As a Cybersecurity Analyst II at the Texas Department of Family and Protective Services (DFPS), you must have at least three (3) years of relevant cybersecurity experience. Your main duties will include researching, analyzing, recommending, configuring, and administering applications, systems, and procedures to ensure the protection of information processed, stored, or transmitted. You will also be responsible for conducting "hands-on" computer forensics analysis for investigation and litigation support, analyzing systems and networks for security, and investigating security incidents as necessary. The Cybersecurity Analyst II will work under the supervision of the Cybersecurity Operations Manager in our Security Operations Center (SOC). The Cybersecurity Analyst II will develop and manage the DFPS Security Information and Event Management (SIEM) platform, as well as our Security Orchestration and Automation (SOAR) platform and Endpoint Detection and Response (EDR) tools. The Cybersecurity Analyst II may act as a subject matter expert of the SOC environment for optimal design, engineering, and operation of the various platforms. The Cybersecurity Analyst II will review and work with our partner teams to tune the SIEM outputs, including custom dashboards and security event notables. The Cybersecurity Analyst II will monitor our applications and network to identify a possible cyber-attack or intrusion (event) and determines if it is a real, malicious threat (incident), and if it could have a business impact. The Cybersecurity Analyst II will be working in our Security Operations Center (SOC) under the guidance of the Cybersecurity Operations Manager. Their primary responsibility will be to develop and manage the DFPS Security Information and Event Management (SIEM) platform, as well as our Security Orchestration and Automation (SOAR) platform and Endpoint Detection and Response (EDR) tools. Additionally, they may act as a subject matter expert of the SOC environment for optimal design, engineering, and operation of the various platforms. The Cybersecurity Analyst II will collaborate with our partner teams to review and fine-tune the SIEM outputs, including custom dashboards and security event notables. They will also be responsible for monitoring our applications and network to identify any possible cyber-attacks or intrusions (events) and determine if they pose a real, malicious threat (incident), and if they could have a business impact. The Cybersecurity Analyst II will assist in the upkeep, maintenance, and ensuring that the SIEM and cybersecurity toolset is available and reliable. The Cybersecurity Analyst II will also be responsible for onboarding new data sources into SIEM, analyzing the data for anomalies and trends, and building dashboards highlighting key trends. The Cybersecurity Analyst II will assist the Chief Information Security Officer with activities such as investigations and litigation support. The mission of DFPS is to protect children, the elderly, and people with disabilities from abuse, neglect, and exploitation by involving clients, families, and communities. The Cybersecurity Analyst II is expected to work collaboratively with other team members from a positive, proactive, and mission-first perspective. They will assist in planning, developing, monitoring, and maintaining cybersecurity and information technology security processes and controls. The DFPS cybersecurity environment is very large and complex, allowing you to combine your previous experience in similar environments with your analytical skills. This position is classified as a full-time position (40 hours a week). It is 100% telework within Texas and requires the candidate to maintain personal Wi-Fi and webcam capabilities during work hours to perform their duties. Work outside of regular hours may be required, and travel to other Austin offices(s) may be required. The candidate works under limited supervision, with considerable latitude for initiative and independent judgment.