This class provides information technology application, management, and security. This class focuses on proactive monitoring and incident response
orchestration. Incumbents serve as subject matter experts in detecting and neutralizing system vulnerabilities, performing advanced engineering to maintain a resilient and
secure operational environment. As assigned, work may include project planning and project support for multiple projects simultaneously, advising customers on equipment purchases; coordinating with vendors; implementing services at new locations; and using monitoring and capacity planning tools to ensure network and system health.
Incumbents assigned to security engineering monitor and hunt for threats, analyze risks and vulnerabilities, support offensive and defensive tools, conducting compliance audits. Incumbents may be assigned a rating based on the skills and abilities attained commensurate with the Information Technology Broad Band Zone requirements as defined by the City of Richmond. As assigned, incumbents may serve as lead workers, assigning work and monitoring work completion. Incumbents may supervise paraprofessional and support level staff including conducting performance evaluations, coordinating training, and implementing hiring, discipline, and termination procedures.
Incumbents serves as an Essential employee, which means that the incumbent is required to work when the City is closed due to public emergencies, critical or hazardous conditions, or inclement weather.The incumbent in this position is required to serve on-call 24 hours/7 days a week to provide leadership for the support and resolution of problems for critical systems and applications within the assigned City of Richmond portfolio.- Building, maintaining, and troubleshooting Tenable Security solutions.
- Building, maintaining, and troubleshooting McAfee antivirus and web content solutions.
- Reviewingand interpreting results from Nessus security vulnerability scans.
- Collaborating with IT Security Committee to apply security patches to various operating systems.
- Performing compliance checks on systems against policies, standards and hardening guides.
- Performing software and hardware security reviews.
- Performing daily log reviews.
- Compiling and developing "how-to" documentation based on size and nature of work.
- Conducting policy compliance research.
- Providing security support to help desk staff and other technology professionals.
- Reviewing change requests and other configuration changes to infrastructure devices.
- Collaborating with internal and external customers and resources.
- Contributing and supporting multiple concurrent projects.
- Providing status reports and project updates as required.
- Working out of a ticketing system which houses all task and project work.
Knowledge (some combination of the following):- Considerable knowledge in area of focus such as Ethernet, Cisco network, wireless network, IT architecture, telephony knowledge, and IT infrastructure library
- Change management
- Computer software in area of focus
- Electronic databases and related software applications used in area of focus (such as Oracle DBMS, MS SQL DBMS, Unix/Linux systems, RedHat Enterprise, and communications management system databases)
- Various technologies in area of focus (such as Anti-Virus, Vulnerability Management, etc.)
- License management; and project management.
- Demonstrated skills in administering various programs and applications in area of focus
- Advising customers on area of focus
- Analyzing, planning, installing, testing, tracking, implementing, documenting, fixing, and tuning software and hardware systems
- Communicating with and supporting various internal and external departments
- Designing, configuring, deploying, troubleshooting, administering, and maintaining system and devices
- Determining security requests' viability
- Diagnosing, researching, and resolving issues in area of focus
- Ensuring project and work documentation and processes are completely accurate, on time, and stored properly
- Patching and upgrading of systems and software
- Possessing strong scripting/automation skills such as Power Shell and Python;
- Processing purchase requests and resolving work orders, network outages, and network switch port moves.
- Demonstrated abilities in analyzing
- Thinking critically
- Paying attention to detail
- Problem solving
- Organizing
- Managing time effectively
- Prioritizing
- Using discretion to decide if a problem needs to be escalated or if standard procedures will correct the problem.
Skills (some combination of the following):- Administering various programs and applications in area of focus
- Advising customers on area of focus
- Analyzing, planning, installing, testing, tracking, implementing, documenting, fixing, and tuning software and hardware systems
- Communicating with and supporting various internal and external departments
- Designing, configuring, deploying, troubleshooting, administering, and maintaining system and devices
- Determining the proper device for the end user's needs
- Determining security requests' viability
- Diagnosing, researching, and resolving issues in area of focus
- Ensuring project and work documentation and processes are completely accurate, on time, and stored properly.
- Maintaining standardized procedures
- Managing area of focus
- Patching and upgrading of systems and software
- Possessing strong scripting/automation skills such as Power Shell and Python
- Processing purchase requests
- Resolving work orders, network outages, and network switch port moves
- Training and mentoring team members
- Updating and assisting in creating documentation
- Using specific technologies in area of focus
- Technical writing
- Oral and written communication
Abilities (some combination of the following):- Analyze
- Delegate and provide direction, if supervising staff
- Think critically.
- Pay attention to detail.
- Problem solves.
- Organize
- Exhibit patience and persistence
- Plan
- Be proactive.
- Manage time effectively.
- Prioritize
- Contribute toand support multiple projects simultaneously.
- Use discretion to decide if a problem needs to be escalated or if standard procedures will correct the problem.
MINIMUM TRAINING AND EXPERIENCE:- Bachelor's degree in computer science or related field
- Two years of journey-level professional experience in network and systems engineering, with specialized emphasis on incident response, perimeter defense, and the securing of complex network topologies
- An equivalent combination of training and experience (as approved by the department) may be used to meet the minimum qualifications of the classification.
LICENSING, CERTIFICATIONS, and OTHER SPECIAL REQUIREMENTS:Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions of the job. Prospective and current employees are invited to discuss accommodations.
ENVIRONMENTAL HAZARDS: Working conditions may include exposure to travel to other locations within the City of Richmond as well as outside of the City of Richmond; exposure to hazardous physical conditions such as mechanical parts, electrical currents, vibrations, etc.; atmospheric conditions such as fumes, odors, dusts, gases, and poor ventilation; inadequate lighting; intense noise; and environmental hazards such as disruptive people, imminent danger, and a threatening environment.
PHYSICAL REQUIREMENTS AND WORKING ENVIRONMENT: Due to the nature of work assignments, incumbents must be able to perform detailed work on multiple and concurrent tasks with frequent interruptions and under time constraint. The essential duties of this classification may require the ability to regularly finger, talk, and see; frequently balance, hear, grasp, and perform repetitive motions; and occasionally climb, stoop, stand, reach, kneel, walk, crouch, push, pull, and lift. The working conditions typically do not include any environmental hazards. In terms of the physical strength to perform the essential duties, this classification is considered to be sedentary, exerting up to 10 pounds of force occasionally, and a negligible amount of force frequently or constantly to move objects.
* Internal use: HR Generalist to review.