| Location | Nashville, TN |
Job Information
State of Tennessee Job Information
Opening Date/Time08/18/2026 12:00AM Central TimeClosing Date/Time08/31/2026 11:59PM Central TimeSalary (Monthly)$4,562.00 - $5,694.00Salary (Annually)$54,744.00 - $68,328.00Job TypeFull-TimeCity, State LocationNashville, TNDepartmentFinance and Administration
LOCATION OF (1) POSITION(S) TO BE FILLED: DEPARTMENT OF FINANCE & ADMINISTRATION, DAVIDSON COUNTY
This position is designed as Hybrid.
This position requires a criminal background check and CJIS/FTI Fingerprints. Therefore, you may be required to provide information about your criminal history in order to be considered for this position. The Department of Finance and Administration will not sponsor applicants for work visas.
Qualifications
Education and Experience: Bachelor's degree and one year of experience in information security, risk analysis, or cybersecurity policy implementation.
Substitution of Graduate Coursework: Graduate coursework in information security may substitute for one year of experience.
Substitution of Experience for Education: Experience in cybersecurity or incident response may substitute for education up to four years.
Overview
Under direction, the Information Security Analyst-Junior supports organizational cybersecurity through security monitoring, risk analysis, policy compliance, and security awareness initiatives. This role assists with security audits, incident response, and the implementation of risk mitigation strategies for IT systems and applications. This class differs from that of Information Security Analyst-Senior in that incumbents of the latter are responsible for directing and leading security policy promulgation, risk analysis, safeguard and compliance efforts, and incident response and have responsibility for supervising subordinate employees.
Responsibilities
Supports risk assessments, security audits, and policy compliance checks.
Identifies security incidents and assists in monitoring and responding to threats.
Implements encryption and data protection measures for data in transit and at rest.
Maintains and updates documentation for risk management and disaster recovery.
Trains staff on security awareness and monitors completion of required training.
Supports forensic analysis and security event monitoring.
Assists with patch verification, vulnerability identification, and incident escalation.
Prepares reports on risk findings and compliance gaps.
Recommends improvements to security policies and standards.
Communicates with internal and external stakeholders regarding threats and resolutions.
Competencies (KSA's)
Competencies:
Tech Savvy
Customer Focus
Manages Complexity
Optimizes Work Processes
Strategic Mindset
Knowledges:
Information security best practices
Risk assessment and audit techniques
Cybersecurity tools and defense strategies
Regulatory and compliance frameworks
Incident response and recovery procedures
Skills:
System monitoring and vulnerability detection
Policy review and documentation
Communication and training
Troubleshooting and diagnostics
Secure system configuration and testing
Abilities:
Detect and escalate security issues
Communicate risk information clearly
Prioritize multiple tasks during incidents
Adapt to evolving threat landscapes
Collaborate across technical and non-technical teams
Tools & Equipment
Security Information and Event Management (SIEM) Tools
Vulnerability Scanners
Endpoint Protection Platforms
Encryption and Authentication Tools
Standard Office Software