Cyber Command Software Security Assurance Project Manager 3

2 days ago


Brooklyn, NY, United States Donnelly and Moore Full time
Job Description
Justification : Cyber Command is in urgent need for software security assurance project managers. These resources will be essential to protect sensitive data, ensure essential service continuity, and maintain public trust by proactively mitigating cyber threats and vulnerabilities in the City's digital infrastructure. Work Location: Select one and provide required details: On Site
Work Location: Hybrid: Work location & Remote ( X days in office/ X days remote) X Remote: Monday through Friday; 9 am to 5 pm
Scheduled Work Hours: Normal business hours Monday-Friday 35 hours/week (not including mandatory unpaid meal break after 6 hours of work). Projected Assignment Start Date: December 1, 2025 Projected Assignment End Date: November 28, 2027 Note: Normal Business Hours, Monday through Friday (not including a mandatory unpaid meal break after 6 hours of work), 35 work hours per week. If the consultant works more than 35 hours per week, the consultant must request overtime in the Agency's timekeeping system and the project manager must approve those hours worked above the weekly maximum.
SCOPE OF SERVICES
Our client seeks a Software Security Assurance Project Manager to support the adoption of secure-by-design practices into NYC agencies' software development lifecycle through our Software Security Assurance Program (SSAP).

TASKS:
  • Perform application security services including risk assessments, architecture reviews, and code review for internal and third-party applications
  • Coordinate with developers, project teams, and third-party vendors to assess and guide secure software development and integration
  • Provide consultative guidance during design, development, and deployment phase of new solutions
  • Review threat models, validate security controls, and ensure alignment with security policies
  • Review and interpret security testing reports and vulnerability findings, and assist with risk remediation strategies
  • Contribute improvements in existing AppSec process, workflows, and documentation
  • Participate in defining and expanding secure software development lifecycle practices across the organization
  • Support the development and refinement of policy and governance documents related to software security
  • Track and report on security metrics, status of findings, and overall risk trends
  • Support management of tools, resources, and schedules for security testing
MANDATORY SKILLS/EXPERIENCE
Note: Candidates who do not have the mandatory skills will not be considered
  • At least 8 years of hands-on experience in application security, secure software development, or security consulting
  • Experience conducting security reviews (code, design threat modeling, architecture) for modern applications (web, mobile, cloud-native)
  • Strong knowledge of secure development practices, OWASP Top 10, and relevant standards
  • Ability to communicate technical risks and recommendations clearly to technical and non-technical audiences
  • Familiarity with tools used in code analysis, vulnerability scanning, and security testing
  • Experience working cross-functionally with developers, engineers, and product teams
DESIRABLE SKILLS/EXPERIENCE:
  • Experience working within or alongside DevOps/CI-CD environments
  • Familiarity with container security, API security, and cloud-native application architectures (AWS, Azure, GCP)
  • Experience supporting security governance or policy development
  • Experience with risk exception processes or helping define security risk tolerances
  • Experience in large, complex organizations or government/public sector environments
  • Experience with third-party risk assessments, vendor management, or SaaS reviews
SPECIAL REQUIREMENTS: N/

  • Brooklyn, NY, United States Compu-Vision Consulting Full time

    Title: NG911 Cyber Security Tools Implementation Engineer Location: Brooklyn, NY Duration: 11 months Job Description: NG911 - Cyber Security Tools Implementation Engineer Implement solutions for DNS, Email, remote access configuration, integration, performance monitoring, and security management. Test Next Generation firewall platforms, host...


  • Brooklyn, NY, United States Morph Enterprise Full time

    SCOPE OF SERVICES:The forensics Analyst will investigate network intrusions and other cyber incidents to determine cause, extent and consequences of the breach.TASKS:Research and develop new techniques, and procedures to continually improve the digital forensics process.Produce high quality written work product presenting complex technical issues clearly and...


  • Brooklyn, NY, United States Donnelly and Moore Full time

    Job Description Justification: The resource will directly contribute to the Innovation's Cyber Threat Intelligence (CTI) initiatives, including enhancing prevention, detection, response and recovery efforts through various technical and operational methods; to reduce the mean time to detection and response of cybersecurity events experienced in municipal...


  • Brooklyn, NY, United States StateJobsNY Full time

    Duties Description Under the direction of senior leadership within the Office of Information Technology Services\Chief Information Security Office\Cyber Command Center, the incumbent will be a member of the team that is responsible for the ingestion and response to all forms of threat intelligence and vulnerability announcements received from many third...


  • Brooklyn, NY, United States StateJobsNY Full time

    Duties Description Under the direction of senior leadership within the Office of Information Technology Services\Chief Information Security Office\Cyber Command Center, the incumbent will be a member of the team that is responsible for the ingestion and response to all forms of threat intelligence and vulnerability announcements received from many third...


  • Brooklyn, NY, United States New York State Civil Service Full time

    NY HELP No Agency Information Technology Services, Office of Title Information Technology Specialist 4 Information Security - 10260 Occupational Category I.T. Engineering, Sciences Salary Grade 25 Bargaining Unit PS&T - Professional, Scientific, and Technical (PEF) Salary Range From $96336 to $121413 Annually Employment Type Full-Time Appointment Type...


  • Brooklyn, NY, United States New York State Civil Service Full time

    NY HELP No Agency Information Technology Services, Office of Title Information Technology Specialist 4 Information Security - 10260 Occupational Category I.T. Engineering, Sciences Salary Grade 25 Bargaining Unit PS&T - Professional, Scientific, and Technical (PEF) Salary Range From $96336 to $121413 Annually Employment Type Full-Time Appointment Type...


  • Brooklyn, NY, United States New York State Civil Service Full time

    NY HELP No Agency Information Technology Services, Office of Title Information Technology Specialist 4 Information Security - 10260 Occupational Category I.T. Engineering, Sciences Salary Grade 25 Bargaining Unit PS&T - Professional, Scientific, and Technical (PEF) Salary Range From $96336 to $121413 Annually Employment Type Full-Time Appointment Type...


  • Brooklyn, NY, United States Project Renewal Full time

    Title: Director of Social Services Program: Barbara Kleiman Men’s Shelter Salary Range: $75,000-80,000 annually Program Overview: The Barbara Kleiman Men’s Shelter is a 200-bed, 24/7 emergency shelter for homeless men. The program will serve both individuals diagnosed with mental illness and/or substance use disorders (130) and individuals who are...


  • Brooklyn, NY, United States Project Renewal Full time

    Title: Director of Social Services Program: Barbara Kleiman Men’s Shelter Salary Range: $75,000-80,000 annually Program Overview: The Barbara Kleiman Men’s Shelter is a 200-bed, 24/7 emergency shelter for homeless men. The program will serve both individuals diagnosed with mental illness and/or substance use disorders (130) and individuals who are...