Information Security Engineer
State of ArizonaAbout the role
ARIZONA DEPARTMENT OF REVENUE
Funding Arizona’s future through excellence in innovation, exceptional customer service and public servant-led continuous improvement. All Arizona State employees operate within the Arizona Management System (AMS), an intentional, results-driven approach for doing the work of state government. Our goal is for every ADOR team member to reflect on individual and team performance, reduce waste, and commit to continuous improvement with sustainable progress. Through AMS, every ADOR team member seeks to understand customer needs, identify problems, improve processes, and measure results.
Information Security Engineer
*This position will work remotely with rare in-office visits*
Office Location:1600 West Monroe Street
Phoenix, Arizona 85007
Posting Details:Annual Salary: $103,400
Grade: 26
This position will remain open until filled
Job Summary:This position is an integral part of the Information Security Team which aids in reducing overall organization risk by way of deployment, management, monitoring, and tuning of technical security controls. Specifically, the position of information security engineer partners with the Senior Security Engineer and Security Architect to recommend security solutions and technology in design to ensure smooth implementations and upgrades to technology. Additionally, this position reviews security policies, standards, and procedures and creates associated security procedures in coordination with the CISO and appropriate teams. This position also works closely with security analysts to gain insight into threat, vulnerability, and incident information.
Essential Functions:- Security Engineering and System Security Evaluation
- Vulnerability Management
- Incident Response
- Agency/Department Compliance & Continuous Improvement
- Knowledge Management
For more details regarding the essential functions, please review the full job description here -> Information Security Engineer S1004 (1).pdf
Knowledge, Skills & Abilities (KSAs):Knowledge/Understanding
- Understanding of enabling for recommending equipment, resources, and software;
- Working knowledge of perimeter security technologies including firewalls, IDS/IPS, network access control and network segmentation; and of the security concepts related to DNS, routing, authentication, VPN, proxy services and - DDOS mitigation technologies; and with Data-at-rest encryption, certificate validation, IDS/IPS, Firewalls, SIEMs and Log Management, log analysis, HTTP and TCP/IP analysis
- Familiarity with the concepts of ISO 27000, NIST 800 and other security standards in the organization
- Familiarity with vulnerability identification and assessment including the OWASP Top 10 and SANS Top 25
- Familiarity with products from the following vendors: Trellix, Palo Alto, Tenable, SolarWinds, Tenable, and Crowdstrike
- Familiarity with risk assessment procedures, policy formation, role-based authorization methodologies, authentication technologies and security attack pathologies
- Familiarity with the practices and methods of IT strategy, enterprise architecture and security architecture.
Skills
- Excellent verbal, written, and listening communication skills with the ability to effectively communicate with various stakeholder groups
- Strong technical writing skills
- Effective organization and time management skills with the ability to manage multiple projects simultaneously and work in high-pressure situations
- Effective interpersonal skills and demeanor
- Proficient in the use of a PC in a Windows environment; in
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s