cccd

IT Cyber Security Systems Engineer (Senior Position)

$115KOrange County, CA
✓ Verified live on the employer's own system · added 4 days ago
Save search
Senior · 8+ yrs exp

Requirements

Education: Bachelor's degree or related field

Experience: 8+ years

License: Driver's license

Skills & tools

SecurityRegulatory ComplianceManual LaborRecruitingHiringLoan ProcessingManagementOperations

Benefits — mentioned in this posting

Health, dental & visionPaid time offFamily / parental leave401(k) / retirement
Apply on company site ↗ See your fit → free

Full job description

About the Team At the Coast Community College District, the IT Cyber Security and Infrastructure Team plays a vital role in supporting the success of students, faculty, and staff across Coastline College, Golden West College, and Orange Coast College. We're looking for talented individuals who are passionate about technology and eager to contribute to our mission of fostering innovation, security, and seamless digital experiences.

Why Work with Us? As part of this team, you'll have the opportunity to: Innovate: Work with cutting-edge technologies that enhance education and streamline district operations. Collaborate: Partner with academic leaders and staff to deliver meaningful technology solutions.

Grow: Be part of a team that values continuous learning, professional development, and staying ahead of the latest industry trends. Make an Impact: Your work will directly contribute to the success of our students and the efficiency of the district. Our Focus Areas Network & Infrastructure: Ensure fast, secure connectivity across campuses.

Enterprise Applications: Manage critical systems like student information and ERP platforms. Cybersecurity: Protect the district's digital assets and safeguard against threats. User Support: Provide responsive helpdesk services and technical assistance.

Academic Technology: Support the latest tools for online learning and in-classroom technology. Data & Analytics: Help the district make informed decisions through powerful data insights. Our Projects Digital Transformation: We're enhancing the digital learning environment and expanding cloud-based solutions.

Cybersecurity Initiatives: Keeping the district secure through advanced threat detection and awareness programs. Cloud Migration: Moving essential services to the cloud for greater scalability and efficiency. About the District Established in 1947, the Coast Community College District (CCCD) is a beacon of educational excellence in Orange County, California.

As a public, multi-campus community college district, CCCD has been transforming lives through accessible, high-quality education for over seven decades. CCCD's impact extends across three comprehensive colleges: Coastline Community College, Golden West College, and Orange Coast College. Together, these institutions serve over 51,000 students annually, offering a rich tapestry of academic and vocational programs, support services, and co-curricular activities.

CCCD takes pride in fostering a supportive and inclusive environment. Our commitment to diversity, equity, and inclusion extends beyond our student body to encompass our employees and the broader community. We believe that this inclusive approach not only enriches the educational experience but also prepares our students for success in an increasingly diverse world.

Join us in shaping the future of education in Orange County. At CCCD, you'll be part of a dynamic team dedicated to making a lasting impact on our students and community. Together, we can continue our legacy of transforming lives through the power of education.

Summary Leads, plans, designs, and implements processes and procedures for risk assessments, vulnerability analyses, and penetration testing to prevent, detect, and respond to cyber security attacks. Identifies threats and vulnerabilities in systems and software and provides high-tech solutions to cyber security team to contain, remediate, and document circumstances around confirmed security issues.

Provides guidance to and informs cyber security administrators on user security policies, procedures, and practices that defend against hacking, malware, ransomware, insider threats, and cybercrimes. Distinguishing Career Features The Cyber Security Systems Engineer is a senior-level professional position with advanced technical knowledge and analytical skills to identify, develop, and implement effective cyber security program policies, procedures, and processes.

The Cyber Security Systems Engineer monitors malware trends and applies in-depth understanding of cyber security threats in collaboration with cyber security administrators to develop and implement cyber defense strategies. The Cyber Security Systems Engineer is responsible for cyber security requirements for related legal and regulatory compliance.

Essential Duties and Responsibilities Incumbents typically perform a substantial portion or all the following types of duties, as required to maintain cyber security systems: 1. Provides subject matter expertise in the strategic planning processes, providing technical input into enterprise security initiatives. 2.

Oversees and leads research and planning of leading-edge technologies for cyber security. 3. Leads the design and engineering of security solutions.

4. Recommends strategic security standards and policies to the Cyber Security Administrator. 5.

Provides strategic guidance and subject matter expertise to Cyber Security Administrators, as well as guidance to all levels of the Cyber Security Team. 6. Provides operational and project team leadership for multiple, simultaneous enterprise-wide cyber security initiatives.

7. Leads and provides process enhancement for risk assessments, vulnerability analyses, and penetration testing. 8.

Oversees and responds to security incidents and vulnerabilities. 9. Coordinates the design and engineering of security solutions; participates in planning for future cyber security technology.

10. Performs complex forensic preservation tasks as required. 11.

Provides technical expertise to internal and external entities, including internal investigators and external law enforcement and intelligence/government agencies. 12. Develops processes, procedures, and security standards to promote operational efficiency.

13. Designs and integrates new architectural features; provides complex architectural and engineering analyses. 14.

Embeds advanced cyber defense techniques for incident response 15. Leads the tactical execution of Cyber Incident Responses. 16.

Develops and deliver cyber security training material. 17. Presents enterprise-wide security solutions and analyses to internal and external stakeholders.

18. Provides input and support to the development of communications addressing system and network security principles and technology solutions. 19.

Applies project management principles and methods to the leadership of security tasks or projects. 20. (NICE-T0028) Conducts and/or supports authorized penetration testing on enterprise network assets. 21. (NICE-T0047) Correlates incident data to identify specific vulnerabilities and makes recommendations that enable expeditious remediation.

22. (NICE-T0051) Define appropriate levels of system availability based on critical system functions and ensure that system requirements identify appropriate disaster recovery and continuity of operations requirements to include any appropriate fail-over/alternate site requirements, backup requirements, and material supportability requirements for system recover/restoration.

23. (NICE-T0090) Ensure that acquired or developed system(s) and architecture(s) are consistent with organization's cybersecurity architecture guidelines. 24. (NICE-T0119) Identifies, assesses, and recommends cybersecurity or cybersecurity-enabled products for use within a system and ensure that recommended products follow organization's evaluation and validation requirements.

25. (NICE-T0155) Documents and escalates incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment. 26. (NICE-T0161) Performs analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, security system logs, and intrusion detection system [IDS] logs) to identify threats to network security.

27. (NICE-T0163) Performs cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. 28. (NICE-T0175) Performs real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs).

29. (NICE-T0181) Performs risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change. 30. (NICE-T0196) Provide advice on project costs, design concepts, or design changes. 31. (NICE-T0205) Provide input to the Risk Management Framework process activities and related documentation (e.g., system life-cycle support plans, concept of operations, operational procedures, and maintenance training materials).

32. (NICE-T0248) Promotes awareness of security issues among management and ensures sound security principles are reflected in the organization's vision and goals. 33. (NICE-T0258) Provides timely detection, identification, and alerting of attacks/intrusions, anomalous activities, and misuse activities and distinguishes these incidents and events from benign activities.

34. (NICE-T0259) Uses cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity. 35. (NICE-T0260) Analyzes identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information. 36. (NICE-T0284) Designs and develops new tools/technologies as related to cybersecurity.

37. (NICE-T0338) Write detailed functional specifications that document the architecture development process. 38. (NICE-T0380) Plans instructional strategies such as lectures, demonstrations, interactive exercises, multimedia presentations, video courses, web-based courses for the most effective learning environment in conjunction with educators and trainers.

39. (NICE-T0427) Analyze user needs and requirements to plan architecture. 40. (NICE-T0503) Monitors external data sources (e.g., cyber defense vendor sites, Computer Emergency Response Teams, Security Focus) to maintain currency of cyber defense threat condition and determines which security issues may have an impact on the enterprise.

41. (NICE-T0517) Integrate results regarding the identification of gaps in security architecture. 42. (NICE-T0518) Performs security reviews and identifies security gaps in architecture. 43. (NICE-T0542) Translate proposed capabilities into technical requirements.

44. (NICE-T0548) Provides advice and input for Disaster Recovery, Contingency, and Continuity of Operations Plans. 45. (NICE-T0549) Performs technical (evaluation of technology) and nontechnical (evaluation of people and operations) risk and vulnerability assessments of relevant technology focus areas (e.g., local computing environment, network and infrastructure, enclave boundary, supporting infrastructure, and applications).

46. (NICE-T0550) Makes recommendations regarding the selection of cost-effective security controls to mitigate risk (e.g., protection of information, systems and processes) 47. (NICE-T0555) Document how the implementation of a new system or new interface between systems impacts the current and target environment including but not limited to security posture.

48. (NICE-T0557) Integrate key management functions as related to cyberspace. 49. (NICE-T0926) Develops or assists with the development of privacy training materials and other communications to increase employee understanding of company privacy policies, data handling practices and procedures and legal obligations. 50.

Performs other related duties as assigned that support the objective of the position. 51. Required to abide by all District policies and procedures including Board Policy 3050 - Code of Professional Ethics.

Qualifications and Physical Demands Note: NICE reference the Task Number as assigned by the National Institute of Standards and Technology (NIST) National Initiative for Cybersecurity Education / Cyber Workforce Framework (SP800-181). This framework provides guidance to employers and colleges/training for describing the task, knowledge, skills, and abilities for CyberWork.

Qualifications Education and Experience The position requires a bachelor's degree in computer science, cyber security or related technical field and 8 years' experience in cyber security project development and implementation, and on-going administration of integrated networks. Or any combination of education and experience which would provide the required equivalent qualifications for the position.

AND Demonstrated evidence of responsiveness to and understanding of the racial, ethnic, disability, gender identity, sexual orientation, socioeconomic, academic, and cultural diversity within the community college student population, including students with different ability statuses (e.g., physical and/or learning) as these factors relate to the need for equity-minded practice within the classroom.

Licenses and Certificates Required: CISSP or CISM. Preferred: PMP, CCNA, OSCP, any GIAC certification. May require a driver license.

Desirable

Qualifications - Certifications - MS 500, AZ 500 - Enrolled or completed training in Identity and Access Administration Associate (SC300) Knowledge and Skills 1. (NICE-K0001) Knowledge of computer networking concepts and protocols, and network security methodologies. 2. (NICE-K0002) Knowledge of risk management processes (e.g., methods for assessing and mitigating risk).

3. (NICE-K0003) Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy. 4. (NICE-K0004) Knowledge of cybersecurity and privacy principles. 5. (NICE-K0005) Knowledge of cyber threats and vulnerabilities.

6. (NICE-K0006) Knowledge of specific operational impacts of cybersecurity lapses. 7. (NICE-K0021) Knowledge of data backup and recovery. 8. (NICE-K0026) Knowledge of business continuity and disaster recovery continuity of operations plans.

9. (NICE-K0033) Knowledge of host/network access control mechanisms (e.g., access control list, capabilities list). 10. (NICE-K0034) Knowledge of network services and protocols interactions that provide network communications. 11. (NICE-K0041) Knowledge of incident categories, incident responses, and timelines for responses.

12. (NICE-K0042) Knowledge of incident response and handling methodologies. 13. (NICE-K0046) Knowledge of intrusion detection methodologies and techniques for detecting host and network-based intrusions. 14. (NICE-K0056) Knowledge of network access, identity, and access management (e.g., public key infrastructure, Oauth, OpenID, SAML, SPML).

15. (NICE-K0058) Knowledge of network traffic analysis methods. 16. (NICE-K0061) Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]). 17. (NICE-K0062) Knowledge of packet-level analysis.

18. (NICE-K0063) Knowledge of parallel and distributed computing concepts. 19. (NICE-K0070) Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Proce

More jobs at cccd

Similar jobs near Orange County, CA

Search IT Cyber Security Systems Engineer (Senior Position) jobs near Orange County, CA → Browse all live jobs

This posting was published by cccd on their own careers system and is shown here with a direct link to apply there. Employers: for corrections or removal, contact jobs@veritahire.com.