Salary: $68,422.38 – $116,317.76 Annually
Location : City of Las Vegas, NV
Job Type: Full-Time
Job Number: 23JUN79931-O
Department: Department of Innovation and Technology
Division: IT – Computer Services
Opening Date: 06/26/2023
Closing Date: 7/10/2023 3:00 PM Pacific
Bargaining Unit: APPT
About the Position
Career Opportunity:
The City of Las Vegas invites applicants for IT Security Architect. This position is responsible for developing and implementing enterprise security architectures and solutions including security frameworks and roadmaps. This position serves as the engineering security expert in application development; database design; network and operating system security design; and access and audit control development and implementations. This position works closely with the IT Business Relationship Managers and has a business-driven mindset which seeks to develop structured inter-relationships between technology and processes to support the long-term needs of the business.
Supervision Received
Receives direction from the Section Manager, Information Technologies.
SELECTION PROCESS: The selection process will include a review of all applications with only the most qualified participating in an interview. Final candidate selection will include hiring interview (if applicable). Any individual offered employment will be required to pass a pre-employment drug test and complete background check. Some positions may require preliminary background checks.
Note: Effective with pay period beginning July 23, 2023, employee pay rates will be reduced by 1.875% due to increase in NVPERS contribution.
EXAMPLE OF DUTIES
Essential Functions:
- Lead role in defining the appropriate architecture, technical requirements and standards necessary to address information security needs for the organization.
- Responsible for the development and evolution of an in-depth defense strategy for the City of Las Vegas (city).
- Conduct design and engineering processes to ensure that security architecture solutions maintain the confidentiality, integrity and availability of information assets.
- Define security configuration and operations standards for security systems and applications, including policy assessment and compliance tools, network security appliances, and host-based security systems.
- Develop a consistent set of security principles, technology standards and architectural constructs which guide the solution design, engineering and deployment of the city IT solutions.
- Develop and maintain a portfolio of enterprise security standards for applications, systems, and data.
- Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; and preparing cost estimates.
- Develop, implement and maintain Information Technologies disaster recovery and contingency policies, procedures and guidelines; establish the infrastructure required to integrate the IT disaster recovery processes into the city’s business recovery plan.
- Work with internal and external technical teams to define and document controls necessary to ensure the confidentiality, integrity, and availability of computer systems, data, and network resources.
- Evaluate security controls employed by cloud service providers and other third party providers to ensure information assets are adequately protected, and couple them with additional security controls including firewalls, intrusion prevention systems, and monitoring/event correlation solutions.
- Address security requirements within cloud architectures, creating new and evolving security services and standards pertaining to cloud services; consulting with internal and external customers; and developing and documenting strategies, standards, and roadmaps for cloud security components and architectures.
- Collaborate with technology and business teams to ensure that the implementation of new technologies and security solutions can be supported and that they are in alignment with security architecture, industry best practice, principles of secure design, and business strategies.
- Serve as the engineering security expert in application development; database design; network and operating system security design; access and audit control development; and identity management solutions.
- Lead the development and implementation of security technology solutions for complex environments and architecture including cross-platform interoperability.
- Lead the development of baseline infrastructure and application hardening guides based on industry best practices.
- Participate in the risk assessments of new and existing technology solutions to identify opportunities for improvement, and engineering solutions to adequately mitigate associated risks.
- Ensure security architecture reviews are conducted for new technology to ensure best practices, document security solutions, and enable common solutions across the enterprise.
- Oversee and review the ongoing documentation, development, implementation, and maintenance of processes, procedures, and services associated with architecture functions including ensuring that requirements and deliverables are clearly defined.
- Conduct research, monitor new product developments, and make recommendations regarding technologies which have the potential to benefit the security of information assets.
- Provide assistance to audits, HR, and legal compliance areas as related to risk assessment and computer/network forensics investigation.
- Develop and implement an Information Security Incident Response Plan and serve as the team leader of an incident response team.
- Assist with maintaining city-wide information security awareness training and education program that includes processes, tools, and technologies that help reduce risk to the city’s information assets.
Marginal Functions:
- Perform related duties and responsibilities as required.
MINIMUM REQUIREMENTS
Experience:
Six years of technical IT work experience, to include three years experience with
IT security.
Experience working with PCI-DSS, HIPAA, CJIS, PII, project management experience in a technical leadership position, and experience in municipal government IT departments is desirable.
Training:
Bachelor’s degree from an accredited college or university with major in computer science, telecommunications, management information systems or related fields. May substitute a combination of equivalent education and related experience. The city assesses 1.5 years of full-time experience as equivalent to one year of education.
License or Certificate:
One of the following certifications is required at the date of application:
– Certified Information Systems Security Professional (CISSP)
– GIAC Security Essentials Certification (GSEC)
– Certified Information Security Manager (CISM)
– Certified Information Systems Auditor (CISA)
KNOWLEDGE, SKILLS, AND ABILITIES
Knowledge of:
Concepts, principals and design of data security and disaster recovery processes including threat and vulnerability management; access control; network design and management; identity and access management; and data protection and management.
Legal and regulatory compliance requirements as they relate to data and information privacy and security.
Operations, programming and interrelationships of computer and information systems.
Security controls for cloud providers.
Systems management and security specific administrative applications.
Security technologies including identity and access management solutions; intrusion detection and intrusion prevention systems; digital certificates; encryption; authentication techniques; firewalls; data loss prevention systems; security incident and event management solutions; internet protocol security; virtual private networks; routers; switches; and web application firewall solutions.
Ability to:
Develop and implement enterprise data security architecture.
Design secure solutions and accompanying controls.
Train users in the application of security processes.
Prepare and present technical and management reports.
Work under pressure, and meet deadlines individually and collaboratively.
Think logically, assess problems, and be results-oriented.
Quickly learn and understand new technologies.
Identify complex business and technology risks and associated vulnerabilities.
Prioritize multiple tasks and switch between tasks quickly
Communicate effectively, both orally and in writing, to interact with team members, customers, management and support personnel (technical and non-technical).
Establish and maintain effective working relationships with employees at all levels within the organization, and with both internal and external customers.
Work independently.
Competencies:
Core Workforce Competencies
Professionalism – Demonstrates core values by being honest, respectful and positive.
Effective Communication – Expresses verbal and written thought in a clear and understandable manner.
Customer Focus – Demonstrates genuine concern and satisfies external and/or internal customers based on the CLV core purpose and values.
Adaptability – Able to effectively modify behavior to suit changing workforce demands.
Problem Solving – Solves problems by considering all causes, solutions and outcomes.
Productive Partnerships – Develops, maintains and strengthens partnerships with others.
Technical and Safety Expertise – Possesses a depth of knowledge, skill and ability in a technical (job) area.
CITY OF LAS VEGAS, NEVADA
Appointive Compensation and Benefits – 2023
COMPENSATION
Annual Base Pay Increases
- Employees are eligible for annual performance-based merit increase or cash bonus, typically in first pay period of fiscal year.
- City Manager and City Council may approve annual cost of living increase.
BENEFITS
Uniform Allowance
- Applies to uniformed appointives in Fire & Rescue, Public Safety, and Municipal Court, currently $1,500/year
Retirement
- Eligible employees participate in the Public Employees’ Retirement System of Nevada (PERS). PERS, a statewide defined benefit plan, calculates retirement benefits based on 2.25 percent (current percentage for employees hired 7/1/15 and after) for each year of service, applied to the employee’s highest consecutive 36-month average salary. PERS also requires that employees share 50 percent of the PERS contribution, which is implemented by reducing the City’s salary ranges. The highest consecutive 36-month average salary is increased commensurate with the salary range reductions required by PERS.
Deferred Compensation Plan
- The city offers a 457(b) Plan, a government deferred compensation plan similar to a 401(k) plan. It offers both pre-tax and after-tax savings and investment options.
Deferred Compensation Match
- City provides a 100% match annually (on a per pay period basis) to your contributions, up to the following amounts in a 401(a) plan –
o Years 1-2 (0-24 months)* $4,000
o Years 3-4 (25-48 months)* $5,000
o Year 5 (49-60 months)* $6,000
o After 5 years (>60 months)* $6,000
*Years of service in Benefits Plus Tiers I, II, and III combined
- Employees are fully vested in the match after 5 years of service or at age 65.
Medical, Dental and Vision Insurance
- Employees are covered the first of the month following date of employment. Five medical plans, two dental and two vision plans are available. City pays 100% of employee premium + 50% of dependent premium.
Life and AD&D Insurance
- City provides $100,000 insurance at no cost.
- Additional voluntary life insurance and AD&D insurance available for purchase.
Disability Insurance
- City provides long term and short term disability policies:
o STD
• City pays 100% of base salary, for up to 90 days of an approved medical disability leave lasting over one week under STD, from first day of disability
• City pays 100% of base salary for a period over 90 days, if employee has applied for long term disability or PERS disability retirement, until a determination is final or employee is separated
Note: Public Safety Appointives are not eligible for City STD benefits.
o LTD: Benefits may begin after 90 days of an approved disability leave. Payment is up to 60% of earnings, up to $11,000/month, and may not be supplemented with sick or vacation.
Tuition Reimbursement
Employee Assistance Program
Annual Health & Wellness Reimbursement
- Employees may apply for reimbursement up to $2,400 per year for out of pocket health & educational wellness expenses. Reimbursement amounts may also be used for STEAM (Science, Technology, Engineering, Arts, and Mathematics) college classes and student loan repayments for the employee and immediate family members.
ANNUAL PHYSICAL EXAMS
- Employees covered by a City health plan and their covered spouse and dependents over age 18 are eligible for a comprehensive wellness physical exam annually at no cost to them at WellTrac.
VACATION
- Year 1: 3.69 hours/pay period = 96 hours/year
- Years 2 – 5: 5.85 hours/pay period = 152 hours/year
- Years 6 – 10: 7.08 hours/pay period = 184 hours/year
- Years 11 – 15: 7.69 hours/pay period = 200 hours/year
- Year 16 and over: 8 hours/pay period = 208 hours/year
- Maximum Accrual: 250 hours, no accrual beyond that point (Public Safety Appointive (PSA) group retains 2 times annual accrual max)
- Sell Back: Annual leave may be accumulated to a maximum of 250 hours; no accrual beyond that point. June and December sell-back, must leave balance of 40 hours.
HOLIDAY
- City provides 12 holidays plus a birthday holiday.
SICK LEAVE
- Sick Leave Accrual: 4 hours / pay period = 104 hours/year
- Sick Leave, maximum accrual: 480 hours; no accrual beyond that point (Public Safety group retains 840 hours max with continual accrual)
- Sick Leave, annual buy-back: None (Public Safety group retains annual buy-back)
- Sick Leave payout at separation: None (Public Safety group retains 50% payout between 5 and 20 years of service, 100% payout over 20 years of service)
RETIREE HEALTH AND LIFE INSURANCE
- Available for purchase- retiree pays full cost of premium.
NOTE: The City’s Benefits programs can be amended, reduced or eliminated at any time with or without notice as a management prerogative.
Revised 01/2023
01
Each applicant must complete this supplemental questionnaire as a part of the application screening and selection process. The information you provide will be reviewed and used to determine your eligibility to move forward in the selection process. Incomplete responses, false statements, omissions, or partial information may result in DISQUALIFICATION from the selection process.Do you agree to answer each supplemental question truthfully and that your responses can be verified from information included within the application?
- I agree to answer each supplemental question truthfully and that my responses can be verified from information included within the application.
02
When answering “yes” to the below supplemental questions about experience, education, driver’s license, or certification, please be sure the information is reflected in the appropriate section of your application.
- I acknowledge and understand the above statement
03
The city of Las Vegas does not accept resumes in lieu of a completed employment application. Qualifying education and experience, including city of Las Vegas employment must be clearly documented in the Education and Work Experience sections of the employment application. DO NOT substitute a resume for your employment application or write “see attached resume” on your application.
- I understand my resume will not be accepted in lieu of a completed employment application.
04
A REQUIREMENT of this position is a Bachelor’s degree from an accredited college or university with a major in computer science, telecommunications, management information systems, or a related field. Do you have a Bachelor’s degree from an accredited college or university with a major in computer science, telecommunications, management information systems, or a related field?
- Yes
- No
05
Please disclose the discipline of your degree. Type N/A if you do not have a degree.
06
What is the highest level of education have you completed?
- High School/GED
- Associate’s Degree
- Bachelor’s Degree
- Master’s Degree
- Doctoral Degree
- None
07
How many years of Technical IT work experience do you have?
- No Experience
- 1 Year of Experience
- 2 Years of Experience
- 3 Years of Experience
- 4 Years of Experience
- 5 Years of Experience
- 6 Years of Experience
- 7 or More Years of Experience
08
How much of your technical IT work experience is within IT Security?
- No Experience
- 0-11 Months of Experience
- 1 Year of Experience
- 2 Years of Experience
- 3 Years of Experience
- 4 or More Years of Experience
09
Please describe your IT Security experience below. If you do not have this experience please type “NA”.
10
Do you have any experience working with PCI-DSS, HIPAA, CJIS, PII, project management experience in a technical leadership position?
- Yes
- No
11
If you answered “Yes” to the question above please describe your experience below. If you do not have this experience please type “NA”.
12
Do you have any experience working in a municipal government IT Department?
- Yes
- No
13
If you answered “Yes” to the above question, please describe your experience below.
14
At the time of this application do you currently possess any of these certifications? (Please Select All That Apply)
- I do not have any of these certifications.
- Certified Information Systems Security Professional (CISSP)
- GIAC Security Essentials Certification (GSEC)
- Certified Information Security Manager (CISM)
- Certified Information Systems Auditor (CISA)
Required Question