Assesses and classifies any identified system vulnerabilities in accordance with pre-defined risk criteria; advises and consults with internal customers on risk assessment, threat modeling, and mitigation of vulnerabilities.
It is the responsibility of all employees to follow the Agency safety rules, regulations, and procedures pertaining to their assigned duties and responsibilities, which could include systems, operations, and/or other employees.
Collaborates with other IT engineering and administration disciplines to ensure security best practices are incorporated into design, implementation, operation, and maintenance of systems and services within the agency.
Performs vulnerability assessments and penetration tests of information systems.
Keeps up to date on latest information security trends, “best practices”, threats, and countermeasures.
Writing of technical documentation and standards.
Utilizing personal computer software programs affecting assigned work and in compiling and preparing spreadsheets and reports.
Generating metrics and preparing reports to facilitate decision-making on security-related activities.
Identifies and assesses technology-related risks to information security associated with current and prospective technology solutions; and recommends appropriate mitigating controls.
Evaluates, implements, and supports security-focused tools and services required to support information security controls.
Documenting and explaining risks, recommendations, and incident data to technical and non-technical stakeholders.
The Agency promotes a safe and healthy work environment and provides appropriate safety and equipment training for all personnel as required.
Evaluates any prospective technology solution and system for adherence to documented agency standards, policies, and regulatory responsibilities.
Position includes on call and weekend and night shifts to support incident response activities.
Participates in incident response activities; conducts computer and network forensic investigations in support of incident response activities; performs root-cause analysis when incidents occur and prepares incident reports.
Establishing and maintaining effective working relationships with other department staff, management, vendors, and other stakeholders.
Position is responsible for connecting equipment to other equipment mounted above eye level; may be subject to reaching.
Position is responsible for operating the graphic interfaces for the software applications that display large amounts of data. Numerous data elements are also conveyed in graphical format; may be subject to eye/hand coordination and vision.
Interacts with penetration testers and other external vendors as needed.
Interpreting information security policies, standards, and procedures sufficiently to administer, discuss, resolve, and explain them to staff and other constituencies.
Operates and maintains technologies, systems, and applications used to support security controls and activities.
Assists in promoting a culture of information security at Sound Transit.
Conducts regular security reviews of both software and processes. Reviews and creates threat models and recommends security enhancements consistent with information security strategy and evolving threats.
Reviews log-based data, both in raw form and utilizing SIEM or aggregation tools.
Requirements
cissp
azure
aws
powershell
siem
forensics
Relevant experience and detailed technical knowledge in security engineering, system and network security, authentication and security protocols, and cryptography.
Working effectively under pressure, meeting deadlines, and adjusting to changing priorities.
Demonstrated skills in conducting forensic analysis of digital evidence, network traffic, managing event analysis/correlation, and related incident investigations.
Champions and models Sound Transit's core values and demonstrates values-based behaviors in everyday interactions across the agency.
English usage, spelling, grammar, and punctuation.
Working understanding of Operating System architecture as it relates to the functions of the following components: OS kernel, OS kernel modules and device drivers, memory management, inter-process communication, security subsystem, user account rights, user group rights, system logs, I/O functions, network services, file-system permissions, and application interaction with the Operating System.
Certified Information Systems Security Professional (CISSP), or ability to obtain certification within 12 months of employment.
Strong understanding of Microsoft OS (Server and Workstation) and Linux OS products. MacOS is strongly desirable.
Good knowledge of information security incident handling and investigation procedures.
Principles of business letter writing and basic report preparation.
Strong understanding of cloud platforms (Azure, AWS).
Deep knowledge of security operations: perimeter defense, forensics, incident response, kill chain analysis, risk assessment, and security metrics.
Responding to inquiries and in effective oral and written communication.
Strong understanding of internet-facing, web applications.
Experience with the application of threat modeling or other risk identification techniques.
Candidate should have excellent time management skills including the ability to prepare, prioritize, and complete work plans.
Modern office procedures, methods, and equipment including computers and computer applications such as word processing, spreadsheets, and statistical databases.
Technical skills proficiency in the following areas: security information event management, network protocols (e.g. TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols), system administration, malware (propagation, infection, types), intermediate knowledge of network security controls and technologies (proxy, firewall, IDS/IPS, router/switch, open source information collection platforms), cryptography, Microsoft Active Directory, and Microsoft cloud technologies (Azure, M365, Entra).
Ability to work effectively and organize priorities independently.
Scripting skills (e.g., PowerShell).
In-depth knowledge of security software threats and vulnerability mitigation techniques.
Ability to self-organize and manage workload and activities.
Results oriented, highly organized, proactive, and self-motivated.
Working knowledge of risk-based methodologies and one or more of the following frameworks: ISO 27001/2:2022, PCI-DSS, or NIST 800-53.
CEH, CCFP, GCIH (or other GIAC), CCSP, CSA or others that are considered field relevant.
Benefits
Employee Assistance Program.
Paid Time Off: Employees accrue 25 days of paid time off annually with increases at four, eight and twelve years of service. Employees at the director level and up accrue additional days. We also observe 12 paid holidays and provide up to 2 paid floating holidays and up to 2 paid volunteer days per year.
Compensation Practices: We offer competitive salaries based on market rates and internal equity. In addition to compensation and benefits, you’ll find that we provide work-life balance, opportunities for professional development and recognition from your colleagues.
ORCA Card: All full-time employees will receive an ORCA card at no cost.
Long-Term Disability and Life Insurance.
Work is performed in a hybrid office and field environment.
Tuition Reimbursement: Sound Transit will pay up to $5,000 annually for approved tuition expenses.
Health Benefits: We offer two choices of medical plans, a dental plan, and a vision plan all at no cost for employee coverage; comprehensive benefits for employees and eligible dependents, including a spouse or domestic partner.
Retirement Plans: 401a – 10% of employee contribution with a 12% match by Sound Transit; 457b – up to IRS maximum (employee only contribution).
Pet Insurance.
Parental Leave: 12 weeks of parental leave for new parents.
Training + Development
Information not given or found
Interview process
Information not given or found
Visa Sponsorship
Information not given or found
Security clearance
Information not given or found
Company
Overview
Founded in 1993
Year Established
The year Sound Transit was established as a key player in the Puget Sound region's transportation landscape.
Operates an extensive network of light rail, commuter rail, and bus services across the Seattle metro area.
Known for its forward-thinking approach to public transit, focusing on connecting communities and reducing traffic congestion.
Projects include large-scale infrastructure developments, such as the Link light rail extension and Sounder commuter rail improvements.
Funded by a combination of federal, state, and local funding sources, alongside passenger fares.
Recognized for its innovative use of technology to enhance ridership experiences and operational efficiency.
Typical projects include construction of new transit lines, station development, and improving regional transportation networks.
Expanded its reach in recent years, growing services and infrastructure to meet the needs of a rapidly growing population.
Culture + Values
Collaboration: We share each other’s successes and challenges and invite involvement of all toward achievement of common goals. We are one agency; no single department defines our business.
Passenger Focus: We always start with our passengers’ needs and work back from there. They are the focus of everything we do.
Inclusion & Respect: We foster a culture where everyone is treated fairly, where diverse perspectives are welcomed, and every voice is heard.
Safety: We ensure the safest transit trip and work environment for every rider, employee, and contractor, each and every day.
Integrity: We build trust by keeping commitments and taking ownership—demonstrating honesty, accountability, and transparency throughout.
Quality: As stewards of public resources, we do our best work every single day and take great pride in the efficient, sustainable, and equitable delivery of our services and projects.
Environment + Sustainability
70% Waste Diversion
Agency Office Waste Management
70% of waste is diverted from landfills in agency office buildings through recycling and reuse initiatives.
31% GHG Reduction
Greenhouse Gas Emissions Since 2018
The company has achieved a 31% reduction in greenhouse gas emissions since 2018, contributing to global climate goals.
216,000 Tonnes Avoided
GHG Emissions Avoided by Passengers
Passenger use of the Link light rail system avoids 216,000 tonnes of greenhouse gas emissions annually.
$1M Saved Annually
Resource-Efficiency Projects
Implementing 56 ongoing resource-efficiency projects has saved $1 million annually, demonstrating financial and environmental benefits.
ISO 14001 Environmental and Sustainability Management System controls construction environmental impacts.
Link light rail runs on 100% carbon-free electricity via Puget Sound Energy Green Direct and Seattle City Light.
First major U.S. light-rail system on fully carbon-free electricity, reducing electricity GHG by over 96% across系统, target 100% agency-wide by 2030 for electricity and by 2050 for all operations.
Operations & Maintenance Facility East is LEED Gold certified with water capture/reuse, solar panels, high waste diversion.
Downtown Redmond Link project earned Envision Platinum for renewable-energy focus and environmental protection.
Climate-vulnerability integrated into design standards—heat waves, flooding, sea level rise.
Inclusion & Diversity
The Office of Civil Rights, Equity & Inclusion drives diversity, equity, and inclusion (DEI) strategy.
Multiple Employee Resource Groups (ERGs) are active, including BEST, LiT, Pride, SPAM, WEST, ADAPT, Native American & Indigenous, Parents & Families, and Veterans.
WEST supports gender equity by empowering women, educating staff, developing allies, and promoting systemic change.
The Diversity Oversight Committee monitors employment and contracting opportunities for underrepresented groups.
Women make up [percentage not provided] of the workforce.