Salary: $32.07 - $49.74 Hourly USD
ABOUT THE POSITION
The Clark County Information Technology department is seeking qualified candidates to apply for the Information Technology Security Administrator position. This position provides information technology security administration for the enterprise. Maintains Clark County's business recovery plan and conducts disaster recovery testing at enterprise and department levels. This position is a technical, experienced cybersecurity position performing professional level work related to the planning, implementation, monitoring, evaluating and coordination of cybersecurity: controls, governance, and compliance across the County enterprise.
This is an open and continuous recruitment, scheduling dates will vary depending on when the application was received and reviewed by Human Resources.
This examination will establish an Open Competitive Eligibility list to fill current and/or future vacancies that may occur within the next six (6) months or may be extended as needed by Human Resources.
Human Resources reserves the right to call only the most qualified applicants to the selection process.
Some positions may be Grant Funded. Grant Funded positions are subject to continuation based on availability of grant funds and the employee will be terminated without right of appeal when such funds are no longer available.
Some positions may be used to fill term Limited-Permanent positions. The selected candidates will be hired for a special project or duties of a limited duration and be required to sign a term of employment letter specifying condition and exact dates of employment. The successful candidates will be eligible for benefits during the duration of employment.
Education and Experience: Equivalent to a Bachelor's Degree in Computer Science or Management Information Systems, or related field AND three (3) years full-time professional level experience in computer security administration, including contingency planning, preferably in a large mainframe multiprocessing environment.
Qualifying education and experience must be clearly documented in the "Education" and "Work Experience" sections of the application. Do not substitute a resume for your application or write "see attached resume" on your application.
Working Conditions: Work extended shifts or be called back in emergency situations.
Background Investigation: Employment is contingent upon successful completion of a background investigation. Periodically after employment background investigations may be conducted.
Pre-Employment Drug Testing: Employment is contingent upon the results of a pre-employment drug examination.
EXAMPLES OF DUTIES
Establishes and maintains security and business recovery policies and procedures. Provides security and control measures across multiple computer platforms (e.g. enterprise server, client server, network, Internet/Intranet, and desktop). Monitors access and use of County information. Implements logging/tracking mechanisms for intrusion detection. Maintains Clark County's Business Recovery Plan. Provides on-going testing of the Business Recovery Plan at the enterprise level (infrastructure organization and teams, hot-site recovery operations) and department level (checklist tests, simulations/structured walk-throughs). Monitors backup and recovery procedures (enterprise server, mid-range computers, PCs, and networks). Conducts periodic security assessments and disaster recovery preparedness reviews to evaluate effectiveness and compliance with security and business recovery measures. Incorporates security requirements from governmental and external agencies. Maintains security and business recovery related files, reports, policy manuals, and documentation. Provides liaison with Internal Audit, Office of Emergency Management and Risk Management on security/ business recovery issues and breaches of security. Monitors security and disaster recovery developments in the industry. Provides lead direction and coordination to other information technology staff throughout the County. Provides management with a clear view of security threats/solutions. Promotes the concept of information as an asset or resource. Provides awareness of County's exposure should there be an extended disruption of the County's business functions or information technology capabilities. Assists in planning goals, objectives, procedures and work standards for the unit; provides input into the unit's budget. Contributes to the overall quality of the section's service provision by developing and coordinating work teams and by reviewing, recommending and implementing improved policies and procedures. May drive a County or personal motor vehicle in order to visit various work sites and attend meetings.
Department of Aviation Duties:
Serves as an expert advisor to senior management in the development, implementation and maintenance of an information security infrastructure ensuring best practice control objectives for system integrity, availability, confidentiality, accountability and assurance within the context of the airports risk tolerance as set by senior management. Identifies and proposes key information security program priorities, initiatives, plans, practices and tools. Oversees execution of approved information security project plans and provides regular status reporting on progress of such projects. Provides guidance (e.g., information security risk severity assessments / relative cost benefit analysis etc.) and provides recommendations regarding prioritization of system security infrastructure investments that mitigate risks, strengthen defenses and reduce vulnerabilities. Drafts and proposes organizational information security strategy and action plans based on relevant risk assessment and gap analysis. Develops, publishes, and maintains comprehensive information security standards, policies, procedures and guidelines. Acts as the primary control point during follow-up on significant information security incidents, oversees development of response plans and provides timely update reporting. Advises the management team on risk issues that are related to information security and recommends actions in support of the wider risk management programs. Collaborates with stakeholders and industry partners (e.g., ACI, IATA, A4A, etc.) to ensure information security risks in both ongoing and planned operations are properly considered and that all compliance matters are being adhered to as required. Monitors information security trends and evolving technologies as well as keep senior management informed about related information security issues. Understands potential and emerging information security threats, vulnerabilities, and control techniques and communicates this information to appropriate team members on a timely basis. Provides guidance in the event of a security breach, dealing with all relevant requirements (Federal, State and local) as appropriate. Maintains relationships with local, state, and federal law enforcement and other related government agencies as needed. Engages and directs outside consultants as appropriate on information security audits. Conducts regular and ongoing monitoring of and reporting on compliance with information security standards and policies. Collaborates with internal security and/or auditing personnel as relevant to information security matters. Directs the development and enforcement of information security and privacy policies in compliance with federal, state and local regulations and standards.
Mobility to work in a typical office setting, use standard office equipment, and to drive a motor vehicle; vision to read printed materials and a computer screen; and hearing and speech to communicate in person or over the telephone. Must be capable of traveling to and from various County locations to visit work sites and attend meetings. Accommodation may be made for some of these physical demands for otherwise qualified individuals who require and request such accommodation.
Closing Date/Time: Continuous
Las Vegas, Nevada