Cybersecurity Incident Response Chief (2020-04442) Lacey



Cybersecurity Incident Response Chief (2020-04442) Lacey

Salary

$82,992.00 - $108,912.00 Annually

Location

Thurston County – Lacey, WA

Job Type

Full Time - Permanent

Job Number

2020-04442

Department

Employment Security Department

Division

Information Technology Services Division

Opening Date

05/26/2020

Closing Date

6/2/2020 11:59 PM Pacific

Description

Here's your opportunity to be a key part of how we live our vision and BUILD the nation's best and most future ready workforce – starting right at ESD!

Power to Help:  Here at the Employment Security Department (ESD)we believe in the Power to Help when people need it most. We provide our communities with inclusive workforce solutions that promote economic resilience and prosperity. Our values drive every decision that we make, determine how we interact with others and are at the core of who we are. 

Power of a Job:  Our Information Technology Services Division (ITSD) improves our business by providing enterprise-class IT systems, services and support. The Information Security (IS) Team supports ITSD and all ESD business functions by reducing the risk of security incidents and data breaches. We are looking for a Cybersecurity Incident Response Chief to support all aspects of information security programs, focusing on the agency Information Security Threat Monitoring and Incident Response program. In this role, you will provide expert-level guidance to other senior-level IT staff in planning, coordinating, and implementing the agency's Information Security program to safeguard information on ESD's network and computer systems against accidental or unauthorized modification, destruction, or disclosure. In addition, you will plan and direct the development, deployment and auditing of enterprise Information Technology Services and Systems including policies, standards, process & procedures.
 
If you are ready to join a team of pioneering IT professionals continuously improving our customer's experience and service levels, then we hope you will apply today!
 
More than Just a Paycheck!  Washington State offers one of the most competitive benefits packages in the nation. To read more about our benefits, click on the following employee benefit links:

Duties

As the Cybersecurity Incident Response Chief, you will be responsible for:

  • Threat Monitoring and Incident Response:  Provide incident response services to ESD to identify computer attacks and probes as they occur. Lead daily operations monitoring data sources to detect, characterize, and respond to attacks. Serve as an escalation point for ongoing incident response activities, manage incident response process to closure for large or exceptional security incidents, through documentation, remediation and review process.
  • Security Management Support and Leadership:  Lead and support the development, implementation, and maintenance of the ESD information security policies, standards, guidelines and procedures. Mentor technical staff and teams. Support and/or participate in personnel investigations and consult with HR. Conduct functionality and gap analyses to determine the extent to which key business areas and infrastructure comply with incident response, statutory and regulatory requirements.
  • Policy Management:  Lead enterprise incident response policy efforts. Research, evaluate, design, test, recommend and plan the implementation of new or updated incident response policies, standards, non-conformance alerts and remedial actions. Set the standards for incident response quality control, audit trails, event reporting and integrity controls.
  • Risk Assessment, Compliance and Audit: Implement controls and to coordinate and monitor risk assessment, compliance and audit support activities. Serve as an escalation point for ongoing audit support and compliance activities. Perform gap analysis of defense against known Tactics, Techniques, and Procedures (TTPs) of adversaries and remedying shortfalls to reduce the attack-surface of the Enterprise.
  • Conducting application, hardware or system vulnerability and compliance testing: Provide management and technical leadership on the vulnerability management aspects of information systems. Assure the security of all systems, data, and customer information while maintaining connectivity and interoperability. Apply and recommend methods, frameworks, and requirements to monitor and measure risk, compliance, and assurance efforts.
  • Quality Assurance: Develop and implement an ongoing quality assessment program targeting information technology policy matters. Recommend methods for early detection and remediation and oversee quality control testing. Prepare reports to communicate outcomes of quality activities.

For a full description of duties - please click here to request from recruiter: PDF Request

Qualifications

Required Qualifications:

Bachelor's Degree in Computer Science or closely related field AND five (5) years of IT experience in hardware and/or software systems administration and/or computer programming that includes:

  • Five (5) years of progressive experience in computing and information security and incident response, including experience with Internet technology and security issues. (Experience may have been gained concurrently with the above.)
  • Three (3) years of experience with information security systems, tool and applications such as Advanced Anti-malware and Endpoint Protection Systems, SEIMs or other Security and Event logging and monitoring systems, Vulnerability management systems, forensic and other investigative tools, GRCs, etc. (Experience may have been gained concurrently with the above.)
  • Three (3) years of experience with security incident response, disaster recovery planning and testing, risk analysis, business resumption planning, and contingency planning. (Experience may have been gained concurrently with the above.)

OR a combination of education and/or relevant IT experience equivalent to 9 years.

Desired Qualifications:
  • Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), EC-Council Certified Security Analyst (ECSA) or other equivalent certifications.
  • Knowledge of facilitation and coaching techniques.
  • Workload management skills -- plan and organize assignments to create timely, accurate work products. Work efficiently, remain focused, and handle interruptions effectively.
  • Customer service skills -- build and maintain customer relations and satisfaction.
  • Research skills -- collect, synthesize, and evaluate information.
  • Systems security skills – knowledge of system security issues.
  • Problem solving skills.
  • IT project management skills.

Supplemental Information

Please attach a Resume and Cover Letter to your on-line application (through the Add Attachment(s) field).

  • A resume will not substitute for the "work experience" section of the application or vice versa.
  • Applications with blank fields, or supplemental question responses with comments such as "see attachments" may be considered incomplete.
Other Information
  • Final external candidates must be able to pass the Unemployment Insurance (UI) Fraud Check.
  • Position may require frequent and/or occasional travel to field offices within the state, and/or occasional travel for meetings and/or training. Must meet requirements to operate state vehicles.
  • This recruitment may be used to establish a qualified pool of IT SA/Journey candidates for agency-wide vacancies in the next six months.
  • The Employment Security Department is an equal opportunity employer/program. Auxiliary aids and services are available upon request to individuals with disabilities.
  • If you are having technical difficulties creating, accessing or completing your application, please contact careershelp@des.wa.gov or (360) 664-1960 or toll free (877) 664-1960.


Veteran's Preference
Applicants who meet the minimum qualifications and wish to claim Veteran's Preference must attach a copy of their DD214 or other verification of military service.  Please black out any personally identifiable data such as social security numbers.

Thank you for your service!


 
Modern Workplace
ESD's employee engagement continued to trend upward in 2018 as we developed programs to improve the employee experience. We are diligent and remain focused on creating a modern workplace designed to meet the needs of a changing workforce. We have wellness programs, telework policies and flexible schedules. We're working to update our facilities all over the state to enhance both the client and employee experience. 
 
Opportunity for All
The Washington Employment Security Department is an equal opportunity employer. We strive to create a working environment that includes and respects cultural, racial, ethnic, sexual orientation and gender identity diversity. Women, racial and ethnic minorities, persons of disability, persons over 40 years of age, veterans or people with military status, and people of all sexual orientations and gender identities are encouraged to apply. Please include your name and preferred pronouns in your application, to ensure we address you appropriately throughout the application process.
 


 


Please contact Carolyn Haley on the Talent Acquisition Team at 360-480-5752, chaley@esd.wa.govHRRecruiting@esd.wa.gov, or Washington Relay Service 711 with general questions, if you are a person with a disability needing assistance in the application process, or if you need this job announcement in an alternate format.

More than Just a Paycheck!
 
Employee benefits are not just about the kind of services you get, they are also about how much you may have to pay out of pocket. Washington State offers one of the most competitive benefits packages in the nation.

We understand that your life revolves around more than just your career and that your priority is making sure that you and your family will maintain health and financial security. That's why choice is a key component of our benefits package. We have a selection of health and retirement plans, paid leave, staff training and other compensation benefits that you can mix and match to meet your current and future needs.

 
Read about our benefits:
 
The following information describes typical benefits available for full-time employees who are expected to work more than six months. Actual benefits may vary by appointment type or be prorated for other than full-time work. Check with the agency human resource office for specific benefit information.

Insurance Benefits
 
Employees and families are covered by medical (including vision), dental and basic life insurance.  There are multiple medical plans with affordable monthly premiums that offer coverage throughout the state.  Staff are eligible to enroll each year in a medical flexible spending account which enables them to use tax-deferred dollars toward their health care expenses.  Employees are also covered by basic life and long term disability insurance, with the option to purchase additional coverage amounts.  To view premium rates, coverage choice in your area and how to enroll, please visit the Public Employees Benefits Board (PEBB) website.
 
Retirement and Deferred Compensation
 
State Employees are members of the Washington Public Employees' Retirement System (PERS).  New employees have the option of two employer contributed retirement programs.  For additional information, check out the Department of Retirement Systems' web site.
 
Employees also have the ability to participate in the Deferred Compensation Program (DCP).  This is a supplemental retirement savings program (similar to an IRA) that allows you control over the amount of pre-tax salary dollars you defer as well as the flexibility to choose between multiple investment options.
 
Vacation (Annual Leave)
 
You begin accruing vacation starting your first month of employment. Since we value your loyalty, the amount of vacation you can accrue increases the longer you work with us. Washington State supports members of the armed forces with 21 days paid military leave per year. Vacation accrues for full-time employees per WAC 357-31-165.
 
Holidays
 
Full-time employees are entitled to eleven* paid holidays:
 
HOLIDAY
DATE
 
New Year's Day
January 1
 
Martin Luther King, Jr's birthday
Third Monday in January
 
Presidents' Day
Third Monday in February
 
Memorial Day
Last Monday in May
 
Independence Day
July 4
 
Labor Day
First Monday in September
 
Veterans' Day
November 11
 
Thanksgiving Day
Fourth Thursday in November & Friday after
 
Christmas Day
December 25
 
Personal Holiday
Employee's selection each calendar year

*Employees who are members of certain Unions are entitled to an additional personal leave day of their choice. Please refer to specific Collective Bargaining Agreements for more information.
 
Social Security
 
All state employees are covered by the federal Social Security and Medicare systems. The state and the employee pay an equal amount into the system.
 
Sick Leave
 
Full-time employees earn eight hours of sick leave per month. Paid sick leave may be used for reasons included in WAC 357-31-130.
 
Please visit the State HR Website for more detailed information.

01
In order to be considered for this position, you must include a cover letter and resume with this applicant packet. Please click below to indicate you have attached the required documentation.
  • Yes
  • No
02
Are you a current or former Washington state employee?
  • Yes
  • No
03
Which of the following best describes your highest level of education?
  • High School Diploma or GED
  • Associate Degree
  • Bachelor's Degree
  • Master's Degree or Higher
  • None of the above
04
Please select the focus of your degree from the list below.
  • Information Technology
  • Computer Science
  • Related degree
  • Non-related degree
  • I do not have a degree
05
Which best describes your length of IT experience in hardware and/or software systems administration and/or computer programming?
  • I have less than 3 years of this type of experience.
  • I have 3 years of this type of experience.
  • I have 4 years of this type of experience.
  • I have 5 years of this type of experience.
  • I have 6 years of this type of experience.
  • I have 7 years of this type of experience.
  • I have 8 or more years of this type of experience.
  • I do not have this type of experience.
06
Which best describes your IT experience in computing and information security and incident response, including experience with Internet technology and security issues? (Experience may have been gained concurrently with the above.)
  • Less than 5 years of this type of experience.
  • At least 5 years of this type of experience.
  • At least 6 years of this type of experience.
  • At least 7 years of this type of experience.
  • At least 8 years of this type of experience.
  • At least 9 years of this type of experience.
  • At least 10 or more years of this type of experience.
  • I do not have this type of experience.
07
Which best describes your experience with information security systems, tool and applications such as Advanced Anti-malware and Endpoint Protection Systems, SEIMs or other Security and Event logging and monitoring systems, Vulnerability management systems, forensic and other investigative tools, GRCs, etc.? (Experience may have been gained concurrently with the above.)
  • Less than 1 year
  • At least 1 year
  • At least 2 years
  • At least 3 years
  • At least 4 years
  • 5 or more years
  • I do not have this experience.
08
Which best describes your experience with security incident response, disaster recovery planning and testing, risk analysis, business resumption planning, and contingency planning? (Experience may have been gained concurrently with the above.)
  • Less than 1 year
  • At least 1 year
  • At least 2 years
  • At least 3 years
  • At least 4 years
  • 5 or more years
  • I do not have this experience.
09
Please briefly explain how you gained the knowledge and/or experiences selected in questions 5-8 above. If you do not have this please type N/A.
10
Please select all that apply from the list below. In addition to the qualifications above, I also have the following:
  • • Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), EC-Council Certified Security Analyst (ECSA) or other equivalent certifications.
  • • Knowledge of facilitation and coaching techniques.
  • • Workload management skills -- plan and organize assignments to create timely, accurate work products. Work efficiently, remain focused, and handle interruptions effectively.
  • • Customer service skills -- build and maintain customer relations and satisfaction.
  • • Research skills -- collect, synthesize, and evaluate information.
  • • Systems security skills – knowledge of system security issues.
  • • Problem solving skills.
  • • IT project management skills.
  • None of these Apply
11
ESD How did you hear about this job opportunity?
  • www.careers.wa.gov
  • WorkSource Center or Website (WorkSourceWA.com)
  • Washington State Employee Referral
  • ESD Employee Referral
  • Employment Security Department's job web page: www.esd.wa.gov
  • Monster
  • College/university career fair or website
  • LinkedIn
  • Facebook
  • VERG
  • CareerBuilder
  • Other
12
If you selected "Other" or "Referral", please tell us how you learned about this job opportunity. If this does not apply to you, type N/A.

Required Question

Agency
State of Washington
Address
View Job Posting for Agency Information

View Job Posting for Location, Washington, 98504
Phone
View Posting for Agency Contact