Cybersecurity Engineer

4 months ago


New York, United States HonorVet Technologies Full time
Job Title- Cybersecurity Engineer
Req Id- 24-118624
Duration: 12+ Months
Location: New York City, NY
Onsite Role

Responsibilities:
  • Identify areas for architectural, engineering, and operational improvements and to ensure that the security architecture is suitable and supportable Manage and plan the future technical architecture, providing insight into the future of their area of technology to continually improve effectiveness and efficiency.
  • Conduct design and engineering processes to ensure that security architecture solutions maintain the confidentiality, integrity, and availability of information assets.
  • Understand, review, and approve Cybersecurity Reference Architectures and solutions for applying them.
  • Collaborate with technology and business teams to ensure that the implementation of new technologies and security solutions can be supported and that they are in alignment with security architecture, industry best practice, principles of secure design, and business strategies.
  • Revalidate systems to most recent reference architectures to determine gaps, develop and manage programs to align systems to newest standards and reference architectures. Define the appropriate architecture, technical requirements, and standards necessary to address information security needs for the organization. Perform risk assessments of new and existing technology solutions to identify opportunities for improvement, and engineering solutions to adequately mitigate associated risks.
  • Lead the development and implementation of security technology solutions for complex environments and architecture including cross-platform interoperability, including development of baseline infrastructure and application hardening guides based on industry best practices.
  • Define security configurations and operational standards for security systems and applications, including policy assessment and compliance tools, network security appliances, and host-based security systems.
  • Serve as the engineering security expert in application development; database design; network and operating system security design; access and audit control development; and identity management solutions.
  • Develop sets of security principles, technology standards and architectural constructs which guide the solution design, engineering and deployment of IT solutions.
  • Ensure security architecture reviews are conducted for new technology to ensure best practices, document security solutions, and enable common solutions across the enterprise.
  • Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; and preparing cost estimates.
  • Address security requirements within cloud architectures, creating new and evolving security services and standards pertaining to cloud services; consulting with internal and external customers; and developing and documenting strategies, standards, and roadmaps for cloud security components and architectures.

Qualifications:
  • Must possess active listening, attention to detail, customer service, prioritization, and problem-solving skills.
  • Ability to work independently and strategically.
  • Demonstrated expertise in identifying and analyzing risks and developing effective mitigation strategies.
  • Strong technical knowledge and diverse skillset to understand various technologies, systems, and potential risks.
  • Excellent critical thinking, problem-solving, and decision-making skills.
  • Strong interpersonal, verbal and written communication skills, with the ability to effectively collaborate with both technical and non-technical peers.
  • Proven ability to manage multiple projects simultaneously and prioritize tasks based on urgency and impact.
  • Extensive hands-on experience with related tools.
  • Solid working knowledge of IT domains.
  • Ability to work under pressure and meet deadlines individually and collaboratively. Think logically, assess problems, and be results-oriented.
  • Ability to identify complex business and technology risks and associated vulnerabilities. Prioritize multiple tasks and switch between tasks quickly.
  • Ability to communicate effectively, both orally and in writing, to interact with team members, customers, management, and support personnel (technical and non-technical).Ability to establish and maintain effective working relationships with employees at all levels within the organization, and with both internal and external customers.

Required Experience: (10 Years)
  • Must possess an expert/highly proficient in deep understanding of technology and cybersecurity domain principles within the context of Operational Technologies, Signaling Systems and Rolling Stock.
  • Expert/Highly Proficient, knowledge of Concepts, principals and design of data security and disaster recovery processes including threat and vulnerability management; access control; network design and management; identity and access management; and data protection and management.
  • Legal and regulatory compliance requirements as they relate to data and information privacy and security. Expert/Highly Proficient, knowledge of Cybersecurity technologies including identity and access management solutions; intrusion detection/prevention, PKI, security incident and event management solutions and network/firewall technology.
  • Expert/Highly Proficient ability to develop and implement enterprise data security architecture.
  • Design secure solutions and accompanying controls. And Ability to quickly learn and understand new technologies.
  • Expert/Highly Proficient proven ability to manage projects and initiatives.
  • Expert/Highly Proficient ability to fit in with the constant shifting needs and demands of the business Departments.

Must possess at least two of the following professional certifications in subject domain including but not limited to: (Any 2 of this)
  • Certified Information Security Professional (CISSP),
  • Global Information Assurance Certification (GIAC)
  • Certified Information Security Manager (CISM)
  • Certified in Risk and Information Systems Control (CRISC),
  • Certified Information Systems Auditor (CISA), other related certification(s)

Note:
  • May mentor less experienced staff. Performs other duties and tasks as assigned.
  • May need to work outside of normal work hours supporting 24/7 operations (i.e., evenings and weekends).
  • Travel may be required to other MTA locations or other external sites.
  • Responsible for financial/budgeting/vendor/contract planning and management.


  • New York, New York, United States Epiq Full time

    Job Summary:We are seeking a highly skilled and experienced Cybersecurity Engineer to focus on vulnerability management and attack surface management. This role will involve working closely with IT and business teams to identify and remediate vulnerabilities, monitoring threat intelligence sources for zero-day attacks, and driving the vulnerability response...

  • Cybersecurity Lead

    2 months ago


    New York, United States PRI Technology Full time

    Lead Cybersecurity Analyst/PMNew York, NY (Hybrid: 3 days onsite per week)Full Time (No 3rd party resumes allowed)PRIMARY FUNCTION:The Lead Cybersecurity Analyst is responsible for leading implementation of the organization's cybersecurity controls, to implement and maintain reporting dashboards and metrics, to manage cybersecurity projects, will participate...


  • New York, New York, United States ST2 ManTech Advanced Systems Intl Full time

    ["Secure Cyber InfrastructureAt ST2 ManTech Advanced Systems Intl, we are seeking a highly skilled Cybersecurity Engineer to join our team. This is a critical role in supporting the U.S. Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA) Continuous Diagnostic & Mitigation (CDM) Data Services Program.The ideal...

  • Cybersecurity Lead

    1 month ago


    new york city, United States PRI Technology Full time

    Lead Cybersecurity Analyst/PMNew York, NY (Hybrid: 3 days onsite per week)Full Time (No 3rd party resumes allowed)PRIMARY FUNCTION:The Lead Cybersecurity Analyst is responsible for leading implementation of the organization's cybersecurity controls, to implement and maintain reporting dashboards and metrics, to manage cybersecurity projects, will participate...

  • Cybersecurity Lead

    2 months ago


    new york city, United States PRI Technology Full time

    Lead Cybersecurity Analyst/PMNew York, NY (Hybrid: 3 days onsite per week)Full Time (No 3rd party resumes allowed)PRIMARY FUNCTION:The Lead Cybersecurity Analyst is responsible for leading implementation of the organization's cybersecurity controls, to implement and maintain reporting dashboards and metrics, to manage cybersecurity projects, will participate...


  • New York, United States Capital One Full time

    Seeking a Cybersecurity Consulting Director to provide expert guidance and oversight in Information Security and Risk Management. Responsibilities include acting as a central point of contact for the line of business, coordinating proactive Information Security consulting, serving as an expert in Information Security capabilities, influencing customers to...


  • New York, United States TripleTen Full time

    TripleTen is a service that empowers individuals regardless of their prior experience to embark on the exciting and challenging journey of mastering tech professions. Our bootcamps focus on training students in software engineering data science business intelligence analytics cybersecurity and QA engineering in a feasible and accessible way ultimately...


  • New York, New York, United States Duolingo Full time

    At Duolingo, we're on a mission to develop the best education in the world and make it universally available. Our goal is to empower learners, educators, and organizations around the globe. We're looking for a Senior Cybersecurity Specialist to join our team and contribute to our mission.About the RoleWe're seeking an experienced cybersecurity professional...


  • New York, New York, United States Capital One Full time

    Job SummaryCapital One is seeking a highly skilled Senior Manager, Technology Risk Advisory and Oversight to join our growing Technology Risk Management organization. As a key member of our team, you will play a critical role in providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify,...


  • New York, United States Travelers Full time

    Who Are We? Taking care of our customers, our communities and each other. That’s the Travelers Promise. By honoring this commitment, we have maintained our reputation as one of the best property casualty insurers in the industry for over 160 years. Join us to discover a culture that is rooted in innovation and thrives on collaboration. Imagine...


  • New Bern, United States COLSA Full time

    COLSA Corporation is seeking candidates for Cybersecurity positions in support of a USAF contract. Position openings may be available at Wright Patterson AFB, OH; Warner Robins, GA; Hill AFB, UT; and/or Tinker AFB, OK. Responsible for the maintenance and support of DoD and Air Force computing systems and networks (both unclassified and classified). ...


  • New York, United States OccamSec Full time

    We're seeking a Developer Intern to join our innovative team at OccamSec. What You'll Do: Collaborate with senior developers to build and enhance cutting-edge cybersecurity solutions. Engage in real-world projects that protect organizations from emerging cyber threats. Work with the latest tools and technologies in the industry. Gain invaluable insights...


  • New York, United States Jane Street Full time

    About the PositionWe’re looking for an experienced incident responder and forensic investigator to join our Cybersecurity team. The ideal candidate would have real-world experience responding to externally driven cyber incidents, as well as investigating potential insider threat incidents.Our Cybersecurity team is a skilled group of engineers, analysts,...


  • New York, United States HRUCKUS Full time

    Veteran Firm Seeking Senior Security Engineer for an Onsite Role in New York, NYMy name is Stephen Hrutka. I lead a Veteran-owned consulting firm in Washington, DC, focused on strategic sourcing, supply chain management, and IT Staffing.We seek to fill a Senior Security Engineer role for the New York City Office of Technology and Innovation (NYC OTI). The...


  • New York, United States Employvision Inc. Full time

    Summary- The Security Engineer will be responsible for the IT Security review and assessment of the corporate desktops and servers, infrastructure applications & network in NY. He is also responsible for enforcing the security policy and complying with requirements of external security audits and recommendations. Other responsibilities include monitoring of...


  • New York, United States Crédit Agricole CIB Full time

    SummaryThe Security Engineer will be responsible for the IT Security review and assessment of the corporate desktops and servers, infrastructure applications & network in CA-CIB NY. He is also responsible for enforcing the security policy and complying with requirements of external security audits and recommendations.Other responsibilities include monitoring...

  • Product Security Lead

    4 weeks ago


    New York, United States JPMorganChase Full time

    Job DescriptionJOB DESCRIPTIONThis is an excellent opportunity to join a world class Cybersecurity organization. As a Senior Lead Cybersecurity Architect at JPMorgan Chase within the Cybersecurity & Technology Controls (CTC) team for the International Consumer, you will work proactively with your technology and business colleagues to identify and quantify...


  • New York, United States Milestone Technologies, Inc. Full time

    ** Full-time/salaried position - Requires working onsite 3 days/week **Overview:The core focus of this position is to develop and deliver the strategies, plans and execution support for the Information Security Training and Awareness Program. This role will develop and deliver awareness and training materials through various means including in-person, online...


  • New York, United States IS3 Solutions Full time

    There are several phases within the portal workstream. The Cyber Command team is looking for additional support as the cyber threat landscape continues to evolve and cybersecurity solutions are deployed in large, complex networked environments. The needed resource skill set is specialized in: providing guidance at various stages of planning and implementing...

  • Backend Engineer

    4 months ago


    New York, United States Zip Security Full time

    Company Enterprise cybersecurity is broken. Current annual cybersecurity spending is roughly $150B, with most enterprises spending heavily to deploy, manage, and configure 100s of different tools for marginal security benefit. At Zip, our goal is to build software that makes enterprise cybersecurity reasonable - to reduce bloat by bundling and configuring...