Job Description:
INFORMATION TECHNOLOGY SECURITY ADMINISTRATOR
Description
ABOUT THE POSITIONThe Clark County Information Technology department is seeking qualified candidates to apply for the Information Technology Security Administrator position. This position p rovides information technology security administration for the enterprise. Maintains Clark County's business recovery plan and conducts disaster recovery testing at enterprise and department levels. This is a technical, experienced cybersecurity position performing professional level work related to the planning, implementation, monitoring, evaluating and coordination of cybersecurity: controls, governance, and compliance across the County enterprise.
This examination will establish an Open Competitive Eligibility list to fill current and/or future vacancies that may occur within the next six (6) months or may be extended as needed by Human Resources.
Human Resources reserves the right to call only the most qualified applicants to the selection process.
Some positions may be confidential positions and are excluded from membership in the union.
Some positions may be non-union positions and are excluded from membership in the union.
NOTE: A resume is required in addition to the completed employment application. Applications submitted without a copy of the candidate’s resume are incomplete and will not be considered.
MINIMUM REQUIREMENTSEducation and Experience: Bachelor's Degree in Computer Science or Management Information Systems, or related field AND three (3) years full-time professional level experience in computer security administration, including contingency planning, preferably in a large mainframe multiprocessing environment. Possession at time of application and maintenance of a Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) is preferred and may be substituted for education or experience up to five (5) years. Possession at time of application and maintenance of a CompTIA Security+ certification may be substituted for education or experience up to two (2) years. Additionally, professional level experience and/or education that has provided the skills and knowledge necessary to perform all job functions at this level may be substituted on a year-for-year basis up to two (2) years.All qualifying education and each experience must be clearly documented in the “Education” and “Work Experience” sections of the application.
Do not substitute a resume for your application or write "see attached resume" on your application. All details must be written
in your own words and cannot be copied from job descriptions or other external sources.
Licensing/Certification: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), CompTIA Security+ or similar are preferred.
Working Conditions: Work extended shifts or be called back in emergency situations.
Background Investigation: Employment is contingent upon successful completion of a background investigation. Periodically after employment background investigations may be conducted.
Citizenship: Candidates must be legally authorized to work in the United States.
Please note, Clark County does not provide H1B visa sponsorships or transfers for any employment positions.
Pre-Employment Drug Testing: Employment is contingent upon the results of a pre-employment drug examination.
EXAMPLES OF DUTIES- Establishes and maintains security and business recovery policies and procedures.
- Provides security and control measures across multiple computer platforms (e.g. enterprise server, client server, network, Internet/Intranet, and desktop).
- Monitors access and use of County information. Implements logging/tracking mechanisms for intrusion detection.
- Maintains Clark County's Business Recovery Plan.
- Provides on-going testing of the Business Recovery Plan at the enterprise level (infrastructure organization and teams, hot-site recovery operations) and department level (checklist tests, simulations/structured walk-throughs).
- Monitors backup and recovery procedures (enterprise server, mid-range computers, PCs, and networks).
- Conducts periodic security assessments and disaster recovery preparedness reviews to evaluate effectiveness and compliance with security and business recovery measures. Incorporates security requirements from governmental and external agencies.
- Maintains security and business recovery related files, reports, policy manuals, and documentation.
- Provides liaison with Internal Audit, Office of Emergency Management and Risk Management on security/ business recovery issues and breaches of security.
- Monitors security and disaster recovery developments in the industry.
- Provides lead direction and coordination to other information technology staff throughout the County.
- Provides management with a clear view of security threats/solutions.
- Promotes the concept of information as an asset or resource.
- Provides awareness of County's exposure should there be an extended disruption of the County's business functions or information technology capabilities.
- Assists in planning goals, objectives, procedures and work standards for the unit; provides input into the unit's budget.
- Contributes to the overall quality of the section's service provision by developing and coordinating work teams and by reviewing, recommending and implementing improved policies and procedures.
- May drive a County or personal motor vehicle in order to visit various work sites and attend meetings.
Department of Aviation Duties:
- Serves as an expert advisor to senior management in the development, implementation and maintenance of an information security infrastructure ensuring best practice control objectives for system integrity, availability, confidentiality, accountability and assurance within the context of the airports risk tolerance.
- Identifies and proposes key information security program priorities, initiatives, plans, practices and tools. Oversees execution of approved information security project plans and provides regular status reporting on progress of such projects.
- Implement and manage cybersecurity tools such as firewalls, endpoint detection and response, email security, configuration management, continuous monitoring, cloud security, application security, and related items.
- Provides guidance (e.g., information security risk severity assessments / relative cost benefit analysis etc.) and provides recommendations regarding prioritization of system security infrastructure investments that mitigate risks, strengthen defenses and reduce vulnerabilities.
- Drafts and proposes organizational information security strategy and action plans based on relevant risk assessment and gap analysis.
- Develops, publishes, and maintains comprehensive information security standards, policies, procedures and guidelines.
- Acts as the primary control point during follow-up on significant information security incidents, oversees development of response plans and provides timely update reporting.
- Advises the management team on risk issues that are related to information security and recommends actions in support of the wider risk management programs.
PHYSICAL DEMANDSMobility to work in a typical office setting, use standard office equipment, and to drive a motor vehicle; vision to read printed materials and a computer screen; and hearing and speech to communicate in person or over the telephone. Must be capable of traveling to and from various County locations to visit work sites and attend meetings. Accommodation may be made for some of these physical demands for otherwise qualified individuals who require and request such accommodation.
Come Make a Difference and Join the Clark County Family where we offer a comprehensive benefits package that includes:
- Flexible Schedules including 4/10 options
- More Money in Your Pocket
- 100% Employer Paid Defined Benefit Retirement
- No Social Security Deduction
- No State Income Taxes
Two Employer Sponsored Health Plans Offered - Choice of PPO or EPO (hybrid of HMO)
- Medical - Employer pays 90% of premium
- Pharmacy Benefits (30, 90-day retail or mail order fills)
- 24/7 Telephone Advice Nurse - no employee cost
- Teledoc, Doctoroo, and Dispatch Health
Retiree insurance - eligible after 5 years of service Dental Vision Life Insurance - Employer Paid AD&D - Employer Paid Long Term Disability - Employer Paid Generous Leave Accruals that include:
- 13Paid Holidays includinga Floating Birthday Holiday
- Paid Vacation Leave
- Paid Sick Leave
- Holiday Leave
Other leave options
- Catastrophic Leave
- Parental Leave - Up to 90 days
Wide Variety of Voluntary Benefits that include
- Guardian - Accident, Cancer, Critical Illness, Hospital Indemnity, and Short-Term Disability Insurance.
- Trustmark - Permanent Life Insurance benefits and long-term care.
- Sunlife Financial - Basic and Voluntary Life Insurance, AD&D, and long-term disability insurance
- TASC - Flexible Spending Account - FSA & Dependent Day Care Debit Card Available
- Morgan Stanley - Deferred Compensation Plan
Employee Assistance Program Onsite Fitness Center - $12/month*Benefits vary and are subject to change depending on assignment, hiring organization and bargaining unit.
Closing Date/Time: 11/19/2024 5:01 PM Pacific
Salary:
$35.38 - $54.88 Hourly