What are the responsibilities and job description for the INFORMATION TECHNOLOGY SPECIALIST II position at CA High Speed Rail Authority?
Job Posting: Information Security Specialist
CA High Speed Rail Authority
INFORMATION TECHNOLOGY SPECIALIST II
$8,625.00 - $11,557.00 per Month
New to State candidates will be hired into the minimum salary of the classification or minimum of alternate range when applicable.
Final Filing Date: 8/11/2026
Job Description and Duties
You will find additional information about the job in the Duty Statement.
Working Conditions
Part-time telework is available for this position for California residents based on the requirements of the position and may be discussed during the interview process. Hiring interviews may be available virtually, using teleconferencing or video conferencing options.
While working on-site, the incumbent works in a professional office environment, in a climate-controlled area which may fluctuate in temperature and is under artificial light. The incumbent will be required to use a computer, mouse, and keyboard, and will be required to sit for long periods of time at a computer screen. The incumbent must be able to focus for long periods of time, multi-task, adapt to changes in priorities, and complete tasks or projects with short notice. The incumbent must develop and maintain cooperative working relationships and display professionalism and respect for others in all contact opportunities.
Position Details
New to State candidates will be hired into the minimum salary of the classification or minimum of alternate range when applicable.
Department Information
https://www.surveymonkey.com/r/HCM6SCC
Special Requirements
A Statement of Qualifications (SOQ) is required for this position. The SOQ must be no more than three (3) pages, single-spaced, with one-inch margins, in 12-point font, organized and numbered as reflected below. The SOQ must discuss the applicant’s applicable experience as it pertains to each item below. Applicants who do not follow these requirements may be disqualified from the hiring process. A resume is required but does not take the place of the SOQ. Letters and other materials will not be considered in the place of the SOQ.
You must respond to all the following items:
1. Describe your experience drafting and maintaining IT or information security documents, such as policies, procedures, configuration guides, or security baselines. Provide specific examples.
2. Explain your familiarity with information security policies, standards, and frameworks such as SAM, SIMM, NIST SP 800-53/171, CIS Benchmarks, DISA, STIGs and how you have applied them in practice.
3. Provide an example of when you assisted with or prepared documentation for an audit, assessment, or compliance review. Explain your role and how your work contributed to the outcome.
4. Describe how you have communicated complex technical information to non-technical staff or stakeholders. What strategies did you use to ensure clarity and adoption?
5. Describe your experience conducting risk assessments and developing risk treatment plans. Include examples that demonstrate how you identified, analyzed, prioritized, or mitigated risks.
NOTE: Artificial intelligence (AI) tools such as ChatGPT, website searches, and third-party reviewers can be helpful in researching responses to the SOQ; however, by submitting your application for this position, you understand and acknowledge the SOQ you submit is your own work, in your own words, and accurately reflects your knowledge, skills, abilities, and experiences. Submitting an SOQ that is not your own may be cause for disqualification from the hiring process.
Application Instructions
Completed applications and all required documents must be received or postmarked by the Final Filing Date in order to be considered. Dates printed on Mobile Bar Codes, such as the Quick Response (QR) Codes available at the USPS, are not considered Postmark dates for the purpose of determining timely filing of an application.
Final Filing Date: 8/11/2026Who May Apply
Applications will be screened and only the most qualified applicants will be selected to move forward in the selection process. Applicants must meet the Minimum Qualifications stated in the Classification Specification(s).
How To Apply
Address for Mailing Application Packages
You may submit your application and any applicable or required documents to:
Address for Drop-Off Application Packages
You may drop off your application and any applicable or required documents at:
Required Application Package Documents
The following items are required to be submitted with your application. Applicants who do not submit the required items timely may not be considered for this job:
- Current version of the State Examination/Employment Application STD Form 678 (when not applying electronically), or the Electronic State Employment Application through your Applicant Account at www.CalCareers.ca.gov. All Experience and Education relating to the Minimum Qualifications listed on the Classification Specification should be included to demonstrate how you meet the Minimum Qualifications for the position.
- Resume is required and must be included.
- Statement of Qualifications - A Statement of Qualifications (SOQ) is required to apply. Please see above “Special Requirements” section for SOQ instructions.
Desirable Qualifications
- Associate or bachelor’s degree in an IT-related field of study.
- 5 years of related experience in information security or an equivalent combination of education and experience.
- Possession of one or more of the following active certifications is desirable:
- CompTIA Security
- CompTIA Cybersecurity Analyst (CySA )
- Certified Cloud Security Professional (CCSP)
- Certified Information Security Auditor (CISA)
- Certified Information Systems Security Professional (CISSP)
- GIAC Continuous Monitoring Certification (GMON)
- Microsoft Security Operations Analyst
- AWS/Azure Security Engineer Associate
- Strong technical writing skills with the ability to produce security baselines, configuration guides, system documentation, and reports.
- Experience with system hardening and compliance frameworks such as CIS Benchmarks, DISA, STIGs, and NIST SP 800-53/171.
- Familiarity with enterprise IT environments including Windows Server, Linux, Active Directory, databases, and cloud platforms (Azure, AWS, M365).
- Hands-on experience working with IT infrastructure including routers, witches, servers, databases, and endpoint management.
- Hands-on experience with information security tools such as Security Information and Event Management (SIEM), vulnerability scanners (e.g., Tenable, Qualys), EDR platforms, and log management solutions.
- Knowledge of security devices such as network firewalls, web application firewalls, web content filters, and intrusion prevention/detection systems.
- Knowledge of networking concepts and practices.
- Knowledge of cybersecurity frameworks, governance risk assessments and compliance in the IT field.
- Ability to analyze documents to provide feedback and inform management of appropriate information.
- Understanding of scripting or automation (e.g., PowerShell, Python, or Bash) to assist with policy enforcement and evidence gathering.
- Experience authoring security policies, procedures, and other reference materials.
- Ability to adapt quickly to new tools, platforms, and security frameworks as technology and compliance requirements evolve.
- Ability to establish and maintain cooperative working relationships with all levels of staff and management; communicate effectively with peers, other technical teams, external partners, vendors, and others.
- Ability to manage multiple-high priority initiatives in a fast-paced achievement-oriented environment and work under pressure to meet deadlines.
- Ability to maintain confidentiality of sensitive tasks, assignments, and information.
- Willingness to work excess hours to achieve business results.
- Display enthusiasm for continous learning.
Benefits
Benefit information can be found on the CalHR website and the CalPERS website.
Contact Information
The Human Resources Contact is available to answer questions regarding the position or application process.
Human Resources
(916) 669-6606
recruitment@hsr.ca.gov
Please direct requests for Reasonable Accommodations to the interview scheduler at the time the interview is being scheduled. You may direct any additional questions regarding Reasonable Accommodations or Equal Employment Opportunity for this position(s) to the Department's EEO Office.
EEO Contact:EEO Office
(916) 324-1541
eeo@hsr.ca.gov
Application Information
Location
The High-Speed Rail Authority headquarters building is located in downtown Sacramento on the corner of 8th and L Street. We are located one block away from the 8th and Capitol light rail stop, as well as the 7th and Capitol light rail stop. The building is also within walking distance of DOCO, the California State Capitol Park, a farmer’s market during summer months, and Old Sacramento.
Equal Opportunity Employer
The State of California is an equal opportunity employer to all, regardless of age, ancestry, color, disability (mental and physical), exercising the right to family care and medical leave, gender, gender expression, gender identity, genetic information, marital status, medical condition, military or veteran status, national origin, political affiliation, race, religious creed, sex (includes pregnancy, childbirth, breastfeeding and related medical conditions), and sexual orientation.
It is an objective of the State of California to achieve a drug-free work place. Any applicant for state employment will be expected to behave in accordance with this objective because the use of illegal drugs is inconsistent with the law of the State, the rules governing Civil Service, and the special trust placed in public servants.
Salary : $8,625 - $11,557