IT Security Analyst - Local to Richmond, VA only

Overview

Hybrid
Depends on Experience
Contract - W2
Contract - Independent
Contract - 12 Month(s)
50% Travel

Skills

Active Directory
Cyber Security
Information Technology
Incident Management
IT Security
NIST SP 800 Series
PCI DSS
SIEM
Microsoft IIS
NIST 800-53
Forensics
Regulatory Compliance
Log Analysis
CISSP
Microsoft Azure
Security+
SQL

Job Details

Key Responsibilities:

  • Monitor security alerts and logs for tolling-related infrastructure using existing SIEM and other monitoring tools.
  • Analyze, investigate, and triage security events and potential incidents involving tolling back office systems and devices.
  • Coordinate with Tolling Division personnel, vendors, and OT operations teams to facilitate incident response, forensics, and remediation activities.
  • Assist in onboarding tolling systems into the OT cybersecurity monitoring process, including asset inventory, log ingestion, and configuration baselines.
  • Perform security assessments and reviews of tolling systems for vulnerabilities, misconfigurations, and gaps in compliance with standards such as NIST 800-53, NIST 800-82, and agency-specific policies.
  • Participate in the development and maintenance of incident response procedures and playbooks specific to tolling infrastructure.
  • Contribute to regular security reporting, dashboards, and metrics for tolling systems.
  • Collaborate with internal and external stakeholders to enhance the security posture of the tolling environment.

Qualifications:

Required:

  • Bachelor s degree in Cybersecurity, Information Technology, Engineering, or a related field; OR equivalent experience.
  • 3+ years of experience in cybersecurity, with at least 1 year supporting azure, IIS, Active Directory, SQL database, and critical infrastructure environments.
  • Familiarity with SIEM tools, log analysis, and incident response workflows.
  • Familiarity with PCI DSS 4.0+ security requirements.
  • Working knowledge of networking protocols, system hardening, and asset inventory practices.
  • Strong analytical, communication, and collaboration skills.

Preferred:

  • Experience supporting or securing tolling systems, traffic management infrastructure, or roadside equipment.
  • Knowledge of security frameworks such as PCI DSS, NIST 800-53, NIST 800-82, or CIS Controls.
  • Certifications such as GICSP, GCIA, CompTIA Security+, or CISSP.
  • Experience working with third-party vendors and supporting environments with both state-managed and vendor-managed components.
  • Requirements: Experience supporting or securing tolling systems, traffic management infrastructure, or roadside equipment

Please find the below skill matrix for the below requirement.

Skill

Years Used

Last Used

Bachelor s degree in Cybersecurity, Information Technology, Engineering, or a related field; OR equivalent experience.

3+ years of experience in cybersecurity, with at least 1 year supporting azure, IIS, Active Directory, SQL database, and critical infrastructure environments.

Familiarity with SIEM tools, log analysis, and incident response workflows.

Familiarity with PCI DSS 4.0+ security requirements.

Working knowledge of networking protocols, system hardening, and asset inventory practices.

Strong analytical, communication, and collaboration skills.

Experience supporting or securing tolling systems, traffic management infrastructure, or roadside equipment.

Knowledge of security frameworks such as PCI DSS, NIST 800-53, NIST 800-82, or CIS Controls.

Certifications such as GICSP, GCIA, CompTIA Security+, or CISSP.

Experience working with third-party vendors and supporting environments with both state-managed and vendor-managed components.

Experience supporting or securing tolling systems, traffic management infrastructure, or roadside equipment

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.