IT Information Security Analyst

Other Jobs To Apply

No other job posts for this day.

Job Details: Sound Transit IT Temporary Contractor Request Form ssignment: IT Information Security Analyst Category/Level*: Category F, Level 2 Term of Assignment: 6 months Date Candidate Resumes due to Sound Transit: Rate Range: General Summary: Under general direction, the Information Security Analyst assists with the operations of the Agency's Information Security program for its technology assets. The Information Security Analyst's role is to support service owners and system owners in ensuring the confidentiality and integrity of information systems and data across the entire organization. The Information Security Analyst performs two core functions for the Agency. The first is the day-to-day operations of the in-place security solutions while the second is the identification, investigation and resolution of security events detected by those systems. Secondary tasks may include involvement in the implementation of new security solutions, participation in the creation and/or maintenance of policies, standards, baselines, guidelines, and procedures as well as conducting vulnerability audits and assessments. The IT Security Analyst is expected to be fully aware of the Agency's security goals as established by its stated policies, procedures, and guidelines and to actively work towards upholding those goals On-call availability is required as a member of the Information Security Incident Response Team. Essential Functions: • Maintain up-to-date detailed knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes and the development of new attacks and threat vectors. • Research and recommend additional security solutions or enhancements to existing security solutions to improve the overall security posture of the Agency. • Perform the deployment, integration, and initial configuration of all new security solutions and of any enhancements to existing security solutions in accordance with standard best operating procedures generically and the enterprise's security documents specifically • Maintain up-to-date baselines for the secure configuration and operations of all in-place devices, when under direct control (i.e., security tools) or support when not (i.e. workstations, servers, network devices, etc) • Maintain operational configurations of all in-place security solutions as per the established baselines. • Monitor all in-place security solutions for efficient and appropriate operations. • Review logs and reports of all in-place devices, whether they be under direct control (i.e security tools) or not (i.e. workstations, servers, network devices, etc). Interpret the implications of that activity and devise plans for appropriate resolution. Participate in investigations into problematic or suspicious activity. • Participate in the design and execution of vulnerability assessments, penetration tests and security audits. • Provide on-call support for Information Security Incident Response activities. • Conduct vulnerability scans and assessments, including reporting and follow up on remediation status. • Inform and train staff members on their responsibilities concerning information security procedures. • Support the administrated processes to maintain compliance with regulatory obligations (e.g. DOL) • ssist with ensuring that agency technology assets, systems, services, and facilities are compliant with information security procedures. • Participate in ongoing information security education, awareness and outreach activities as required. • Monitor threat intelligence and other available information to proactively enhance the Agency's security posture. • Demonstrates Sound Transit's Values in every interaction Special / Additional Qualifications (Over Role/ Category Level) Education & Experience: Bachelor's Degree in computer science, information technology, business administration, engineering, or closely related field and five years of information technology experience with a focus on IT Security, Risk Management, Data Protection or Compliance, OR an equivalent combination of education and experience. • t least 4 years of systems security and administration experience. Required Licenses or Certifications: • One or more of the following certifications: • Certified Information Systems Security Professional (CISSP) (strongly preferred) • CompTlA Security+ • GIAC Information Security Fundamentals • Microsoft Certified Systems Administrator: Security • ssociate of (ISC)2 • ITIL and Project Management certification a plus. Specific Qualifications, Knowledge, and • Experience performing vulnerability scans using Tenable. • Experience responding to Information Security incidents and events. • Experience utilizing security software and tools, including (but not limited to): Skills: CrowdStrike endpoint protection, Microsoft Defender, SIEM (AlienVault preferred) nd EnCase. • Strong command of system administration tools (Windows/Linux). • Experience wit

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...