An Incident Analyst or Responder investigates an IT-related incident: an unplanned interruption to a service, a reduction in the quality of a service, or an event that has not yet impacted the service to the customer. Works to restore a normal service operation as quickly as possible and to minimize the impact on business operations.
Cybersecurity Analyst City of Sugar Land Sugar Land, TX | Full-Time | Compensation DOE About the City of Sugar Land The City of Sugar Land serves over 110,000 residents and is known for its high quality of life and commitment to innovation. Our team is driven by service, collaboration, and a shared goal of making our community even better. At the City of Sugar Land, we're building a high-performing, innovative community where employees are empowered to make an impact. You'll join a collaborative team, enjoy strong benefits from day one, and have real opportunities to grow your career. We follow our BLAZE values by encouraging bold ideas, fostering a supportive and collaborative team, adapting to change, holding ourselves to high standards, and empowering employees to grow, contribute, and make a meaningful impact. What We Offer Medical, dental, and vision coverage starting Day 1 TMRS pension with 2:1 city match; 457(b) options Paid holidays, vacation, and paid parental leave Wellness programs, mental health resources, and an EAP Career development programs and growth opportunities What We Pay The Cybersecurity Analyst is a non-exempt position, and compensation is considered based on experience and qualifications. The ideal candidate will have 3 - 5 years of hands-on experience in network and server hardening, cybersecurity threat detection and incident response, and disaster recovery planning and execution. In collaboration with IT Operations, this position is responsible for ensuring the organization's technology infrastructure remains secure, resilient, compliant, and protected against evolving cybersecurity threats. What You'll Do as a
Cybersecurity Analyst:
Security Operations & Monitoring Implement, configure, and manage Cisco XDR, Cisco Endpoint Security, and Fortinet Gateways to ensure proactive threat detection and response. Monitor network and endpoint activities for security incidents using advanced SIEM and XDR tools. Investigate, analyze, and respond to security breaches, threats, and vulnerabilities. Network & Infrastructure Security Manage and maintain Cisco Firepower and Cisco ASA firewalls to ensure secure and efficient traffic management. Administer Duo Multi-Factor Authentication (MFA) for secure user access and identity protection. Perform network hardening to reduce the attack surface, following best practices and compliance standards. Server & System Hardening Conduct server hardening across Windows and Linux systems, ensuring compliance with internal and regulatory standards. Review and implement secure configurations, patch management, and vulnerability remediation. Disaster Recovery & Continuity Participate in DR drills and testing to validate readiness and response effectiveness. Policy, Documentation & Compliance Maintain up-to-date documentation of network security configurations, standards, and incident response procedures. Support compliance initiatives (e.g., NIST, ISO 27001, or CIS Controls) through audits and reporting. Required to work as an essential employee before, during and after an emergency or disaster. Stay abreast of, and comply with, all City and departmental policies and procedures. Perform other duties and responsibilities as assigned by your direct supervisor or Director.
What You Bring Formal Education:
A Bachelor's Degree in Computer Science, Engineering or other relevant STEM field or equivalent technical training backed by industry recognized credentials and certifications.
Relatable Work Experience:
Three years of information technology experience with an emphasis on infrastructure and operations. Experience in the following technologies/products is required, Cisco security and firewall applications and appliances, Fortinet security applications and appliances, XDR/MDR, SIEM, NAC, IPS/IDS, IAM, and MFA Training (License and/or Certification): Valid Texas Class "C" Driver License. Must be eligible to obtain and maintain Criminal Justice Information Services (CJIS) clearance.
Required Qualifications:
3-5 years of hands-on experience managing and securing enterprise networks and systems.
Proven experience with:
Cisco XDR, Cisco Firepower, Cisco ASA, Cisco Endpoint Fortinet Gateways Duo MFA Server and Network Hardening Disaster Recovery implementation and testing Strong understanding of TCP/IP, VPNs, IDS/IPS, and secure network design principles. Familiarity with incident response, threat intelligence, and vulnerability management processes. Cisco certifications such as
CCNA, CCNP
(Enterprise, Security, or equivalent). The citizens of Sugar Land depend on City employees before, during and after an emergency or disaster to provide or restore essential public services for the health, safety and quality of life for our community. In the event of a wide scale emergency that could impact our community, all employees must be ready to assist in managing the crisis and will be considered essential for the continuity of governmental operations. Our success is achieved by the courage to do things differently and accept that failure will occur on the path to innovation. The City of Sugar Land is an equal Opportunity employer.