Vacancy expired!
Job Information
Job Title: Cybersecurity Engineer Levels 1-7 Operational Technologies (RR) Salary Range: Level 1: $82,857 $105,000 Level 2: $87,685 $115,500 Level 3: $95,929 $127,050 Level 4: $102,760 $139,755 Level 5: $114,537 $153,731 Level 6: $124,311 $169,104 Level 7: $140,917 $186,014 POINTS: Level 1 - 282 Level 2 - 323 Level 3 - 393 Level 4 - 451 Level 5 - 551 Level 6 - 634 Level 7 - 775 Dept/Div: MTA Information Technology/ Office of IT Cyber Security Services Supervisor: Lead ICS Security Program Development Location: 2 Broadway, New York, NY 10004 and other locations as needed Hours of Work: 9:00am-5:30pm (7.5 hours/day) or as required Posting Close Date: Open until Filled This position is eligible for telework which is currently 2 days per week. New Hires are eligible to apply 30 days after their effective date of hire. In order to protect our employees and continue to provide safe and reliable service to our communities, as of November 14, 2021, we are requiring all new MTA hires to be fully vaccinated against COVID-19 prior to their start date. MTA will consider exceptions for religious and medical reasons, where appropriate. "Fully vaccinated" means you must have both doses of a 2-dose vaccine and two weeks have elapsed since the second dose or have received 1 dose of a 1-dose vaccine and two weeks have elapsed since the dose. Proof of your vaccination status in the form of a CDC vaccine card must be submitted prior to your start date. Summary The purpose of this position is to provide technical expertise in managing and analyzing cybersecurity risks within MTA's critical infrastructure. The Cybersecurity Engineer will be responsible for designing, building, and maintaining infrastructure, applications technology to support a secure cybersecurity posture. These include systems that support cybersecurity directly and/or the business operations for Information and Operational Technology disciplines. The configuration, hardening, guidance, response, and analysis of these systems aide in reduction and containment of Cyber Security risk. Risk assessments, data analytics tools, operational process reviews, and collaboration with security engineers, architects, developers, vendors, business units to constantly improve the overall security of the MTA. Responsibilities- Provide guidance and support the organization in hardening its critical infrastructure environments.
- Implement and manage a range of network security and analytics tools.
- Research evaluates new technologies to secure and manage risk in OT environments.
- Build and maintain relationships with Operational Technology Stakeholders.
- Provide timely and relevant updates to appropriate stakeholders and decision makers
- Conduct and/or participate in cyber/operational investigations and communicate findings to relevant business units to help improve the cybersecurity posture
- Conduct, validate, and maintain risk assessments and processes to address potential threats
- Compile and analyze data for management reporting and metrics
- Monitor relevant information sources to stay up to date on current attacks and trends which may affect the MTA
- Identify and determine potential impact of threats and vulnerabilities in technology and processes while documenting and communicates risks
- Develop, document and track recommendations to remediate process issues, threats, and vulnerabilities
- Participate in the creation and updates of enterprise cybersecurity documents (policies, standards, baselines, guidelines, and procedures) under the direction of the Cybersecurity Security Manager, where appropriate.
- Remain current with Transportation and ICS/SCADA Operational Technology protection models for application to existing and new system implementations
- Assist the agency stakeholders in administering, configuring, and maintaining their cybersecurity and infrastructure system components under their direction
- Hands-on experience with cybersecurity tools such as CISCO ISE/StealthWatch, ForeScout, and Nozomi preferred
- Hands-on experience with infrastructure hardening of Windows Server, Desktops, Linux, VmWare preferred.
- Hands-on experience with networking technologies such as CISCO (Switching, Wireless, WAN, Metro Ethernet, Fiber, etc.)
- Performs basic analysis while following established procedures to ensure security of systems, data, employees/contractors, and/or processes.
- Assists in executing tests and reporting on system security parameters to support security of system, contractor, and/or vendor.
- Performs basic troubleshooting and escalates issues as appropriate to ensure effective resolution of security baseline deviations and risks.
- Reviews and correlates system logs and provides support
- Participates on project teams, providing information and documentation and executing well defined changes under guidance to ensure the infrastructure meets organization needs
- Performs analysis while following established procedures to ensure security of systems, data, employees/contractors, and/or process.
- Provides routine analysis on assigned technologies, following established procedures to ensure safety and security of systems, vendor performance, or processes.
- Assists in executing tests and reporting on system security parameters to support security of system, contractor, and/or vendor.
- Performs basic troubleshooting and escalates issues as appropriate to ensure effective resolution of security baseline deviations and risks.
- Reviews and correlates system logs to identify potential cybersecurity and technical issues.
- Participates on project teams, providing information and documentation and executing well defined changes under guidance to ensure the infrastructure meets organization needs
- Provides proactive monitoring and analysis for a domain of the cybersecurity to ensure systems security baseline targets are met.
- Implements changes to one or more cybersecurity related domain technologies, executing tests and reporting on security baselines, violations/anomalies, to meet requested needs.
- Troubleshoot and investigate cybersecurity incidents and issues by analyzing a chain of events and applying technical knowledge following established procedures and standards to resolve immediate customer needs.
- Maintains and updates existing documentation and standard operating procedures to ensure accurate and timely information is available for assigned systems.
- Works with more experienced colleagues and other IT technical resources to improve coordination of cybersecurity requirements and analyze issues as they arise
- Participate in the evaluation of new products and technologies, under the direction and guidance of senior colleagues, relevant to assigned cybersecurity area to enhance cybersecurity posture and reduce risk to the MTA while achieving objectives.
- Executes to the defined product lifecycle, manages the product lifecycle for a component of the infrastructure, proposes changes for implementation, gathers data and analyzes capacity and performance to assure operational availability.
- Analyzes the current state of the infrastructure and identifies opportunities for improvement to ensure systems meet business needs. Contributes to changes to established roadmaps, documents them effectively and executes the implementation of changes in their area(s) of responsibility.
- Provides ongoing support and troubleshooting for installed technical solutions by analyzing a chain of events and applying technical knowledge, following established procedures and standards to resolve immediate customer needs.
- Investigates, evaluates, and tests new products and technologies relevant to assigned infrastructure subsets to enhance cybersecurity analytics and overall security posture. Implements and/or supports the implementation of new technologies for their area of the cybersecurity that affects infrastructure, applications and/or processes.
- Promotes security standards and supports efforts to expand and migrate to future security architecture to improve security and share learning.
- Provides more advanced analytical capability in several security domains.
- Adds new components to a roadmap, documents them effectively, and directs the testing and implementation of changes.
- When provided with an objective to improve security in their security domain(s) and related technology, develops and implements action plans needed to effect the change.
- Researches new technologies/products and their impact on the infrastructure, prepares a preliminary evaluation of technologies/products and associated costs, and develops and presents recommendations to support anticipated future business needs.
- Receives security and performance data and analyzes the baselines and efficacy of installed technologies. Proposes and implements any required changes, including identifying and planning for any resulting impacts on other technologies to optimize system availability and continuity.
- Provides ongoing support and troubleshooting for incidents, correlations and reporting to more junior analysts to resolve immediate security threats and/or customer needs.
- Provides technical leadership to project teams in their area of expertise and/or leads teams to complete projects specific to their area(s) of expertise to maximize and share learning.
- Provides guidance and technical coaching to less experienced staff to support effective workflow and develop technical talent.
- Serves as a technical resource for multiple components of the security architecture, risk analysis, and analytics to help define the problems and identify remediation strategies for them.
- Troubleshoots and analyzes most problems within assigned area(s), providing cybersecurity correlation, expertise, and resolution that may be complicated by technology interdependency and challenging security issues
- Participates in planning for the future technical architecture, providing insight into the future of their area of technology in order to continually improve effectiveness and efficiency.
- Participates in or leads the development of roadmaps related to their area(s) of expertise to manage and meet identified technology needs.
- Participates in the evaluation of new technologies relative to their domain(s) to determine applicability to and best meet the needs of MTA and constituent agencies.
- Specifies the monitoring points to assess performance of technologies in their domain(s). Recommends the necessary actions to ensure optimal performance and reliability.
- Develops disaster recovery and contingency plans for their domain(s) to provide users with minimal interruptions in service.
- Provides technical leadership to project teams in their area of expertise to promote technical understanding and talent development and/or leads teams to complete projects when a project manager has not been assigned.
- Contributes to the technical elements of RFPs and RFIs and negotiates with vendors on technical issues to ensure results are delivered in line with user and organization requirements.
- Interacts with major providers at the technical expert level to address mission critical issues, evaluates ongoing vendor service level and enforces SLAs and penalties.
- Acts as a technical resource for multiple technologies, with vast knowledge of the capabilities and constraints of technologies supported to continually improve system effectiveness and efficiency.
- Demonstrates a strong understanding of the current and future technology architecture, including the inter-operability of technologies to effectively integrate MTA systems and support the long term strategies of the business.
- Provides guidance and training to the IT community to maximize and share learning.
- Analyzes cross-technology/platform issues and addresses problems factoring in an understanding of the current and future architectures to ensure optimal performance and reliability across systems.
- Leads the evaluation of new technologies relative to their domain(s) to determine applicability to and best meet the needs of MTA and constituent agencies. Proposes technology investments supported by a thorough technical analysis and business case.
- Develops disaster recovery and contingency plans for their domain(s) to provide users with minimal interruptions in service.
- Creates complete RFPs and RFIs and negotiates contract terms and conditions with vendors and procurement in consideration of the needs of the business.
- Interacts with major providers at the technical expert level to address mission critical issues, evaluates ongoing vendor service level and enforces SLAs and penalties.
- Establishes systems to monitor compliance with architectural standards and to ensure technical integrity.
- Associate degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
- Basic knowledge and familiarity with monitoring, installing, maintaining and/or troubleshooting cybersecurity related issues associated to applications and/or infrastructure systems
- Understanding of TCP/IP (OSI Layers 1- 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
- Associate degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree and 2+ years of relevant experience, or a bachelor's degree in Computer Science or related fields.
- Basic knowledge and familiarity with installing, maintaining and troubleshooting technology systems.
- Proven ability to troubleshoot and support technical issues.
- Proven ability to analyze a security risk assessment
- Proven ability to troubleshoot and support technical issues.
- Understanding of TCP/IP (OSI Layers 1- 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
- Some scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed.
- Understanding of Operating Systems and Configuration Hardening.
- Understanding of security concepts for technical domain
- Bachelor's Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
- 2+ years of relevant experience.
- CISSP or other advanced security-related certification preferred but not required.
- Certifications in technology subdomains preferred but not required (ie. Cloud, Applications, Infrastructure, Security Technology, etc.)
- Requires prior experience with installing, maintaining and troubleshooting technology systems.
- Proven ability to troubleshoot and support technical issues using standardized procedures.
- Proven ability to analyze a security risk assessment or conduct one with guidance
- Understanding of TCP/IP (OSI Layers 1- 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
- Some scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed.
- Proficient in Operating Systems and Configuration Hardening.
- Understanding of security concepts for technical domain.
- Bachelor's Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
- Current CISSP or other advanced security-related certification preferred but not required.
- Certifications in technology subdomains preferred but not required (ie. Cloud, Applications, Infrastructure, Security Technology, etc.)
- 3+ years of relevant experience or 18 months of experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.)
- Proven ability to independently evaluate and resolve most problems within an area of infrastructure, applications within a security domain context.
- Proven ability to analyze and/or conduct a security risk assessment
- Advanced understanding of TCP/IP (OSI Layers 1- 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
- Some scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed.
- Bachelor's Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
- 5+ years of relevant experience or 2.5 years of experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.).
- CISSP or other advanced security-related certification preferred
- Certifications in technology subdomains preferred but not required (ie. Cloud, Applications, Infrastructure, Security Technology, etc.)
- Current and updated security certification
- Progressive cybersecurity related accomplishments.
- Requires broad technical knowledge of multiple technologies, or an in-depth knowledge of one technology including its impact on other technologies.
- Proven ability to analyze and/or conduct a security risk assessment.
- Advanced understanding of TCP/IP (OSI Layers 1- 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
- Some scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed.
- Bachelor's Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
- 8+ years of relevant experience or 4 years of experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.) CISSP or other advanced security-related certification preferred.
- Certifications in technology subdomains preferred but not required (ie. Cloud, Applications, Infrastructure, Security Technology, etc.)
- Verifiable implementation of security domain controls for enterprise technologies
- Requires seasoned expertise in multiple technologies and strong understanding of the current and future technology architecture, including the inter-operability of technologies.
- Advanced ability to conduct and analyze a security risk assessment
- Expert understanding of TCP/IP (OSI Layers 1- 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
- Some scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed.
- Bachelor's Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
- 10+ years of relevant technology based or cybersecurity experience or 5 years of experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.).
- CISSP and other advanced security-related certification preferred
- Significant practical expertise in cybersecurity related disciplines
- Requires seasoned expertise in multiple security domains, technologies and strong understanding of the current and future technology and security architecture, including the inter-operability of security solutions and technologies.
- Requires proven track record of successful implementation of architectural designs.
- Requires proven track record in configuration and hardening of systems
- Expert ability to conduct and analyze a security risk assessment
- Expert understanding of TCP/IP (OSI Layers 1- 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
- Some scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed
- ID: #48475401
- State: New York New york city 10004 New york city USA
- City: New york city
- Salary: USD TBD TBD
- Job type: Permanent
- Showed: 2023-01-10
- Deadline: 2023-03-10
- Category: Et cetera