What are the responsibilities and job description for the IT Security Administrator (On-Site) position at Alabama A&M University?
Description
Summary:
Alabama A&M University seeks a highly motivated, creative, dynamic, and collaborative individual to fill the position of Systems and Security Administrator reporting directly to the Chief Information Security Officer. This position is responsible for the installation, configuration, maintenance, and security of all IT systems and networks within an organization. This role involves monitoring and managing both hardware and software systems to ensure maximum uptime, optimal performance, and protection from internal and external security threats. The administrator also designs, implements, and enforces security protocols and policies to safeguard sensitive information and ensure compliance with industry regulations.
Examples of Duties
Duties and Responsibilities:
- Defines and updates security groups and security classes.
- Creates user accounts and assign users to groups in Banner and associated systems.
- Tests security group membership.
- Analyzes and audits security policies and procedures.
- Ensures delivery of high-quality service to end-users. Troubleshoots bugs to identify and fix root causes.
- Performs a periodical review of the security log table for security breaches.
- Configure and manage firewalls, intrusion detection/prevention systems (IDS/IPS), VPNs, and other security tools to safeguard the network.
- Assist with endpoint device security (laptops, desktops, mobile devices) are protected with antivirus, endpoint detection and response (EDR) software, and encryption.
- Regularly monitor network traffic, logs, and system activity for unusual behavior or signs of security breaches.
- Manage access of sign-on (SSO), and other access control mechanisms to ensure only authorized users access sensitive data.
- Perform routine vulnerability assessments and patch management to address security weaknesses across systems and applications.
- Develop and implement incident response plans for managing security breaches or cyberattacks, including root cause analysis and remediation.
- Ensure compliance with industry regulations (e.g., GDPR, HIPAA, PCI-DSS, CMMC) by maintaining secure configurations and performing regular audits.
- Provide regular reports on system performance, security status, and incidents to management.
- Assist with IT policy review and development.
- Proficient in operating systems (Linux, Windows Server, macOS, FreeBSD, Debian).
- Strong knowledge of networking protocols (TCP/IP, DNS, HTTP/S, DHCP, etc.).
- Familiarity with security tools such as firewalls, antivirus software, IDS/IPS, SIEM systems.
- Scripting skills in PowerShell, Bash, or Python for automation
- Typically, full-time, but may require weekends, after-hours work during emergencies, system upgrades, or maintenance windows.
- Other duties assigned.
Typical Qualifications
Minimum Qualifications:
- Bachelor’s Degree in Computer Science, equivalent work experience or IT related field and or equivalent work experience or related certificates.
- 3-5 years of experience in system administration and IT security.
- Experience with both on-premises and cloud-based infrastructure (e.g., AWS, Azure).
- CompTIA Security (or similar security certification).
- Certified Information Systems Security Professional (CISSP) or Certified Ethical Hacker (CEH) is a plus.
- Microsoft Certified: Windows Server or similar systems certifications.
- Cisco Certified Network Associate (CCNA) or other networking certifications are desirable.
Supplemental Information
Knowledge, Skills, and Abilities:
- Ability to work under pressure on multiple projects with minimal supervision and within multiple time constraints.
- Strong interpersonal and communication skill, both oral and written; proven experience in conflict resolution and collaborative problem solving.
- Ability to work in a fast-paced environment with multiple competing priorities.
- Ability to establish and maintain collaborative and harmonious working relationships with a variety of students, faculty, staff, and stakeholders.
- Commitment to a working environment that values a diverse academic experience, inclusive of students, faculty, and staff of various cultural, socioeconomic, and educational backgrounds.
- Ability to work with, articulate the needs and possess strong interpersonal skills to build exceptional rapport with university stakeholders including unit staff, subject matter experts, technical staff, administrators, faculty and students.