The IT security administrator evaluates, designs, implements and maintains the court's cybersecurity posture across network infrastructure, cloud and hybrid environments, applications, endpoints and telecommunications. This role serves as a technical specialist and advisor on information security, risk mitigation, incident response and compliance for judges, court executives, probation officers and staff.
Federal benefits include, but not limited to: Up to 13 days paid annual leave per year for the first 3 years of employment; 20 to 26 days per year thereafter (dependent upon the length of federal service). 11 paid holidays per year. 13 days of paid sick leave per year. Up to 12 weeks paid maternity/paternity leave, if qualified. Excellent retirement package (enhanced Federal law enforcement retirement benefits) Mandatory participation in the Federal Retirement System (FERS) and Social Security programs. Optional Thrift Savings Plan (TSP), a 401(k)-styled program with a matching component of up to 5%, with diversification control. Full extension of health benefits. Optional participation in the federal health insurance program of your choice (no waiting period). Optional vision and dental insurance programs of your choice (no waiting period). Optional participation in a flexible spending program for health and/or dependent care. Optional participation in group life insurance. Transit Subsidy. On-site fitness center (Phoenix only) Flexible schedule options.
Required Qualifications:
Minimum of three years of progressively responsible, specialized IT security experience, including at least two years equivalent to work at the CL 28 level.
Specialized experience: Progressively responsible experience that is in, or closely related to, the work of the position that has provided the particular knowledge, skills, and abilities to successfully perform the duties of the position. Experience must demonstrate in-depth technical knowledge of systems analysis, network administration, cybersecurity operations and incident response.
Physical and operational requirements: Ability to lift a minimum of 50 pounds and physical mobility to access equipment in tight or elevated spaces (such as under desks and server racks). Strong analytical troubleshooting and customer service skills are required. Candidates must be available for occasional after-hours and weekend work, as well as periodic overnight travel.
Preferred Qualifications:
Education: A bachelor's degree from an accredited college or university in cybersecurity, information technology, computer science, computer engineering or a closely related field is strongly preferred.
Industry certifications: Holding one or more active, industry-recognized security certifications is highly preferred, such as:
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- CompTIA Security+ or Cybersecurity Analyst (CySA+)
- Certified Ethical Hacker (CEH)
- GIAC Security Essentials (GSEC) or GIAC Certified Incident Handler (GCIH)
- Certified Cloud Security Professional (CCSP)
Technical expertise:
- Scripting and automation: Strong practical proficiency in PowerShell, Python, Bash and SQL for automation, log analysis and system administration.
- Cloud security and identity: Experience securing AWS, Azure, Microsoft 365, and Microsoft Entra ID environments, including least-privilege IAM/RBAC, privileged-access management, Conditional Access, cloud audit logging, and integration of CloudTrail, Azure Activity Logs, Entra ID sign-in and audit logs, and Microsoft 365 audit logs with SIEM platforms.
- Operating Systems: Advanced knowledge in Windows client and Windows Server operating systems, Red Hat Enterprise Linux, MacOS, iOS
- Security and network tools: Proven experience with EDR and XDR platforms (such as Microsoft Defender for Endpoint, Qualys and CrowdStrike), SIEM tools (such as Splunk), packet analyzers (such as Wireshark), next-generation firewalls (such as Palo Alto and Cisco), VPN, Zero Trust network access, and IPSec. Vulnerability management and remediation using scanning tools like Tenable Nessus or Qualys. Network discovery tools and port scanners (such as Nmap)
- Virtualization and infrastructure: Knowledge of VMware vSphere, virtual desktop infrastructure frameworks, Cisco core and access switching, enterprise Wi-Fi networks, storage area network environments, and secure data backup and disaster recovery utilities.
- Environment: Experience operating within a federal court environment or working with specialized federal judiciary applications.
Information Technology Security Administrator in phoenix at Unknown Company
This position is listed as full time and hybrid.