INFORMATION SECURITY ANALYST IV - 64081604

State of FloridaTallahassee, FL
2d$85,000 - $100,000Onsite

About The Position

This position serves as the Deputy Chief Information Security Officer (DCISO) within the Department of Health’s Office of Information Technology. Reporting directly to the CISO, the DCISO supports the implementation, monitoring, and continuous improvement of the Department’s Information Security Management System (ISMS). The incumbent provides technical and operational leadership across cybersecurity functions, including risk management, incident response, threat detection, and enterprise tool integration, ensuring the Department’s systems, identities, networks, and data remain safeguarded from evolving threats. The position acts as the operational deputy for the CISO, providing leadership continuity, cross-functional coordination, and direct oversight of daily security operations and personnel as assigned. Operational Security Oversight: Leads daily security operations, ensuring appropriate monitoring and response across the Department’s enterprise security stack. Oversees tool management, integration, and optimization for SIEM, endpoint protection, vulnerability management, identity protection, and network defense systems. Coordinates closely with infrastructure and network teams to align configuration baselines and enforce security policies. Incident Response and Threat Management: Directs and executes incident response processes; coordinates triage, containment, eradication, and recovery activities. Conducts advanced analysis of security events and anomalies using host, network, and cloud telemetry to identify root causes and mitigation strategies. Partners with internal stakeholders and managed security service providers (MSSPs) to ensure effective detection and response. Risk and Compliance Support: Supports enterprise risk management activities, control assessments, and continuous monitoring functions aligned with NIST and State of Florida standards. Provides risk mitigation recommendations and collaborates with system owners to remediate deficiencies. Leadership and Coordination: Serves as deputy to the CISO for operational and administrative matters, including cross-agency coordination and escalation handling. Mentors and guides technical and operational staff within the Security Administration Team. Strategic Initiatives and Continuous Improvement: Participates in the development of cybersecurity strategy, roadmap, and enterprise governance documentation. Evaluates emerging technologies, trends, and threat intelligence to enhance enterprise security posture. Other duties as assigned.

Requirements

  • Proficient computer skills to include Word, Excel, PowerPoint and Outlook
  • knowledge of monitoring processes and/or working with ticketing software
  • knowledge of computer data bases
  • knowledge of laws, legal codes, court procedures and government rules & regulations
  • knowledge of the structure and content of the English language including the meaning and spelling of words, rules of composition, and grammar
  • understanding written sentences and paragraphs in work related documents
  • communicating effectively with others verbally and in writing
  • talking to others to effectively convey information
  • ability to establish and maintain effective working relationships with others
  • listening to what other people are saying and asking questions as appropriate
  • knowledge of the methods of data collection and analysis
  • organize data into logical format for presentation in reports, documents and other written materials
  • knowing how to find information and identifying essential information
  • finding ways to structure or classify multiple pieces of information
  • ability to plan, organize and prioritize work assignments
  • ability to maintain a high degree of accuracy and close attention to detail
  • developing approaches for implementing an idea
  • basic management principles and practices
  • conflict resolution to include handling complaints, arbitrating disputes and resolving grievances
  • motivating, developing, and directing people as they work, identifying the best people for the job
  • time management skills
  • ability to prepare and conduct training
  • ability to maintain strict confidentiality
  • knowledge of principles and processes involved in business and organizational planning, coordination and execution to include strategic planning, resource allocation, manpower modeling, leadership techniques and production methods
  • knowledge of security technologies such as SIEM, IDS/IPS, endpoint protection, and vulnerability management platforms
  • knowledge of incident response processes, cybersecurity frameworks (e.g., NIST CSF, CIS Controls), and enterprise risk management practices
  • skill in analyzing complex technical data and correlating security events from diverse systems
  • skill in leadership, communication, and collaboration across distributed teams
  • ability to manage multiple priorities, delegate effectively, and make sound technical and operational decisions under pressure
  • ability to present findings, risk insights, and recommendations to leadership
  • Bachelor’s degree from an accredited college or university in a related field of study; AND
  • Five (5) years of strong technical knowledge and experience in the software development, infrastructure management, and/or cybersecurity IT domains
  • Professional experience as described above can substitute on a year-for-year basis for the required college education.
  • At least one industry-recognized security certification (e.g., CompTIA, CISSP, CISM, or CEH).
  • Must have a valid driver's license, satisfactorily complete a background investigation, fingerprinting, and participation in direct deposit are requirements for employment.

Responsibilities

  • Leads daily security operations, ensuring appropriate monitoring and response across the Department’s enterprise security stack.
  • Oversees tool management, integration, and optimization for SIEM, endpoint protection, vulnerability management, identity protection, and network defense systems.
  • Coordinates closely with infrastructure and network teams to align configuration baselines and enforce security policies.
  • Directs and executes incident response processes; coordinates triage, containment, eradication, and recovery activities.
  • Conducts advanced analysis of security events and anomalies using host, network, and cloud telemetry to identify root causes and mitigation strategies.
  • Partners with internal stakeholders and managed security service providers (MSSPs) to ensure effective detection and response.
  • Supports enterprise risk management activities, control assessments, and continuous monitoring functions aligned with NIST and State of Florida standards.
  • Provides risk mitigation recommendations and collaborates with system owners to remediate deficiencies.
  • Serves as deputy to the CISO for operational and administrative matters, including cross-agency coordination and escalation handling.
  • Mentors and guides technical and operational staff within the Security Administration Team.
  • Participates in the development of cybersecurity strategy, roadmap, and enterprise governance documentation.
  • Evaluates emerging technologies, trends, and threat intelligence to enhance enterprise security posture.

Benefits

  • Annual and Sick Leave benefits
  • Nine paid holidays and one Personal Holiday each year
  • State Group Insurance coverage options, including health, life, dental, vision, and other supplemental insurance options
  • Retirement plan options, including employer contributions (for more information, please click www.myfrs.com)
  • Flexible Spending Accounts
  • Tuition waivers
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service