Endpoint Security Analyst
Tallahassee, FL
Full Time
Information Technology
Mid Level
Black Fox is a certified ISO 9001:2015 and ISO 22301:2019 firm with an array of experience in managing and delivering professional services to public, private, education institutions, and nonprofit organizations across globe. Black Fox has exemplified excellence by receiving the 2021 University of Connecticut’s School of Business Veteran Impact Award, the 2022 Department of Labor’s HIREVet Medallion Gold Award, and the 2023 Small Business Administration Veteran Owned Small Business of the Year Award.
Since its inception, Black Fox has been a recognized leader in the development and implementation of information management and solutions. We depend on a diverse team of talented staff to design, develop, and deploy information solutions for our clients.
Scope of Work
Responsibilities
Education
Experience
Job Specific Knowledge, Skills, and Abilities
General Knowledge Skills and Abilities
Salary
Location
Benefits:
Since its inception, Black Fox has been a recognized leader in the development and implementation of information management and solutions. We depend on a diverse team of talented staff to design, develop, and deploy information solutions for our clients.
Scope of Work
- Develops, evaluates and manages systems security across the enterprise. Areas of concentration include account management, password auditing, network based and Web application-based vulnerability scanning, virus management and intrusion detection. Requires technical expertise in systems administration and security tools, combined with the knowledge of security practices and procedures. Assists in the development and implementation of security policies and procedures (e.g., user log-on and authentication rules, security breach escalation procedures, security auditing procedures and use of firewalls and encryption routines). Prepares status reports on security matters to develop security risk analysis scenarios and response procedures.
- Enforces security policies and procedures by administering and monitoring security profiles, reviews security violation reports and investigates possible security exceptions, updates, and maintains and documents security controls. Involved in the evaluation of products and/or procedures to enhance productivity and effectiveness. Provides direct support to the business and IT staff for systems security related issues. Educates users on systems security standards and procedures. Must have broad technical knowledge of network operating systems (e.g., UNIX, NT).
Responsibilities
- Serve as a member of the Computer Security Incident Response Team. Duties includes researching incidents, identifying corrective actions, documenting status and coordinating responses to Computer Security Incidents.
- Responsible for the tracking and monitoring of endpoint software viruses. Enforces endpoint security policies and procedures by administering and monitoring security profiles, reviews security violation reports and investigates possible security breaches, exceptions, updates, and maintains and documents security controls.
- Work in conjunction with the Department’s Patch Management and Configuration Team in identifying secure configurations for standard FDOT products. Provide support/information as needed for implementation of secure baselines through package roll out and/or group policy. After implementation of secure baselines, use tools to review and ensure compliance with established baselines.
- Responsible for the administration and maintenance of endpoint vulnerability products, endpoint vulnerability risk reporting, and routine endpoint vulnerability scanning.
Education
- Bachelor’s Degree in Computer Science, Information Systems, Business Administration, Information Security, or another related field; or equivalent work experience.
Experience
- Four years of experience in the work related to the position is required.
Job Specific Knowledge, Skills, and Abilities
- Knowledge in the use of appropriate security controls to protect the confidentiality, integrity and availability of information technology resources.
- Knowledge of, and experience with, various computing technologies such as, but not limited to: Windows, Windows Server, Transmission Control Protocol/Internet Protocol (TCP/IP)
- Knowledge of vulnerability management tools.
- Knowledge in the use of information security practices and standards such as NIST, CIS Critical Security Controls and the Florida Cybersecurity Standards (74-2 Florida Administrative 60GG-2). Ability to review, assess and document compliance with standards.
- Knowledge of Microsoft Systems Center Configuration Manager (SCCM) and other Microsoft support tools/technologies such as Group Policy and PowerShell.
- Knowledge of the application of operating system security settings through direct manipulation of the registry.
- Knowledge of Security Information and Event Management (SEIM) tools. Ability to utilize, configure and manage SPLUNK preferred but not required.
- Skills in applying, analyzing and assessing information systems and security controls.
- Skilled in the detection of software and hardware security problems.
- Ability to analyze complex technical architecture for security issues.
- Ability to be self-motivated, detail-oriented with excellent follow through.
- Ability to assess and analyze risk and provide recommendations to successfully manage risk.
- Ability to author documented analysis of systems to verify compliance with security controls.
- Ability to effectively communicate orally and in writing to a variety of audiences. This includes the ability to communicate professionally with FDOT management, to communicate technical issues and concepts to non-technical staff, and to effectively explain security concepts and their benefit.
- Ability to solve problems independently and with teams and exhibit sound judgement and decision-making skills.
- Knowledge of Malwarebytes, Windows Defender, and other vulnerability scanning tools.
General Knowledge Skills and Abilities
- Initiative: Must be able to comprehend assignments, organize workload, and meet deadlines with little direction. Must be able to monitor and analyze situations to determine the next step.
Communication: Can clearly convey information, in both written and verbal formats, to individuals or groups in a wide variety of settings (i.e., project team meetings, management presentations, etc.). Must have the ability to effectively listen and process information provided by others.
Customer Service: Works well with clients and customers (i.e., business office, public, or other agencies). Able to assess the needs of the customer, provide information or assistance to satisfy expectations or resolve a problem.
Decision Making: Makes sound, well-informed, and objective decisions utilizing critical thinking skills and analysis.
Flexibility: is open to change, new processes (or process improvement), and new information. Can adapt in response to new information, changing conditions, or unexpected obstacles. Ability to receive and give constructive criticism and maintain effective work relationships with others.
Interpersonal: Shows friendliness, courtesy, understanding, and politeness to others
Leadership: Motivates, encourages, and challenges others. Can adapt leadership styles in a variety of situations.
Problem Solving: Able to identify, evaluate, and use sound judgement to generate and evaluate alternative actions, and make recommendations as accordingly.
Team Building: Encourages, inspires, and guides others toward accomplishing the common goal as an equal member of the team.
Quality Assurance: Knowledge of the ideologies, techniques and tools for quality assurance and control. The ability to put the ideologies, techniques, and tools into practice.
Salary
- $105,000.00
Location
- Tallahassee, Florida
Benefits:
- Health Benefits (Medical, Dental, Vision and Hearing)
- Retirement Benefits (401k)
- Paid Time Off (For Qualifying Members)
Apply for this position
Required*