Information Security Analyst
1. RSA Archer2. Enterprise NoSQL Database3. IBM System 390/zSeries4. Linux and Windows servers5. Network Firewalls, Intrusion Prevention Systems (IPS), Switching and Routing Infrastructure6. Security Information and Event Management (SIEM) solutions7. Identity and Access Management (IAM) solutions. Perform detailed architectural reviews and risk analysis of security related requests in order to make sound decision making recommendations, such as:a. Network Design and Information Flowb. System and Data Access Modelsc. Review Firewall Rule Requests (Ports, Protocols, and Services)d. Baseline Configuration Management Deviation Requestse. Vulnerability Management2. Champion the design, development, implementation, and/or ongoing maturation of SCDHHS security and compliance efforts.3. Audit and assess internal agency systems as well as business partner/service provider information system security controls.4. Utilize Microsoft Office software suite, System Center Service Manager (Ticketing system), RSA Archer eGRC system, Bizagi, Atlassian and other products to document and report on information gathered during Audit and Assessment activities or other OCS efforts.5. Perform security and compliance reviews of Contracts, Business Associate Agreements, Data Usage/Sharing Agreements, and other types of documentsand artifacts.6. Serve as primary point of contact for third-party audits and/or assessmentsof agency and business partner systems7. Collaborate with agency leadership, business partners, and other parties/ stakeholders to provide recommendations for security and compliance risk mitigation efforts.