Gwinnett County Public Schools - Suwanee, GA

posted 3 months ago

Full-time - Mid Level
Suwanee, GA
Educational Services

About the position

The Senior Systems Analyst - Information Security Officer at Gwinnett County Public Schools plays a crucial role in safeguarding the data and privacy of students, families, and employees. This position is responsible for assisting the Director of Security Architecture and Engineering in executing the data protection roadmap, ensuring that data protection controls are effectively operating. The analyst will implement, operate, and maintain data protection software solutions, which are essential for protecting sensitive information entrusted to the school system. In this role, the Senior Systems Analyst will define and fine-tune data protection software policies across various use cases, including data-in-motion, data-in-use, and data-at-rest. The analyst will monitor and enforce these policies in real-time, focusing on sensitive data access, privileged user actions, application user activities, and security exceptions. Investigating potential data protection policy violations is a key responsibility, requiring the analyst to distinguish between false positives and legitimate breaches. Effective communication with the Information Security Department management is essential, as the analyst will provide updates on investigations and maintain confidentiality throughout the process. Additionally, the Senior Systems Analyst will be tasked with creating, revising, and maintaining documentation of processes and procedures related to data protection. Collaboration with vendors to manage the patching, upgrading, or replacement of data protection software components is also a critical aspect of the role. The analyst will recommend new security controls and corrective actions to enhance existing data protection policies, ensuring that the organization remains compliant with industry standards and best practices. Knowledge sharing with peers through meetings, presentations, and written communications will foster a collaborative environment focused on continuous improvement in cybersecurity practices.

Responsibilities

  • Implement, operate, and maintain data protection software solutions to protect the privacy and integrity of the information entrusted to GCPS by students, families, and employees.
  • Define and fine tune data protection software policies across data-in-motion, data-in-use, and data-at-rest use cases.
  • Monitor and enforce data protection policies in real time for sensitive data access, privileged user actions, application user activities, and security exceptions.
  • Perform investigations to identify false positive events versus legitimate data protection policy violations.
  • Communicate with Information Security Department management in written and verbal communication regarding investigations.
  • Maintain need-to-know discretion for all investigations.
  • Create, revise, and maintain documentation of processes and procedures.
  • Work closely with vendors to arrange the patch, upgrade, or replacement of data protection software components.
  • Recommend new security controls and corrective actions to enhance data protection software policies.
  • Perform knowledge sharing with peers through meetings, presentations, and written communications.
  • Maintain an awareness of existing and proposed security standards, industry best practices, legislation, current news, trends, tools, and techniques related to cyber security.
  • Perform other duties as assigned by management.

Requirements

  • Associate's degree in related field required; Bachelor's degree in related field preferred.
  • Four years of experience working with a relational database management system such as IBM DB2, Microsoft SQL, or Oracle.
  • Experience with Data Protection tools (e.g., data discovery, data mapping, data loss prevention, database activity monitoring, data modeling).
  • Knowledge of data architecture and database technologies.
  • Ability to present analysis and recommendations in a clear and compelling manner to both technical and non-technical audiences.
  • Critical thinking with strong problem-solving skills.
  • Excellent written and verbal communication skills.
  • Ability to multi-task and prioritize work effectively.
  • Responsive to challenging tasking.
  • Strong sense of ownership and driven to manage tasks to completion.

Nice-to-haves

  • Certified Information Systems Security Professional (CISSP) preferred.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service