Mainframe Security Administrator - CDS
Columbia, South Carolina
BlueCross BlueShield of South Carolina
Summary
Companion Data Services provides leading IT solutions and managed services. We operate multiple geographically disperse data centers, including two of the nation’s largest healthcare data centers – both rated among the top five percent of data centers worldwide by MIPS.
With three U.S. locations and decades of experience in government, commercial and education markets, our innovative solutions and reliable services allow clients to focus on core business and improve outcomes.
Our data centers host applications process billions of transactions, supporting state, federal and commercial business.
Description
Position Purpose:
Executes systems administration and troubleshoots anomalies in regard to aspects of security and compliance administration for information technology services. Participates in the development, implementation and securing of enterprise information security strategies and devices. Ensures compliance with various information security policies, standards, guidelines and procedures.
What You'll Do:
Monitors enterprise infrastructure and/or systems in search of suspicious activity. Monitors information traffic to identify abnormal occurrences and to ensure compliance with the corporate security policies and standards. Assists in the response to internal or external controls audits where information security is indicated.
Performs system monitoring evaluations and audits to ensure compliance with the corporate security policies and standards. Validates the configuration and vulnerability compliance of vital technology components such as operating systems, applications, network devices, and appliances.
Researches systems and procedures for the prevention, detection, containment and correction of information security breaches.
Assists in the preparation of daily, weekly and monthly status reports on security matters in order to develop security risk analysis scenarios, metrics, mitigation strategies and response procedures. Assists with vulnerability assessments, running scanning tools, audit log review, and with intrusion detection.
Work Environment: Fast paced, multi-platformed environment which may require action and response 24X7 to support the technical business needs of the customer.
To Qualify for This Position, You'll Need:
Required Education:
Bachelor's degree in a job-related field
Degree Equivalency:
4 years job-related work experience OR
Associate's degree and 2 years job-related work experience
Required Skills and Abilities:
Familiarity with threat analysis risk management, configuration management, business continuity and contingency planning.
Ability to conduct research into security issues and products.
Strong organizational, interpersonal and communication skills.
Excellent attention to detail.
Able to work in a team-oriented, collaborative environment.
Proficiency in system troubleshooting, diagnostic root cause analysis.
Strong analytical and problem-solving abilities.
Required Software and Other Tools:
Basic proficiency with applicable IT Security tools (software and hardware).
Microsoft Office.
We Prefer that You Have:
Ability to work with Auditors and to produce required reports for artifacts and to address findings.
Ability to follow change control and to carefully plan and implement any high-risk security changes.
Ability to work closely in a team environment to help one another and share ideas.
Strong IT security background
Previous experience administrating common network services; configuration of security devices such as firewalls, intrusion prevention, patch deployment, and risk assessment/ vulnerability scanners.
Knowledge of systems administration techniques associated with security event management and correlation systems and compliance validation systems and software. Knowledge of administrative, procedural and technical controls used to reduce security risks. Ability to troubleshoot multi-vendor Security systems issues.
Preferred Licenses and Certificates: CISA, NSA, CISM, CISSP
Preferred Software and Other Tools: Juniper/Cisco Intrusion Detection/Prevention systems, ArcSight product suite, Tennable Nessus scanning software, eEye Retina scanning software, Appsec DBprotect product suite.
Must Have a Willingness to Learn:
Supporting the infrastructure / application environment within a CMS Claims Processing Environment for Part A, Part B and DME Claims
Mainframe Infrastructure and Application skills such as but not limited to z/OS, CICS, RACF, JCL, Vanguard and/or z/Secure Security Tools
Mainframe Security across several areas, IE: RACF, USS, CICS, z/OS.
RACF commands, dataset class, and the RACF general resource classes.
Mainframe DISA STIG.
Running SMF reports (utilizing zSecure) to analyze access to resources.
Working numerous RACF incidents and requests in a given day and ability to update the tickets clearly.
SYSLOG, SMF reports, and the RACF database to diagnose security errors.
The use of RACDCERT command the ability to implement and renew certificates and manipulate rings on the mainframe.
The use of the Vanguard Compliance Manager, z/Secure Admin & Audit software.
Writing REXX code to post-process SMF and Database reports
What We Can Do for You:
Our comprehensive benefits package includes:
· 401(k) retirement savings plan with company match
· Subsidized health plans and free vision coverage
· Life insurance
· Paid annual leave - the longer you work here, the more you earn
· Ten paid holidays
· On-site cafeterias and fitness centers in major locations
· Wellness programs and a healthy lifestyle premium discount
· Tuition assistance
· Service recognition
What to Expect Next:
After submitting your application, our recruiting team members will review your resume to ensure you meet the qualifications. This may include a brief telephone interview or email communication with our recruiter to verify resume specifics and salary requirements. Management will be conducting interviews with those candidates who qualify with prioritization given to those candidates who demonstrate the preferred qualifications.
We participate in E-Verify and comply with the Pay Transparency Nondiscrimination Provision. We are an Equal Opportunity Employer.
Some states have required notifications. Here's more information.
Equal Employment Opportunity Statement
BlueCross BlueShield of South Carolina and our subsidiary companies maintain a continuing policy of nondiscrimination in employment to promote employment opportunities for persons regardless of age, race, color, national origin, sex, religion, veteran status, disability, weight, sexual orientation, gender identity, genetic information or any other legally protected status. Additionally, as a federal contractor, the company maintains Affirmative Action programs to promote employment opportunities for minorities, females, disabled individuals and veterans. It is our policy to provide equal opportunities in all phases of the employment process and to comply with applicable federal, state and local laws and regulations.
We are committed to working with and providing reasonable accommodations to individuals with physical and mental disabilities.
If you need special assistance or an accommodation while seeking employment, please e-mail mycareer.help@bcbssc.com or call 1-800-288-2227, ext. 47480 with the nature of your request. We will make a determination regarding your request for reasonable accommodation on a case-by-case basis.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security ArcSight Audits CISA CISM CISSP Compliance DISA Firewalls Intrusion detection Intrusion prevention Mainframe Monitoring Nessus Risk analysis Risk assessment Risk management
Perks/benefits: 401(k) matching Health care Insurance Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.