6 - 10 years
Sacramento County, CA
Full-time
Hybrid
1 month ago

About the role

This position is located at the DMV Headquarters in Sacramento.
Final Filing Date: 4/23/2026
Job Code #: 514589
Applicants who previously applied in response to Job Posting JC-495666 with the final filing date of 11/12/2025, must reapply to be considered for this recruitment.
We are actively seeking a highly skilled and technically proficient Lead Security Analyst to join our Security Operations Center (SOC) team.
Under the general direction of the Security Operations Information Technology Manager I, the Lead Security Analyst will play a pivotal role in managing SOC functions and cutting-edge security technologies. This position is responsible for safeguarding the organization’s information assets, systems, and infrastructure through expert-level analysis, correlation, investigation, reporting, and remediation.
Key Responsibilities
  • Oversee and manage Security Operations Center (SOC) functions and tools to ensure efficiency and continuous protection.
  • Monitor organizational systems, networks, and applications for potential threats or anomalies.
  • Conduct proactive threat hunting, incident management, and malware/forensic analysis to mitigate risks.
  • Generate and communicate actionable security intelligence and recommendations to leadership.
  • Lead vulnerability assessments and penetration testing, ensuring appropriate remediation.
  • Collaborate with cross-functional teams to identify and address security vulnerabilities in web applications and infrastructure.
  • Maintain and update playbooks, incident response plans, and SOC procedures.
  • Stay current with evolving threats, best practices, and compliance standards to strengthen security posture.

Desirable Qualifications
In addition to evaluating each candidate’s relative ability, quality, and breadth of experience, the following factors will be used for competitive evaluation:
  • Proven experience in event and log analysis, triage, and SIEM solutions (e.g., Splunk, ArcSight, or Sentinel).
  • Familiarity with IPS/IDS, enterprise network communication systems, and security hardware/software.
  • Expertise in patch management, vulnerability management, and endpoint protection.
  • Strong understanding of proxy servers, firewalls, and mainframe environments.
  • Proficiency in scripting or programming languages (e.g., Python, PowerShell, Bash).
  • Industry-recognized certifications such as CISSP, CEH, Security+, CySA+, or equivalent.
  • Experience with virtualization and cloud security platforms (Azure, AWS, GCP) preferred.

Applying to the state has a few steps you may be unfamiliar with. To increase your chances of employment, please review:
Start Your Career
Resources – Work for California

Skills

Information Technology
See more jobs in Sacramento County, CA