Enable job alerts via email!

Senior Security Engineer

Govserviceshub

New York (NY)

On-site

USD 120,000 - 180,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative firm is seeking a seasoned cybersecurity expert to enhance the MyCity portal's security. This role involves leading cybersecurity initiatives, conducting risk analyses, and implementing robust security measures in a complex, multi-cloud environment. You will collaborate closely with NYC Cyber Command leadership and various technical teams to ensure the highest standards of cybersecurity are met. The ideal candidate will have extensive experience in information security, cloud security, and IT infrastructure management. Join this forward-thinking organization to make a significant impact on the digital safety of New Yorkers.

Qualifications

  • 12+ years in information security with a focus on risk management and IT infrastructure.
  • Experience in cloud environments and securing Internet-facing applications.

Responsibilities

  • Perform organization-wide cybersecurity risk analysis and maintain updates.
  • Lead the implementation of cybersecurity initiatives for MyCity Portal.

Skills

Information Security
IT Infrastructure Management
Risk Management
Data Architecture
Networking
Cloud Security
Scripting (Python, Bash, Powershell)
Vulnerability Management
Endpoint Security
Analytical Skills

Education

Bachelor's degree in Computer Science or Information Systems

Tools

Azure
AWS
GCP
WAF Technologies
Syslog-NG
LogScale (Humio)
NetSkope
Zscaler
Palo Alto Networks Prisma Access

Job description

New York, United States | Posted on 02/05/2025

MyCity is a single portal for all City services and benefits.

The vision is a simple, seamless, and intuitive experience interacting with City government digitally.

It is designed with New Yorkers at the center of the process to prioritize features by conducting user research.

MyCity produces value for New Yorkers, early and often through phased releases.

There are several phases within the MyCity portal workstream (Child Care, Business Portal, Workforce Development Services and others).

OTI Cyber Command is looking for additional support as the cyber threat landscape continues to evolve and Citywide cybersecurity solutions are deployed in large, complex networked environments.

The needed resource skill set is specialized in: providing guidance at various stages of planning and implementing security design, processes and solutions, testing and validation, and pivot between numerous technical projects communicating status at various leadership levels.

The resource will have significant interaction with NYC Cyber Command leadership, its engineering, architecture, and application security teams, incident response and other cyber security practitioners.

TASKS:
  1. Perform organization wide cybersecurity risk analysis and maintain updates on the identified risks
  2. Create, socialize and obtain approval for cybersecurity strategy and plans to address generic and specific cybersecurity risks to the organization
  3. Create and follow a process to track progress against cybersecurity plans
  4. Lead the implementation of cybersecurity initiatives for MyCity Portal development project
  5. Create network architecture diagrams, collect communication flow information, and build high level and low level design documents
  6. Work on complex network problems, interact with vendor support teams, and drive the issue to resolution
  7. Translate compliance requirements into specific security controls and present compensating security controls
  8. Report to upper management on current cybersecurity posture and progress on mitigating identified risks
  9. Identify cybersecurity gaps and maintain a risk register
  10. Create metrics to measure cybersecurity controls efficacy
  11. Work with partners to create and maintain incident response plans
  12. Monitor and respond to alerts
  13. Review and optimize existing cybersecurity controls
  14. Ensure the organization compliance with cybersecurity best practices, policies and standards
  15. Enforce endpoint security standards
  16. Analyze vulnerabilities and work with Application Development, IT and Systems teams to ensure timely remediation and validation
  17. Perform threat simulations to detect possible risks and provide cybersecurity recommendations on topics like network perimeter, identity management, API security, microservices design and/or application development
  18. Instruct and guide other teams to craft "secure by default" infrastructure; they may also investigate, build, and recommend innovative technologies or other methods that will improve the security of cloud-based and on-premises environments
MANDATORY SKILLS/EXPERIENCE:
  1. Bachelor's degree in Computer Science, Information Systems or equivalent work experience
  2. At least 12+ years of experience in information security
  3. At least 8+ years in IT infrastructure management, application architecture, risk management, data architecture, middleware technology, and IT operations and project management
  4. At least 8+ years of experience with networking, load-balancing, DNS, TLS/SSL digital certificates, SAML and Single Sign-on technologies, Kerberos, MFA technologies, and Identity management
  5. At least 4+ years of experience working with tools and techniques for collecting and processing Network Security Telemetry and Security Event Data.
  6. At least 4+ years of experience working in cloud environment (Azure, AWS, GCP)
  7. At least 4+ years of experience working in securing Internet-facing applications, utilizing WAF technologies (eg: Akamai CDN and WAF, CloudFlare, Azure CDN and WAF, Azure FrontDoor, AWS CloudFront and WAF, and similar reverse-proxy technologies)
  8. At least 4+ years of experience architecting, deploying, and managing endpoint security and EDR technology
  9. At least 4+ years of experience using scripting languages (Python, Bash, Powershell, etc.)
  10. At least 4+ years of experience with Windows, Linux, or MacOS administration
  11. At least 4+ years of experience working with vulnerability management and scanning tools
  12. At least 4+ years of experience working with application scanning tools
REQUIRED SKILLS/EXPERIENCE:
  1. Experience in implementing and operating Network Security Telemetry Collection Systems in multi-cloud and on-prem environments
  2. Experience in implementing and operating Data Loss Prevention Systems
  3. Experience of information security principles and practices, especially the implementation of practical technical controls to support organization policy
  4. Strong understanding of networking protocols, firewalls, and cybersecurity protection concepts, including software development lifecycle, and compensating controls
  5. Strong understanding of cloud-based services such as O365, AzureAD, IAM, Entra ID
  6. Strong understanding of CIS controls
  7. Experience with Syslog-NG, LogScale (Humio) or similar SIEM/log aggregation systems
  8. Experience with SSO products and services such as Entra ID, PingFederate, or Okta
  9. Experience with NetSkope, Zscaler, Palo Alto Networks Prisma Access or similar cloud proxies
  10. Familiarity with CASB/SASE products
  11. Experience with Cloud-based EDR/XDR tools
  12. Knowledge of endpoint security management, configuration policies, and procedures
  13. Experience with asset management and on-prem/cloud-based vulnerability management tools
  14. Highly flexible/willing to learn new technologies
  15. Highly organized with excellent analytical, problem solving and decision-making skills
  16. Excellent communication and collaboration skills
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Security Engineer | Identity New York, San Francisco, Remote (US)

Ramp

New York

Remote

USD 100 000 - 150 000

3 days ago
Be an early applicant

Senior Security Engineer

NetImpact Strategies

Bethesda

Remote

USD 80 000 - 130 000

Today
Be an early applicant

Senior Security Engineer

Greystar

Dallas

Remote

USD 80 000 - 130 000

Yesterday
Be an early applicant

Senior Application Security Engineer

Gemini Trust Company

New York

Hybrid

USD 152 000 - 213 000

Yesterday
Be an early applicant

Senior Security Engineer

DroneDeploy

San Francisco

Remote

USD 161 000 - 288 000

5 days ago
Be an early applicant

Senior Security Engineer

TELEPORT COMMUNICATIONS GROUP

Warrenton

Remote

USD 125 000 - 150 000

3 days ago
Be an early applicant

Senior Security Engineer

Motion Recruitment

Arlington

Remote

USD 90 000 - 150 000

3 days ago
Be an early applicant

Senior Security Engineer - AppSec (Remote)

AbbVie

Washington

Remote

USD 110 000 - 150 000

3 days ago
Be an early applicant

Senior Security Engineer (AQI)

FOBA

Waltham

Remote

CAD 170 000 - 215 000

3 days ago
Be an early applicant