Security Analyst III
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+12 more
Job description
Johnson County (Kansas) Government is excited to announce the search for a Security Analyst III. This critical cybersecurity leadership role will help safeguard the County’s technology environment and information assets while supporting the delivery of essential public services. The Security Analyst III will serve as a senior key contributor in strengthening the County’s overall security posture, leading major security initiatives, and advancing security automation and threat protection capabilities across the organization., Reporting to the Cyber Security & Risk Manager, the Security Analyst III will work collaboratively with technology teams, department leaders, and business stakeholders to identify risks, implement controls, and ensure compliance with regulatory and industry standards. Johnson County is committed to ongoing professional development and encourages participation in advanced training opportunities, including SANS cybersecurity courses and other specialized programs. Responsibilities: Security Operations & Risk Management
- Strengthen the County’s cybersecurity posture through evaluation of security technologies, processes, and controls.
- Conduct risk assessments of systems, applications, and proposed technology changes to identify security vulnerabilities.
- Develop and maintain security policies, procedures, and standards aligned with industry best practices.
- Monitor compliance with applicable security, privacy, and regulatory requirements.
- Analyze and respond to security incidents, advisories, alerts, and emerging threats across County systems.
Threat Protection, Vulnerability Management & Automation
- Optimize Microsoft Defender for Office 365 Plan 2 capabilities, including threat protection, phishing detection, and automated investigation and response.
- Develop and maintain security automation workflows to improve vulnerability management and incident response processes.
- Conduct vulnerability scans, penetration testing, and security assessments of infrastructure and applications.
- Lead web application security testing efforts and coordinate remediation with development teams.
- Perform threat hunting activities using SIEM, EDR, and related security tools.
Collaboration, Training & Project Leadership
- Collaborate with technology teams to standardize and improve security processes across the organization.
- Conduct Identity and Access Management reporting and auditing activities.
- Lead security-related projects, including the implementation of new security technologies and tools.
- Promote secure development practices and provide guidance on secure coding standards.
- Train end users and support security awareness initiatives throughout the organization.
- Manage security-related tools, contracts, and vendor relationships.
- Participate in the cybersecurity on-call rotation.
Requirements
This highly technical and strategic professional will bring demonstrated experience in cybersecurity operations, risk management, security architecture, and incident response. The ideal candidate will possess deep expertise in email security, threat detection, vulnerability management, and security automation, with strong experience leveraging Microsoft security technologies, including Microsoft Defender for Office 365 Plan 2. This position offers an exciting opportunity to drive innovation, improve security processes, and help shape the future of cybersecurity within one of the region’s most respected local governments., * Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field.
- 8+ years of information technology experience, including 5+ years in information security, risk management, vulnerability management, and security operations.
- Experience leading security initiatives, projects, and continuous improvement efforts.
- Hands-on experience with Microsoft Defender for Office 365 Plan 2, including threat protection, phishing detection, policy management, and automated investigation and response.
- Experience developing security automation workflows, incident response processes, and threat hunting capabilities using SIEM, SOAR, and EDR technologies.
- Experience conducting vulnerability assessments, penetration testing, and security reviews across infrastructure, systems, and applications.
- Working knowledge of network and security management tools, vulnerability management platforms, Active Directory, next-generation firewalls, scripting languages, and Unix-based environments.
- Experience with Microsoft security technologies, including Active Directory, Exchange, Azure, Entra ID, Purview, and Microsoft Defender solutions.
- Knowledge of security frameworks, standards, and regulations, including NIST, ISO, CJIS, HIPAA, PCI, CIS Benchmarks, and STIGs.
- Strong analytical, problem-solving, communication, collaboration, and relationship-building skills, with the ability to explain technical concepts to diverse audiences.
- Professional cybersecurity certifications such as CISSP, CompTIA Security+, or related credentials are preferred.
- Experience in security automation, project management, and operational technology environments (SCADA/ICS) is preferred.
- Valid driver’s license required.
- Willingness to work additional or irregular hours as needed; on call once every four to six weeks.
- Residency within Johnson County, KS or the greater Kansas City metro is required.
Benefits & conditions
The salary range for this position is $107,369 - $147,632 per year, commensurate with qualifications and experience.
- The organization provides health, dental, and vision insurance; a phone allowance; paid leave; employer-provided HSA contribution; and employer-provided life insurance.
- Johnson County offers two retirement plans, a mandatory 6% employee participation into a defined benefit plan (KPERS); and a voluntary defined contribution plan with an employer match administered by Voya Financial, with up to a 4% match into a 401(a).
- Additionally, the County offers supplemental group life insurance, flexible spending accounts, and health savings account.
About the company
Founded in 1855, Johnson County, Kansas is one of the nation’s premier counties, providing comprehensive services to its citizens in its role as the leading organization in the Kansas City metropolitan area. The Johnson County community is nestled in the southwestern quadrant of the Kansas City metropolitan area along with the Kansas/Missouri border and exhibits all the hallmarks of a great, largely suburban community: a thriving and growing business sector; nationally recognized public schools; first-class cultural and recreational amenities; and distinctive and welcoming neighborhoods.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Best Paying Jobs in Technology
What Are The Top Skills Required For Azure Developers?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Is Software Engineering Over-Saturated?