Information Technology Security Administrator
U.S. District Court - District of Arizona
·Today
- Salary
- $89k – $145k/yr
- Location
- Phoenix, AZ, AZ, US
- Workplace
- Remote, Hybrid
- Type
- Full-time
- Department
- IT
- Source
- GovernmentJobs
Description
POSITION OVERVIEW
The United States District Court is seeking an Information Technology Security Administrator in Phoenix, Arizona. This position is part of a consolidated Systems Technology Division and reports to a Systems Technology Division Manager. The IT security administrator evaluates, designs, implements and maintains the court’s cybersecurity posture across network infrastructure, cloud and hybrid environments, applications, endpoints and telecommunications. This role serves as a technical specialist and advisor on information security, risk mitigation, incident response and compliance for judges, court executives, probation officers and staff for the District of Arizona, encompassing seven offices and approximately 600 end users.
REPRESENTATIVE DUTIES
- Security strategy and program oversight: Review, evaluate and make recommendations regarding the court’s IT security program, covering network infrastructure, cloud resources (Microsoft 365, Azure and AWS), custom applications, commercial off-the-shelf software, VoIP, and mobile and remote access solutions.
- Threat and vulnerability management: Conduct continuous security assessments, risk analyses and vulnerability scans across planned and installed systems. Identify weaknesses, coordinate patch management and deploy endpoint detection and response (EDR and XDR) tools to mitigate threats. Notify management promptly of critical vulnerabilities.
- Policy and framework administration: Develop, implement and maintain local court security policies, guidance and operational procedures aligned with national judiciary frameworks. Create templates, guidelines, checklists and documentation to support compliance and Zero Trust security principles.
- Advisory and training services: Provide technical advice on IT security architecture, data protection and risk management to judges, court unit executives and IT management. Develop and deliver cybersecurity awareness training and documentation for court personnel.
- Security operations and tool management: Act as team lead in configuring, administering and monitoring automated security tools, including next-generation firewalls, intrusion detection and prevention systems, web security gateways, SIEM and SOAR platforms (such as Splunk and Microsoft Sentinel), and identity management systems. Monitor SPAM mailbox for Phishing attempts and scan suspicious attachments as needed.
- Automation and scripting: Write and maintain scripts using PowerShell, Python and Bash to automate security checks, streamline administrative workflows, enforce system configurations and parse security logs.
- Infrastructure and identity management: Perform advanced Active Directory and Microsoft Entra ID security architecture design, Group Policy Object management and access control enforcement. Support secure end-user workstation settings, virtual server infrastructure, multi-factor authentication, and Zero Trust network access solutions.
- Incident response and collaboration: Coordinate and execute incident response procedures. Collaborate with key judiciary stakeholders, including the Administrative Office, the 9th Circuit IT security officer, federal court IT peers and commercial service providers.
- Network and systems engineering support: Provide specialized technical support for local and wide area network infrastructure, virtualized server environments (VMware vSphere), storage area networks, IP routing and switching, enterprise wireless (802.11xx), and converged courtroom audio-video and VoIP technologies.
- Special projects: Assist with technical architecture for new or renovated court spaces, participate in special IT projects and perform other technical support duties as assigned.
- Security strategy and program oversight: Review, evaluate and make recommendations regarding the court’s IT security program, covering network infrastructure, cloud resources (Microsoft 365, Azure and AWS), custom applications, commercial off-the-shelf software, VoIP, and mobile and remote access solutions.
- Threat and vulnerability management: Conduct continuous security assessments, risk analyses and vulnerability scans across planned and installed systems. Identify weaknesses, coordinate patch management and deploy endpoint detection and response (EDR and XDR) tools to mitigate threats. Notify management promptly of critical vulnerabilities.
- Policy and framework administration: Develop, implement and maintain local court security policies, guidance and operational procedures aligned with national judiciary frameworks. Create templates, guidelines, checklists and documentation to support compliance and Zero Trust security principles.
- Advisory and training services: Provide technical advice on IT security architecture, data protection and risk management to judges, court unit executives and IT management. Develop and deliver cybersecurity awareness training and documentation for court personnel.
- Security operations and tool management: Act as team lead in configuring, administering and monitoring automated security tools, including next-generation firewalls, intrusion detection and prevention systems, web security gateways, SIEM and SOAR platforms (such as Splunk and Microsoft Sentinel), and identity management systems. Monitor SPAM mailbox for Phishing attempts and scan suspicious attachments as needed.
- Automation and scripting: Write and maintain scripts using PowerShell, Python and Bash to automate security checks, streamline administrative workflows, enforce system configurations and parse security logs.
- Infrastructure and identity management: Perform advanced Active Directory and Microsoft Entra ID security architecture design, Group Policy Object management and access control enforcement. Support secure end-user workstation settings, virtual server infrastructure, multi-factor authentication, and Zero Trust network access solutions.
- Incident response and collaboration: Coordinate and execute incident response procedures. Collaborate with key judiciary stakeholders, including the Administrative Office, the 9th Circuit IT security officer, federal court IT peers and commercial service providers.
- Network and systems engineering support: Provide specialized technical support for local and wide area network infrastructure, virtualized server environments (VMware vSphere), storage area networks, IP routing and switching, enterprise wireless (802.11xx), and converged courtroom audio-video and VoIP technologies.
- Special projects: Assist with technical architecture for new or renovated court spaces, participate in special IT projects and perform other technical support duties as assigned.
MINIMUM QUALIFICATIONS
Minimum of three years of progressively responsible, specialized IT security experience, including at least two years equivalent to work at the CL 28 level.
- Specialized experience: Progressively responsible experience that is in, or closely related to, the work of the position that has provided the particular knowledge, skills, and abilities to successfully perform the duties of the position. Experience must demonstrate in-depth technical knowledge of systems analysis, network administration, cybersecurity operations and incident response.
- Physical and operational requirements: Ability to lift a minimum of 50 pounds and physical mobility to access equipment in tight or elevated spaces (such as under desks and server racks). Strong analytical troubleshooting and customer service skills are required. Candidates must be available for occasional after-hours and weekend work, as well as periodic overnight travel.
PREFERRED QUALIFICATIONS
Education: A bachelor’s degree from an accredited college or university in cybersecurity, information technology, computer science, computer engineering or a closely related field is strongly preferred.
Industry certifications:
Holding one or more active, industry-recognized security certifications is highly preferred, such as:
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- CompTIA Security+ or Cybersecurity Analyst (CySA+)
- Certified Ethical Hacker (CEH)
- GIAC Security Essentials (GSEC) or GIAC Certified Incident Handler (GCIH)
- Certified Cloud Security Professional (CCSP)
Technical expertise:
- Scripting and automation: Strong practical proficiency in PowerShell, Python, Bash and SQL for automation, log analysis and system administration.
- Cloud security and identity: Experience securing AWS, Azure, Microsoft 365, and Microsoft Entra ID environments, including least-privilege IAM/RBAC, privileged-access management, Conditional Access, cloud audit logging, and integration of CloudTrail, Azure Activity Logs, Entra ID sign-in and audit logs, and Microsoft 365 audit logs with SIEM platforms.
- Operating Systems: Advanced knowledge in Windows client and Windows Server operating systems, Red Hat Enterprise Linux, MacOS, iOS
- Security and network tools: Proven experience with EDR and XDR platforms (such as Microsoft Defender for Endpoint, Qualys and CrowdStrike), SIEM tools (such as Splunk), packet analyzers (such as Wireshark), next-generation firewalls (such as Palo Alto and Cisco), VPN, Zero Trust network access, and IPSec. Vulnerability management and remediation using scanning tools like Tenable Nessus or Qualys. Network discovery tools and port scanners (such as Nmap)
- Virtualization and infrastructure: Knowledge of VMware vSphere, virtual desktop infrastructure frameworks, Cisco core and access switching, enterprise Wi-Fi networks, storage area network environments, and secure data backup and disaster recovery utilities.
- Environment: Experience operating within a federal court environment or working with specialized federal judiciary applications.
Please visit our website at https://www.governmentjobs.com/careers/azduscourts.
Applications are only accepted on our website.
Applicants must submit the following with their online application:
- Cover letter that supports your work experience as it relates to the position.
- Resume that includes complete work and salary history, and education
Applications will be considered complete when the online application and all required attachments (in proper format) are received by the Human Resources Division. Applications and/or attachments received after the closing date may not be considered.
The Court reserves the right to modify the conditions of this job announcement, or to withdraw the announcement, any of which may occur without prior written or other notice. In the event that a position becomes vacant in a similar classification, within a reasonable time of the original announcement, the court may elect to select a candidate from the applicants who responded to the original announcement without posting the position.
Only qualified applicants will be considered for this position. Employees of the U.S. District Court serve under "Excepted Appointments" and are considered "at will" employees (except for probation officers who may be removed for cause). Federal Civil Service classifications or regulations do not apply; however, court employees are entitled to substantially the same benefits as other Federal Government employees.
The U.S. District Court is a drug-free workplace and the applicant selected will be required to participate in a drug screening test prior to employment.
All information provided by applicants is subject to verification and background investigation. Applicants are advised that false statements or omission of information on any application materials or the inability to meet the following conditions may be grounds for non-selection, withdrawal of an offer of employment or dismissal after being employed.
Participation in the interview process will be at the applicant's own expense and relocation expenses will not be provided.
The initial appointment to this position is provisional pending the successful completion of the required background checks and/or investigations.
All promotions are subject to the approval of the Administrative Office of the U.S. Courts.
The position is subject to the mandatory electronic fund transfer (EFT) participation for payment of net pay (i.e. Direct Deposit).
Non-citizens may be interviewed and considered for employment, but employment offers will only be made to individuals who qualify under one of the exceptions in 8 U.S.C. §1324b(a)(3)(B). In most cases, this means that an offer of employment cannot be made unless the candidate is a lawful permanent resident who is seeking U.S. citizenship as explained below. Under 8 U.S.C. §1324b(a)(3)(B), a lawful permanent resident seeking citizenship may not apply for citizenship until he or she has been a permanent resident for at least five years (three years if seeking naturalization as a spouse of a citizen), at which point he or she must apply for citizenship within six months of becoming eligible, and must complete the process within two years of applying (unless there is a delay caused by the processors of the application). Non-citizens who have not been permanent residents for five years will be required to execute an affidavit that they intend to apply for citizenship when they become eligible to do so.

