About The Position

What is the Florida PALM Project?The Florida PALM Project is an enterprise project to replace the State of Florida’s legacy accounting, payroll, information warehouse, and cash management systems, using an enterprise resource planning solution. The replacement of the cash management systems, known as the CMS Wave, was completed in July 2021. The next major implementation, the Financials, Payroll, and Data Warehouse / Business Intelligence Wave, is currently underway and scheduled for Go-Live in January 2027. The Department of Financial Services is leading this statewide initiative, which impacts stakeholders and users of the State’s financial data, including all State agencies.   Who are we?We are an innovative team of experts specializing in financial operations, business analysis, project management, change management and stakeholder relations. Working as part of the team at Florida PALM provides a great opportunity to be part of a mission-driven organization that strongly supports its employees’ professional growth and development through training opportunities and knowledge sharing. You will also be able to see your work directly supporting the transformation of business processes for the Florida State government.   Why work with Florida PALM?Florida PALM is the State of Florida’s next-generation financial management platform, built on PeopleSoft, a technology that is used by national and international organizations across many industries to support a broad range of business and accounting functions.   Florida PALM is already a valuable part of Florida’s financial management processes. Since the CMS Wave Go-Live, the Florida PALM Solution Center has supported over 1,000 users across 35 agencies.   The next implementation will expand to over 3,000 users and integrate with more than 200 business systems, covering all major financial processes such as accounting, budgeting, payroll, and reporting.   Following this rollout, a dedicated support team will maintain and enhance the system through regular updates and new capabilities. Members of the Florida PALM Team experience valuable professional growth opportunities in areas like technology, project management, and change management – equipping them with skills that are highly transferable.   Check out this “We are Hiring” flyer, located on our Project Team page, for more helpful information.   To learn more about the Florida PALM Project Team, visit our Project Team page: https://myfloridacfo.com/floridapalm/project-team   BRIEF DESCRIPTION OF DUTIES:   OBJECTIVE: This position assists in the execution of the Department of Financial Services’ responsibilities for the Florida PALM Project, as a member of the Technical Team, and serves as a state subject matter expert for system and data security. This position exercises discretion and independent judgement with respect to matters of significance, taking direction from the Project’s Technical Architect.   This position deals with complex policies and procedures associated with the implementation of the State’s financial management solution.  It requires technical knowledge of Cybersecurity and data security practices and procedures.  This position exercises independent judgment in formulating or assisting in the formulation of policies and procedures that affect security of the Florida PALM systems. Extensive knowledge of Florida statutes and rules is necessary to develop and direct the policies and procedures used to implement a financial management solution.

Requirements

  • Four (4) years of experience assisting in managing the security of a large information technology system.
  • Two (2) years of experience with system audits of system compliance with SOC I, Type II requirements and NIST requirements.
  • Strong project management skills and Information Technology experience.
  • Knowledge of Cybersecurity laws, rules and standards (NIST, Center for Internet Security (CIS), Florida Cybersecurity Standards).
  • Knowledge of security protocols, best practices and common vulnerabilities.
  • Knowledge of Florida statutes related to cybersecurity (F.S. 282.318, F.S. 282.3185, F.S. 282.319).
  • Knowledge of incident response lifecycle.
  • Knowledge of Cybersecurity monitoring best practices and tools.
  • Ability to identify position security threats.
  • Strong analytical, problem-solving and conceptual skills.
  • Ability to anticipate future consequences and trends and create strategies and plans.
  • Ability to review projects, processes and data to quickly identify problem areas.
  • Strong teamwork and interpersonal skills.
  • Knowledge of the methods of data collection and analysis.
  • Ability to collect, evaluate and analyze data to develop alternative recommendations, solve problems, document workflow and other activities relating to the improvement of management practices.
  • Ability to organize data into logical format for presentation in reports, documents and other written materials.
  • Ability to conduct fact finding research.
  • Ability to work independently.
  • Ability to plan, organize and coordinate work assignments. Ability to communicate effectively.

Nice To Haves

  • A bachelor’s degree in Information Technology, Management Information Systems, Computer Science or Four (4) years of relevant experience in discipline.
  • Experience working in an information security team, as the lead security analyst or information security manager.
  • Experience implementing system security changes to address newly identified risk and audit findings and recommendations.
  • Experience monitoring changes in system security standards, identifying and deploying changes to adjust for compliance.
  • Experience managing and auditing system access.
  • Experience penetration testing approaches to identify system vulnerabilities (e.g., tools, ethical hacking).

Responsibilities

  • Working with supervisors and leadership to establish priorities and due dates for work assignments and keeping them up to date on key work items.
  • Communicating concerns and executive contact immediately with your supervisor and/or project director.
  • Serving as the liaison with vendor personnel for all security related activities.
  • Managing all deadlines in an organized manner to ensure timely completion of fully developed work products.
  • Applying critical thinking (e.g., don’t just solve the problem at hand, solve the core problem).
  • Adhering to DFS policies at all times (e.g., security, dress code, ethics).
  • Working as a team player and demonstrating a “teamwork” attitude and professional demeanor.
  • Preparing presentation materials and leading meetings with DFS partners divisions, state agencies and other stakeholders.
  • Presenting at executive steering committee meetings and/or advisory council meetings as requested.
  • Attending conferences, conventions, etc. to extend knowledge of accounting and ERP principles, processes and changes.
  • Reviewing and providing input on current and proposed state and federal statutes and rules, and regulation changes (e.g., GASB standards) to determine impact to Project requirements and cutover timeline.
  • Working with the financial management solution software implementation vendor, and other project resources (including contractors) to ensure adherence to State standards and established procedures for maintaining data and information accuracy and security.
  • Serving as the security subject matter expert for the Florida PALM systems and data.
  • Coordinating with external oversight bodies, such as Florida Digital Services, to ensure adherence by the Florida PALM systems to applicable compliance requirements.
  • Coordinating with the Department’s Chief Information Security Officer to ensure compliance with Department’s security standards.
  • Coordinating with the Department’s Security Incident Team to ensure appropriate actions for any security and data related issues.
  • Reviewing changes to Cybersecurity laws, rules and standards to determine if technology changes are required to ensure compliance with these changes.
  • Assist in the development of business continuity and disaster recovery plans.
  • Assisting prepare required reports (e.g., proviso or statutory reports).
  • Actively monitoring Florida PALM vendor compliance with Cybersecurity rules, laws and standards (e.g., 60GG Florida Administrative Code, section 282.318 Florida Statutes, National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) standards).
  • Confirming vendor compliance with contract requirements to ensure Florida PALM systems and data are always secured.
  • Conducting periodic risk assessments to identify potential threats and vulnerabilities.
  • Reviewing vendor standards and enforcement of standards to ensure State of Florida production data is not inappropriately stored, transmitted, or otherwise accessed.
  • Reviewing controls and access for offshore personnel to ensure they do not have access to production or production-like data.
  • Conducting quarterly audits of offshore storage locations to ensure production data has not been inappropriately made available to offshore team members.
  • Reviewing NIST and SOC audit reports, and any other security related reports, audits, and other related documentation to determine if any findings and recommendations that are applicable to the Florida PALM systems and services have been adequately addressed by the responsible vendor.
  • Reviewing potential security issues to confirm the nature of the incident, including risk exposure, and action plan. Recommending additional actions where applicable.
  • Recommending changes to security standards and protocols to ensure Florida PALM is keeping up with latest changes and needs to ensure security of the systems and data.
  • Reviewing proposed security related technology and policy changes to ensure the changes enhance the Florida PALM overall security framework.
  • Staying informed on current cybersecurity threats, tactics, techniques, and procedures (TTPs).
  • Reviewing proposed legislation to analyze any potential impacts to the Florida PALM systems.
  • Assisting with identifying issues and recommending solutions for security related issues and enhancements.
  • Managing assigned deliverables and work products to ensure compliance with the Project PMP and schedule.
  • Providing input on activities to include in the Project schedule.
  • Providing weekly updates to the Projects PMO on assigned schedule items.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service