Position: Security Analyst
Location: Tallahassee FL- Onsite
Duration: Through 6/30/26
Parking: Parking will be offered if space becomes available; however, the cost of parking payable to the Department or through third-party commercial garages shall be the responsibility of the Contractor.
Job/Position Description
The Security Analyst is responsible for providing daily support to the Department's information security infrastructure, including working with the Department and Florida Digital Services (FLDS) staff, and providing Tier 3 information security support for the Department's customers. The Candidate will report directly to the Information Security Operations Manager. The duties and responsibilities of this position are as follows:
- Assists with planning, implementing, and tuning the Department's Managed Security Services, Security Information and Events Management (SIEM), and vulnerability management;
- Supports NextGen Firewall security tools and maintains the site block list;
- Supports and maintains endpoint detection and response and antivirus software functionality onservers and client systems;
- Monitors Intrusion Detection/Prevention Systems (IDS/IPS) for information security threats and advises or participates in response actions;
- Acts as a member of the Computer Security Incident Response Team (CSIRT);
- Supports administration of secure messaging and second-factor authentication capabilities;
- Develops and maintains technical specifications, standards, procedures, and systems documentation;
- Analyzes, troubleshoots, and resolves antivirus software issues with minimal impact on users;
- Researches and recommends appropriate technical solutions to meet functional requirements;
- Provides recommendations for possible process improvements within the Department's information security team;
- Works independently or as a team member on multiple IT security projects and occasionally as a project leader;
- Works on large, complex security issues or projects that require increased skill in multiple IT functional areas;
- Mentors junior staff; and
- Assists with other deliverables, tasks, or projects as needed
NOTE: This position is designated as "essential staff" and is expected to report for duty when instructed to do so in times of emergency or potential emergency as required by Rule 33-208.002 (4),
The Department is seeking a full-time, on-site Security Analyst throughout the PO term of this RFQ. The positions required and preferred qualifications are described in Sections 4.1 and 4.2 and must be verifiable in the Candidate's resume.
NOTE: Any successful Candidate with access to the Department's network is required to complete the Department's Security Awareness Training within 30 calendar days of hire.
Skills
Required Qualifications
A bachelor's or master's degree from an accredited college or university in Computer Science, Information Systems, or other related fields is required. Relevant experience may be substituted for education on a year-for-year basis when applicable.
The Department requires the following experience, skills, and/or knowledge for this position:
- Five (5) or more years of server or network administration experience;
- Three (3) or more years of information security administration experience in an enterprise environment with 1,000 or more users;
- Three (3) or more years of SIEM experience;
- Three (3) or more years of vulnerability management experience;
- Knowledge of security issues, techniques, and implications across all existing computer platforms; and
- Experience maintaining and supporting third-party antivirus applications.
NOTE: In addition to the above list, the selected Candidate must successfully complete a Level II Background Check.
4.2. Preferred Qualifications
The Department prefers the Candidates to have the following experience, skills, and/or knowledge for this position:
- Three (3) or more years of experience administering Splunk or similar SIEM;
- One (1) or more years of experience using Microsoft Defender products;
- One (1) or more years of experience working with IDS/IPS;
One (1) or more years of experience using Office 365 Data Loss Prevention