Cybersecurity Engineer

CITY OF PORT ORANGE

Town of Florida (NY)

On-site

USD 70,000 - 100,000

Full time

7 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

The City of Port Orange seeks a cybersecurity analyst to protect its IT and OT systems across on‑premises, cloud, and endpoints. You will monitor for threats, investigate and respond to incidents, and support vulnerability management to strengthen enterprise cybersecurity programs.

This in‑office role requires collaboration with IT staff, documentation of findings, and ongoing learning to ensure reliable services for City operations.

Qualifications

  • Bachelor’s degree in computer science, Information Systems, Cybersecurity or related field is required.
  • Minimum of three (3) years’ experience in technology support, security operations, incident response, and/or event handling.
  • Minimum of three (3) years of experience with security products including IPS/IDS, AV, Anti-Malware, DLP, MFA, Network Proxies, Sensitive Data Scanning, and Content Filtering is preferred.
  • Knowledge of computer hardware, networking, operating systems (Windows and Linux), and enterprise IT infrastructure.
  • Understanding of network technologies includes routing, switching, DNS, SMTP, NTP, and SNMP.
  • Experience with enterprise security tools such as SIEM, EDR/XDR, firewalls, email gateways, and vulnerability management platforms.
  • Knowledge of security considerations in hybrid and cloud environments (e.g., AWS, Azure, Microsoft 365).
  • Ability to analyze security events, assess risk, and recommend mitigations.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Ability to clearly document findings and communicate technical information verbally and in writing.
  • Willingness and ability to continuously learn and apply new technologies.
  • Demonstrated ability to mentor others, lead incident response efforts, and contribute to secure system design and automation.

Responsibilities

  • Monitor enterprise systems for security anomalies using SIEM, EDR/XDR, NAC, IDPS and related technologies.
  • Investigate security alerts, identify indicators of compromise (IOCs), and respond to cybersecurity events.
  • Escalate complex incidents and collaborate with IT staff.
  • Analyze threat intelligence to identify relevant risks and communicate findings to stakeholders.
  • Prepare incident, investigation, and root cause analysis reports.
  • Recommend detection improvements, support automation of response workflows, and lead initial incident handling.
  • Create and maintain metrics, perform event/incident/risk analyses, and generate reports.
  • Configure and maintain cybersecurity systems such as firewalls, email gateways, and monitoring tools.
  • Support Help Desk escalations and administer IAM/certificates; document procedures and standards.
  • Contribute to cybersecurity awareness programs and phishing assessments.

Skills

Analytical thinking
Troubleshooting
Documentation
Mentoring
Communication

Education

Bachelor’s degree in CS/IS/Cybersecurity

Tools

IPS/IDS
EDR/XDR
Firewalls
Email gateways
SIEM
Vulnerability management
MFA
DLP
Proxies
Cloud platforms

Job description

This is a professional technical position responsible for protecting the City’s information technology (IT) and operational technology (OT) systems, including on-premises, cloud, and endpoint platforms. This position monitors security threats, investigates and responds to cybersecurity events, supports vulnerability management and risk mitigation, and helps maintain and improve enterprise cybersecurity systems and programs. Works collaboratively with IT staff and stakeholders to reduce cybersecurity risk while supporting reliable service delivery. This is an in-office position; work at home is not available.

Cybersecurity Analysis, Detection, and Response
  • Monitor enterprise systems and environments (including network, endpoint, and cloud) for security anomalies, intrusions, or breaches using tools such as SIEM, EDR/XDR, NAC, IDPS, and related technologies.
  • Investigate security alerts, identify indicators of compromise (IOCs), and follow documented procedures to respond to cybersecurity events.
  • Escalate complex incidents as appropriate and collaborate with the IT staff.
  • Analyze vendors and government threat intelligence (e.g., CISA, MS-ISAC, IACI-CERT) to identify relevant risks and communicate findings to stakeholders.
  • Prepare incident, investigation, and root cause analysis reports in accordance with established standards.
  • Recommend detection improvements, support automation of response workflows, and lead initial incident handling.
  • Create and maintain metrics, perform analysis (event, incident, risk, behavioral, trend), generate regular and on-demand ad-hoc reports to support operations and decision‑making.
Cybersecurity Vulnerability and Threat Mitigation
  • Perform vulnerability assessments and security analysis of systems and endpoints.
  • Prioritize and track remediation activities using risk‑based approaches.
  • Verify compliance with cybersecurity baselines, standards, and policies.
  • Apply or coordinate security patching to mitigate vulnerabilities while minimizing business impact.
  • Conduct audits of access controls and sensitive data handling to ensure least privilege, proper classification, and encryption.
  • Contribute to secure configuration baselines and oversee vulnerability management efforts.
IT Security System and Program Administration
  • Configure and maintain cybersecurity systems such as firewalls, email gateways, and security monitoring tools according to established guidelines.
  • Support and resolve cybersecurity‑related issues escalated from the Help Desk, including access, authentication, filtering, and security events.
  • Administer or support Identity and Access Management (IAM), including authentication services and certificate management.
  • Create and maintain cybersecurity documentation, procedures, and standards.
  • Support the cybersecurity awareness program, including training and phishing assessments
ADDITIONAL RESPONSIBILITIES:

This position is part of the City’s Emergency Management Team and, as such, shall be expected to perform all duties that are assigned during an emergency management operation. Any additional compensation, above the normal weekly salary, shall be outlined by the City Manager in the City’s Emergency Management Activation and Emergency Declaration. Failure to appear to perform emergency management assignment and to work assigned shifts as scheduled by the City’s Emergency Management Director or individuals designated by the City Manager to assign such functions will result in disciplinary action up to and including termination.

  • Bachelor’s degree in computer science, Information Systems, Cybersecurity or related field is required.
  • Minimum of three (3) years’ experience in technology support, security operations, incident response, and/or event handling.
  • Minimum of three (3) years of experience with security products including: IPS/IDS, AV, Anti‑Malware, DLP, MFA, Network Proxies, Sensitive Data Scanning, and Content Filtering is preferred.
  • Knowledge of computer hardware, networking, operating systems (Windows and Linux), and enterprise IT infrastructure.
  • Understanding of network technologies includes routing, switching, DNS, SMTP, NTP, and SNMP.
  • Experience with enterprise security tools such as SIEM, EDR/XDR, firewalls, email gateways, and vulnerability management platforms.
  • Knowledge of security considerations in hybrid and cloud environments (e.g., AWS, Azure, Microsoft 365).
  • Ability to analyze security events, assess risk, and recommend mitigations.
  • Strong analytical, troubleshooting, and problem‑solving skills.
  • Ability to clearly document findings and communicate technical information verbally and in writing.
  • Willingness and ability to continuously learn and apply new technologies.
  • Demonstrated ability to mentor others, lead incident response efforts, and contribute to secure system design and automation.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer
Cybersecurity Engineer

Port Orange, City of (FL) • Town of Florida (NY)

On-site
USD 90,000 - 120,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

On-site
USD 90,000 - 120,000
Cyber Security Engineer
Cyber Security Engineer

City of Englewood • Englewood (CO)

On-site
USD 109,000 - 164,000
Cybersecurity Engineer
Cybersecurity Engineer

Aurora Health Care • Allenton (WI)

Remote
USD 80,000 - 120,000
Cyber Security Engineer
Cyber Security Engineer

Empirical-Food • Dakota Dunes (SD)

On-site
USD 95,000 - 120,000
IT Security Administrator
IT Security Administrator

City of Bloomington Illinois • Bloomington (IL)

On-site
USD 84,000 - 126,000
IT Network and Cybersecurity Engineer
IT Network and Cybersecurity Engineer

Gfoat • Dickinson (TX)

On-site
USD 90,000 - 130,000
IT Cybersecurity Analyst
IT Cybersecurity Analyst

Towncare Dental Partnership • Town of Florida (NY)

Hybrid
USD 85,000 - 125,000
Enterprise Principal Technology Analyst (Cybersecurity Operations Manager)
Enterprise Principal Technology Analyst (Cybersecurity Operations Manager)

San Jose CA • San Jose (CA)

Hybrid
USD 163,000 - 199,000
IT Cybersecurity Analyst
IT Cybersecurity Analyst

Dental Care Alliance • Town of Florida (NY)

Hybrid
USD 90,000 - 130,000
Hybrid or remote work flexibility