Information Security Analyst II

San Bernardino County School District
San Bernardino, CA, United States
1 day ago
Apply on careersingovernment.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$106,288.0 - $150,114.0
Working hours
Shift work

Tech stack

Software System Penetration Testing Cloud Computing Cyber Security Information Systems Computer Programming Computer Networks Network Security Phishing Simulation Software Software Engineering Information Technology Vulnerability Analysis

Job description

The Innovation and Technology Department is seeking motivated and passionate professionals for the role of Information Security Analyst II (ISA II).The analyst will be responsible for monitoring, analyzing, and collaborating on security incidents and events to safeguard the security operations of the Countywide Information Security Program, that provides protection, governance, risk, and compliance.

The ISA II monitors, analyzes, investigates, and responds to cybersecurity events and incidents that may affect County systems, applications, networks, and information assets. The analyst will work collaboratively with experienced cybersecurity team members, County departments with diverse business and regulatory requirements, and various technology teams to identify potential threats, evaluate security concerns and issues, and support efficient and effective response including identifying appropriate mitigation and remediation activities. They will respond to, defend against, consult on, and resolve enterprise and departmental security concerns, events, issues, and incidents related to cyber, operational, and information security.

Key responsibilities may include:

  • Monitoring computer networks for security issues and suspicious activities.
  • Performs as an incident responder and investigates cybersecurity incidents.
  • Lead response efforts in collaboration with other IT teams, vendors, and cyber intelligence partners to analyze and remediate the issue.
  • May lead or coordinate cybersecurity incidents and investigations with Human Resources, County departments, outside agencies (e.g. regulatory agencies) including law enforcement.
  • Educates team members; and recommends security measures including protocols, policies, and standard practice to leadership.
  • May lead, facilitate, coordinate, or conduct vulnerability assessments with a proactive focus on threat intelligence and the mitigation and prevention of cyber attacks.
  • Collaborate with colleagues for network security design enhancements.
  • Leads the coordinating and facilitating the Countywide Security Awareness Training Program
  • Leads the coordinating and facilitating the Countywide Phishing Simulation Program.
  • Leads the conducting, coordinating, and facilitating cybersecurity or information security tabletop exercises.
  • Reviews and coordinating contracts, procurement documents, and software or service licensing agreements to identify and assess cybersecurity, privacy, and compliance risks, and provides recommendations to ensure adherence to organizational security policies and regulatory requirements.
  • Participate in on-call rotation and after-hours maintenance as needed., San Bernardino County is an Equal Employment Opportunity (EEO) and Americans with Disabilities Act (ADA) compliant employer, dedicated to ensuring equal employment opportunities for all employees and applicants.

Requirements

Pre-Employment Process: Applicants must successfully pass a background check and a job-related physical exam, including a drug test, prior to employment .

Availability: Incumbents may occasionally work evening and weekend hours. Some overtime, on-call, or call back work may be required.

Sponsorship: Please note San Bernardino County is not able to consider candidates who will require visa sponsorship at the time of application or in the future. Candidates must be able to present their legal right to work in the United States.

Minimum Requirements

Candidates must meet the Experience AND Education requirement in order to qualify.

REQUIRED EXPERIENCE: Three (3) years of experience assisting with the implementation, management, and monitoring of IT security solutions and programs. REQUIRED EDUCATION: Sixty (60) semester (90 quarter) units of completed courses from an accredited** college or university in information security, information systems, programming, computer science, software engineering, or a closely related field.

SUBSTITUTIONS:

  • One (1) additional year of qualifying work experience may substitute for the education requirement.
  • A Bachelor’s degree in information security, information systems, information technology, programming, computer science, software engineering, or a closely related field may substitute one (1) year of the required experience.

**Qualifying degrees and coursework must be conferred by institutions accredited by an accrediting body recognized by the U.S. Department of Education. Degrees earned outside the United States must be accompanied by an evaluation from a recognized credential evaluation service verifying U.S. equivalency., * Master’s degree in information systems, information security, information technology, computer science, or a closely related field.

  • Information security experience in higher education or state/local government.
  • Information security related training or certifications such as CEH, CSA, or CISSP.
  • Experience performing information security audits or risk assessments.
  • Ability to administer network and host-based tools for penetration testing and ethical hacking products and tools.
  • Knowledge of host compromise, and various techniques for malware injection and MITRE Kill Chain Framework.
  • Proficiency in performing risk, business impact, control, and vulnerability assessments, and in defining treatment strategies.
  • Strong analytical skills to analyze security requirements and relate them to appropriate security controls.
  • Experience with cloud infrastructure and provisioning technology.

About the company

San Bernardino County is located in the heart of Southern California, home to over 2 million residents, encompassing 20,160 square miles from the Nevada State line and the Colorado River to the LA County line. This gives San Bernardino County a diverse climate and geography, from mountains as high as 11,502 feet, to the desert as low as 181 feet, and beautiful valleys in between. Pristine lakes and rivers, snow-capped mountain resorts, flowering deserts, and many other family-oriented recreational attractions take advantage of the natural assets of the area, most within an hour’s drive. Families enjoy affordable housing, excellent schools, colleges and universities, and easy access to airports, hospitals, libraries, and parks. The County provides a safe, clean and healthy environment for residents. A variety of shopping and business opportunities abound, in this, the largest County in the contiguous United States.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on careersingovernment.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:19 min

Securing roles upon finishing a computer science degree

Karol Rogowski · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:27 min

Introduction to WebAssembly in a cloud computing context

Edo Edo · World Congress 2024

10:42 min

Essential soft skills and evaluating security candidates

Kurt Eder · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all