Hope you're doing well. We have an open position for a IT Security Analyst 3 . see the details below and let me know your interest. If interested, pl. Share a copy of your resume to hr@vinsysinfo.com along with your salary / rate expectations and the best time to reach you.
Role : IT Security Analyst 3
Client : VDOT - State of Virginia
Location : Richmond, VA (Hybrid) Need candidate within 2hrs drivable distance to Richmond
Job ID : 778015
Interview Mode : In Person Only
VDOT is seeking a highly motivated Security Analyst to support cybersecurity operations within the Operations Technology (OT) environment, with a specific focus on the integration and ongoing monitoring of the Tolling Division's systems .
Key Responsibilities :
- Monitor security alerts and logs for tolling-related infrastructure using existing SIEM and other monitoring tools.
- Analyze, investigate, and triage security events and potential incidents involving tolling back office systems and devices.
- Coordinate with Tolling Division personnel, vendors, and OT operations teams to facilitate incident response, forensics, and remediation activities.
- Assist in onboarding tolling systems into the OT cybersecurity monitoring process, including asset inventory, log ingestion, and configuration baselines.
- Perform security assessments and reviews of tolling systems for vulnerabilities, misconfigurations, and gaps in compliance with standards such as NIST 800-53, NIST 800-82, and agency-specific policies.
- Participate in the development and maintenance of incident response procedures and playbooks specific to tolling infrastructure.
- Contribute to regular security reporting, dashboards, and metrics for tolling systems.
- Collaborate with internal and external stakeholders to enhance the security posture of the tolling environment.
Qualifications Required :
Bachelor's degree in Cybersecurity, Information Technology, Engineering, or a related field; OR equivalent experience.3+ years of experience in cybersecurity, with at least 1 year supporting azure, IIS, Active Directory, SQL database, and critical infrastructure environments.Familiarity with SIEM tools, log analysis, and incident response workflows.Familiarity with PCI DSS 4.0+ security requirements.Working knowledge of networking protocols, system hardening, and asset inventory practices.Strong analytical, communication, and collaboration skills.Preferred :
Experience supporting or securing tolling systems, traffic management infrastructure, or roadside equipment.Knowledge of security frameworks such as PCI DSS, NIST 800-53, NIST 800-82, or CIS Controls.Certifications such as GICSP, GCIA, CompTIA Security+, or CISSP.Experience working with third-party vendors and supporting environments with both state-managed and vendor-managed components.Requirements : Experience supporting or securing tolling systems, traffic management infrastructure, or roadside equipmentHighly desired 5 YearsKnowledge of security frameworks such as PCI DSS, SEC 530, NIST 800-53, NIST 800-82, or CIS ControlsHighly desired 5 YearsExperience working with third-party vendors and supporting environments with both state-managed and vendor-managed componentsHighly desired 5 YearsQuestion 1| Commonwealth of Virginia security policies prohibit the use of offshore IT contractors. Do you attest to the fact that your candidate will physically reside within the US for the duration of the assignment?
Question 2| Please list candidate's email address.