What are the responsibilities and job description for the IT Security Spec position at Florida Blue?
IT SECURITY SPECIALIST
Jacksonville, Florida
Job Duties:
- Ensuring all users in the organization have the appropriate levels of access to applications, systems and data resources;
- Evaluating and maintaining procedures to safeguard information systems assets from intentional or inadvertent access or destruction;
- Ensuring compliance with security regulations and laws;
- Recommending and implementing changes to enhance security controls and prevent unauthorized access;
- Executing role based implementation, role management, and access governance; implementing and managing the enterprise security support model for new applications;
- Monitoring systems, networks, servers, and databases for potential system breaches;
- Responding to alerts from information security tools;
- Promoting security awareness programs, assessing gaps and implementing solutions;
- Performing end-to-end completion of security requests;
- Providing user security roles and managing security groups across systems, platforms, databases, applications, servers, directors and folders;
- Analyzing existing role structures to improve and streamline structures, security administration and improve end-user experience;
- Employing highly sensitive security access for outsourced vendors and ensuring compliance with policy, regulations and contractual requirements;
- Executing highly sensitive emergency processes;
- Creating and maintaining application scripts and using application specific tools to create and manage application security;
- Tracking and documenting security issues and requests;
- Planning, coordinating, communicating, testing and implementing audits, ensuring that access entitlements are appropriate for job requirements;
- Creating and coordinating completion of detailed security reports to fulfill audit, management or business owner requirements;
- Interfacing with users to understand new capabilities, implement procedures, ensure security procedures have been communicated properly and are being followed;
- Providing input to drive process improvements;
- Working closely with business areas and IT partners on troubleshooting;
- Maintaining and creating operational procedures and maintaining security knowledge base;
- Performing system monitoring activities, identifying and evaluating security threats, breaches and vulnerabilities; responding to security alerts;
- Acting as liaison for internal and external audit requests and activities;
- Leading remedial activities as the result of audit findings;
- Defining scope of operational initiatives and adjusting priorities to support workload;
- Providing leadership and guidance to work teams and end users on security policies, standards and procedures and processes;
- Investigating business processes to understand and implement security requirements;
- Weighing business needs and security risks;
- Researching solutions, and working with vendors to enhance the Security Monitoring Program;
- Coordinating and documenting exceptions to security policy as directed by the Exception Governance Team; and
- Developing training content as needed.
Job Requirements:
- Bachelor’s Degree in Computer Science or a related engineering or technical field and 3 or more years of work experience in the job offered, or in an IT security analyst or related role or a Master’s Degree in Computer Science or a related engineering or technical field and 1 or more years of work experience in the job offered, or in an IT security analyst or related role
- Experience with SDLC
- Experience with Information Security concepts, protocols, industry best practices, and regulatory requirements
- Experience with RACF
- Experience with Active Directory groups and user accounts, and Windows folder structures and folder security
- Experience with UNIX/Linux security and tools used to administer security
- Experience with LDAP groups and user accounts and tools used to administer security
- Experience with database security and tools used to administer security within the various databases including UDB, DB2, SQL and Oracle
- Experience with security management tools
- Experience with Splunk Search Processing Language (SPL)
- Experience with Splunk Common Information Model (CIM)
- Experience creating dashboards, reports and visualizations in Splunk Enterprise Security
Qualified applicants may apply with Blue Cross and Blue Shield of Florida, Inc. by visiting www.floridablue.com.
We are an Equal Opportunity/Protected Veteran/Disabled Employer committed to creating a diverse, inclusive and equitable culture for our employees and communities.