Enterprise Security Architect



Job Details

Enterprise Security Architect
Employer

San Antonio Water System

Salary

$89,358.00 - $159,988.00 Annually

Location

San Antonio, TX

Job Type

Full Time

Job Number

2018-00138

Department

Information Systems

Opening Date

05/31/2018

Closing Date

Continuous

Salary starts at $89,358.00 annually. Rate of pay depends on qualifications.

Job Description

JOB SUMMARY
Works for and under the general direction of the Vice President and Chief Information Officer to design and build enterprise class security systems.  Responsibilities include architecting, design and review of security controls, monitoring of internal/external access controls and security safeguards to protect the confidentiality, integrity and availability of information systems assets. This role will be the subject matter expert in the domain of information security as it relates to servers/workstations, networks, web applications, IT processes and regulatory compliance.  The role will make decisions regarding the security posture of the enterprise in accordance with applicable laws and regulations. Performs evaluation, selection, implementation, and monitors administration of information system security tools across enterprise. Assists in developing and implementing policy and control frameworks, and promoting security awareness and compliance throughout the organization. Provides general direction and leads a staff of two or more security engineers.
 
ESSENTIAL FUNCTIONS

  • Researches, designs and advocates new technologies, architectures, and security products that will support business security requirements for the enterprise.
  • Conducts threat and vulnerability risk assessments to determine security requirements and proactively fix security flaws and vulnerabilities.
  • Plays a lead role in the identification, analysis, evaluation, deployment and optimization of security technologies.
  • Maintains oversight of the design, implementation and testing of IT systems to ensure appropriate and effective security controls are built from the start.
  • Works closely with other groups; System Administrators, Network Engineering, Applications, SCADA/I&C and other information system staff to ensure adequate security solutions are in place for all IT systems and platforms to sufficiently mitigate identified risks and meet business objectives.
  • Leads projects and initiatives to design and verify implementation of various information security controls involved in an organization's risk management.
  • Governs security design and architecture during project delivery by enforcing the use of established standards and evolving solutions and patterns.
  • Provides security design, consultancy, and assessment services; and introduces improvements in technical security standards and security implementation patterns and designs.
  • Conducts analysis of security requirements and controls to identify gaps and provides recommendations of industry best practices, trends, and technology products.
  • Manage recovery efforts from security incidents as well as assisting with incident response plans.
  • Responsible for raising company-wide security awareness and monitoring information security related web sites and newsletters to stay up to date on current attacks and trends.
  • Analyze potential impact of new threats and exploits and communicate risks to relevant business units.
  • Provides leadership, project and team-building skills, including the ability to lead teams and drive projects and initiatives in multiple departments.
 

DECISION MAKING

  • This position works under limited supervision. 
  • This position serves as a manager, providing guidance and mentorship to engineers and analysts.
  • Designs technical solutions and coordinates with the staff to ensure timely and accurate implementation.
 

MINIMUM REQUIREMENTS

  • Bachelor's degree in Information Technology, Computer Science or related field of study required.
  • Ten years of relevant IT work experience; minimum of five years in information security field, preferably in an environment certified and compliant with a globally recognized Security Framework / Information Security Management System (NIST SP 800-53, ISO27001, HIPAA, SOX, PCI).
  • At least one professional information security certification required; CCNP-Security, CISSP, CISM, CRISC, SANS GIAC.
  • Demonstrated ability to identify security requirements and validate implementation of applicable controls into a robust architecture that sufficiently repels most malicious attacks.
  • Demonstrated ability to identify risks associated with business processes, operations, information security programs and technology projects.
  • Knowledge in the following: Metasploit, Nessus, digital Forensics tools.
  • Knowledge of VB.NET, Java/J2EE, ColdFusion, API/web services, scripting languages (such as Python) and a relational database management system (RDBMS) such as MS SQL Server or Oracle. These are some of the technical elements needed to build security into an organization.
  • Valid Class "C" Texas Driver's License as consistent with SAWS Driving Policy.

PREFERRED QUALIFICATIONS
  • Master's Degree in Cybersecurity and Information Assurance.
  • CISSP, CISM, & CCNP Certifications.
  • Knowledge of SCADA/ICS security controls and best practices.
  • Knowledge of Linux/Unix and other open source software to include BIND and Nessus.
  • Programming skills in one or more language a plus (Python, Ruby, Bash, PHP, Perl, Java).
  • ISO27001 – specifications for a framework of policies and procedures that include all legal, physical and technical controls involved in an organization's risk management.

JOB DIMENSIONS
  • Regular contact with internal and external customers and contractor representatives involved with LAN/WAN design, network implementation, and network management.
  • May be required to work hours other than regular schedule such as nights, weekends and holidays.

PHYSICAL DEMANDS AND WORKING CONDITIONS
Physical requirements include occasional lifting/carrying of 70 pounds; visual acuity, speech and hearing; hand and eye coordination and manual dexterity necessary to operate a computer keyboard and basic office equipment. Subject to sitting, standing, reaching, walking, twisting, and kneeling to perform the essential functions. Working conditions are primarily inside an office environment.

San Antonio Water System values the contributions of all its employees, providing them the best in compensation and benefits. The benefits package is designed to attract and retain a workforce of qualified employees who share a responsibility in providing quality water to 1 million consumers.
From an affordable medical and dental plan to life-sustaining retirement and insurance plans, we offer benefits that reward employees for their commitment to a challenging career at SAWS. Employee benefits include the following:

  • Competitive, market-based salaries
  • Performance-based incentives
  • Medical benefits
  • Dental benefits
  • Life insurance
  • Prescription drug program
  • Vision care plan
  • Two retirement plans
  • Deferred compensation plans (457 plan)
  • Disability income
  • Paid leave (vacation, sick, personal)
  • Education assistance program
  • Employee assistance program
  • Flexible, tax-deferred health and dependent care spending accounts  
  • Wellness programs
  • Community service opportunities

01
*Do you have a valid Texas driver's license? If so, what type of driver's license do you have?
  • Class C
  • Class CDL - B
  • Class CDL - B w/Tanker
  • Class CDL - B w/Tanker Hazardous Material
  • Class CDL - A
  • Class CDL A - w/Tanker
  • Class CDL A - w/Tanker Hazardous Material
  • I do not have a valid driver's license.
  • I have a valid driver's license from another state.
02
Enterprise Security Architect: Do you have at least one professional information security certification? Check all that apply.
  • Cisco Certified Network Professional Security (CCNP-Security)
  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Certified in Risk and Information Systems Control (CRISC)
  • SANS GIAC
  • I do not have a professional information security certification
03
*Which best describes your highest level of education?
  • I do not have a High School Diploma/GED
  • I have a High School Diploma or GED
  • I have some college hours (less than 60 credits)
  • I have an Associate's Degree or equivalent amount of credits (60 credits or more)
  • I have a Bachelor's Degree
  • I have a Master's Degree or higher
  • I have a Juris Doctorate
04
*If you attended college, indicate college hours completed, degree type, and major.
05
Enterprise Security Architect: How many years of relevant IT work experience do you have?
  • No experience
  • Less than 10 years of experience
  • More than 10 years of experience
06
Enterprise Security Architect: How many years of experience do you have in information security field, preferably in an environment certified and compliant with a globally recognized Security Framework / Information Security Management System (NIST SP 800-53, ISO27001, HIPAA, SOX, PCI)?
  • No experience
  • Less than 5 years of experience
  • Between 5 and 7 years of experience
  • More than 7 years of experience
07
Describe your directly-related experience as it relates to this position. If no experience, indicate N/A.
08
Enterprise Security Architect: Describe your experience identifying security requirements and validating implementation of applicable controls into a robust architecture that sufficiently repels most malicious attacks. If no experience, enter N/A.
09
Enterprise Security Architect: Describe your experience identifying risks associated with business processes, operations, information security programs and technology projects. If no experience, enter N/A.
10
Enterprise Security Architect: Describe your experience in Metasploit, Nessus, and digital Forensics tools. If no experience, enter N/A.
11
Enterprise Security Architect: Describe your experience with VB.NET, Java/J2EE, ColdFusion, API/web services, scripting languages (such as Python) and a relational database management system (RDBMS) such as MS SQL Server or Oracle. If no experience, enter N/A.

* Required Question

Employer
San Antonio Water System
Address
2800 U.S. Hwy. 281 N.

San Antonio, Texas, 78212

Apply

OnlineApplication

Warning! You are using Internet Explorer 8. Some features of the Online Application are not fully supported in this version. Please upgrade to a later version of Internet Explorer for optimal performance.

Loading ...