Information Security Engineer #00054
Role details
Job location
Tech stack
Job description
The Information Security Engineer is responsible for the technical execution of information security activities within ELECT systems. The Information Security Engineer ensures ELECT systems maintain confidentiality, integrity and availability for all users. The Information Security Engineer, under the direction of the Information Security Officer, ensures ELECT systems meet federal, Commonwealth of Virginia and agency security standards. The position will work with various ELECT teams and security staff of the Commonwealth of Virginia to ensure security requirements are included and implemented in SDLC activities and infrastructure operations.
The Department of Elections promotes and supports accurate, fair, open and secure elections for the citizens of the Commonwealth. ELECT ensures the proper administration of election laws, campaign finance disclosure compliance, and voter registration processes in the state by promulgating rules, regulations, issuing instructions, and providing information to local Electoral Boards and general registrars.
The Department of Elections envisions a highly modern, efficient and professional electoral process that is trustworthy and accountable at all levels and engages Virginia's diverse citizenry in the most fundamental right in a democratic society: the right to vote.
Requirements
- Extensive hands on experience in Emerging Threat Management
- Extensive knowledge of current and emerging information technologies and security tools used to perform information security functions.
- Secure Software development Lifecycle
- Strong customer focus - able to meet the demands of internal and external customers.
- Flexible and adaptable - capable of changing direction where required and showing flexibility to meet new demands and of adapting to a fast-moving technology landscape.
- Experience in forming business partnerships that help drive the information security strategy forward.
- Ability to communicate to senior executives and elected officials both orally and in written correspondence
- Demonstrated ability to provide strategic information technology (IT) advice to executive stakeholders and be able to provide leadership and guidance in the delivery of multiple complex projects.
- Demonstrated ability to design secure solutions and apply appropriate Defense-in-Depth security controls for on premise, hybrid and cloud solutions.
- Experience in strategic/long term thinking.
Extensive knowledge in the following:
- How Emerging Threats can introduce Risks
- Information Security Programs.
- Computers, applications, and electronics.
- Security Frameworks and threat environments.
- Cybersecurity core and privacy principles.
Other skills and abilities include:
- Critical thinking.
- Active listening.
- Judgment and decision making.
- Complex problem solving.
- Oral and written comprehension.
- Work effectively as a member of a team and exercise good interpersonal skills.
Additional Considerations
Experience in the following areas is a plus:
- Server Administration
- Network Administration
- Disaster Recovery
- Business Continuity
- Procurement and budgeting
- Business Intelligence/Data management
- Voting systems and pollbook equipment
Familiarity with:
- Data transformation and movement
- System analysis and design, networking, firewalls, servers, and appliances
- NIST or VITA Security Standards, processes, and procedures
Any equivalent combination of experience, education, or training to meet the experience and education qualifications.