Lead and execute technical security risk assessments and penetration testing across enterprise environments Assess county IT infrastructure including: Servers desktops and networks Firewalls VPNs MFA and identity/access management User access provisioning and security hardening procedures Vulnerability management and patch management processes Develop and maintain standardized assessment methodologies templates and reporting artifacts Manage assessment team assignments schedules and project timelines across multiple counties Review findings validate risks and provide actionable remediation recommendations Translate complex technical security findings into clear non-technical insights for business leaders and stakeholders Collaborate with county IT teams CMS and program stakeholders to support remediation efforts Ensure alignment with security frameworks and best practices (e.g. NIST CIS ISO)
Required Experience:
Director
Application Deadline: April 30 2026 Chapel Hill NCHybridHourly salary: $90 - $100Job DescriptionLead and execute technical security risk assessments and penetration testing across enterprise environmentsAssess county IT infrastructure including:Servers desktops and ne...
Lead and execute technical security risk assessments and penetration testing across enterprise environments Assess county IT infrastructure including: Servers desktops and networks Firewalls VPNs MFA and identity/access management User access provisioning and security hardening procedures Vulnerability management and patch management processes Develop and maintain standardized assessment methodologies templates and reporting artifacts Manage assessment team assignments schedules and project timelines across multiple counties Review findings validate risks and provide actionable remediation recommendations Translate complex technical security findings into clear non-technical insights for business leaders and stakeholders Collaborate with county IT teams CMS and program stakeholders to support remediation efforts Ensure alignment with security frameworks and best practices (e.g. NIST CIS ISO)