Job Title: Security Analyst (Contract)
Location: Tallahassee, FL (On-Site)
Contract on W2
Long term duration
Key Responsibility:
· Lead the technical implementation of security projects, focusing on system hardening, network security, and identity management while collaborating with teams to meet law enforcement-specific security standards.
· Demonstrate expertise in firewalls, Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS), encryption, secure Microsoft configurations, conducting vulnerability assessments, and developing remediation strategies.
· Manage security tools, support threat detection and incident response, and ensure integration of security platforms.
· Ensure compliance with Criminal Justice Information Services (CJIS) and State of Florida (State) regulations, collaborating with Governance, Risk, and Compliance (GRC) teams to address audit gaps.
· Document and provide training on cybersecurity solutions and processes, with a focus on CJIS and State regulations.
· Reengineer security processes for efficiency and compliance.
· Provide support for cybersecurity issues and stay informed on emerging threats and technologies.
· Lead the technical implementation of security projects, focusing on system hardening, network security, encryption tools, vulnerability management, security monitoring, and Identity and Access Management (IAM) systems within a Microsoft and Azure environment.
· Collaborate with cross-functional teams to deploy security solutions that meet project requirements, focusing on law enforcement-specific security standards.
· Ensure timely delivery of security projects aligned with the organization's requirements, maintaining adherence to scope, timeline, and budget.
· Provide hands-on expertise in areas such as firewalls, IDS/IPS, encryption, endpoint protection, and secure configuration of Microsoft environments.
· Implement secure system architecture and networking solutions within Microsoft Azure or other related cloud computing platforms.
· Conduct vulnerability assessments and develop remediation strategies, ensuring continuous improvement in security posture.
· Configure, deploy, and manage security tools such as Security Information and Event Management (SIEM) systems, Microsoft Azure Security Center, and endpoint security solutions tailored for a Microsoft environment.
· Ensure proper integration of security platforms across IT systems and support threat detection, prevention, and incident response.
· Design and maintain incident response procedures tailored to law enforcement settings;
· Conduct root cause analysis and develop and implement appropriate remediation measures.
· Ensure adherence to CJIS, State regulations, and other relevant security compliance standards;
· Work closely with GRC teams to ensure the organization remains in compliance with State and federal security regulations.
· Assist with security audits, including CJIS compliance reviews, and address any identified gaps to maintain compliance in Microsoft and Azure systems.
· Develop and maintain up-to-date documentation of new and existing cybersecurity solutions and processes specific to law enforcement and CJIS requirements.
· Provide training to IT staff on security protocols and contribute to security awareness initiatives, focusing on CJIS and state regulations compliance.
· Design, implement, and optimize security processes to enhance operational efficiency, align with compliance requirements, and mitigate risks across IT and organizational functions.
· Reengineer existing security processes to improve system integrity, streamline workflows, and align with evolving technology and regulatory standards, especially in Microsoft and Azure environments.
· Collaborate with IT operations and development teams to integrate security into systems and processes.
· Troubleshoot and support cybersecurity-related issues, emphasizing Microsoft and Azure environments.
· Stay updated on emerging cybersecurity threats and technologies, particularly those affecting law enforcement and compliance.
Required Experience:
· Five (5) years or more of server or network administration experience.
· Three (3) years or more of information security administration experience in an enterprise environment with 1,000 or more users.
· Two (2) years or more of experience managing technical implementations.
· Three (3) years or more of SIEM experience.
· Three (3) years or more of vulnerability management experience.
· Knowledge of security issues, techniques, and implications across all existing computer platforms.
· Experience maintaining and supporting third-party antivirus applications.
Preferred Qualifications:
· Experience working with IDS/IPS systems.
· Experience using Office 365 Data Loss Prevention (DLP).
· Preparing status reports and providing management briefings.
· Knowledge of IT standards in a criminal justice environment.
· Experience with Microsoft security technologies such as Azure Security Center, Microsoft Defender, and Active Directory.
· Familiarity with law enforcement security standards, specifically CJIS, and other relevant State regulations.
Education:
A bachelor’s degree or master's degree from an accredited college or university in Computer Science, Information Systems, or a related field is required. Alternatively, equivalent work experience can be substituted for the educational requirement on a year-for-year basis, when applicable.