About The Position

Are you looking for a rewarding career with an organization that values their staff? The Department of Innovation & Technology (DoIT) is seeking to hire qualified candidates with the opportunity to work in a dynamic, creative thinking, problem solving environment. This position serves as the Data Center Network Security Architect for the DoIT, in performing highly complex professional, advisory, and technical functions for enterprise network infrastructure and security implementations, including serving as a technical expert in Enterprise Data Center Security architecture design and specifications. In this role, you will develop, configure, and maintain enterprise network security communications, including firewalls, intrusion prevention systems (IPS), intrusion detection systems (IDS), security appliances, load balancers, Network Authentication Systems (NAS), traffic analyzers, IPsec VPNs, and cloud security components, to safeguard mission-critical services. Additionally, you will serve as a technical project leader and analyst for strategic data center security planning, design, development, modification, and deployment of complex network security solutions across on-premise data centers, cloud services, and application load-balancing environments. If you possess these knowledges, skills, abilities, and experience, we invite you to apply for this position to join the DoIT Team! As a State of Illinois employee, you receive a comprehensive benefits package including: • Competitive Group Insurance benefits, including health, life, dental and vision plans. • Flexible work schedules (when available and dependent upon position). • 10 -25 days of paid vacation time annually (10 days for first year of state employment). • 12 days of paid sick-time annually which carry over year to year. • 3 paid personal business days per year. • 13-14 paid holidays per year dependent on election years. • 12 weeks of paid parental leave. • Pension plan through the State Employees Retirement System. • Deferred Compensation Program – voluntary supplemental retirement plan. • Optional pre-tax programs -Medical Care Assistance Plan (MCAP) & Dependent Care Assistant Plan (DCAP). • Tuition Reimbursement Program and Federal Public Service Loan Forgiveness Program eligibility. For more information regarding State of Illinois Benefits follow this link:https://www2.illinois.gov/cms/benefits/Pages/default.aspx Why Work for Illinois? Working with the State of Illinois is a testament to the values of compassion, equity, and dedication that define our state. Whether you’re helping to improve schools, protect our natural resources, or support families in need, you’re part of something bigger—something that touches the lives of every person who calls Illinois home. No matter what state career you’re looking for, we offer jobs that fit your life and your schedule—flexible jobs that provide the gold standard of benefits. Our employees can take advantage of various avenues to advance their careers and realize their dreams. Our top-tier benefits and great retirement packages can help you build a rewarding career and lasting future with the State of Illinois.Essential Functions Under administrative direction, serves as the Data Center Network Security Architect for the Department of Innovation & Technology (DoIT) performing highly complex professional, advisory, and technical functions for enterprise network infrastructure and security implementations, including serving as a technical expert in enterprise data center security architecture design and specifications, ensuring secure connectivity across on-premises and cloud environments. Collaborates with customers under high-pressure conditions to troubleshoot complex network security systems, end-user communication problems, suspected intrusions, and hardware/security software failures using network monitoring systems and traffic analyzers. Serves as technical project leader and analyst for strategic data center security planning, design, development, modification, and deployment of complex network security solutions across on-premise data centers, cloud services, and application load-balancing environments. Keeps abreast of new developments in the information technology security field by continuing education through online training platforms, meetings, training sessions, seminars, and conferences to increase familiarity with and remain current on products, vendors, techniques, and procedures. Performs other duties as required or assigned which are reasonably within the scope of duties enumerated above.

Requirements

  • Requires knowledge, skill and mental development equivalent to four (4) years of college with course work in information technology, computer networking, computer engineering, computer science or directly related fields.
  • Requires five (5) years of professional experience in Information Technology networking or directly related Information Technology field.
  • Requires five (5) years of professional experience in data center network security architecture and design, including developing enterprise-level security network designs, implementing segmentation strategies, and enhancing compliance with security standards across on-premises and cloud environments, designing and supporting secure application load-balancing solutions, planning secure upgrade paths, and evaluating vendor technologies for enterprise deployment.
  • Requires five (5) years of professional experience in enterprise firewall administration (Cisco/Palo Alto), including advanced configuration, policy-based controls, custom address translation, troubleshooting to secure multi-data center environments, responding to security advisories and vulnerabilities, leading mitigation planning and deployment, collaborating with vendors to resolve critical security issues, and enforcing least-privilege and policy hardening practices.
  • Requires five (5) years of professional experience implementing and managing Layer 7 firewall policies, including micro-segmentation techniques to achieve compliance with regulatory frameworks including SOC 2, SOX, ISO, FedRAMP, and CJIS; implementing custom traffic management techniques including URL rewriting and port redirection, multi-data-center traffic distribution, and conducting root cause analysis (RCA) for security incidents and service disruptions.
  • Requires five (5) years of professional experience with OSI Model Layers 1 through 7, including integration of network diagnostic tools, packet analyzers, and administration of enterprise security systems to perform complex network troubleshooting and vulnerability analysis, monitoring enterprise security infrastructure, managing service queues, ensuring SLA adherence, escalating time-sensitive incidents, and serving as a senior technical escalation and guidance resource for operational teams.

Nice To Haves

  • Requires five (5) years of professional experience in data center network security architecture and design, including developing enterprise-level security network designs, implementing segmentation strategies, and enhancing compliance with security standards across on-premises and cloud environments, designing and supporting secure application load-balancing solutions, planning secure upgrade paths, and evaluating vendor technologies for enterprise deployment.
  • Requires five (5) years of professional experience in enterprise firewall administration (Cisco/Palo Alto), including advanced configuration, policy-based controls, custom address translation, troubleshooting to secure multi-data center environments, responding to security advisories and vulnerabilities, leading mitigation planning and deployment, collaborating with vendors to resolve critical security issues, and enforcing least-privilege and policy hardening practices.
  • Requires five (5) years of professional experience implementing and managing Layer 7 firewall policies, including micro-segmentation techniques to achieve compliance with regulatory frameworks including SOC 2, SOX, ISO, FedRAMP, and CJIS; implementing custom traffic management techniques including URL rewriting and port redirection, multi-data-center traffic distribution, and conducting root cause analysis (RCA) for security incidents and service disruptions.
  • Requires five (5) years of professional experience with OSI Model Layers 1 through 7, including integration of network diagnostic tools, packet analyzers, and administration of enterprise security systems to perform complex network troubleshooting and vulnerability analysis, monitoring enterprise security infrastructure, managing service queues, ensuring SLA adherence, escalating time-sensitive incidents, and serving as a senior technical escalation and guidance resource for operational teams.
  • Five (5) years of experience with data center and cloud security architecture, including capacity planning, secure application load balancing, and implementation of content filtering solutions to protect enterprise systems.
  • Five (5) years of experience with intrusion detection and prevention systems (IDS/IPS), Domain Name Services (DNS) administration, DNS security (DNSSEC), and application load balancing to ensure secure and efficient traffic flow across enterprise environments.
  • Three (3) years of professional experience in project coordination, including multitasking across complex security initiatives and strategic planning for data center network security implementations.
  • Ability to analyze data logically and exercise sound judgement in defining and evaluating problems of an operational or procedural nature. Developed verbal and written communication skills to present technical information clearly and precisely to diverse audiences, including business users, development teams, and agency executives.
  • Certifications in one or more of the following: Cisco Certified Network Professional (CCNP) Security, Cisco Certified Internetwork Expert (CCIE) Security, CompTIA Security, Certified Information Security Manager (CISM), Routing and Switching, Palo Alto Networks Certified Network Security Engineer (CCSE), or similar relevant certification(s) in Information Security

Responsibilities

  • Serves as the Data Center Network Security Architect for the Department of Innovation & Technology (DoIT) performing highly complex professional, advisory, and technical functions for enterprise network infrastructure and security implementations, including serving as a technical expert in enterprise data center security architecture design and specifications, ensuring secure connectivity across on-premises and cloud environments.
  • Collaborates with customers under high-pressure conditions to troubleshoot complex network security systems, end-user communication problems, suspected intrusions, and hardware/security software failures using network monitoring systems and traffic analyzers.
  • Serves as technical project leader and analyst for strategic data center security planning, design, development, modification, and deployment of complex network security solutions across on-premise data centers, cloud services, and application load-balancing environments.
  • Keeps abreast of new developments in the information technology security field by continuing education through online training platforms, meetings, training sessions, seminars, and conferences to increase familiarity with and remain current on products, vendors, techniques, and procedures.
  • Performs other duties as required or assigned which are reasonably within the scope of duties enumerated above.

Benefits

  • Competitive Group Insurance benefits, including health, life, dental and vision plans.
  • Flexible work schedules (when available and dependent upon position).
  • 10 -25 days of paid vacation time annually (10 days for first year of state employment).
  • 12 days of paid sick-time annually which carry over year to year.
  • 3 paid personal business days per year.
  • 13-14 paid holidays per year dependent on election years.
  • 12 weeks of paid parental leave.
  • Pension plan through the State Employees Retirement System.
  • Deferred Compensation Program – voluntary supplemental retirement plan.
  • Optional pre-tax programs -Medical Care Assistance Plan (MCAP) & Dependent Care Assistant Plan (DCAP).
  • Tuition Reimbursement Program and Federal Public Service Loan Forgiveness Program eligibility.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Number of Employees

1,001-5,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service