Point your AI agent at freehire and let it find you a job.

Get the CLI →

State of Washington

NewBe an early applicant

Security Architect | IT Security Senior Specialist

Posted 1 view
Discussion

Summary

Builds security into the design of Washington State DOC enterprise systems from cradle to grave — serving as security architecture SME, leading technical security design reviews, and advising executives and stakeholders on controls and standards. Core focus: network security architecture, risk assessment, and solutions like SIEM, IDS/IPS, DLP, and encryption.

Description

Security Architect | IT Security Senior Specialist

Full Time | Permanent

Salary Range: $99,300 - $133,608 Annually


This is a telework/hybrid position. The candidate of choice may work from anywhere within the state of Washington with a reliable internet connection. Travel may be required.


This recruitment is open to current, permanent DOC employees only.


Are you a cybersecurity professional who thinks beyond today’s threats and plans for what’s next? As a Security Architect (IT Security Senior Specialist), you’ll play a critical role in protecting the Washington State Department of Corrections’ technology and information by building security into the design of enterprise systems from the ground up.


In this position, you’ll have a cradle-to-grave role in designing, analyzing, and implementing new technology and equipment within the Department’s enterprise network architecture. You’ll evaluate solutions throughout their lifecycle and ensure cybersecurity controls are incorporated early in the design and implementation process, helping identify and address vulnerabilities before they become risks.


Collaboration is key as you will work closely with stakeholders across the Department, Washington State, and federal agencies to assess security requirements, develop effective controls, and ensure technology solutions meet established cybersecurity standards. Your attention to detail and ability to anticipate potential threats will be essential in protecting the Department’s systems, data, and operations from cyberattacks and security breaches.


This is an opportunity to make a meaningful impact through cybersecurity. Your expertise will help strengthen DOC’s technology environment, reduce risk, and protect the systems and information that support the Department’s mission of improving public safety.


A completed application packet will include:

  • A cover letter regarding your interest in this position with our agency
  • A detailed resume
  • Three professional references

Duties

We are looking for teammates who share our vision of public service and are committed to an equitable and inclusive culture that fosters and inspires excellence, while promoting innovation, engagement, and safety, leading to better outcomes for our incarcerated population, our agency, and our community.

As a IT Security Senior Specialist, some of your duties will include:

  • Assuming the role of Subject Matter Expert (SME) for security architecture, technical and administrative security controls, and security best business practices for applications, information systems, and network infrastructure which could include:
    • Representing the Cybersecurity Unit as a voting member in Architecture Board, Change Control, and Release Coordination
    • Representing the Department as the lead technical security point of contact for State level Security Design reviews
    • Developing and maintaining the Department’s Cybersecurity architecture guidance and governance by documenting design specifications, installation instructions, and other system-related information to address the organization's information security, information assurance, and systems security engineering/architecture requirements
    • Advising on industry standards and best practices as they relate to current Cybersecurity trends and Department security architecture
    • Researching emerging IT cyber security trends
    • Maintaining up to date knowledge and information regarding vulnerabilities
  • Developing tactical and strategic plans for the Department's IT cyber security infrastructure and providing expert guidance to IT executives for planning and implementation which could include:
    • Consulting with agency project managers and stakeholders to ensure that cybersecurity requirements are coordinated and implemented in all phases of the project, from start to finish
    • Analyzing business needs to plan security architecture requirements for systems
    • Collaborating with third party vendors, system developers, and users to select appropriate security solutions
    • Determining security requirements by evaluating business strategies and requirements
    • Researching information security best business practices, industry standards, and Federal/State regulation standards
    • Conducting cost to benefit analysis for monetary and business impact to the Department using an impact and likelihood based assessment process

Qualifications

What we need (required qualifications):

  • High school diploma or equivalent
  • A minimum of four years dedicated continuous work with in the information technology field.
  • A minimum of two years cumulative experience in network or security design review on information systems in an organization with at least 1,000 employees or staff
  • One-year, professional IT experience, in a cybersecurity awareness role

OR

  • An Associate degree or higher in computer science, information assurance or related field from an accredited institution whose accreditationisrecognizedbytheU.S.DepartmentofEducation or the Council for Higher Education Accreditation (CHEA), or a foreign equivalent
  • A minimum of four years dedicated continuous work with in the information technology field.
  • A minimum of two years cumulative experience in network or security design review on information systems in an organization with at least 1,000 employees or staff

In addition to the above education and experience, the below knowledge, skills, abilities and/or competencies are required:

  • Knowledgeofcomputernetworking fundamentals
  • Knowledgeofhowsystemcomponentsareinstalled,integrated, and optimized
  • Knowledgeofindustry-standardandorganizationallyaccepted analysis principles and methods
  • Knowledgeofnetworksecurityarchitectureconceptsincluding topology, protocols, components, and principles (e.g., application of Defense-in-Depth)

What will make your application stand out (preferred qualifications):

  • At least one of the following professional Level-2 certifications as defined by the Department of Defense 8570.01 -M Information Assurance Workforce Improvement Program such as Security+, GSEC, CISSP, SCNP or SSCP
  • Bachelor's degree or higher in Computer Science or related field in information management, information security or cyber security from an accredited institution whose accreditation is recognized by the U.S. Department of Education or the Council for Higher Education Accreditation (CHEA)
  • At least one of the following computing environment certifications, Certified Risk and Information Systems Controls (CRISC), Global Information Assurance Certifications — Certified Intrusion Analyst (GCIA) or, Certified Incident Handler (GCIH), or EC-Council Certified Security Analyst (ECSA)
  • IT Security expertise in ICS/PCD environments
  • Relevant architectural experience and knowledge at the global enterprise level
  • An understanding of 'Next Gen' ICS solutions
  • Experience architecting and implementing SIEM, AV, Web Content Filtering, DLP, IDS/IPS, and Vulnerability Management solutions
  • Experience (or familiarity) with SANs ICS and NIST 800-82 R2 concerning industrial control systems
  • Experience in network security audits and compliance monitoring for wireless devices, modems, encryption systems, IT cyber security policies, programs, standards and procedures
  • Knowledge of encryption algorithms (e.g., IPSEC, AES, GRE, IKE, MD5, SHA, 3DES)
  • Knowledge of IT security principles and methods, such as firewalls, demilitarized zones, and encryption
  • Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol (TCP) and Internet Protocol (IP), Open System Interconnection Model (OSI), Information Technology Infrastructure Library, v3 (ITIL))
  • Skill in applying and incorporating IT technologies into proposed solutions

Experts in this Specialty Area have the following Knowledge, Skills, and Abilities:

  • Knowledge of access authentication methods
  • Knowledge of computer algorithms
  • Knowledge of computer networking fundamentals Knowledge of cryptology
  • Knowledge of database systems Knowledge of embedded systems
  • Knowledge of encryption algorithms (e.g., IPSEC, AES, GRE, IKE, MD5, SHA, 3DES) Knowledge of fault tolerance
  • Knowledge of how system components are Installed, integrated, and optimized Knowledge of human-computer interaction principles
  • Knowledge of CIA principles and organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation)
  • Knowledge of industry-standard and organizationally accepted analysis principles and methods
  • Knowledge of information theory
  • Knowledge of interpreted and compiled computer languages
  • Knowledge of IT architectural concepts and frameworks
  • Knowledge of IT security principles and methods, such as firewalls, demilitarized zones, and encryption Knowledge of IT supply chain security/risk management policies, requirements, and procedures
  • Knowledge of local specialized system requirements (e.g., critical infrastructure systems that may not be used standard IT) for safety, performance, and reliability Knowledge of microprocessors
  • Knowledge of network access, identity and access management (e.g., public key infrastructure, PKI)
  • Knowledge of network design processes, to include understanding of security objectives, operational objectives, and tradeoffs
  • Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools Knowledge of operating systems
  • Knowledge of organization's enterprise information security architecture system
  • Knowledge of organization's evaluation and validation requirements
  • Knowledge of parallel and distributed computing concepts
  • Knowledge of risk management processes', including steps and methods for assessing risk
  • Knowledge of secure configuration management techniques Knowledge of Security Assessment and Authorization process
  • Knowledge of security management
  • Knowledge of security system design tools, methods, and techniques Knowledge of server and client operating systems
  • Knowledge of software engineering
  • Knowledge of system design tools, methods, and techniques, including automated systems analysis and design tools
  • Knowledge of system testing and evaluation methods
  • Knowledge of technology integration processes
  • Knowledge of the enterprise IT architecture
  • Knowledge of the methods, standards, and approaches for describing, analyzing, and documenting an organization's enterprise IT architecture (e.g., Open Group Architecture Framework (TOGAF), Department of Defense Architecture Framework (DODAF)
  • Knowledge of the organization
  • Knowledge of the systems engineering process
  • Skill in applying and incorporating IT technologies into proposed solutions
  • Skill in designing the integration of hardware and software solutions
  • Skill in determining how a security system should work (including its resilience and dependability capabilities) and how changes in conditions, operations, or the environment will affect these outcomes
  • Skill in discerning the protection needs (i.e., security controls) of information systems and networks
  • Skill in the use of design modeling (e.g., unified modeling language)

Supplemental Information

Vision: Working together for safer communities.

Mission: Improving public safety by positively changing lives.

Our Commitment: To operate a safe and humane corrections system and partner with others to transform lives for a better Washington.

Our Core Values:

  • Cultivate an environment of integrity and trust: Corrections values partnership and trust. We foster openness and support courageous conversations. We are committed to doing what we say we are going to do by being accountable and taking personal ownership in our actions.
  • Respectful and inclusive interactions: Corrections appreciates and values individuals by promoting an inclusive and diverse environment, which encourages safety. We respect, value, and listen to the thoughts, feelings, and perspectives of our stakeholders and consider the impact on those we serve as well as each other.
  • People's safety: Corrections believes in creating an environment that values physical, mental, and emotional security and well-being. We honor those who advance safety for all.
  • Positivity in words and actions: At Corrections, we assume positive intentions and believe there is a shared desire for the best outcome. We consistently demonstrate positive behavior and always put forth our best effort.
  • Supporting people's success: Corrections is committed to our community – understanding individuals, instilling hope, embracing change, and providing opportunities.


DOC is an equal opportunity employer and does not discriminate on the basis of race, creed, color, national origin, sex, marital status, sexual orientation, gender identity, gender expression, age, honorably discharged veteran, veteran status, genetic information, or the presence of any sensory, mental or physical disability or the use of a trained guide dog or service animal by a person with a disability.


IMPORTANT NOTES:

  • DOC complies with the employment eligibility verification requirements for the federal employment eligibility verification form I-9. The selected candidate must be able to provide proof of identity and eligibility to work in the United States consistent with the requirements of that form. https://www.uscis.gov/i-9-central/form-i-9-acceptable-documents
  • DOC does not use E-Verify; therefore, we are not eligible to extend STEM-Optional Practice Training (OPT). For information, please visit .
  • This recruitment may be utilized to fill more than one position.
  • Please include a minimum of three (3) professional references with your application. A professional reference is defined as an individual who has been paid to supervise your work and can attest to your work performance, technical skills, and job competencies. If you do not have any or sufficient professional references, please include non-related professionals, such as educators or other professional associates.
    **Please note: Phone number AND email address are required for all professional references.
  • A background check including criminal record history will be conducted prior to a new hire. Information from the background check will not necessarily preclude employment but will be considered in determining the applicant’s suitability and competence to perform in the position.
  • Employees may work directly with or near incarcerated individuals in a potentially hazardous setting. Please consider this when deciding whether to apply.
  • We are committed to maintaining a drug and alcohol-free work environment, and our employees are expected to comply with all state and federal laws. A pre-employment drug test may be administered as part of the selection process, and applicants who test positive for any controlled substances, will be disqualified from consideration.
  • Oleoresin Capsicum (OC) is an aerosol pepper spray made available as a means of self-defense and/or de-escalation. Applicants with sensitivities or allergies are encouraged to ask about the level of exposure they could expect in this position.
  • Animal care projects are a common component of most Washington State prisons, including dog and cat programs. Applicants with animal sensitivities or allergies are encouraged to ask about the level of exposure they could expect in this position.
  • Tuberculosis (TB) is a priority health issue for DOC employees. The successful candidate may be required to provide valid proof of a baseline TB skin test within 60 days from the date of hire. When positive tests result, further information, testing and treatment will also be required. Employment is not contingent upon test results.
  • Foreign equivalent degrees awarded outside the United States must have a credential evaluation report attached to your application. You may request the required evaluation/documentation from www.wes.org and www.aice-eval.org. Until this documentation is provided, you will not be selected to move forward in the hiring process.


Telework Details

This position may be allocated for telework. If authorized for the role, work may be performed from your home or another offsite location within the state of Washington using a reliable internet or cellular hotspot service at that time. Employees are expected to perform assigned duties in a safe manner, to take proper care all state-issued equipment, and maintain confidentiality of all information in possession while working offsite. Employees will be required to commute to a Department of Corrections facility or field office as business requires, to potentially include components of the onboarding process. Some offices will have a “drop in” area available, however, a dedicated workspace within a DOC facility will not be provided.


What We Offer:

As an employee of the Department of Corrections, your work-life integration is a priority. Washington State employees are offered one of the most inclusive and competitive benefits packages in the nation. Besides comprehensive family insurance for medical, dental, and vision, these perks also may include:

  • Remote/telework/flexible schedules (depending on position)
  • Up to 25 paid vacation days a year
  • 8 hours of paid sick leave per month
  • 12 paid holidays a year
  • Generous retirement plan
  • Flex Spending Accounts
  • Dependent Care Assistance
  • Deferred Compensation and so much more!

*Teamsters 117 represented positions receive 3 days of bereavement leave.


PERS: State Employees are members of the Washington Public Employees' Retirement System (PERS). New employees have the option of two employer contributed retirement programs. For additional information, check out the Department of Retirement Systems' web site.


For questions about this recruitment, or to request reasonable accommodation in the application process, please email mackenzie.conley@doc1.wa.gov or call us at 509-630-9160. For TTY service, please call the Washington Relay Service at 7-1-1 or 1-800-833-6388.

Skills

What Senior Security jobs ask for — and how much of it you have →

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available