OMNI Human Resource Management

Security Analyst III

Client
Johnson County Government
Job Location(s)
US-KS-Olathe
Industry
Services - Government
Position Category
Professional

Overview

joco

Founded in 1855, Johnson County, Kansas is one of the nation’s premier counties, providing comprehensive services to its citizens in its role as the leading organization in the Kansas City metropolitan area. The Johnson County community is nestled in the southwestern quadrant of the Kansas City metropolitan area along with the Kansas/Missouri border and exhibits all the hallmarks of a great, largely suburban community: a thriving and growing business sector; nationally recognized public schools; first-class cultural and recreational amenities; and distinctive and welcoming neighborhoods.

 

Johnson County (Kansas) Government is excited to announce the search for a Security Analyst III. This critical cybersecurity leadership role will help safeguard the County’s technology environment and information assets while supporting the delivery of essential public services. The Security Analyst III will serve as a senior key contributor in strengthening the County’s overall security posture, leading major security initiatives, and advancing security automation and threat protection capabilities across the organization.

 

This highly technical and strategic professional will bring demonstrated experience in cybersecurity operations, risk management, security architecture, and incident response. The ideal candidate will possess deep expertise in email security, threat detection, vulnerability management, and security automation, with strong experience leveraging Microsoft security technologies, including Microsoft Defender for Office 365 Plan 2. This position offers an exciting opportunity to drive innovation, improve security processes, and help shape the future of cybersecurity within one of the region’s most respected local governments.

 

Reporting to the Cyber Security & Risk Manager, the Security Analyst III will work collaboratively with technology teams, department leaders, and business stakeholders to identify risks, implement controls, and ensure compliance with regulatory and industry standards. Johnson County is committed to ongoing professional development and encourages participation in advanced training opportunities, including SANS cybersecurity courses and other specialized programs.

Responsibilities

Security Operations & Risk Management

  • Strengthen the County's cybersecurity posture through evaluation of security technologies, processes, and controls.
  • Conduct risk assessments of systems, applications, and proposed technology changes to identify security vulnerabilities.
  • Develop and maintain security policies, procedures, and standards aligned with industry best practices.
  • Monitor compliance with applicable security, privacy, and regulatory requirements.
  • Analyze and respond to security incidents, advisories, alerts, and emerging threats across County systems.

 

Threat Protection, Vulnerability Management & Automation

  • Optimize Microsoft Defender for Office 365 Plan 2 capabilities, including threat protection, phishing detection, and automated investigation and response.
  • Develop and maintain security automation workflows to improve vulnerability management and incident response processes.
  • Conduct vulnerability scans, penetration testing, and security assessments of infrastructure and applications.
  • Lead web application security testing efforts and coordinate remediation with development teams.
  • Perform threat hunting activities using SIEM, EDR, and related security tools.

 

Collaboration, Training & Project Leadership

  • Collaborate with technology teams to standardize and improve security processes across the organization.
  • Conduct Identity and Access Management reporting and auditing activities.
  • Lead security-related projects, including the implementation of new security technologies and tools.
  • Promote secure development practices and provide guidance on secure coding standards.
  • Train end users and support security awareness initiatives throughout the organization.
  • Manage security-related tools, contracts, and vendor relationships.
  • Participate in the cybersecurity on-call rotation.

Qualifications

  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field.
  • 8+ years of information technology experience, including 5+ years in information security, risk management, vulnerability management, and security operations.
  • Experience leading security initiatives, projects, and continuous improvement efforts.
  • Hands-on experience with Microsoft Defender for Office 365 Plan 2, including threat protection, phishing detection, policy management, and automated investigation and response.
  • Experience developing security automation workflows, incident response processes, and threat hunting capabilities using SIEM, SOAR, and EDR technologies.
  • Experience conducting vulnerability assessments, penetration testing, and security reviews across infrastructure, systems, and applications.
  • Working knowledge of network and security management tools, vulnerability management platforms, Active Directory, next-generation firewalls, scripting languages, and Unix-based environments.
  • Experience with Microsoft security technologies, including Active Directory, Exchange, Azure, Entra ID, Purview, and Microsoft Defender solutions.
  • Knowledge of security frameworks, standards, and regulations, including NIST, ISO, CJIS, HIPAA, PCI, CIS Benchmarks, and STIGs.
  • Strong analytical, problem-solving, communication, collaboration, and relationship-building skills, with the ability to explain technical concepts to diverse audiences.
  • Professional cybersecurity certifications such as CISSP, CompTIA Security+, or related credentials are preferred.
  • Experience in security automation, project management, and operational technology environments (SCADA/ICS) is preferred.
  • Valid driver's license required.
  • Willingness to work additional or irregular hours as needed; on call once every four to six weeks.
  • Residency within Johnson County, KS or the greater Kansas City metro is required.

 

Salary and Benefits

The salary range for this position is $107,369 - $147,632 per year, commensurate with qualifications and experience.

  • The organization provides health, dental, and vision insurance; a phone allowance; paid leave; employer-provided HSA contribution; and employer-provided life insurance.
  • Johnson County offers two retirement plans, a mandatory 6% employee participation into a defined benefit plan (KPERS); and a voluntary defined contribution plan with an employer match administered by Voya Financial, with up to a 4% match into a 401(a).
  • Additionally, the County offers supplemental group life insurance, flexible spending accounts, and health savings account.

 

Johnson County Government proudly commits to a work environment in which all individuals are treated with dignity and respect. They embrace diversity and prohibit discrimination against employees and applicants for employment because of race, color, national origin, ancestry, religion (or no religion), creed, sex or gender, sexual orientation, gender identity or expression, pregnancy, age, disability, genetic information, military service or veteran status, citizenship, political affiliation or belief, and any other status or characteristic protected by law. They support an inclusive workplace where employees excel based on personal merit, qualifications, experience, ability, and job performance.

 

OMNI is honored to be retained in this search. We appreciate your referrals to professionals who may have an interest in this outstanding opportunity.

Formal interest accepted through the OMNI Executive Career Portal.

For more information on this position contact: 

 

Stacey Cowan, Senior Search Consultant | scowan@omnihrm.com | 913-653-8085

OMNI Human Resource Solutions

 

OMNI and our clients are Equal Opportunity Employers.

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed