Cybersecurity Engineer
4 months ago
Req Id- 24-118624
Duration: 12+ Months
Location: New York City, NY
Onsite Role
Responsibilities:
- Identify areas for architectural, engineering, and operational improvements and to ensure that the security architecture is suitable and supportable Manage and plan the future technical architecture, providing insight into the future of their area of technology to continually improve effectiveness and efficiency.
- Conduct design and engineering processes to ensure that security architecture solutions maintain the confidentiality, integrity, and availability of information assets.
- Understand, review, and approve Cybersecurity Reference Architectures and solutions for applying them.
- Collaborate with technology and business teams to ensure that the implementation of new technologies and security solutions can be supported and that they are in alignment with security architecture, industry best practice, principles of secure design, and business strategies.
- Revalidate systems to most recent reference architectures to determine gaps, develop and manage programs to align systems to newest standards and reference architectures. Define the appropriate architecture, technical requirements, and standards necessary to address information security needs for the organization. Perform risk assessments of new and existing technology solutions to identify opportunities for improvement, and engineering solutions to adequately mitigate associated risks.
- Lead the development and implementation of security technology solutions for complex environments and architecture including cross-platform interoperability, including development of baseline infrastructure and application hardening guides based on industry best practices.
- Define security configurations and operational standards for security systems and applications, including policy assessment and compliance tools, network security appliances, and host-based security systems.
- Serve as the engineering security expert in application development; database design; network and operating system security design; access and audit control development; and identity management solutions.
- Develop sets of security principles, technology standards and architectural constructs which guide the solution design, engineering and deployment of IT solutions.
- Ensure security architecture reviews are conducted for new technology to ensure best practices, document security solutions, and enable common solutions across the enterprise.
- Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; and preparing cost estimates.
- Address security requirements within cloud architectures, creating new and evolving security services and standards pertaining to cloud services; consulting with internal and external customers; and developing and documenting strategies, standards, and roadmaps for cloud security components and architectures.
Qualifications:
- Must possess active listening, attention to detail, customer service, prioritization, and problem-solving skills.
- Ability to work independently and strategically.
- Demonstrated expertise in identifying and analyzing risks and developing effective mitigation strategies.
- Strong technical knowledge and diverse skillset to understand various technologies, systems, and potential risks.
- Excellent critical thinking, problem-solving, and decision-making skills.
- Strong interpersonal, verbal and written communication skills, with the ability to effectively collaborate with both technical and non-technical peers.
- Proven ability to manage multiple projects simultaneously and prioritize tasks based on urgency and impact.
- Extensive hands-on experience with related tools.
- Solid working knowledge of IT domains.
- Ability to work under pressure and meet deadlines individually and collaboratively. Think logically, assess problems, and be results-oriented.
- Ability to identify complex business and technology risks and associated vulnerabilities. Prioritize multiple tasks and switch between tasks quickly.
- Ability to communicate effectively, both orally and in writing, to interact with team members, customers, management, and support personnel (technical and non-technical).Ability to establish and maintain effective working relationships with employees at all levels within the organization, and with both internal and external customers.
Required Experience: (10 Years)
- Must possess an expert/highly proficient in deep understanding of technology and cybersecurity domain principles within the context of Operational Technologies, Signaling Systems and Rolling Stock.
- Expert/Highly Proficient, knowledge of Concepts, principals and design of data security and disaster recovery processes including threat and vulnerability management; access control; network design and management; identity and access management; and data protection and management.
- Legal and regulatory compliance requirements as they relate to data and information privacy and security. Expert/Highly Proficient, knowledge of Cybersecurity technologies including identity and access management solutions; intrusion detection/prevention, PKI, security incident and event management solutions and network/firewall technology.
- Expert/Highly Proficient ability to develop and implement enterprise data security architecture.
- Design secure solutions and accompanying controls. And Ability to quickly learn and understand new technologies.
- Expert/Highly Proficient proven ability to manage projects and initiatives.
- Expert/Highly Proficient ability to fit in with the constant shifting needs and demands of the business Departments.
Must possess at least two of the following professional certifications in subject domain including but not limited to: (Any 2 of this)
- Certified Information Security Professional (CISSP),
- Global Information Assurance Certification (GIAC)
- Certified Information Security Manager (CISM)
- Certified in Risk and Information Systems Control (CRISC),
- Certified Information Systems Auditor (CISA), other related certification(s)
Note:
- May mentor less experienced staff. Performs other duties and tasks as assigned.
- May need to work outside of normal work hours supporting 24/7 operations (i.e., evenings and weekends).
- Travel may be required to other MTA locations or other external sites.
- Responsible for financial/budgeting/vendor/contract planning and management.
-
Senior Cybersecurity Engineer
1 month ago
New York, New York, United States Epiq Full timeJob Summary:We are seeking a highly skilled and experienced Cybersecurity Engineer to focus on vulnerability management and attack surface management. This role will involve working closely with IT and business teams to identify and remediate vulnerabilities, monitoring threat intelligence sources for zero-day attacks, and driving the vulnerability response...
-
Cybersecurity Lead
2 months ago
New York, United States PRI Technology Full timeLead Cybersecurity Analyst/PMNew York, NY (Hybrid: 3 days onsite per week)Full Time (No 3rd party resumes allowed)PRIMARY FUNCTION:The Lead Cybersecurity Analyst is responsible for leading implementation of the organization's cybersecurity controls, to implement and maintain reporting dashboards and metrics, to manage cybersecurity projects, will participate...
-
Cybersecurity Solutions Developer
2 weeks ago
New York, New York, United States ST2 ManTech Advanced Systems Intl Full time["Secure Cyber InfrastructureAt ST2 ManTech Advanced Systems Intl, we are seeking a highly skilled Cybersecurity Engineer to join our team. This is a critical role in supporting the U.S. Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA) Continuous Diagnostic & Mitigation (CDM) Data Services Program.The ideal...
-
Cybersecurity Lead
1 month ago
new york city, United States PRI Technology Full timeLead Cybersecurity Analyst/PMNew York, NY (Hybrid: 3 days onsite per week)Full Time (No 3rd party resumes allowed)PRIMARY FUNCTION:The Lead Cybersecurity Analyst is responsible for leading implementation of the organization's cybersecurity controls, to implement and maintain reporting dashboards and metrics, to manage cybersecurity projects, will participate...
-
Cybersecurity Lead
2 months ago
new york city, United States PRI Technology Full timeLead Cybersecurity Analyst/PMNew York, NY (Hybrid: 3 days onsite per week)Full Time (No 3rd party resumes allowed)PRIMARY FUNCTION:The Lead Cybersecurity Analyst is responsible for leading implementation of the organization's cybersecurity controls, to implement and maintain reporting dashboards and metrics, to manage cybersecurity projects, will participate...
-
Cybersecurity Consulting Director
4 weeks ago
New York, United States Capital One Full timeSeeking a Cybersecurity Consulting Director to provide expert guidance and oversight in Information Security and Risk Management. Responsibilities include acting as a central point of contact for the line of business, coordinating proactive Information Security consulting, serving as an expert in Information Security capabilities, influencing customers to...
-
Cybersecurity Expert Tutor
2 months ago
New York, United States TripleTen Full timeTripleTen is a service that empowers individuals regardless of their prior experience to embark on the exciting and challenging journey of mastering tech professions. Our bootcamps focus on training students in software engineering data science business intelligence analytics cybersecurity and QA engineering in a feasible and accessible way ultimately...
-
Senior Cybersecurity Specialist
1 week ago
New York, New York, United States Duolingo Full timeAt Duolingo, we're on a mission to develop the best education in the world and make it universally available. Our goal is to empower learners, educators, and organizations around the globe. We're looking for a Senior Cybersecurity Specialist to join our team and contribute to our mission.About the RoleWe're seeking an experienced cybersecurity professional...
-
Senior Manager, Cybersecurity Risk Advisory
1 month ago
New York, New York, United States Capital One Full timeJob SummaryCapital One is seeking a highly skilled Senior Manager, Technology Risk Advisory and Oversight to join our growing Technology Risk Management organization. As a key member of our team, you will play a critical role in providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify,...
-
Senior Software Engineer
5 months ago
New York, United States Travelers Full timeWho Are We? Taking care of our customers, our communities and each other. That’s the Travelers Promise. By honoring this commitment, we have maintained our reputation as one of the best property casualty insurers in the industry for over 160 years. Join us to discover a culture that is rooted in innovation and thrives on collaboration. Imagine...
-
Cybersecurity SpecialistRMF
4 weeks ago
New Bern, United States COLSA Full timeCOLSA Corporation is seeking candidates for Cybersecurity positions in support of a USAF contract. Position openings may be available at Wright Patterson AFB, OH; Warner Robins, GA; Hill AFB, UT; and/or Tinker AFB, OK. Responsible for the maintenance and support of DoD and Air Force computing systems and networks (both unclassified and classified). ...
-
Software Engineer Internship
4 weeks ago
New York, United States OccamSec Full timeWe're seeking a Developer Intern to join our innovative team at OccamSec. What You'll Do: Collaborate with senior developers to build and enhance cutting-edge cybersecurity solutions. Engage in real-world projects that protect organizations from emerging cyber threats. Work with the latest tools and technologies in the industry. Gain invaluable insights...
-
New York, United States Jane Street Full timeAbout the PositionWe’re looking for an experienced incident responder and forensic investigator to join our Cybersecurity team. The ideal candidate would have real-world experience responding to externally driven cyber incidents, as well as investigating potential insider threat incidents.Our Cybersecurity team is a skilled group of engineers, analysts,...
-
Senior Security Engineer
7 days ago
New York, United States HRUCKUS Full timeVeteran Firm Seeking Senior Security Engineer for an Onsite Role in New York, NYMy name is Stephen Hrutka. I lead a Veteran-owned consulting firm in Washington, DC, focused on strategic sourcing, supply chain management, and IT Staffing.We seek to fill a Senior Security Engineer role for the New York City Office of Technology and Innovation (NYC OTI). The...
-
Information Technology Security Engineer
3 weeks ago
New York, United States Employvision Inc. Full timeSummary- The Security Engineer will be responsible for the IT Security review and assessment of the corporate desktops and servers, infrastructure applications & network in NY. He is also responsible for enforcing the security policy and complying with requirements of external security audits and recommendations. Other responsibilities include monitoring of...
-
Information Technology Security Engineer
2 months ago
New York, United States Crédit Agricole CIB Full timeSummaryThe Security Engineer will be responsible for the IT Security review and assessment of the corporate desktops and servers, infrastructure applications & network in CA-CIB NY. He is also responsible for enforcing the security policy and complying with requirements of external security audits and recommendations.Other responsibilities include monitoring...
-
Product Security Lead
4 weeks ago
New York, United States JPMorganChase Full timeJob DescriptionJOB DESCRIPTIONThis is an excellent opportunity to join a world class Cybersecurity organization. As a Senior Lead Cybersecurity Architect at JPMorgan Chase within the Cybersecurity & Technology Controls (CTC) team for the International Consumer, you will work proactively with your technology and business colleagues to identify and quantify...
-
Program Lead, Cybersecurity Education
2 weeks ago
New York, United States Milestone Technologies, Inc. Full time** Full-time/salaried position - Requires working onsite 3 days/week **Overview:The core focus of this position is to develop and deliver the strategies, plans and execution support for the Information Security Training and Awareness Program. This role will develop and deliver awareness and training materials through various means including in-person, online...
-
Sr. Security Engineer
3 days ago
New York, United States IS3 Solutions Full timeThere are several phases within the portal workstream. The Cyber Command team is looking for additional support as the cyber threat landscape continues to evolve and cybersecurity solutions are deployed in large, complex networked environments. The needed resource skill set is specialized in: providing guidance at various stages of planning and implementing...
-
Backend Engineer
4 months ago
New York, United States Zip Security Full timeCompany Enterprise cybersecurity is broken. Current annual cybersecurity spending is roughly $150B, with most enterprises spending heavily to deploy, manage, and configure 100s of different tools for marginal security benefit. At Zip, our goal is to build software that makes enterprise cybersecurity reasonable - to reduce bloat by bundling and configuring...