Senior Information Security Operations Specialist

2 weeks ago


Sacramento, CA, United States State of California Full time

Per CCR 249.3, this job control may be used to fill subsequent vacancies.

This position is being re-advertised to extend the final filing date from September 9, 2025 to January 26, 2026. Applications submitted previously are still being considered.

Are you an enthusiastic and motivated individual looking for a diverse, challenging, and rewarding position in a highly team-oriented environment? The California Department of Food and Agriculture's (CDFA) Information Technology Services Division's (ITSD) Information Security Office (ISO) is seeking a conscientious professional with a proven record as an Information Security Specialist with experience in information security program operations, analysis, evaluation, and reporting.

Under the general direction of the Information Technology Manager I (Agency Information Security Officer), the IT Specialist II (ITS II) works in the CDFA Information Security Office (ISO) performing critical information security (InfoSec) operational, maintenance, support, planning, research, analysis, and reporting work to help identify, respond to, reduce, and remove risks to the Department's critical applications and services. The position also assists in creation and upkeep of mandatory policies, procedures, plans, standards, and guidelines related to cybersecurity, and performs risk assessments and service reviews for systems and solutions as needed.

Candidates may perform these essential functions with or without reasonable accommodation.

You will find additional information about the job in the Duty Statement .

Working Conditions

The duties of this position are primarily conducted indoors in an office environment. The incumbent will have a workstation with modular furniture, an adjustable rolling chair, a computer with various software programs, a telephone with voicemail, and stationary filing drawers and bins. The position requires the ability to sit for extended periods of time and operate a personal computer utilizing a mouse and keyboard.

The incumbent must be able to give presentations, participate in meetings, and interact with other staff. They must also be able to: push buttons on a keyboard, calculator, photocopy machine, facsimile machine, and telephone; grasp papers, small objects, and manuals; access upper and lower files and cabinets; and exert up to 15 lbs. of force occasionally and/or a negligible amount of force frequently in order to move or position objects.

Travel to various CDFA facilities and sites throughout the State as needed using various means of transportation systems; overnight stays and weekend and off-shift work may be required.

Regular or recurring telework may occur as part of the incumbent's ongoing regular schedule in accordance with CDFAs Telework Policy.

Position exists in downtown Sacramento. CDFA's Headquarters office is located at 1220 N Street, Sacramento, California.

Close to major freeways, light rail and transit stops

Close to the California State Capitol Museum

Close to downtown shopping and restaurants

Close to the Sacramento Convention Center

Close to the Golden 1 Center

Minimum Requirements You will find the Minimum Requirements in the Class Specification.

  • INFORMATION TECHNOLOGY SPECIALIST II
Additional Documents
  • Job Application Package Checklist
  • Duty Statement
Position Details Job Code #:
JC-488846

Position #(s):
014-005-1414-002

Working Title:
Senior Information Security Operations Specialist

Classification:
INFORMATION TECHNOLOGY SPECIALIST II $8,625.00 - $11,557.00 A
New to State candidates will be hired into the minimum salary of the classification or minimum of alternate range when applicable.

# of Positions:
1

Work Location:
Sacramento County

Telework:
Hybrid

Job Type:
Permanent, Full Time

Department Information
The Information Technology Services Division (ITSD) is responsible for the oversight and management of all information technology and telecommunications activities including, but not limited to, information technology, information security, and telecommunications personnel, contractors, systems, assets, projects, purchases, and contracts. ITSD is tasked with ensuring compliance with state information technology policy and conformance to state information technology and telecommunications policy and enterprise architecture. The range of services that ITSD provides encompasses the areas of Technology Governance, Applications Development Services, Customer Support and Services, IT Infrastructure Operations, Enterprise Architecture, Procurement, and Information Security. ITSD provides IT services to over 2,000 employees in eight major program areas as well as executive and administrative staff distributed over 100 locations throughout the state.

Special Requirements
A Statement of Qualifications in the form of a Supplemental Questionnaire is REQUIRED . The Supplemental Questionnaire will be considered the first phase of the hiring process for this position. If no Supplemental Questionnaire is included, if it does not follow the correct format, or if it does not directly address the required prompts below, you will not be considered for the position. If your Supplemental Questionnaire responses are competitive, you will be invited to an interview. The Supplemental Questionnaire must be typed, no more than three (3) pages in length, not less than 12-point font, single-spaced, in standard letter-sized document format (8.5" x 11") with margins not less than one (1) inch, and include your first and last name at the top of each page, adhering to the margin limitations above. Each response must be numbered based on the following prompts and must include information that fully addresses each prompt in its entirety. Generative AI tools and output must NOT be used in responding to the Supplemental Questionnaire.

1. Describe the knowledge, skills, and abilities you developed while working in information technology roles that correlate directly and specifically to being a successful information security operations specialist as represented in the Duty Statement.

2. Describe a time when you had to learn or implement a new highly technical skill, solution, or role that you had very little exposure to or knowledge of. What skills and abilities enabled you to be successful?

3. For each of the identified tools/solutions, please provide detailed information showing all your working experience, level of expertise/use, and months/years of experience with each:
  • Any Web Application Firewall (WAF) solution(s)
  • Any Dynamic Application Security Testing (DAST) solution(s)
  • Any SIEM solution(s)
  • Any EPP/EDR/XDR solution(s)
  • Any vulnerability management solution(s)
  • Any Identity and Access Management solution(s)
  • Any security awareness and training solution(s)
  • Any scripting and/or data query languages

Resumés and/or cover letters DO NOT take the place of the Supplemental Questionnaire. Applications received without proper Supplemental Questionnaire responses to all prompts will not receive further consideration and will be excluded from the hiring process.

Application Instructions
Dates printed on Mobile Bar Codes, such as the Quick Response (QR) Codes available at the USPS, are not considered Postmark dates for the purpose of determining timely filing of an application.
Final Filing Date: Until Filled
Who May Apply
Individuals who are currently in the classification, eligible for lateral transfer, eligible for reinstatement, have list or LEAP eligibility, are in the process of obtaining list eligibility, or have SROA and/or Surplus eligibility (please attach your letter, if available). SROA and Surplus candidates are given priority; therefore, individuals with other eligibility may be considered in the event no SROA or Surplus candidates apply.

Applications will be screened and only the most qualified applicants will be selected to move forward in the selection process. Applicants must meet the Minimum Qualifications stated in the Classification Specification(s).

How To Apply
Complete Application Packages (including your Examination/Employment Application (STD 678) and applicable or required documents) must be submitted to apply for this Job Posting. Application Packages may be submitted electronically through your CalCareer Account at www.CalCareers.ca.gov. When submitting your application in hard copy, a completed copy of the Application Package listing must be included. If you choose to not apply electronically, a hard copy application package may be submitted through an alternative method listed below:

Address for Mailing Application Packages

You may submit your application and any applicable or required documents to:

Department of Food & Agriculture
Attn: Human Resource Branch JC-488846
1220 N Street, Room 242

Sacramento , CA 95814

Address for Drop-Off Application Packages

You may drop off your application and any applicable or required documents at:

Department of Food & Agriculture

Human Resource Branch JC-488846
1220 N Street, Room 242

Sacramento , CA 95814
ELECTRONIC APPLICATION IS PREFERRED. All mail or drop-off applications must include JC-488846
08:00 AM - 05:00 PM

Required Application Package Documents

The following items are required to be submitted with your application. Applicants who do not submit the required items timely may not be considered for this job:
  • Current version of the State Examination/Employment Application STD Form 678 (when not applying electronically), or the Electronic State Employment Application through your Applicant Account at www.CalCareers.ca.gov. All Experience and Education relating to the Minimum Qualifications listed on the Classification Specification should be included to demonstrate how you meet the Minimum Qualifications for the position.
  • Resume is required and must be included.
  • Statement of Qualifications -
    A completed Statement of Qualifications (SOQ) must be submitted with your State Application to be considered. The SOQ must follow the specifics as stated in the "Special Requirements" section.
Applicants requiring reasonable accommodations for the hiring interview process must request the necessary accommodations if scheduled for a hiring interview. The request should be made at the time of contact to schedule the interview. Questions regarding reasonable accommodations may be directed to the EEO contact listed on this job posting.

Desirable Qualifications In addition to evaluating each candidate's relative ability, as demonstrated by quality and breadth of experience, the following factors will provide the basis for competitively evaluating each candidate:

Knowledge of:
  • Analytical procedures and methods
  • The functions of California State Government, including the principles, practices, policies, and reporting requirements of the California Office of Information Security (OIS)
  • The California State Administrative Manual (SAM) and Statewide Information Management Manual (SIMM)
  • The application of security policies and procedures, security and privacy awareness programs, business continuity, technical, disaster, and operational recovery plans; and the National Institute of Technology (NIST) 800-53 security and privacy controls framework
  • Administration and support of information security and infrastructure services, solutions, and tools including:
    • Web Application Firewall solutions, like Microsoft Front Door;
    • Dynamic Application Security Testing solutions, like Invicti DAST;
    • Security Information and Event Management solutions, such as Microsoft Sentinel;
    • Endpoint Protection Platforms and Extended Detection and Response solutions, such as the Microsoft Defender Suite and Defender XDR;
    • Vulnerability management solutions, such as Microsoft Defender Vulnerability Management;
    • Identity and Access Management systems, such as Microsoft Active Directory and/or Azure Entra ID;
    • Security awareness and training platforms, such as KnowBe4;
    • Scripting and data query tools, such as Microsoft PowerShell, Microsoft SQL, and Kusto Query Language; and
    • Common programming languages and platforms, like MS .NET, C#, or Java.

Ability to:
  • Effectively communicate, both verbally and in writing
  • Develop clear, accurate, and concise reports, correspondence, issue papers, memorandums, and other types of written communication
  • Network, communicate, and interface effectively with business and technical personnel with various levels of IT knowledge
  • Demonstrate strong interpersonal skills
  • Provide technical guidance for lower-level staff and State contractors/consultants
  • Apply technical knowledge effectively and methodically
  • Provide information security operational support services that adhere to Departmental policies and procedures and other governing State laws.

Benefits Benefit information can be found on the CalHR website and the CalPERS website.

Contact Information
The Hiring Unit Contact is available to answer questions regarding the position or application process.
Hiring Unit Contact:
Rudy Martinez
(916) 208-0046
rudy.martinez@cdfa.ca.gov

Please direct requests for Reasonable Accommodations to the interview scheduler at the time the interview is being scheduled. You may direct any additional questions regarding Reasonable Accommodations or Equal Employment Opportunity for this position(s) to the Department's EEO Office.
EEO Contact:
Office of Civil Rights
(916) 654-1005
Civil_Rights@cdfa.ca.gov
California Relay Service: 1-800-735-2929 (TTY), 1-800-735-2922 (Voice) TTY is a Telecommunications Device for the Deaf, and is reachable only from phones equipped with a TTY Device.

Hard Copy Applications

If you are dropping off or mailing in your application, please use the Examination/Employment Application, STD 678 Revised 06/2024 version.

Additional Information

Please do not include any confidential information such as social security number, marital status, ethnicity, age, salary or disability information on any of the documentation uploaded with your online application.

If the classification you are applying for has an education requirement, transcripts will be required to verify you meet the minimum qualifications of the classification. Please be sure to redact any confidential information before uploading your transcripts.

Upon hire you may be required to provide official sealed transcripts or an original degree or certificate.

Applicants with foreign degrees may be asked to provide an official foreign transcript evaluation which indicates course work is equivalent to a degree from an accredited U.S. College or University.

This position may require a medical clearance.

Equal Opportunity Employer
The State of California is an equal opportunity employer to all, regardless of age, ancestry, color, disability (mental and physical), exercising the right to family care and medical leave, gender, gender expression, gender identity, genetic information, marital status, medical condition, military or veteran status, national origin, political affiliation, race, religious creed, sex (includes pregnancy, childbirth, breastfeeding and related medical conditions), and sexual orientation.

It is an objective of the State of California to achieve a drug-free work place. Any applicant for state employment will be expected to behave in accordance with this objective because the use of illegal drugs is inconsistent with the law of the State, the rules governing Civil Service, and the special trust placed in public servants.

  • Sacramento, CA, United States Blue Shield of CA Full time

    Your Role This role supports Stellarus within the Ascendiun Family of Companies.The Risk Management & Controls Assurance team delivers actional insights by quantifying IT and business risk to increase resilience while driving a security culture. We are seeking an Information Security Risk & Governance Specialist who will report to the Senior Manager. The...


  • Sacramento, CA, United States Blue Shield of CA Full time

    Your Role This role supports Stellarus within the Ascendiun Family of Companies.The Risk Management & Controls Assurance team delivers actional insights by quantifying IT and business risk to increase resilience while driving a security culture. We are seeking an Information Security Risk & Governance Specialist who will report to the Senior Manager. The...


  • Sacramento, CA, United States Blue Shield of CA Full time

    Your Role This role supports Stellarus within the Ascendiun Family of Companies.The Risk Management & Controls Assurance team delivers actional insights by quantifying IT and business risk to increase resilience while driving a security culture. We are seeking an Information Security Risk & Governance Specialist who will report to the Senior Manager. The...


  • Sacramento, CA, United States Blue Shield of CA Full time

    Your Role This role supports Stellarus within the Ascendiun Family of Companies.The Risk Management & Controls Assurance team delivers actionable insights by quantifying IT and business risk to increase resilience while driving a security culture. We are seeking an Information Security Risk & Governance Specialist who will report to the Senior Manager. The...


  • Sacramento, CA, United States Blue Shield of CA Full time

    Your Role This role supports Stellarus within the Ascendiun Family of Companies.The Risk Management & Controls Assurance team delivers actionable insights by quantifying IT and business risk to increase resilience while driving a security culture. We are seeking an Information Security Risk & Governance Specialist who will report to the Senior Manager. The...


  • Sacramento, CA, United States Blue Shield of CA Full time

    Your Role This role supports Stellarus within the Ascendiun Family of Companies.The Risk Management & Controls Assurance team delivers actionable insights by quantifying IT and business risk to increase resilience while driving a security culture. We are seeking an Information Security Risk & Governance Specialist who will report to the Senior Manager. The...


  • Sacramento, CA, United States Blue Shield of CA Full time

    Your Role This role supports Stellarus within the Ascendiun Family of Companies.The Risk Management & Controls Assurance team delivers actionable insights by quantifying IT and business risk to increase resilience while driving a security culture. We are seeking an Information Security Risk & Governance Specialist who will report to the Senior Manager. The...


  • Sacramento, CA, United States River City Bank Full time

    Job Type Full-time Description The Director of Information Security is responsible for establishing and maintaining the overall information security program within the Bank. The Director is responsible for providing leadership, strategic direction, and guidance to ensure the confidentiality, integrity, and availability of the Bank's information assets. The...


  • Sacramento, CA, United States eTeam Full time

    Job Title: Data Security Specialist Job Location - Sacramento, CA Job Description: A Data Security Specialist is responsible for protecting an organization's sensitive information by designing, implementing, and maintaining robust security measures. This role focuses on identifying vulnerabilities, preventing data breaches, and ensuring compliance with...


  • Sacramento, CA, United States State of California Full time

    INFORMATION TECHNOLOGY SPECIALIST I - INFORMATION TECHNOLOGY DIVISION / FIELD SERVICES / CHANNEL COAST DISTRICT OFFICE - CARPINTERIA, CA The reporting location for this position is the Channel Coast District - Carpinteria, CA. This position will work under the direction of the Information Technology Supervisor II. California State Parks is looking for a...