Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Information Security Analyst image - Rise Careers
Job details

Senior Information Security Analyst

Job Description

The Financial Information Services Agency and the Office of Payroll Administration (FISA-OPA) has a vacancy for a Senior Information Security Analyst.

The Senior Information Security Analyst will act as a lead for the Information Security Team and report directly to the CISO. This role requires a strong technical background and familiarity of traditional and emerging security technologies and practices. The activities of this role will be split between day-to-day operations activities and providing guidance to agency stakeholders or new and existing infrastructure related projects.

The candidate must be able to work independently with minimal supervision, interact effectively with IT, Security, and Business leaders.

Key Responsibilities
Align with and support the execution of the Information Security Program vision and strategy.
Provide assistance in the implementation, maintenance, and monitoring of the information security program into in-scope operational areas (gap analysis, risk assessment, third party assessments, procedure/specification development, execution of recurring procedures, incident response).
Identify, analyze and communicate security vulnerabilities.
Serve as an information security subject matter expert and trusted advisor.
Understand current as well as emerging security threats and assist in the design of application architecture to mitigate threats where possible.
Stay abreast of new security technologies and assist in the integration of new technology into architecture design when appropriate.
As a contributor, take ownership for assigned areas of responsibility and effectively manage workloads to meet team deadlines.
Clearly and concisely, communicate in both written form and verbally to leadership and Management.
Review security features of newly implemented systems, ensuring they meet existing security requirements and policies. Review proposed changes to existing policy as conditions warrant.

Experience
Minimum of five (5) years of experience in the Cybersecurity field.
Minimum of five (5) years of Information Technology experience with Windows, Linux, and Unix platforms.
Minimum of five (5) years of experience as a Level 2 (or above) Cyber Security Incident Response Analyst performing incident handling, forensics, sensor alert tracking and cybersecurity incident case management.
Minimum of five (5) years of experience working with security technologies such as IDS/IPS, Firewalls, SIEM, Network Packet Analyzers, Antivirus, Network Behavior Analysis tools, Malware analysis, Firewalls, OLP, endpoint protection, log collection and analysis.

Additional Information

P-604

The City of New York offers a comprehensive set of benefits and programs to employees, including health insurance, pension plan, Deferred Compensation Plan (with 457, 401K and Roth IRA options), pre-tax Commuter Benefit program, pre-tax Flexible Spending Accounts programs and more. Additional benefits such as prescription drug coverage, dental benefits, vision care benefits and more are also available through District Council 37 – Local 2627, the union that represents employees in this title.


To Apply

Applicants may visit the Jobs NYC website: www.nyc.gov/jobs and apply to Job ID: 690635. While all complete applications will be given consideration, only candidates selected for an interview will be contacted.

Hours/Shift

35 hours Weekly/Day.

Work Location

5 Manhattan West, NY, NY

Qualifications

A baccalaureate degree from an accredited college and four years of satisfactory full-time experience related to projects and policies required by the particular position; or,

Education and/or experience which is equivalent to "1" above.

Additional Information

The City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, veteran status, gender identity, or pregnancy.

Average salary estimate

$0 / YEARLY (est.)
min
max
$0K
$0K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Information Security Analyst, City of New York

Are you ready to take your cybersecurity career to the next level? The Financial Information Services Agency and the Office of Payroll Administration (FISA-OPA) is seeking a dynamic Senior Information Security Analyst to be a driving force behind our Information Security Team in New York City. In this pivotal role, you will not only lead the charge in securing our information systems but also collaborate closely with our CISO to enhance our security strategies. If you have a solid technical background and thrive on the challenge of tackling both traditional and emerging security threats, we want to hear from you! As a Senior Information Security Analyst, your responsibilities will include implementing and monitoring our information security program, conducting risk assessments, and acting as a trusted advisor for infrastructure projects. You'll identify and communicate security vulnerabilities while also keeping abreast of new security technologies to integrate them seamlessly into our architecture. You'll play a key role in reviewing security features of new systems and ensuring they meet existing security policies. To be successful in this role, you'll need at least five years of experience in cybersecurity and IT, as well as expertise with various security technologies. If you are passionate about cybersecurity and eager to make an impact, join us at FISA-OPA and help us safeguard our digital environments while enjoying a comprehensive benefits package along the way!

Frequently Asked Questions (FAQs) for Senior Information Security Analyst Role at City of New York
What skills are necessary for the Senior Information Security Analyst position at FISA-OPA?

The Senior Information Security Analyst at FISA-OPA requires a blend of technical and communication skills. Candidates should have a strong foundation in cybersecurity practices with a minimum of five years of experience in the field. Familiarity with security technologies such as IDS/IPS, firewalls, and SIEM is crucial. You should also possess the capacity to work independently and manage workloads while communicating effectively with both IT and business leaders.

Join Rise to see the full answer
What are the daily responsibilities of a Senior Information Security Analyst at FISA-OPA?

As a Senior Information Security Analyst at FISA-OPA, your daily responsibilities will involve executing the Information Security Program’s strategies, conducting risk assessments, and monitoring security infrastructures. You'll guide agency stakeholders and identify security vulnerabilities, ensuring compliance with security policies and regulations. This role demands both individual initiative and collaborative interaction with various departments.

Join Rise to see the full answer
How does FISA-OPA support professional development for Senior Information Security Analysts?

FISA-OPA values the growth of its employees and encourages professional development through various programs and training opportunities related to cybersecurity. As a Senior Information Security Analyst, you'll have access to resources that can help you stay current with industry trends and emerging technologies, ensuring you continuously enhance your skills.

Join Rise to see the full answer
What is the reporting structure for the Senior Information Security Analyst role at FISA-OPA?

In the position of Senior Information Security Analyst at FISA-OPA, you will report directly to the Chief Information Security Officer (CISO). This structure allows for clear communication and alignment with the agency's cybersecurity strategies while providing you the visibility to contribute meaningfully to high-level security initiatives.

Join Rise to see the full answer
What makes FISA-OPA a great place to work for cybersecurity professionals?

FISA-OPA is an inclusive and diverse workplace that promotes a supportive environment for cybersecurity professionals. We offer a robust benefits package, including health insurance, retirement plans, and additional perks, which fosters a healthy work-life balance. Our commitment to innovation in information security ensures a stimulating and engaging work experience.

Join Rise to see the full answer
What are the key qualifications for a Senior Information Security Analyst at FISA-OPA?

Candidates for the Senior Information Security Analyst position at FISA-OPA should possess a bachelor's degree and at least four years of relevant full-time experience. A background in cybersecurity, coupled with expertise working with various security technologies and platforms, is essential for this role. The combination of education and hands-on experience will not only prepare you for the job but also enhance your potential for growth within the organization.

Join Rise to see the full answer
What is the expected work schedule for a Senior Information Security Analyst at FISA-OPA?

The expected work schedule for the Senior Information Security Analyst role at FISA-OPA is 35 hours a week, ensuring that you have a reasonable work-life balance while fully focusing on safeguarding our information systems. This position offers flexibility and opportunities for professional engagement, placed conveniently in the heart of New York City.

Join Rise to see the full answer
Common Interview Questions for Senior Information Security Analyst
How do you prioritize security risks in your work as a Senior Information Security Analyst?

When prioritizing security risks, it's important to assess the potential impact and likelihood of each threat. I'd evaluate risks by conducting a thorough risk assessment, using frameworks and tools to quantify risks based on factors like vulnerability exploitability and potential harm to the organization. My approach combines a strategic overview with detailed analysis to implement effective mitigation strategies.

Join Rise to see the full answer
Can you describe a challenging cybersecurity incident you managed?

Certainly! One notable incident involved a sophisticated phishing attack that compromised several user accounts. I coordinated a multidisciplinary response that included forensic analysis, user reeducation, and policy improvements. The experience taught me the importance of rapid response and cross-team collaboration in mitigating the impact of such incidents.

Join Rise to see the full answer
What security technologies are you most proficient in, and how have you used them?

I am proficient in multiple security technologies, including SIEM tools for real-time monitoring and firewall management for network protection. For instance, I implemented a SIEM solution that improved our incident detection capabilities, enabling quicker response times to emerging threats while improving overall security posture.

Join Rise to see the full answer
How do you stay updated on the latest security threats and technologies?

Staying updated is crucial in cybersecurity. I regularly participate in industry webinars, read security blogs, and engage in professional networks. Furthermore, I often subscribe to threat intelligence reports to gain insights into emerging trends and technologies that can impact our security strategies.

Join Rise to see the full answer
What role does communication play in your daily responsibilities?

Effective communication is vital for a Senior Information Security Analyst. I frequently interact with IT and business leaders to translate complex security concepts into actionable plans. My ability to articulate risk clearly helps stakeholders understand security priorities, leading to better-informed decision-making and enhanced security awareness within the organization.

Join Rise to see the full answer
How do you handle the documentation and reporting of cybersecurity incidents?

I ensure that all cybersecurity incidents are meticulously documented and reported. This involves logging the incident timeline, actions taken, and outcomes in a structured manner. Comprehensive reporting not only aids in understanding the incident's cause but also provides essential data for compliance purposes and future reference to improve our response strategies.

Join Rise to see the full answer
What experience do you have with incident response and forensics?

I have extensive experience in incident response and forensics, including handling security breaches and conducting thorough investigations post-incident. My role involved analyzing compromised systems, gathering artifacts, and coordinating with law enforcement when necessary, ensuring a full understanding of the incident while enhancing our defenses against future threats.

Join Rise to see the full answer
What measures do you take to ensure compliance with information security policies?

I take a proactive approach to compliance by regularly reviewing and updating our policies to align with industry standards and regulations. Conducting audits and assessments to identify gaps ensures that any compliance issues are addressed swiftly. Furthermore, I focus on educating team members about policy requirements to foster a security-conscious culture.

Join Rise to see the full answer
How would you approach mentoring junior team members?

Mentoring junior team members is an exciting opportunity for me. I believe in providing guidance by sharing my experiences and knowledge while encouraging them to ask questions and take initiative. I would set regular check-ins, offer constructive feedback, and provide resources to foster their growth and confidence in handling security tasks.

Join Rise to see the full answer
In your opinion, what is the key to a successful Information Security team?

A successful Information Security team thrives on collaboration and open communication. Building trust among team members ensures they feel comfortable sharing insights and challenges. Moreover, creating a culture of continuous learning helps the team stay agile, adapt to new threats, and innovate security solutions that align with the organization's objectives.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Goliath Remote No location specified
Posted 12 days ago
Posted 10 days ago
Photo of the Rise User
Posted 3 days ago
Photo of the Rise User
AHEAD Hybrid New York, New York
Posted 11 days ago

Our Mission To work to eliminate ageism and ensure the dignity and quality-of-life of New York City’s diverse older adults, and for the support of their caregivers through service, advocacy, and education. Strategic Goals To foster independence...

440 jobs
MATCH
VIEW MATCH
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
November 29, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!