The SC Public Employee Benefit Authority (PEBA) is the administrator and co-trustee of retirement and insurance programs for over half a million active and retired public employees of the State of South Carolina and their dependents.
Under limited supervision, this position plans, monitors, documents, and maintains the agency’s security software, network infrastructure, and cloud environments.
Job responsibilities include:
- Monitoring security tools and dashboards (endpoints, email, identity, network, cloud), triaging alerts and prioritizing by risk and business impact, and escalating per established procedures.
- Providing incident response: documenting findings, collecting and preserving evidence, identifying affected systems/accounts, and assisting senior staff with containment and remediation activities. Maintains incident records, timelines, metrics, and audit documentation.
- Supporting vulnerability management by reviewing scan results, validating findings, tracking corrective actions, and coordinating with technical teams to resolve identified risks. Develops, assesses, and measures baseline security configurations for on-premises and hosted (i.e., cloud) technology services, operating systems, applications, networking, and related equipment.
- Intaking and triaging reported security concerns (phishing, suspicious activity, compromised accounts, lost devices), and routing/escalating cases per standard operating procedures.
- Following security policies and procedures, assisting with access reviews and security-awareness activities, and maintaining knowledge of emerging threats, vulnerabilities, and recommended defensive practices. Consults with users and management to implement and improve security controls, processes, and routines.
A bachelor's degree in information technology systems, computer science, or a related field and at least three years of experience in the information technology field to include experience in a security-focused role. Relevant experience may be substituted for the bachelor's degree on a year-for-year basis.
Working knowledge of computer systems, server visualization environments, web filtering, firewall administration. Experience with administering and maintaining Windows/Linux servers and workstation operating systems. Ability to independently deploy, manage, measure, and audit system and network security. Broad knowledge of application, hosted service, and cloud security principles. Knowledge of information risk concepts and principles, with the ability to relate them to business needs and security controls. Must have excellent written and oral communication skills, problem solving skills, strong analysis and troubleshooting skills, and experience working in a technical team environment.
In addition to 13 paid holidays, this position is eligible for comprehensive insurance programs, retirement plans, and a generous paid leave program.