Security Analyst III
Olathe, CO - USA
Job Summary
Founded in 1855 Johnson County Kansas is one of the nations premier counties providing comprehensive services to its citizens in its role as the leading organization in the Kansas City metropolitan area. The Johnson County community is nestled in the southwestern quadrant of the Kansas City metropolitan area along with the Kansas/Missouri border and exhibits all the hallmarks of a great largely suburban community: a thriving and growing business sector; nationally recognized public schools; first-class cultural and recreational amenities; and distinctive and welcoming neighborhoods.
This highly technical and strategic professional will bring demonstrated experience in cybersecurity operations risk management security architecture and incident response. The ideal candidate will possess deep expertise in email security threat detection vulnerability management and security automation with strong experience leveraging Microsoft security technologies including Microsoft Defender for Office 365 Plan 2. This position offers an exciting opportunity to drive innovation improve security processes and help shape the future of cybersecurity within one of the regions most respected local governments.
Reporting to the Cyber Security & Risk Manager the Security Analyst III will work collaboratively with technology teams department leaders and business stakeholders to identify risks implement controls and ensure compliance with regulatory and industry standards. Johnson County is committed to ongoing professional development and encourages participation in advanced training opportunities including SANS cybersecurity courses and other specialized programs.
Security Operations & Risk Management
- Strengthen the Countys cybersecurity posture through evaluation of security technologies processes and controls.
- Conduct risk assessments of systems applications and proposed technology changes to identify security vulnerabilities.
- Develop and maintain security policies procedures and standards aligned with industry best practices.
- Monitor compliance with applicable security privacy and regulatory requirements.
- Analyze and respond to security incidents advisories alerts and emerging threats across County systems.
Threat Protection Vulnerability Management & Automation
- Optimize Microsoft Defender for Office 365 Plan 2 capabilities including threat protection phishing detection and automated investigation and response.
- Develop and maintain security automation workflows to improve vulnerability management and incident response processes.
- Conduct vulnerability scans penetration testing and security assessments of infrastructure and applications.
- Lead web application security testing efforts and coordinate remediation with development teams.
- Perform threat hunting activities using SIEM EDR and related security tools.
Collaboration Training & Project Leadership
- Collaborate with technology teams to standardize and improve security processes across the organization.
- Conduct Identity and Access Management reporting and auditing activities.
- Lead security-related projects including the implementation of new security technologies and tools.
- Promote secure development practices and provide guidance on secure coding standards.
- Train end users and support security awareness initiatives throughout the organization.
- Manage security-related tools contracts and vendor relationships.
- Participate in the cybersecurity on-call rotation.
- Bachelors degree in Information Technology Cybersecurity Computer Science or a related field.
- 8 years of information technology experience including 5 years in information security risk management vulnerability management and security operations.
- Experience leading security initiatives projects and continuous improvement efforts.
- Hands-on experience with Microsoft Defender for Office 365 Plan 2 including threat protection phishing detection policy management and automated investigation and response.
- Experience developing security automation workflows incident response processes and threat hunting capabilities using SIEM SOAR and EDR technologies.
- Experience conducting vulnerability assessments penetration testing and security reviews across infrastructure systems and applications.
- Working knowledge of network and security management tools vulnerability management platforms Active Directory next-generation firewalls scripting languages and Unix-based environments.
- Experience with Microsoft security technologies including Active Directory Exchange Azure Entra ID Purview and Microsoft Defender solutions.
- Knowledge of security frameworks standards and regulations including NIST ISO CJIS HIPAA PCI CIS Benchmarks and STIGs.
- Strong analytical problem-solving communication collaboration and relationship-building skills with the ability to explain technical concepts to diverse audiences.
- Professional cybersecurity certifications such as CISSP CompTIA Security or related credentials are preferred.
- Experience in security automation project management and operational technology environments (SCADA/ICS) is preferred.
- Valid drivers license required.
- Willingness to work additional or irregular hours as needed; on call once every four to six weeks.
- Residency within Johnson County KS or the greater Kansas City metro is required.
Salary and Benefits
The salary range for this position is $107369 - $147632 per year commensurate with qualifications and experience.
- The organization provides health dental and vision insurance; a phone allowance; paid leave; employer-provided HSA contribution; and employer-provided life insurance.
- Johnson County offers two retirement plans a mandatory 6% employee participation into a defined benefit plan (KPERS); and a voluntary defined contribution plan with an employer match administered by Voya Financial with up to a 4% match into a 401(a).
- Additionally the County offers supplemental group life insurance flexible spending accounts and health savings account.
Johnson County Government proudly commits to a work environment in which all individuals are treated with dignity and respect. They embrace diversity and prohibit discrimination against employees and applicants for employment because of race color national origin ancestry religion (or no religion) creed sex or gender sexual orientation gender identity or expression pregnancy age disability genetic information military service or veteran status citizenship political affiliation or belief and any other status or characteristic protected by law. They support an inclusive workplace where employees excel based on personal merit qualifications experience ability and job performance.
OMNI is honored to be retained in this search. We appreciate your referrals to professionals who may have an interest in this outstanding opportunity.
Formal interest accepted through the OMNI Executive Career Portal.
For more information on this position contact:
Stacey Cowan Senior Search Consultant
OMNI Human Resource Solutions
OMNI and our clients are Equal Opportunity Employers.
Required Experience:
IC
About Company
Facebook Instagram Linkedin Youtube Serving Adults with Developmental Disabilities Welcome Home We are here to help answer “what’s next?” for adults with intellectual and developmental disabilities (IDD). In the St. Louis area alone, hundreds of people with disabilities are waiting to ... View more