SecOps Engineer - Airport

CITY OF SAN JOSE
San Jose, California United States  View Map
Posted: Dec 07, 2024
  • Salary: $135,735.60 - $165,372.48 Annually USD Annually
  • Salary Top:165372
  • Full Time
  • Aviation or Harbor
  • Engineering
  • Job Description

    Our diverse and inclusive workforce of more than 7,000 employees play a key role in the success of San José, the heart of the Silicon Valley. All City of San José employees work together as one team to make San José a vibrant, innovative, and desirable place to live and work. Visit here to learn more about our One Team Leadership Values and Expectations, including quality and excellent customer service and here to learn more about San José.

    About the Department

    The City of San José, the Capital of Silicon Valley, is one of the nation's best managed cities and one of the top 10 cities in which to live, work, and do business. Moreover, San José is the center of cultural, government and economic activity for the region. The employees of the City of San José have embraced the following values: Integrity, Innovation, Excellence, Collaboration, Respect and Celebration. The City's Airport Department is seeking an individual whose values align with the values of the City's employees.

    Prior to the impact of COVID, the Norman Y. Mineta San José International Airport (SJC) served more than 15 million passengers annually with 450 peak daily departures and arrivals on 13 international and domestic carriers to 50+ nonstop destinations. SJC has been one of America’s fastest-growing major airports over the past four-year period, based on percentage increase in passenger seat capacity. We are looking for team members who can work toward our Mission Statement to “Connect, Serve and Inspire” and our Vision Statement to “Transform how Silicon Valley Travels”. For more information about SJC, visit http://www.flysanjose.com.

    Position Duties

    San José Mineta International Airport (SJC) is currently seeking a skilled SecOps Engineer (formally classified as an Information Systems Analyst) to join our Airport Technical Services (ATS) team. This role is crucial to safeguarding the Airport’s critical systems and will oversee the deployment of security defense technologies, the management of existing cybersecurity infrastructure, and the response to cyber security incidents, as well as Attack Surface Management and Compliance Management. The successful candidate will partner cross-functionally with the City of San José’s Cybersecurity Office, the Airport's Applications Support Team and Infrastructure Support Team, and critical system stakeholders to build and innovate the Airport’s cybersecurity strategy and processes, while ensuring that cybersecurity operations comply with relevant regulations, standards, and best practices. The ideal candidate will have a strong background in Defense-in-Depth security practices and proven experience in automated provisioning and Infrastructure as Code (IaC).

    This position may require occasional after-hours support and on-call responsibilities. The SecOps Engineer will work in a dynamic environment, interacting with various teams to ensure the security of critical airport systems.

    Roles & Responsibilities:
    • Ensure the optimal performance, availability, and reliability of the cybersecurity infrastructure that supports and defends the Airport’s critical systems.
    • Oversee the monitoring and analysis of SIEM tools to detect and respond to potential threats. Implement and manage security monitoring tools to detect and respond to security incidents.
    • Oversee the creation and refinement of detection rules, ensuring they are aligned with the latest threat landscape. Lead efforts to identify gaps in monitoring and develop strategies to enhance detection capabilities.
    • Manage Incident Response (IR), providing timely and effective containment and remediation. Coordinate with stakeholders during major incidents, ensuring clear communication and alignment. Provide After-Action analysis and reports to disseminate Lessons Learned and mitigations for management and stakeholders.
    • Drive the continuous improvement of existing IR playbooks to address newly identified IOCs and TTPs, or new requirements from critical system stakeholders.
    • Conduct tabletop exercises with critical system stakeholders and lead internal and external audits of the Airport's critical systems on a regular basis.
    • Under the direction of the Manager of ATS, oversee the execution and maintenance of the Airport’s System Security Plan related to critical systems.
    • Develop Ansible playbooks and roles to automate configuration management, infrastructure provisioning, and application deployment across various environments.
    • Responsible for the planning and execution of security projects, monitoring security incidents, vulnerability management, conducting penetration testing and promoting security initiatives and best practices across the organization.
    • Develop and enforce security policies and procedures in line with industry best practices and regulatory requirements.
    • Ensure compliance with relevant airport security regulations and standards.
    • Collaborate and provide cross-functional support in the cybersecurity domain between the City’s Cybersecurity Office, the ATS Applications Support Team and stakeholders of critical systems.
    • Provide security awareness training to staff and stakeholders of critical systems.
    • Maintain detailed documentation of system configurations, security policies, and incident response procedures.
    • Prepare regular reports for management on system security status and incidents.
    • Safeguard all Sensitive Security Information (SI) in accordance Airport policies and procedures.

    Highly Desirable Qualifications:
    • 4+ years of experience in the following: system deployment in virtualized environments, security engineering, SIEM platforms, SecOps, and both Windows and Linux system administration experience.
    • Experience with security tools and technologies (e.g., SIEM, IDS/IPS, vulnerability scanners).
    • Possess a thorough understanding of the incident response process and familiarity with frameworks to enhance threat detection and response capabilities.
    • Strong understanding of core security concepts like Principle of Least Privilege and Role-Based Access Control including the ability to apply these to improve security.
    • Excellent knowledge of networking technologies, particularly with OSI network layers and TCP/IP. Strong familiarity with the functions of WAF and IDS/IPS components.
    • Experience tracing down anomalous network/application behavior using logs and basic forensics.
    • Strong understanding of cryptographic concepts, standards, and tools (X.509, PKI token-based authentication and PKI based encryption of communications) and related protocols (e.g., SSL/TLS, KMIP, PKCS#11).
    • Solid experience in installing, configuring, and troubleshooting heterogeneous Windows and Linux based environments, to include recommended security and hardening procedures.
    • Familiarity with CIS benchmarks including Microsoft Windows Server and RHEL Linux benchmarks would be a plus.
    • Experience with scripting or programming languages (e.g., Python, Bash, PowerShell) for automation tasks.
    • Strong understanding of Infrastructure as Code (IaC) principles and practices with proficiency in configuration management tools such as Ansible and Desired State Configuration (DSC) for Windows.
    • Strong expertise in Ansible for configuration management and infrastructure as code (IaC).
    • Strong analytical and problem-solving skills.
    • Excellent communication and teamwork abilities.
    • Possess basic cybersecurity professional certifications (Security+, GSEC, SSCP)

    Salary Information:
    The final candidate’s qualifications and experience shall determine the actual salary. In addition to the starting salary, employees in this classification shall also receive an approximate five percent (5%) ongoing non-pensionable compensation pay, which is included in the range below.

    The Information Systems Analyst salary range is $135,735.60 - $165,372.48 annually.

    Minimum Qualifications

    Education and Experience
    A Bachelor’s Degree from an accredited college or university in a relevant field, AND four (4) years of progressively responsible professional/journey level experience, of which at least two (2) years of experience include lead technical work in development, implementation and maintenance of computer systems, or application development and/or support.

    Acceptable Substitution
    • Additional years of increasingly responsible directly related work experience may be substituted for education on a year-for-year basis.
    • Completion of a Master's Degree in a relevant field from an accredited college or university may be substituted for one (1) year of the required two (2) years of experience which include lead technical work in development, implementation and maintenance of computer systems, or application development and/or support.

    Required Licensing (such as driver’s license, certifications, etc.)
    • Possession of a valid State of California driver license may be required.
    • Certification as a Microsoft Certified Systems Engineer (MCSE), or equivalent certification from a professional organization, may be required if assigned to positions working with computer networks.

    Employment Eligibility
    Federal law requires all employees to provide verification of their eligibility to work in this country. Please be informed that the City of San Jose will NOT sponsor, represent, or sign any documents related to visa applications/transfers for H1-B or any other type of visa which requires an employer application. Candidates are required to satisfactorily complete and pass a fingerprint based Criminal History Records Check prior to being considered for a position in this class at the Airport. This Airport position requires a background check and a Transportation Security Administration (TSA) check. The candidate must be fingerprinted and qualify under all applicable TSA and Airport regulations.

    Other Qualifications

    Competencies
    The ideal candidate will possess the following competencies, as demonstrated in past and current employment history. Desirable competencies for this position include:

    Job Expertise - Demonstrates knowledge of and experience with applicable professional/technical principles and practices, Citywide and departmental procedures/policies and federal and state rules and regulations.
    Communication Skills - Effectively conveys information and expresses thoughts and facts clearly, orally and in writing; demonstrates effective use of listening skills and displays openness to other people's ideas and thoughts.
    Computer Skills - Experienced with common business computer applications including but not limited to: MS Outlook, MS Word, MS PowerPoint, MS Access, and MS Excel.
    Teamwork & Interpersonal Skills - Develops effective relationships with co-workers and supervisors by helping others accomplish tasks and using collaboration and conflict resolution skills.
    Analytical Thinking - Approaching a problem or situation by using a logical, systematic, sequential approach.
    Flexibility - Makes effective decisions and achieves desired results in the midst of major changes in responsibilities, work processes, timeframes, performance expectations, organizational culture, or work environment.
    Planning - Acts to align own unit's goals with the strategic direction of the organization; Defines tasks and milestones to achieve objectives, while ensuring the optimal use of resources to meet those objectives.
    Problem Solving - Approaches a situation or problem by defining the problem or issue; determines the significance of problem; collects information; uses logic and intuition to arrive at decisions or solutions to problems that achieve the desired outcome.
    Project Management - Ensures support for projects and implements agency goals and strategic objectives.
    Supervision - Sets effective long and short-term goals based on a good understanding of management practices; establishes realistic priorities within available resources; provides motivational support; empowers others; assigns decision-making and work functions to others in an appropriate manner to maximize organizational and individual effectiveness.
    Technology Use/Management - Uses efficient and cost-effective approaches to integrate technology into the workplace and improve program effectiveness.

    Selection Process:
    The selection process will consist of an evaluation of the applicant's training and experience based on the application and responses to all the job specific questions. You must answer all questions to be considered or your application may be deemed incomplete and withheld from further consideration. Only those candidates whose backgrounds best match the position will be invited to proceed in the selection process. Additional phases of the selection process will consist of one or more interviews. The application deadline is 11:59 PM on Monday, January 6, 2025.

    If you have questions about the duties of these positions, the selection or hiring processes, please contact Kit Kwan at KKwan@sjc.org.

    Additional Information:

    Employment Eligibility: Federal law requires all employees to provide verification of their eligibility to work in this country. Please be informed that the City of San Jose will NOT sponsor, represent or sign any documents related to visa applications/transfers for H1-B or any other type of visa which requires an employer application.

    You must answer all job-specific questions to be considered for this vacancy or your application will be deemed incomplete and withheld from further consideration. Applicants are expected to write their own essays/responses. Please be advised that use of AI content in your responses may result in your removal from the hiring process.

    Please note that applications are currently not accepted through CalOpps or any other third party job board application system.

    This recruitment may be used to fill multiple positions in this, or other divisions or departments. If you are interested in employment in this classification, you should apply to ensure you are considered for additional opportunities that may utilize the applicants from this recruitment.

    Please allow adequate time to complete the application and submit before the deadline or the system may not save your application. If your online application was successfully submitted, you will receive an automatic confirmation email to the email address you provided. IF YOU DO NOT RECEIVE THE CONFIRMATION, please email CityCareers@sanjoseca.gov and we will research the status of your application.

    The City of San Jose offers a wide range of core health benefits including Medical, Dental, Vision, Employee Assistance Program, Life Insurance, Disability, and Savings Plans. Please visit the City's benefits pagefor detailed information on coverage, cost, and dependent coverage.

    For information on the City’s Retirement Plan(pension for full-time employees), please visit the Office of Retirement Services website. You will be able to view information based on different Sworn/Federated job classification.

    In additional to the benefits above, there is an additional perks siteto explore further benefits of working for the City of San Jose like paid leave, educational reimbursements, and holiday pay are specific to the job classification and union membership.

    Closing Date/Time: 1/6/2025 11:59 PM Pacific
  • ABOUT THE COMPANY

    • City of San Jose
    • City of San Jose

    SanJoseCA.gov is the City of San José’s public website, offering information for our community 24/7. The City of San José is a large organization offering a wide variety of services and programs, and the website is intended to make it easier to find information about these services online.

    The purpose of the City website is to provide information of the City's choosing to the public in order to conduct the City’s business and promote the City's goals as guided by the City Council. The City’s website and the selection of sites to which any of them may be linked are not intended to serve as a forum for free discussion. Ample facilities for free expression are available both on the Internet and in the physical world. Instead, the City’s website is intended to serve the City’s need to make useful and practical information available to residents, businesses, and visitors which facilitates provision of a City service or furthers another specifically articulated purpose of the City.

    You can search our website by City servicesdepartment directory, or by topic. If you are looking for information on City policies and ordinances, try searching the City Council meetings, agendas and minutes database, the City Policy Manual or the Municipal Code. 

    The Mayor’s Office, the City Council, Boards and Commissions, and most City departments and offices are represented on SanJoseCA.gov. You can also find certain City departments and programs via separate websites for Mineta San José International AirportPolice DepartmentPublic Library and Happy Hollow Park & Zoo.

    You can find more information about City programs, services, and events through CivicCenterTV (Cable Channel 26), by subscribing to City News and Information, and by following us on FacebookGoogle+, and Twitter.

     

     

    Show more

MORE JOBS

  • Assistant Professor of Environmental Engineering (AY 25/26)

    • San Luis Obispo, California
    • California Polytechnic State University
    • Sep 23, 2024
    • Education and Training
    • Engineering
    • Environmental Services
    • Public Health
  • GROUP SUPERVISOR I

    • Santa Cruz, California
    • Santa Cruz County, CA
    • Dec 07, 2024
    • Full Time
    • Human and Social Services
  • Maintenance Worker I/II (Facilities & Streets)

    • Los Altos, California
    • LOS ALTOS, CA
    • Dec 10, 2024
    • Full Time
    • Building Maintenance
  • Integration Developer (Temporary)

    • Hayward, California
    • Cal State University (CSU) East Bay
    • Sep 24, 2024
    • Information Technology and Communication Services
    • Other
  • 24-25 AY Temporary Faculty Pool (Lecturer) - Civil Engineering

    • Fresno, California
    • Cal State University (CSU) Fresno
    • Jul 14, 2024
    • Education and Training
    • Engineering
    • Parks and Recreation
    • Other
  • Central Maintenance Supervisor

    • Oakland, California
    • BART
    • Dec 05, 2024
    • Full Time
    • Administrative Analysis and Research
    • Building Maintenance
    • Clerical and Administrative Support
Show More
Apply Now Please mention you found this employment opportunity on the CareersInGovernment.com Job Board.
Please mention you found this employment opportunity on the CareersInGovernment.com Job Board.