of potential security policy, standards, and/or controls violations;
  • Analyzes security breaches to determine their root causes and prepares reports that document security breaches and any damage caused;
  • Collaborates to create, test, and implement network disaster recovery plans;
  • Assists with performing risk assessments, internal and external vulnerability scans;
  • Supports the management of network, intrusion detection, and prevention systems;
  • Works with outside entities, IT personnel, and internal departments to remediate discovered vulnerabilities;
  • Assists with meeting and maintaining regulatory compliance with PCI-DSS, CJIS, HIPAA, etc.;
  • Installs and administers data encryption, anti-virus, and other security measures;
  • Operates SIEM tuning, administering and investigating event logs;
  • Collaborates to develop, implement, and update security policies and best practices;
  • Assists with patch management and network equipment upgrades;
  • Trains users and promotes security awareness;
  • Performs other duties as assigned.

Typical Qualifications

  • Deep understanding of cyber security principles, including firewalls, intrusion detection systems, anti-virus software, data encryption, vulnerability scanners, MFA, and other industry-standard techniques and practices;
  • Knowledge of regulatory compliance frameworks (NIST CSF & 800-53, CJIS, HIPAA, PCI, etc.);
  • Knowledge of current security threats, techniques, and landscape (threat vectors);
  • Thorough knowledge of network operations (LAN, WAN, SAN, VPN);
  • Strong understanding of Windows servers and Microsoft Active Directory;
  • Ability to manage multiple projects with competing priorities;
  • Ability to quickly and easily adapt to changing organizational needs;
  • Strong written and verbal communication, interpersonal, customer service and problem-solving skills, with the ability to present ideas in business-friendly and user-friendly language;
  • Ability to achieve desired results while working collaboratively in a team environment;
  • Ability to work effectively with a wide range of individuals including developers, systems administrators, executives, customers, regulators, auditors, etc.

Numbers & Facts

LocationStafford, Virginia

Skills

  • Anti-Virus Softwareunmatched
  • Antivirusunmatched
  • Best Practicesunmatched
  • Computer Securityunmatched
  • Cryptographyunmatched
  • Customer Support/Serviceunmatched
  • Data Administrationunmatched
  • Detail Orientedunmatched
  • Disaster Recoveryunmatched
  • Encryption Softwareunmatched
  • Enterprise Protectionunmatched
  • Firewallsunmatched
  • HIPAA (Health Insurance Portability and Accountability Act)unmatched
  • Incident Responseunmatched
  • Industry Standardsunmatched
  • Internet Securityunmatched
  • Interpersonal Skillsunmatched
  • Intrusion Detection Systemsunmatched
  • Intrusion Detection and Prevention (IDP)unmatched
  • Local Area Network (LAN)unmatched
  • Maintain Complianceunmatched
  • Microsoft Active Directoryunmatched
  • Microsoft Windows Serverunmatched
  • Multitaskingunmatched
  • Network Administration/Managementunmatched
  • Network Configuration Managementunmatched
  • Network System Hardwareunmatched
  • Network Testingunmatched
  • PCIunmatched
  • PCI-DSSunmatched
  • Phishingunmatched
  • Policy Implementationunmatched
  • Presentation/Verbal Skillsunmatched
  • Problem Solving Skillsunmatched
  • Project/Program Managementunmatched
  • Regulatory Complianceunmatched
  • Reporting Skillsunmatched
  • Risk Analysisunmatched
  • Root Cause Analysisunmatched
  • Security Analysisunmatched
  • Security Attacksunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Security Policyunmatched
  • Software Patchesunmatched
  • Storage Area Network (SAN)unmatched
  • Systems Administration/Managementunmatched
  • Team Playerunmatched
  • Test Plan/Scheduleunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • VPN (Virtual Private Network)unmatched
  • Vulnerability Scannersunmatched
  • Wide Area Network (WAN)unmatched
  • Writing Skillsunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder