Audit Review & Security Specialist (Agency Information Security Professional 1)- 20068125
United States of America-OHIO-Franklin County-Columbus
Full Time Entry-level / Junior USD 70K - 102K
State of Ohio
Ohio.gov is the official website for the State of Ohio. Find the government information and services you need to live, work, travel, and do business in the state.Organization
: Workers' CompensationAgency Contact Name and Information: Ohio Bureau of Workers' Compensation Human Resources, a84551@bwc.ohio.govUnposting Date
: Mar 28, 2025, 3:59:00 AMWork Location
: William Green Building 30 West Spring Street Columbus 43215-2256Primary Location
: United States of America-OHIO-Franklin County-Columbus Compensation: $35.31- $51.84Schedule
: Full-timeWork Hours: 8:00am- 5:00pmClassified Indicator: ClassifiedUnion: OCSEAPrimary Job Skill
: CybersecurityTechnical Skills: CybersecurityProfessional Skills: Adaptability, Attention to Detail, Collaboration, Critical Thinking, Problem SolvingPrimary Technology: Not Applicable Agency OverviewA Little About Us:
With roughly 1,500 employees in seven offices across Ohio, BWC is the state agency that cares for Ohio workers by promoting a culture of safety at work and at home and ensuring quality medical and pharmacy care is provided to injured workers.
For Ohio employers, we provide insurance policies to cover workplace injuries and safety and wellness services to prevent injuries.
Our Culture:
BWC is a dynamic organization that offers career opportunities across many different disciplines. BWC strives to maintain an inclusive workplace. We begin by being an equal opportunity employer. Employees can participate in and lead employee work groups, participate in on-line forums and learn about how different perspectives can improve leadership skills.
Our Vision:
To transform BWC into an agile organization driven by customer success.
Our Mission:
To deliver consistently excellent experiences for each BWC customer every day.
Our Core Values:
One Agency, Personal Connection, Innovative Leadership, Relentless Excellence.
What our employees have to say:
BWC conducts an internal engagement survey on an annual basis. Some comments from our employees include:
- BWC has been a great place to work as it has provided opportunities for growth that were lacking in my previous place of work.
- I have worked at several state agencies and BWC is the best place to work.
- Best place to work in the state and with a sense of family and support.
- I love the work culture, helpfulness, and acceptance I've been embraced with at BWC.
- I continue to be impressed with the career longevity of our employees, their level of dedication to service, pride in their work, and vast experience. It really speaks to our mission and why people join BWC and then retire from BWC.
If you are interested in helping BWC grow, please click this link to read more, and then come back to this job posting to submit your application!
Job Description
BWC’s core hours of operation are Monday-Friday from 8:00am to 5:00pm, however, daily start/end times may vary based on operational need across BWC departments. Most positions perform work on-site at one of BWC’s seven offices across the state. BWC offers flextime work schedules that allow an employee to start the day as early as 7:00am or as late as 8:30am. Flextime schedules are based on operational need and require supervisor approval.
What You'll Be Doing:
Under general supervision & requires considerable knowledge of electronic data processing, computer science & systems analysis to coordinate responses to IT audit requests.
- Maintaining repository of audit information.
- Developing reporting methodology to ensure accurate tracking of audit responses; utilizes subject matter expertise to correctly identify appropriate sources for each type of information requested.
- Evaluating audit standards such as, NIST 800-53, CIS18, PCI-DSS, against Ohio Bureau of Workers’ Compensation (BWC) controls & countermeasures to ensure compliance with agreed upon standards.
- Performing gap analysis to determine which controls the BWC is out of compliance with & makes recommendations on additional controls.
- Creating, documenting, & maintaining various audit documentation such as POAM (Plan of Action & Milestones) for use by BWC decision makers & project teams.
- Creating documentation to compare audit requirements from various auditing standards so BWC decision makers can better understand requirements
- Evaluating new technology &/or 3rd party cloud services to determine security & compliance requirements prior to purchases
- Creating appropriate documentation on BWC approved forms to guide BWC decision makers, project managers & system implementors to understand security controls, & compliance requirements necessary in any requested technology.
At the State of Ohio, we take care of the team that cares for Ohioans. We provide a variety of quality, competitive benefits to eligible full-time and part-time employees*. For a list of all the State of Ohio Benefits, visit our Total Rewards website! Our benefits package includes:
- Medical Coverage
- Free Dental, Vision and Basic Life Insurance premiums after completion of eligibility period
- Paid time off, including vacation, personal, sick leave and 11 paid holidays per year
- Childbirth, Adoption, and Foster Care leave
- Education and Development Opportunities (Employee Development Funds, Public Service Loan Forgiveness, and more)
- Public Retirement Systems (such as OPERS, STRS, SERS, and HPRS) & Optional Deferred Compensation (Ohio Deferred Compensation)
*Benefits eligibility is dependent on a number of factors. The Agency Contact listed above will be able to provide specific benefits information for this position.
Qualifications
To Qualify, You Must Clearly Demonstrate:
Required Experience and/or Education
- 36 mos. exp. in computer data security either through monitoring system/network traffic for anomalous activity, systems development or controlling accessibility of data.
- Or completion of associate core program in computer science AND 18 mos. trg. or 18 mos. exp. in computer data security either through monitoring system/network traffic for anomalous activity, systems development or controlling accessibility of data.
- Or completion of undergraduate core program in computer science AND 12 mos. trg. or 12 mos. exp. in computer data security either through monitoring system/network traffic for anomalous activity, systems development or controlling accessibility of data.
- Or 12 mos. exp. as Information Technology Apprentice, 69910; successful completion of Ohio Cyber Apprenticeship program AND additional 12 mos. trg. or exp. in Information Systems/Information Technology with a focus in one of the following areas: Software Engineering/Development, Data Analytics/Business Intelligence, Database Administration, Network, or IT Security.
- Or equivalent of Minimum Class Qualifications for Employment noted above.
Note: The Ohio Cyber Apprenticeship program is a program offered by the Department Administrative Services. 2000 hrs. of on-the-job experience and 200 certified instructional credits must be earned in order to complete this program.
Job Skill: Cybersecurity
Professional Skills: Adaptability, Attention to Detail, Critical Thinking, Problem Solving, Collaboration
Major Worker Characteristics:
Knowledge of computer science; systems analysis & design; data security practices & implementation; common adversary tactics, techniques & procedures; data backup, types of backups & recovery concepts & tools; cryptology; encryption methodologies; incident response & handling methodologies; NIST 800-53, CIS18, PCI-DSS *, network traffic analysis methods; scripting language programs (e.g., Power Shell, WMI)*.
Skill in operation of personal computer & associated hardware & software; utilization of network analysis tools to identify vulnerabilities.
Ability to define problems, collect data, establish facts & draw valid conclusions; read & understand variety of technical material; write program specifications & system documentation; communicate verbally & in writing on technical & non-technical matters; maintain confidentiality of sensitive information; cooperate with co-workers on group projects.
(*) Developed after Employment
Supplemental InformationEEO & ADA Statement:
The State of Ohio is an Equal Employment Opportunity Employer and prohibits discrimination and harassment of applicants or employees due to protected classes as defined in applicable federal law, state law, and any effective executive order.
The Ohio Bureau of Workers' Compensation is committed to providing access and reasonable accommodation in its employment opportunities pursuant to the Americans with Disabilities Act and other applicable laws. To request a reasonable accommodation due to disability, please contact ADA Coordinator Kathleen Bourke at 614-644-7811 or by email to: eeodept@bwc.state.oh.us.
BWC OCSEA Selection Rights:
This position shall be filled in accordance with the provisions of the OCSEA Collective Bargaining Agreement. BWC bargaining unit members have selection rights before non-bargaining unit members. All other applications will only be considered if an internal bargaining unit applicant is not selected for this position.
Salary Information:
Hourly wage is expected to be paid at step 1 of the pay range associated with the position for candidates who are new employees of the state. Current employees of the state will be placed in the appropriate step based on any applicable union contract and/or requirements of the Ohio Revised Code. Movement to the next step of the pay range (a roughly 4% increase) will occur after six months, assuming job performance is acceptable. Thereafter, an employee will advance one step in the pay range every year until the highest step of the pay range is reached. There may also be possible cost of living adjustments (COLA) and longevity supplements begin after five (5) years of state service.
Transportation:
Position may require travel; therefore, persons occupying this position must be able to provide own transportation &/or legally operate a state-owned vehicle.
Educational Transcripts:
For any educational achievements to be considered during the screening process, you must at least attach an unofficial transcript that details the coursework you have completed.
All applicants must submit an Ohio Civil Service Application using the online Ohio Hiring Management System. Paper applications will not be accepted.
Background Check:
Prior to an offer of employment, the final applicant will be required to sign a background check authorization form and undergo a criminal background check. Criminal convictions do not necessarily preclude an applicant from consideration for a position.
Ohio is a Disability Inclusion State and strives to be a model employer of individuals with disabilities. The State of Ohio is committed to providing access and inclusion and reasonable accommodation in its services, activities, programs and employment opportunities in accordance with the Americans with Disabilities Act (ADA) and other applicable laws.
Drug-Free WorkplaceThe State of Ohio is a drug-free workplace which prohibits the use of marijuana (recreational marijuana/non-medical cannabis). Please note, this position may be subject to additional restrictions pursuant to the State of Ohio Drug-Free Workplace Policy (HR-39), and as outlined in the posting.
Tags: Agile Analytics Audits Business Intelligence Cloud Compliance Computer Science Data Analytics Encryption Incident response Monitoring NIST NIST 800-53 Scripting Vulnerabilities
Perks/benefits: Career development Competitive pay Flex hours Flex vacation Health care Insurance Medical leave Team events Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.