Salary range: $107,594.26-$125,000.00
Position posted until filled
General Description and Classification Standards:
The Airport Information Technology Security Engineer is responsible for patching, implementing, and administrating security hardware and software, enforcing the network security patching policy, and complying with requirements of external security audits and recommendations. Other responsibilities include analyzing, troubleshooting, and investigating security-related information systems anomalies based on security platform reporting, network traffic, log files, and host-based and automated security alerts
Essential Duties and Responsibilities:
These are typical responsibilities for this position and should not be construed as exclusive or all inclusive.
• Leads security patching for system servers, endpoints, applications, and special systems.
• Attends weekly vulnerability meetings to understand threats facing the environment.
• Ensures security vulnerabilities are remediated within the organization's service level agreement.
• Manages single-resource and multi-resource internal team projects and provides assessment, costing, design, planning, and management of new projects and processes.
• Designs, plans, and manages deployment of new and multi-specialty technologies.
• Recommends, schedules, and performs software and hardware improvements, upgrades, patches, reconfigurations, and purchases.
• Monitors and administers appropriate systems to ensure system and service availability and
peak performance and that modifications to existing environments are effective and efficient.
• Documents all systems procedures, practices, job responsibilities, and processes.
• Applies decision-making skills to select from multiple procedures and methods to accomplish tasks.
• Applies organizational policies. May interpret organizational policies and recommend exceptions.
• Establishes work methods, timetables, performance standards, etc.
• Provides leadership, guidance, and training to work groups and less experienced staff. Serves as a technical resource or mentor to other employees. May lead or instruct skilled workers in high-level or technical jobs.
• Provides status reports and reports on vulnerabilities.
• Creates shell scripts as required for automation and to expedite any rote process.
• Provides follow-up services to ensure customer satisfaction and resolve client issues.
• Provides advice and recommendations to management on processes and techniques required for improved work operations.
• Designs and implements network security measures.
• Monitors network performance and security systems
• Configures and maintains firewalls and VPNs.
• Performs regular security audits and assessments.
• Develops and enforces security policies and procedures.
• Implements and maintains enterprise-level security solutions and systems.
• Creates and maintains security documentation
• May perform other duties as assigned.
The above statements reflect the general duties, responsibilities and competencies considered necessary to perform the essential duties and responsibilities of the job and should not be considered as a detailed description of all the work requirements of the position. COA may change the specific job duties with or without prior notice based on the needs of the organization.
Knowledge Skills and Abilities:
This is a partial listing of necessary knowledge, skills, and abilities required to perform the job successfully, it is not an exhaustive list.
• Software/patch delivery via Qualys, or Maas360.
• Demonstratable knowledge of networking concepts, including zero-trust models.
• Experience with a variety of application and infrastructure security solutions.
• General cloud computing knowledge (AWS, Azure, or Oracle).
• General knowledge of Virtualization technologies and implementations.
• Knowledge of Windows Operating Systems.
• Ability to build effective relationships with internal stakeholders.
• Ability to write PowerShell Scripts.
Lifting Requirements:
Light work: Exerting up to 20 pounds of force occasionally, and/or up to 10 pounds of force to move objects.
It is the policy of the City of Atlanta ("COA'') that qualified individuals with disabilities are not discriminated against be cause of their disabilities regarding job application procedures, hiring, and other terms and conditions of employment. It is further the policy of the COA to provide reasonable accommodations to qualified individuals with disabilities in all aspects of the employment process. The COA is prepared to modify or adjust the job application process or the job or work environment to make reasonable accommodations to the known physical or mental limitations of the applicant or employee to enable the applicant or employee to be considered for the position he or she desires, to perform the essential functions of the position in question, or to enjoy equal benefits and privileges of employment as are enjoyed by other similarly situated employees without disabilities, unless the accommodation will impose an undue hardship. If reasonable accommodation is needed, please contact the Human Resources Director for your department.
The City of Atlanta is an Equal Opportunity Employer and does not unlawfully discriminate on the basis of race, color, religion, age, disability, sex, sexual orientation, ender identity, marital status, veteran's status or national origin, or any other basis prohibited by federal, state, or local Jaw. We value and encourage diversity in our workforce.
Minimum Qualifications:
Education and Experience -
1. Bachelor's degree in related field
2. 5 years of experience in an Information Technology role (Additional professional years of experience may be considered for substitution for the required degree on an exception basis).
3. Two years of experience in a role involving security responsibilities.
4. Packet analysis tools (e.g., tcpdump, Wireshark, ngrep, etc.).
5. Advanced knowledge of Unix, Linux, Windows operating systems.
6. Knowledge of network devices such as switches and firewalls.
Preferred Requirements -
Industry security certifications such as Security+, Cisco CCNA, Microsoft Security certs, or CISSP