Salary
💰 $144,410 - $195,378 per year
About the role
- Track, manage, liaison, and coordinate with internal and external stakeholders to develop, implement, and monitor security control measures related to USPS network infrastructures
- Coordinate with stakeholders including network operations, SOC, Enterprise security architecture, CISO, USPIS, DHS/CISA and subordinate organizations
- Align roles and responsibilities with functional teams within Network Operations in support of prevailing efforts
- Analyze, design, develop, implement, and support code for the United States Postal Service customer environment
- Develop, document, and deploy security solutions using native capabilities of existing tools or through development, leveraging AI/ML capabilities
- Provide security guidelines based on existing security policies and standards to Network Ops and the CISO
- Monitor and validate network infrastructure practices to ensure adherence to security policy and governance
- Develop and document use cases for CSOC and coordinate to interpret and issue guidance per policies and governance
- Engage stakeholders to identify or develop guidance and policy regarding their focus areas
Requirements
- 11+ years’ experience in IT, data, or operational analysis, and/or security (posting also shows 10+ years elsewhere)
- Bachelor's Degree in Computer Science or related technical discipline, preferred (if no degree, additional 4 years relevant experience required)
- One or more certifications: CISSP, Certified Ethical Hacker (C|EH), CISM, CCNP
- Strong knowledge of network design and security principles (network segmentation, MPLS, Internet access, SASE/SD-WAN, DIA, SSE, FWaaS, SWG, ZTNA)
- Solid understanding of AI/LLM and how to engage and intertwine AI and LLM into design and security principles
- Strong knowledge of netflow/data analytics/network access control (e.g., Cisco ISE, StealthWatch, Netscout)
- In-depth experience with Network Services and security features including DNS, DHCP, IP management, DNS security (CISA PDNS, Bluecat Address Manager, Bluecat DNS Edge, Bluecat Gateway, IPAM, and Splunk)
- Strong knowledge of network-based security measures (FW, IDS/IPS, explicit/transparent Proxy, Loadbalancers, LAN segmentation)
- Knowledge of host-based data and asset protection (AV, Host based FW, X/NDR, data encryptions)
- Knowledge of NIST CSF and NIST SP 800 (e.g., NIST SP 800-53)
- Knowledge of Security Standards (e.g. AS805)
- Project planning experience
- Excellent writing skills
- Proficiency with Microsoft Office suite and Visio
- Ability to obtain and maintain a Public Trust clearance (MBI T2) and meet U.S. residency requirement (resided in U.S. for last five years with limits on consecutive time outside U.S.)
- Ability to work independently or within a group to identify and develop solutions to complex network and security issues
- US residency requirement for clearance process (specific consecutive time limits for U.S. citizens and non-U.S. citizens)