Commonwealth of Pennsylvania

POSITION DESCRIPTION FOR JOB POSTING

Position Number:  00072725

Description Activated On:  9/22/2026 3:16:30 PM


Position Purpose:
Describe the primary purpose of this position and how it contributes to the organization’s objectives. Example: Provides clerical and office support within the Division to ensure its operations are conducted efficiently and effectively. 

This position is assigned to Security Operations within the Enterprise Information Security Office and involves administrative and advanced technical work directing security hardware and software infrastructure for enterprise-wide security administration, planning, design, and implementation in alignment with the public policy objectives of the Governor’s Policy Office and the security and network policies of the Enterprise Information Security Office. The role provides technical control over security operations supporting firewall management applications, load balancing and proxy services, and their associated infrastructure, working closely with various service delivery teams and the broader Enterprise to help them achieve business objectives while reducing the risk of information misuse and denial-of-service incidents.

Description of Duties:
Describe in detail the duties and responsibilities assigned to this position. Descriptions should include the major end result of the task. Example: Types correspondence, reports, and other various documents from handwritten drafts for review and signature of the supervisor.

This is an advanced and highly technical position within the OA/EISO Security Operations Section. This individual is responsible for configuring, implementing, and maintaining security policies at access points to Commonwealth networks including the Internet, delivery center firewalls, delivery center network intrusion prevention, delivery center network threat prevention, and Remote Access/VPN. Uses software tools to test and certify the connections as compliant with the policies.

Leads efforts to design, manage and oversee security operations infrastructure for new commonwealth facilities, ensuring successful initial implementation and ongoing support.

Administers various firewalls and network monitoring systems administered by OA/EISO. Oversees the installation, configuration, testing, and maintenance of operating systems, databases, security and related software. Ensures that the latest security patches are maintained.

Works with delivery centers, independent agencies and vendors concerning security and network access requirements. Serves as a central point of contact to coordinate and implement network access and ensure network security. Assists in security efforts regarding the development and implementation of secure Commonwealth systems and applications. Works with other sections of EISO and other appropriate groups to review, revise, and create policies related to Enterprise security.

Acts as team lead as part of the Commonwealth Computer Incident Response Team with the EISO to perform response functions to security violations reported or observed.

Investigates security incidents and determines course of action for resolution. Follows established incident response processes and procedures. Works with entities involved to resolve and coordinate appropriate response. Tracks, analyzes, and report security incidents.

Leads the team with investigating, testing, and documenting of network accesses and security measures to ensure compliance with policies and standards.

Submits and works Change Management requests, Incident management and Service Request management using ServiceNow ITSM tool. Adheres to established service management processes and procedures.

Adheres to the generation of knowledge documents for inclusion in an established knowledge management system.

Reports time spent on all work activities. Determines time estimates and schedule for own work and resolves issues in a timely manner.

Monitors security newsletters and alerts for new security risks, vulnerabilities, and virus information.

Reviews and monitors all Enterprise security policies and procedures; communicates and manages enforcement of policies and procedures to the delivery center.

Assists in the development of the strategic OA/EISO technology/services data plan, translating Commonwealth and delivery center business plans and needs into comprehensive technical plans and solutions that is cognizant of other Commonwealth IT requirements.

Participates with proof of concepts to test new security methods, technologies, and products. Evaluates new products. Makes acquisition recommendations. Modifies policies and procedures as required.

Assists in the implementation and testing of disaster recovery procedures related to Commonwealth security systems. In the event of an actual disaster, assists in the recovery and activation of all security systems. Responds to the designated alternate or secondary location when directed in response to a catastrophic incident.

Administers, configures, troubleshoots, and supports the commonwealth zero trust network architecture environment.

Provides support through 24x7 on call rotation for security questions, changes, and troubleshooting. Coordinates tickets within team and other groups as necessary.

Possesses Commonwealth mobile device for communications with senior management and appropriate contacts.

Travel as required, including overnight stays.

Performs other duties as assigned.

Decision Making:
Describe the types of decisions made by the incumbent of this position and the types of decisions referred to others. Identify the problems or issues that can be resolved at the level of this position, versus those that must be referred to the supervisor. Example: In response to a customer inquiry, this work involves researching the status of an activity and preparing a formal response for the supervisor’s signature.

In this advanced technical role within OA/EISO Security Operations, this position makes key decisions to configure, implement, and maintain security policies across Commonwealth network access points, ensuring compliance and reliability. I oversee firewall, intrusion prevention, threat prevention, and remote access systems; lead infrastructure design for new facilities; and coordinate secure network access with delivery centers, agencies, and vendors. This position assists with guiding incident response activities, investigate security events, determine resolutions, and ensure proper documentation and policy adherence. Manages change, incident, and service requests; maintain security patching and monitoring; evaluate new technologies; support disaster recovery; and participate in 24x7 on‑call operations.

Requirements Profile: Identify any specific experience or requirements, such as a licensure, registration, or certification, which may be necessary to perform the functions of the position. Position-specific requirements should be consistent with a Special Requirement or other criteria identified in the classification specification covering this position. Example: Experience using Java; Professional Engineer License

Experience:



Licenses, registrations, or certifications:

1. 
  N/A
 
2.  
N/A
 
3.  
N/A
 
4.  

 
5.  

 
6.  


Essential Functions
: Provide a list of essential functions for this position. Example: Transports boxes weighing up to 60 pounds.
 
 1. Use of standard office equipment and PCs with associated software
 2. Communicate effectively orally and in writing
 3. Travel, including overnight, as needed
 4. Ability to lift up to 50 pounds
 5. Handles multiple assignments with conflicting priorities or demands
 6. Coordinate project management
 7. Read and interpret security logs, system design specifications, and technical manuals.
 8. Apply strategic goals and objectives
 9. Work independently and interact in a collaborative team environment establishing and maintaining effective working relationships
 10. Provide after-hours support