Information Security Specialist

Pittsburgh Regional Transit

Pittsburgh, PA

Apply
JOB DETAILS
SALARY
$71,500–$107,300 Per Year
JOB TYPE
Full-time, Employee
SKILLS
Analysis Skills, Applications Security, Authentication, CISSP - Certified Information Systems Security Professional, Campaigns, Computer Security, Contract Management, Contract Review, Documentation, Driver's License, Firewalls, GIAC - Global Information Assurance Certification, GSEC - GIAC Security Essentials Certification, HIPAA (Health Insurance Portability and Accountability Act), High School Diploma, Identify Issues, Incident Response, Information/Data Security (InfoSec), Interpersonal Skills, Intrusion Detection Systems, Intrusion Detection and Prevention (IDP), Intrusion Prevention Systems, Microsoft Product Family, Network Administration/Management, Network Architecture/Engineering, Network Design, Network Operations Center, Network Security, Network System Hardware, Network Testing, Organizational Skills, PCI, Penetration Testing, Presentation/Verbal Skills, Problem Solving Skills, Regulations, Requirements Derivation, Requirements Management, Risk, Risk Analysis, Single Sign-On (SSO), Wi-Fi, Writing Skills
LOCATION
Pittsburgh, PA
POSTED
23 days ago
Pittsburgh Regional Transit is seeking a Information Security Specialist to lead and maintain Information Security technical and human-centered initiatives for Port Authority of Allegheny County d/b/a Pittsburgh Regional Transit (PRT). Maintains policies, procedures, standards and documentation to assess, monitor, report, escalate and remediate IT risk and compliance issues. Evaluates business objectives, derive technical requirements and develops secure, reliable, and efficient security solutions for the business. Provides oversight regarding audit, regulatory and risk assessment activities across all IT functional areas. Implements mitigation strategies and approaches based on both audit and assessment feedback and management participation.

Essential Functions:

• Support Information Security and Incident Response activities for PRT. o Develop, lead, and assist in human-centered information security awareness, training, informational campaigns, and other activities focused on ensuring that internal customers are well-prepared for Information Security risks. o In support of secure authentication environment, process password reset requests and further the implementation of single sign-on and self-service authentication management. o Monitor and analyze alerts to identify security issues for remediation. o Support the implementation of critical security controls as they relate to PCI/HIPPA and risk assessments.

Job requirements include:

• High school diploma or GED. • Bachelor's degree in information security or related field from an accredited college or university. Related experience plus certifications may be substituted for education on a year-for-year basis. • Minimum of five (5) years' experience in architecture and design of network infrastructure including network equipment, Wi-Fi, firewalls, intrusion detection systems, intrusion prevention systems and application security along with 2 years of hands-on experience in security engineering/operations on network infrastructure and Data Center systems (experience may be concurrent). • Ability to develop and execute: o Information Security training (both live and recorded), o policies and standards, o and network penetration testing (and evaluation). • Ability to evaluate vulnerability assessments, risk analysis, contract review, management of gap remediation and compliance testing. • Strong analytical and problem-solving skills are necessary. • Strong documentation and organizational skills • Excellent written and verbal communication and inter-personal skills • Demonstrated ability in the use of Microsoft 365 platform. • Valid PA driver’s license.

Preferred Attributes:

• Ability to employ risk identification/analysis of desktop, server, application, database, and overall network security principles. • CISSP, GSEC, GIAC, or other security certifications are desired (training for these can be provided by Authority, if necessary).

We offer a comprehensive compensation and benefits package. Interested candidates should forward a cover letter (with salary requirements) and resume.

EOE
Apply on Company Website

https://careers.portauthority.org

About the Company

P

Pittsburgh Regional Transit