City of Garland, TX

Cyber Security Analyst

Location US-TX-Garland
Posted Date 1 month ago(1/25/2021 8:07 AM)
Job ID
2021-6811
# of Openings Remaining
1
Department
Electric Administration
Job Family
Information Systems
Target Hiring Range
Depending on Qualifications
Type
Regular Full-Time

Position Summary

Responsible for the digital security of the information technology infrastructure for Garland Power & Light by evaluating, planning and implementing the security systems that protect GP&L’s IT infrastructure. The role will provide IT system analysis, design support and apply information security tactics to the corporate, SCADA, and EMS systems to comply with federal, state, and company regulatory policies and procedures.  Also responsible for monitoring and securing the systems and networks.

 

 

 

Essential Job Functions

Regulatory and reliability agencies that are considered referenced include:  Federal Energy Regulatory Commission (FERC), Public Utility Commission of Texas (PUCT), North American Electric Reliability Corporation (NERC), Texas Reliability Entity (TRE), Electric Reliability Council of Texas (ERCOT), etc.

  1. Ensure systems and networks comply with NERC CIP, state and local regulatory standards and internal policies. Assess business risks and evaluate the effectiveness of controls at the network, operating system, database, and application level.
  2. Participate in regulatory audits, spot-checks, and self-certifications including mock audits.
  3. Evaluate tests, recommend, develop, coordinate, monitor, and maintain information security policies, procedures and systems, including hardware, firmware and software.
  4. Conduct vulnerability assessment and review, investigate and document results.
  5. Assist Information Security (IS) architecture/designs, plans, controls, processes, standards, policies and procedures are aligned with IS standards and overall IS security.
  6. Identify security risks and exposures, determine the causes of security violations and suggest procedures to halt future incidents. Investigate and resolve security incidents and recommends enhancements to improve security.
  7. Continuously monitor, analyze and identify security alerts information from all approved security devices, collection techniques and designated system logs.
  8. Assist with the review, evaluation and root cause identification of deficiencies, and participate in mitigation plans with corrective actions.
  9. May prepare written reports, communication or correspondence on behalf of the department. May make presentations on assignment status and progress.
  10. May attend various events and functions.

Minimum Education & Work Experience

Bachelor’s degree in computer science; cyber security; or related information technology discipline
3 years’ experience designing, configuring, administering, maintaining and upgrading Windows and Linux Server operating systems
3 years’ experience designing, configuring, administering, maintaining and upgrading network infrastructure devices to include routers, switches and firewalls through their most recent versions.
3 years in information security including log analysis, system wide threat hunting and infrastructure troubleshooting
3 years conducting vulnerability assessments
Or an equivalent combination of education and experience (in electric utility) sufficient to successfully perform the essential functions of the job.

Preferred Knowledge - Abilities & Skills

Education/ Experience:     

  • Bachelor’s degree in computer science; cyber security; or related information technology discipline
  • 5+ years’ experience designing, configuring, administering, maintaining and upgrading Windows and Linux Server operating systems
  • 5+ years’ experience designing, configuring, administering, maintaining and upgrading network infrastructure devices to include routers, switches and firewalls through their most recent versions.
  • 5+ years in information security including log analysis, system wide threat hunting and infrastructure troubleshooting
  • 5+ years conducting vulnerability assessments

 

Knowledge, Skills & Abilities:

  • Complete understanding of networking technologies and protocols, as well as network management and event logging tools
  • Advanced knowledge in the processes and tools used in monitoring a complex IT environment
  • Ability to perform security data mining and data trending.
  • Comprehensive knowledge of data security procedures
  • Comprehensive skill in systems programming language(s) as they relate to security requirements
  • Comprehensive knowledge with document creation applications such as Microsoft Office Suite and Adobe
  • Ability to take on challenges, apply critical thinking and learn at a quick pace
  • Strong oral and written communication skills including technical writing
  • Basic knowledge of NERC CIP

Licenses & Certifications

Valid Class C Texas driver's license
Currently hold and actively utilize one or more of the following certifications:
CEH
GCIH or GCIA or GRID
CCNP Security or CyberOps Professional PCNSA or above




Physical Tasks & Working Conditions

The incumbent works in a typical office environment; relatively free from any environmental hazards or conditions. May be exposed to some unpleasant environmental conditions.

Competencies

Models Organizational Values
Customer Focus
Communication
Adaptability/Flexibility
Results Focus/Project Management

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed