Deputy Chief Information Security Officer

1 week ago


New York, United States City of New York Full time

Job Description

The Office of Technology and Innovation (OTI) leverages technology to drive opportunity, improve public safety, and help government run better across New York City. From delivering affordable broadband to protecting against cybersecurity threats and building digital government services, OTI is at the forefront of how the City delivers for New Yorkers in the 21st century. Watch our welcome video to see our work in action, follow us on social media @NYCOfficeofTech, and visit oti.nyc.gov to learn more.

At OTI, we offer great benefits, and the chance to work on projects that have a meaningful impact on millions of people. You'll have the opportunity to work with cutting-edge technology and collaborate with other passionate professionals who share your drive and commitment to making a difference through technology.

NYC Cyber Command is seeking a Deputy Chief Information Security Officer (CISO) who will lead in the implementation and management of information security controls that will increase the Agency s overall information security posture.

Under the direction of the CISO, the successful candidate will be responsible for the integration of information security controls and overall information security awareness across departments and units. The Deputy CISO directs the overall planning and execution of enterprise security systems, using operational and tactical expertise to direct security management reports, who oversee analysts, engineers and architects.

The Deputy CISO will be responsible for the compliance of IT systems, applications and networks with security policies and information protection strategies; develop, publish, and maintain Agency information security policies, standards, procedures, and guidelines; provide technical guidance and training to information "owners," agency IT teams, and design and implement programs for user awareness, and security compliance monitoring. The candidate will analyze potential security risks or breaches that have occurred and implement widely accepted and automated technologies to mitigate these risks/breaches and harden security systems for effective defense.

The Deputy CISO must have a strong technical background and fully understand threats, risk mitigation and technical controls to lead a team of security professionals through organizational objectives and defenses. The Deputy CISO assumes accountability for the daily tactical operations and overall strategic execution of the team under their leadership.

Responsibilities will include but are not limited to:

  • Lead the design and development of protective and detective cybersecurity controls, configurations, and architectures with a strong focus on zero trust methodologies, cloud architectures,

IT/OT environments, and big data analytics;

  • Implement robust, enterprise level security services across multiple city agencies in both OT and IT environments, such as identity and access management (IAM), email security, endpoint

detection and response (EDR), data loss prevention (DLP), etc;

  • Oversee a team to perform security reviews, identify gaps in security architecture, and develop current and future state security architectures;

  • Lead the telemetry onboarding program to ensure highly resilient and scalable data enablement for security operations, cyber threat intelligence, and incident response technologies and

teams;

  • Manage the design, build, install, configure, and test dedicated cyber defense systems (hardware & software);

  • Collaborate with both technical and non-technical teams to integrate security controls and procedures into workflows.

  • Make recommendations to the Chief Information Officer on an information security roadmap based on risk analysis and assessments for current state and future state of information security

posture.

  • Report regularly to senior management, keeping them abreast of the security landscape and the tactical controls and strategic plans to achieve success.

  • Lead in developing communications for NYC Agency end users and stakeholders around cyber security issues.

  • Ensure compliance with Citywide and agency security policies and standards;

  • Design security solutions; conducts IT risk assessments and recommended mitigating solutions;

  • Define, manage and monitor data security, confidentiality, integrity, and availability;

  • Identify probable system exposures, compromises, problems, or design flaws and escalates issues to upper management to limit serious performance impact;

HOURS/SHIFT

Day - Due to the necessary technical management duties of this position in a 24/7 operation, candidate may be required to be on call and/or work various shifts such as weekends and/or evenings.

WORK LOCATION

Brooklyn, NY

TO APPLY

Please go to www.cityjobs/jobs/search and search for Job ID#695078

Only permanent employees in the title and those that are reachable on the civil service list are eligible to apply.

  • Interested applicants with other civil service titles who meet the preferred requirements should also submit a resume for consideration

SUBMISSION OF A RESUME IS NOT A GUARANTEE THAT YOU WILL RECEIVE AN INTERVIEW

APPOINTMENTS ARE SUBJECT TO OVERSIGHT APPROVAL

Qualifications

  1. A master's degree in computer science from an accredited college or university and three (3) years of progressively more responsible, full-time, satisfactory experience in Information Technology (IT) including applications development, systems development, data communications and networking, database administration, data processing, or user services. At least eighteen (18) months of this experience must have been in an administrative, managerial or executive capacity in the areas of applications development, systems development, data communications and networking, database administration, data processing or in the supervision of staff performing these duties; or

  2. A baccalaureate degree from an accredited college or university and four (4) years of progressively more responsible, full-time, satisfactory experience as described in "1" above; or

  3. A four-year high school diploma or its educational equivalent, and six (6) years of progressively more responsible, full-time, satisfactory experience as described in "1" above; or

  4. A satisfactory combination of education and experience equivalent to "1", "2" or "3" above. However, all candidates must have at least a four-year high school diploma or its educational equivalent and must possess at least three (3) years of experience as described in "1" above, including the eighteen (18) months of administrative, managerial, executive or supervisory experience as described in "1" above.

In the absence of a baccalaureate degree, undergraduate credits may be substituted for a maximum of two (2) years of the required experience in IT on the basis of 30 semester credits for six (6) months of the required experience. Graduate credits in computer science may be substituted for a maximum of one (1) year of the required experience in IT on the basis of 30 graduate semester credits in computer science for one (1) year of the required IT experience. However, undergraduate and/or graduate credits may not be substituted for the eighteen (18) months of experience in an administrative, managerial, executive, or supervisory capacity as described in "1" above.

Additional Information

The City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, veteran status, gender identity, or pregnancy.



  • New York, New York, United States StateJobsNY Full time

    Deputy Chief Data OfficerWe are looking for a seasoned professional to fill the role of Deputy Chief Data Officer. In this position, you will be responsible for leading data quality issue remediation and developing Divisional data/business glossaries.


  • New York, United States Arootah Full time

    Consultant - Chief Information Security Officer Arootah is a premier alternative investments advisory and executive coaching firm that empowers finance executives and their teams to unlock peak performance in all areas. Hedge Fund/Family Office Consultant – Chief Information Security Officer (CISO) Join our experienced roster of consultants that support...


  • New York, New York, United States Arootah Full time

    Job Overview:Arootah is seeking an experienced Cybersecurity Consultant to join our team as a Chief Information Security Officer. As a consultant, you'll work closely with our Hedge Fund and Family Office clients to provide expert cybersecurity advice and guidance. With your extensive experience as a Chief Information Security Officer, you'll be able to...


  • New York, New York, United States Diverse Lynx Full time

    Job Description:The Chief Information Security Officer will be responsible for ensuring the security architecture and design of vendors meet our firm's policies, external guidelines, regulatory expectations, and security controls. This role involves reviewing controls related to Application (SaaS), Mobile Security, API controls, and Cloud Security.Key...


  • New York, United States NYC Health Hospitals Full time

    NYC Health + Hospitals/Bellevue is America's oldest public hospital, established in 1736. Affiliated with the NYU School of Medicine, the 844-bed hospital is a major referral center for highly complex cases, with its 6,000 employees including highly skilled, interdisciplinary clinical staff. It sees more than 110,000 emergency room visits and 500,000...


  • New York, United States NYC Health Hospitals Full time

    NYC Health + Hospitals/Bellevue is America's oldest public hospital, established in 1736. Affiliated with the NYU School of Medicine, the 844-bed hospital is a major referral center for highly complex cases, with its 6,000 employees including highly skilled, interdisciplinary clinical staff. It sees more than 110,000 emergency room visits and 500,000...


  • New York, United States NYC Health + Hospitals Full time

    Job DescriptionMarketing StatementNYC Health + Hospitals/Bellevue is America’s oldest public hospital, established in 1736. Affiliated with the NYU School of Medicine, the 844-bed hospital is a major referral center for highly complex cases, with its 6,000 employees including highly skilled, interdisciplinary clinical staff. It sees more than 110,000...


  • New York, New York, United States Global Channel Management Full time

    About the companyGlobal Channel Management is a leading provider of IT services and solutions.We are seeking an experienced Chief Information Security Officer to join our team.The successful candidate will be responsible for leading our information security program, including the implementation of patch management systems, vulnerability scanning, enterprise...


  • New York, New York, United States Scotiabank Full time

    About the Role:As a Chief Information Security Officer at Scotiabank, you will be responsible for leading the development and implementation of cloud security strategies across the organization. The ideal candidate will have a minimum of 10 years of experience in information security, with a strong background in cloud infrastructure and services.Salary:...


  • New York, New York, United States Sumitomo Mitsui Banking Corporation Full time

    Role DescriptionChief Information Security Officer (CISO) Summary: The Chief Information Security Officer (CISO) is responsible for leading the development and implementation of information security policies, procedures, and technologies to protect the bank's information assets from unauthorized access, use, disclosure, modification, or destruction.Key...


  • New York, New York, United States Brigit Full time

    We are seeking a skilled and experienced Chief Information Security Officer to join our team at Brigit.Company OverviewBrigit is a holistic financial health company that helps everyday Americans build a brighter financial future. Our business model is designed to be transparent, fair, and simple, providing financial products that put money back in the hands...


  • New York City, United States NYC Health + Hospitals Full time

    Job Description: Marketing StatementNYC Health + Hospitals/Bellevue is America’s oldest public hospital, established in 1736. Affiliated with the NYU School of Medicine, the 844-bed hospital is a major referral center for highly complex cases, with its 6,000 employees including highly skilled, interdisciplinary clinical staff. It sees more than 110,000...


  • New York City, United States NYC Health + Hospitals Full time

    Job Description: Marketing StatementNYC Health + Hospitals/Bellevue is America’s oldest public hospital, established in 1736. Affiliated with the NYU School of Medicine, the 844-bed hospital is a major referral center for highly complex cases, with its 6,000 employees including highly skilled, interdisciplinary clinical staff. It sees more than 110,000...


  • New York, New York, United States Arootah Full time

    About the Job:We're looking for an experienced IT Security Specialist to join our team as a Chief Information Security Officer. In this role, you'll work closely with our Hedge Fund and Family Office clients to provide expert cybersecurity advice and guidance. With your extensive experience as a Chief Information Security Officer, you'll be able to share...


  • York, Pennsylvania, United States Glatfelter Insurance Group Full time

    About the Position:Glatfelter Insurance Group is seeking a Chief Information Security Officer (CISO) to lead its enterprise information security and IT risk management program. This leadership role will develop, implement, and monitor a comprehensive program that ensures the integrity, confidentiality, and availability of information owned, controlled, or...


  • New York, New York, United States Arootah Full time

    CISO Advisor Role at ArootahWe are seeking an experienced CISO Advisor to join our team at Arootah, a leading provider of business advisory services to Hedge Funds and Family Offices. As a consultant, you will work closely with our clients to provide expert guidance on incident prevention, detection, and response, as well as risk management and mitigation...


  • New Orleans, Louisiana, United States ExecRecruitment Full time

    Estimated salary for this position is $85,000 - $115,000 per annum based on the job requirements and location.Job OverviewExecRecruitment is a global professional services provider and contingency staffing company. Our main objective is to source top talent and support professional growth. We are currently seeking a Chief Information Security Officer to join...


  • New York, New York, United States Northwestern Mutual Life Insurance Company Full time

    Job Title: Chief Information Security OfficerWe are seeking an experienced Cybersecurity Professional to lead our IT Risk and Compliance team. The successful candidate will shape a strategic vision for our GRC function, drive innovative solutions, and build on recent successes.This role is responsible for providing strategic leadership to the IT Risk and...


  • New York, United States Social Capital Resources Full time

    Top-Tier Bank located in Midtown, Manhattan is seeking a Chief Information Security Officer (CISO) for a full-time position!5 Days onsite $225-275k base + bonus Responsibilities:Responsible for leading the organization’s cybersecurity strategy, ensuring the protection of data, networks, and systems from cyber threatsQualifications:Bachelor's degreeCISA,...


  • New York, United States Social Capital Resources Full time

    Top-Tier Bank located in Midtown, Manhattan is seeking a Chief Information Security Officer (CISO) for a full-time position!5 Days onsite $225-275k base + bonus Responsibilities:Responsible for leading the organization’s cybersecurity strategy, ensuring the protection of data, networks, and systems from cyber threatsQualifications:Bachelor's degreeCISA,...