Technology Consulting - Cybersecurity - SIEM/SOAR Engineer - Senior Consultant

14651 Rochester, New York EY

Posted 5 days ago

Job Viewed

Tap Again To Close

Job Description

Location: Anywhere in Country
At EY, we're all in to shape your future with confidence.
We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
**US - Cybersecurity SIEM -Senior Consultant**
Cyber threats, massive data storage, privacy requirements and business continuity require heavy information security measures. In the face of ever-evolving Cyber Security threats, EY's Cyber Security Event and Incident Management (SIEM) team builds tools and custom integrations in order to mitigate threats to Security Operations. As a member of our SecOps and Infrastructure Protection team, you'll use your technical and business skills to help us drive this mission and have an impact on cybersecurity at a global level.
**The opportunity**
As a Cybersecurity SIEM Engineer, you will lead the design and implementation of security incident and event management solutions for our clients. You'll play a key role in supporting our clients with their most complex information security needs, contributing toward their business resilience, and protecting critical infrastructure.
We will support you with career-long training and coaching to develop your skills. As EY is a global leading service provider in this space, you will be working with the best of the best in a collaborative environment. So, whenever you join, however long you stay, the exceptional EY experience lasts a lifetime.
**Your key responsibilities**
Our security professionals possess diverse industry knowledge, along with unique technical expertise and specialized skills. You'll work alongside respected industry professionals, learning about and using the latest tools and techniques to identify and overcome some of the most relevant and pressing security issues in the world.  
As a Senior Consultant, you will serve on client engagement teams to assist in delivering the full range of services and work with EY Cybersecurity leadership to further develop our security event and incident management service offering.
**Skills and attributes for success**
· Possess a proven understanding of SIEM technologies, e.g. Splunk, Azure Sentinel, McAfee, QRadar, LogRhythm, SolarWinds, ArcSight, Fortinet, Elastic, SumoLogic, Rapid7
· Experience creating and fine-tuning SIEM content such as correlation rules, reports, dashboards, filters, channels, and integrating threat intelligence to improve accuracy and visibility to potential threats and alerts.
· Monitoring and managing the health and performance of SIEM platform
· Onboarding log sources and data sources, developing new and custom parses, and designing SIEM architecture reviews
· Creating use cases and correlations alerts in the SIEM for continuous security monitoring
· Security Operations experience with operating systems, or cloud infrastructures and services (Azure/AWS)
· Participating in client meetings to further optimize their specific operational plan based on our best practices and operational learnings
· Conveying complex technical security concepts to technical and non-technical audiences including executives.
**To qualify for the role, you must have**
· A bachelor's degree in a related field and approximately 3-5 years of related work experience; or a graduate degree and approximately 2 years of related work experience
· Hands-on experience with common security monitoring technologies including Security Incident Event Management systems (SIEM), Intrusion Detection Systems (IDS), Endpoint Detection & Responses (EDR), Anti-Virus log collection systems for purpose of comprehensive log analysis
· Experience supporting, troubleshooting, and administering a variety of networks, operating systems (OSs), and applications
· Experience with one or more of the following Cybersecurity tools: Splunk ES, Azure Sentinel, FireEye, Tanium, ZScaler, Palo Alto, McAfee, Carbon Black, CrowdStrike, Prisma Cloud, Humio, or ServiceNow SecOps
· Experience in process reengineering, workflow design, process improvement, or process mapping.
· Ability to travel as needed for client-site visits, team on-sites and strategic planning sessions; a driver's license valid in the U.S
**Ideally, you'll also have**
· Excellent analytical and problem-solving abilities
· Strong presentation and communication skills
· Knowledge of concepts and solutions of security services in the Zero-Trust model
· Knowledge of Azure Sentinel, Azure Log Analytics, Microsoft Flow, or Power BI
· Relevant security certifications (e.g., Splunk ES, CEH, CISSP)
**What we look for**
We're interested in intellectually curious people with a genuine passion for cyber security. With your specialization in Security incident and event management, we'll turn to you to speak up with innovative new ideas that could make a lasting difference not only to us - but also to the industry. If you have the confidence in both your presentation and technical abilities to grow into a leading expert here, this is the role for you.
**What we offer you**
At EY, we'll develop you with future-focused skills and equip you with world-class experiences. We'll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more .
+ We offer a comprehensive compensation and benefits package where you'll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $103,800 to $90,300. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is 124,600 to 216,300. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
+ Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
+ Under our flexible vacation policy, you'll decide how much vacation time you need based on your own personal circumstances. You'll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
**Are you ready to shape your future with confidence? Apply today.**
EY accepts applications for this position on an on-going basis.
For those living in California, please click here for additional information.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
**EY | Building a better working world**
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. 
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY's Talent Shared Services Team (TSS) or email the TSS at .
View Now

Cyber Identity - Data Protection and Encryption Manager

14651 Rochester, New York Deloitte

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

Cyber Data Protection and Encryption Manager
Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.
Recruiting for the role ends on 8/31/2025
The Team
Our Cyber Strategy & Transformation offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments.
Work You'll Do
+ Serve as a subject matter expert and trusted advisor to our clients, assisting them to evaluate strategic and practical data protection and encryption requirements based on new and emerging data risks, advising on best practices for data encryption, decryption, and secure key management
+ Assist clients in designing, implementing and operating technology and process solutions to reduce data risks
+ Assist clients in developing and leading the implementation of encryption strategies to protect sensitive data across various environments, including cloud, on-premises, and hybrid infrastructures
+ Assist clients to manage the deployment and lifecycle of PKI systems, ensuring robust and scalable certificate management processes. Monitor and maintain the health of certificate infrastructures to prevent downtime and security breaches.
+ Assist clients with developing requirements, evaluating vendor solutions, architecting, implementing and operating data protection solutions
+ Aid in the delivery of client engagements, ensuring success by:
+ Driving day-to-day execution, communicating updates to clients and firm leadership
+ Providing leadership and support to delivery teams to ensure completion and accuracy of high-quality work products
+ Tracking and reporting on project timelines to ensure on time and on budget delivery
+ Contribute to Deloitte's thought leadership in client organizations and external marketplace
+ Foster an environment of inclusion and well-being
+ Stay up to date on emerging encryption technologies (e.g., post-quantum cryptography, confidential computing, secure enclaves, envelop encryption) and industry trends around cyber risk, data protection and cryptography practices.
+ Proactively evaluate and recommend new tools and solutions to enhance data security
Qualifications
Required:
+ 7+ years of professional experience within data protection and information security, which may include Data Discovery, Data Classification and Rights Management, Data Access Governance, Data Loss Prevention, Cloud Access Security Broker, Encryption, Certificate Lifecycle Management, Cloud Security, SaaS Security
+ 4+ years of professional experience managing and implementing various encryption technologies (e.g., database encryption, file encryption, Public Key Infrastructure (PKI), certificate lifecycle management (CLM), transport layer security(TLS)) and strong understanding of Cloud encryption concepts such as client-side encryption, bring your own key (BYOK), server-side encryption.
+ 4+ years of professional experience developing data protection strategies, roadmaps and frameworks; experience may include designing, implementing and operating data protections services
+ 4+ years of total hands-on technical experience with one or more data protection technologies
+ Experience in vendor relationship management with market leading data protection and encryption vendors (e.g., Thales, AppViewX, Venafi, Fortanix, Digicert, Protegrity)
+ Experience defining data protection use cases, documenting business requirements and evaluating technology solutions
+ Experience with data risk program design, including alignment to cybersecurity and compliance programs.
+ Experience working with data protection and information security policies, standards and procedures
+ Experience leading collaborative efforts across organizational silos, including multifunctional teams of IT professionals, legal/compliance teams, and business executives
+ Experience with cloud collaboration tools and security/compliance, particularly Microsoft 365
+ Familiarity with change management, deployment and operational processes in large IT organizations
+ Professional certifications such as CISSP, CISM, or similar.
+ Bachelor's degree in Cybersecurity, Information Security, Engineering, Computer Science, Information Technology or related field
+ Ability to travel 25-50%, on average, based on the work you do and the clients and industries/sectors you serve
+ Limited sponsorship maybe available
Preferred:
+ Quantum readiness and AI protection experience a strong plus
+ Significant industry work experience preferred
+ Experience with public cloud (Azure, AWS, GCP) security and modern data platforms (e.g., Snowflake, Data bricks, Starburst)
+ Experience or familiarity with emerging data protection technologies for user communications, e.g., Secure Access Service Edge, Data Security Posture Management, Data Security Platforms and Synthetic Data
+ Familiarity with networks, firewalls, IDS/IPS, and end point security
+ Familiarity with popular databases on both windows and UNIX platforms, including Oracle and MS SQL
+ Familiarity with common identity, authentication, and directory services, such as Active Directory and LDAP
+ Familiarity with sophisticated multinational companies and distributed business models
Information for applicants with a need for accommodation: wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $144,200 - 265,600
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
View Now

Senior GRC Analyst, Information Security

14600 Rochester, New York Molina Healthcare

Posted 19 days ago

Job Viewed

Tap Again To Close

Job Description

***Candidate must be able to work in the PST time zone. ***

Job Summary

This position will execute the Information and Cybersecurity Risk Management programs, concentrating on internal and third-party risk assessments and audits. Assessment and compliance activities include validating controls in the IT department, managing risk findings, and verifying their remediation. Must have excellent written and verbal communication skills and a strong understanding of IT risks, cloud security, application systems security, and third-party security. Must be results-oriented with the ability to collaborate with multiple process owners and stakeholders simultaneously.

ESSENTIAL FUNCTIONS

Duties and Responsibilities

  • Lead, plan, and conduct periodic cyber and information security risk assessments and audits of third parties enterprise-wide.

  • Identify, assess, and document cybersecurity risks for Molina and its suppliers.

  • Partner with internal and external auditors to facilitate compliance audits and mitigate findings.

  • Manage documentation (e.g., requesting, reviewing, preparing) for regulatory and compliance audits & assessments.

  • Ensure compliance with applicable regulations (e.g., HIPAA, NYS DFS) and industry standards (e.g., NIST).

  • Develop and maintain security policies, plans, charters, standards, and procedures.

  • Promote security awareness through communication, training, and documentation.

  • Develop and maintain dashboards to manage and communicate risk to relevant stakeholders.

  • Develop and monitor metrics and prepare reports for senior management.

  • Monitor the inventory for vendors and suppliers.

  • Identify risks and recommend process improvements in the third-party risk management and supply chain program.

  • Build strong partnerships and collaborate with cross-functional teams.

  • Lead and execute third-party risk mitigation strategies and corrective action plans.

  • Monitor and manage third-party risks using GRC and security tools.

  • Stay current on developments in the industry and within the company.

Job Qualifications

Required Education

Bachelor's Degree in Information Systems/Security, Computer Science, Cybersecurity, or related field.

Required Experience

  • Minimum 5 years relevant experience in cybersecurity with a focus on governance, risk and compliance.

  • Professional certification(s) such as Certified Information Systems Auditor (CISA), Certified Information Systems

  • Security Professional (CISSP), or Certified in Risk and Information Systems Control (CRISC) required.

  • Adaptable to fast-changing environments and comfortable with ambiguity.

  • Excellent verbal, written, and interpersonal skills.

  • Big 4 or consulting experience.

  • Strong proficiency in regulations and industry frameworks (e.g., HIPAA, NIST, HITRUST)

  • Experience with GRC and security performance monitoring tools (e.g., Lockpath, ServiceNow, Prevalent, BitSight).

  • Ability to travel approximately 10%

To all current Molina employees: If you are interested in applying for this position, please apply through the intranet job listing.

Molina Healthcare offers a competitive benefits and compensation package. Molina Healthcare is an Equal Opportunity Employer (EOE) M/F/D/V.

Pay Range: $77,969 - $171,058 / ANNUAL

*Actual compensation may vary from posting based on geographic location, work experience, education and/or skill level.

View Now

Senior GRC Analyst, Information Security

14651 Rochester, New York Molina Healthcare

Posted 20 days ago

Job Viewed

Tap Again To Close

Job Description

***Candidate must be able to work in the PST time zone. ***
**Job Summary**
This position will execute the Information and Cybersecurity Risk Management programs, concentrating on internal and third-party risk assessments and audits. Assessment and compliance activities include validating controls in the IT department, managing risk findings, and verifying their remediation. Must have excellent written and verbal communication skills and a strong understanding of IT risks, cloud security, application systems security, and third-party security. Must be results-oriented with the ability to collaborate with multiple process owners and stakeholders simultaneously.
**ESSENTIAL FUNCTIONS**
**Duties and Responsibilities**
+ Lead, plan, and conduct periodic cyber and information security risk assessments and audits of third parties enterprise-wide.
+ Identify, assess, and document cybersecurity risks for Molina and its suppliers.
+ Partner with internal and external auditors to facilitate compliance audits and mitigate findings.
+ Manage documentation (e.g., requesting, reviewing, preparing) for regulatory and compliance audits & assessments.
+ Ensure compliance with applicable regulations (e.g., HIPAA, NYS DFS) and industry standards (e.g., NIST).
+ Develop and maintain security policies, plans, charters, standards, and procedures.
+ Promote security awareness through communication, training, and documentation.
+ Develop and maintain dashboards to manage and communicate risk to relevant stakeholders.
+ Develop and monitor metrics and prepare reports for senior management.
+ Monitor the inventory for vendors and suppliers.
+ Identify risks and recommend process improvements in the third-party risk management and supply chain program.
+ Build strong partnerships and collaborate with cross-functional teams.
+ Lead and execute third-party risk mitigation strategies and corrective action plans.
+ Monitor and manage third-party risks using GRC and security tools.
+ Stay current on developments in the industry and within the company.
**Job Qualifications**
**Required Education**
Bachelor's Degree in Information Systems/Security, Computer Science, Cybersecurity, or related field.
**Required Experience**
+ Minimum 5 years relevant experience in cybersecurity with a focus on governance, risk and compliance.
+ Professional certification(s) such as Certified Information Systems Auditor (CISA), Certified Information Systems
+ Security Professional (CISSP), or Certified in Risk and Information Systems Control (CRISC) required.
+ Adaptable to fast-changing environments and comfortable with ambiguity.
+ Excellent verbal, written, and interpersonal skills.
+ Big 4 or consulting experience.
+ Strong proficiency in regulations and industry frameworks (e.g., HIPAA, NIST, HITRUST)
+ Experience with GRC and security performance monitoring tools (e.g., Lockpath, ServiceNow, Prevalent, BitSight).
+ Ability to travel approximately 10%
To all current Molina employees: If you are interested in applying for this position, please apply through the intranet job listing.
Molina Healthcare offers a competitive benefits and compensation package. Molina Healthcare is an Equal Opportunity Employer (EOE) M/F/D/V.
Pay Range: $77,969 - $171,058 / ANNUAL
*Actual compensation may vary from posting based on geographic location, work experience, education and/or skill level.
View Now

Sr Network Security Engineer

14600 Rochester, New York University of Rochester

Posted 23 days ago

Job Viewed

Tap Again To Close

Job Description

As a community, the University of Rochester is defined by a deep commitment to Meliora - Ever Better. Embedded in that ideal are the values we share: equity, leadership, integrity, openness, respect, and accountability. Together, we will set the highest standards for how we treat each other to ensure our community is welcoming to all and is a place where all can thrive.

Job Location (Full Address):

300 Science Pkwy, Rochester, New York, United States of America, 14620

Opening:

Worker Subtype:

Regular

Time Type:

Full time

Scheduled Weekly Hours:

40

Department:

100086 University IT / IS

Work Shift:

UR - Day (United States of America)

Range:

UR URG 114

Compensation Range:

$86,482.00 - $129,723.00

The referenced pay range represents the minimum and maximum compensation for this job. Individual annual salaries/hourly rates will be set within the job's compensation range, and will be determined by considering factors including, but not limited to, market data, education, experience, qualifications, expertise of the individual, and internal equity considerations.

Responsibilities:

The Sr. Network Security Engineer ensures the security, stability, and integrity of all internal and external firewalls. This is achieved by planning, designing, developing, and managing firewall rules that comply with company security requirements and risk acceptance. In addition, the Network Security Engineer Lead participates in the design, installation, monitoring, maintenance, refresh, support, and optimization of all network firewall hardware and software.

The Sr. Network Security Engineer ensures the security, stability, and integrity of all internal and external firewalls. This is achieved by planning, designing, developing, and managing firewall rules that comply with company security requirements and risk acceptance. In addition, the Network Security Engineer Lead participates in the design, installation, monitoring, maintenance, refresh, support, and optimization of all network firewall hardware and software.

JOB DUTIES AND RESPONSIBILITIES:

  • Manage firewalls that protect our complex and diverse network; includes design, installation, monitoring, administration, and maintenance.

  • Respond to the evolving threat landscape and our changing business needs by developing and maintaining efficient and secure firewall policies and configurations.

  • Complete requests for updates to firewall policies that often require critical thinking and careful analysis.

  • Troubleshoot user-reported issues, either updating firewalls to resolve, or directing people to an alternate solution.

  • Investigate and help resolve network events and issues discovered by other infoSecOps teams.

  • Adhere to processes and procedures for change management and trouble ticket resolution, and maintain documentation as changes are made.

  • Lead architecture designs for network security platforms, including remote access and site-to-site VPN, and network growth that requires additional firewalls.

  • Develop, maintain, and organize documentation for SME platforms and internal processes.

  • Teach, train, and guide other team members to improve their skills.

  • Model strong adaptability and the ability to readily expand knowledge and expertise as new opportunities arise.

  • Maintain awareness of developing trends and best pracices in security, and continue to deepen established skills with ongoing personal development.

  • Maintain a netflow collection and analysis platform, and ensure that relevant data and events are forwarded to our SEIM.

  • Ensure that firewall and system logs for our platforms are forwarded to our SEIM.

  • Collaborate with Network and Systems teams to ensure that appropriate monitoring and alerting is done for our platofrms and that events are resolved.

  • Attend interdepartmental and project meetings and serve as team representative.

  • Provide high-level support to others in general problem resolution.

  • Participate in team on call rotation as required.

  • Perform other duties as assigned

QUALIFICATIONS:

  • Bachelor's degree in related discipline such as Computer Science, Business, Mathematics, Statistics, Science or Engineering required.

  • Master's Degree preferred.

  • 4 - 5 years of related experience, preferably at least 2 years in a supervisory capacity required (or an equivalent combination of education and experience).

Required Technical Skills:

  • Knowledge of computer networking concepts and protocols, and network security methodologies; knowledge of cyber threats and vulnerabilities; knowledge of encryption.

  • Skill at managing systems in a disciplined IT environment.

  • Skill at troubleshooting issues and critical thinking.

  • Knowledge of and familiarity with physical and virtual network devices (hubs, switches, routers, firewalls, etc.)

  • Skill in understanding the configuration of diverse firewall features, including packet filtering, routing, NAT, threat protection / IDS, IPSec and SSL VPN, etc. Skill in general firewall administration, with emphasis on Palo Alto or Cisco firewalls preferred.

  • Skill in assessing, testing, and evaluating tools (current and proposed) to identify areas for improvement.

  • Skill in technical writing and presentation.

  • Skill in analyzing and reporting on team performance and ways to improve.

Required Business Skills:

  • Ability to succeed at customer satisfaction and appropriate follow-through in all interactions coupled with a sense of urgency when needed, while working under pressure and handling multiple, competing priorities.

  • Ability to understand and model organizational mission, vision and values.

  • Ability to re-prioritize projects for self and others as unplanned events occur to ensure immediate urgent tasks are completed and larger important goals are still ultimately met.

  • Ability to communicate complex information, concepts, or ideas clearly in a confident and well-organized manner through verbal, written, and / or visual means.

  • Ability to adjust to and operate in a diverse, unpredictable, challenging, and fast-paced work environment.

The University of Rochester is committed to fostering, cultivating, and preserving an inclusive and welcoming culture to advance the University's Mission to Learn, Discover, Heal, Create - and Make the World Ever Better. In support of our values and those of our society, the University is committed to not discriminating on the basis of age, color, disability, ethnicity, gender identity or expression, genetic information, marital status, military/veteran status, national origin, race, religion, creed, sex, sexual orientation, citizenship status, or any other characteristic protected by federal, state, or local law (Protected Characteristics). This commitment extends to non-discrimination in the administration of our policies, admissions, employment, access, and recruitment of candidates, for all persons consistent with our values and based on applicable law.

Notice: If you are a Current Employee, please log into myURHR to search for and apply to jobs using the Jobs Hub. Your application, if submitted using this portal, cannot be moved forward.

Learn. Discover. Heal. Create.

Located in western New York, Rochester is our namesake and our home. One of the world's leading research universities, Rochester has a long tradition of breaking boundaries-always pushing and questioning, learning and unlearning. We transform ideas into enterprises that create value and make the world ever better.

If you're looking for a career in higher education or health care, the University of Rochester may offer the perfect opportunity for your background and goals

At the University of Rochester, we are committed to fostering, cultivating, and preserving an inclusive and welcoming culture and are united by a strong commitment to be ever better-Meliora. It is an ideal that informs our shared mission to ensure all members of our community feel safe, respected, included, and valued.

View Now

Sr Network Security Engineer

14651 Rochester, New York University of Rochester

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

As a community, the University of Rochester is defined by a deep commitment to Meliora - Ever Better. Embedded in that ideal are the values we share: equity, leadership, integrity, openness, respect, and accountability. Together, we will set the highest standards for how we treat each other to ensure our community is welcoming to all and is a place where all can thrive.
**Job Location (Full Address):**
300 Science Pkwy, Rochester, New York, United States of America, 14620
**Opening:**
Worker Subtype:
Regular
Time Type:
Full time
Scheduled Weekly Hours:
40
Department:
100086 University IT / IS
Work Shift:
UR - Day (United States of America)
Range:
UR URG 114
Compensation Range:
$86,482.00 - $129,723.00
_The referenced pay range represents the minimum and maximum compensation for this job. Individual annual salaries/hourly rates will be set within the job's compensation range, and will be determined by considering factors including, but not limited to, market data, education, experience, qualifications, expertise of the individual, and internal equity considerations._
**Responsibilities:**
The Sr. Network Security Engineer ensures the security, stability, and integrity of all internal and external firewalls. This is achieved by planning, designing, developing, and managing firewall rules that comply with company security requirements and risk acceptance. In addition, the Network Security Engineer Lead participates in the design, installation, monitoring, maintenance, refresh, support, and optimization of all network firewall hardware and software.
The Sr. Network Security Engineer ensures the security, stability, and integrity of all internal and external firewalls. This is achieved by planning, designing, developing, and managing firewall rules that comply with company security requirements and risk acceptance. In addition, the Network Security Engineer Lead participates in the design, installation, monitoring, maintenance, refresh, support, and optimization of all network firewall hardware and software.
JOB DUTIES AND RESPONSIBILITIES:
- Manage firewalls that protect our complex and diverse network; includes design, installation, monitoring, administration, and maintenance.
- Respond to the evolving threat landscape and our changing business needs by developing and maintaining efficient and secure firewall policies and configurations.
- Complete requests for updates to firewall policies that often require critical thinking and careful analysis.
- Troubleshoot user-reported issues, either updating firewalls to resolve, or directing people to an alternate solution.
- Investigate and help resolve network events and issues discovered by other infoSecOps teams.
- Adhere to processes and procedures for change management and trouble ticket resolution, and maintain documentation as changes are made.
- Lead architecture designs for network security platforms, including remote access and site-to-site VPN, and network growth that requires additional firewalls.
- Develop, maintain, and organize documentation for SME platforms and internal processes.
- Teach, train, and guide other team members to improve their skills.
- Model strong adaptability and the ability to readily expand knowledge and expertise as new opportunities arise.
- Maintain awareness of developing trends and best pracices in security, and continue to deepen established skills with ongoing personal development.
- Maintain a netflow collection and analysis platform, and ensure that relevant data and events are forwarded to our SEIM.
- Ensure that firewall and system logs for our platforms are forwarded to our SEIM.
- Collaborate with Network and Systems teams to ensure that appropriate monitoring and alerting is done for our platofrms and that events are resolved.
- Attend interdepartmental and project meetings and serve as team representative.
- Provide high-level support to others in general problem resolution.
- Participate in team on call rotation as required.
- Perform other duties as assigned
QUALIFICATIONS:
- Bachelor's degree in related discipline such as Computer Science, Business, Mathematics, Statistics, Science or Engineering required.
- Master's Degree preferred.
- 4 - 5 years of related experience, preferably at least 2 years in a supervisory capacity required (or an equivalent combination of education and experience).
Required Technical Skills:
- Knowledge of computer networking concepts and protocols, and network security methodologies; knowledge of cyber threats and vulnerabilities; knowledge of encryption.
- Skill at managing systems in a disciplined IT environment.
- Skill at troubleshooting issues and critical thinking.
- Knowledge of and familiarity with physical and virtual network devices (hubs, switches, routers, firewalls, etc.)
- Skill in understanding the configuration of diverse firewall features, including packet filtering, routing, NAT, threat protection / IDS, IPSec and SSL VPN, etc. Skill in general firewall administration, with emphasis on Palo Alto or Cisco firewalls preferred.
- Skill in assessing, testing, and evaluating tools (current and proposed) to identify areas for improvement.
- Skill in technical writing and presentation.
- Skill in analyzing and reporting on team performance and ways to improve.
Required Business Skills:
- Ability to succeed at customer satisfaction and appropriate follow-through in all interactions coupled with a sense of urgency when needed, while working under pressure and handling multiple, competing priorities.
- Ability to understand and model organizational mission, vision and values.
- Ability to re-prioritize projects for self and others as unplanned events occur to ensure immediate urgent tasks are completed and larger important goals are still ultimately met.
- Ability to communicate complex information, concepts, or ideas clearly in a confident and well-organized manner through verbal, written, and / or visual means.
- Ability to adjust to and operate in a diverse, unpredictable, challenging, and fast-paced work environment.
The University of Rochester is committed to fostering, cultivating, and preserving an inclusive and welcoming culture to advance the University's Mission to Learn, Discover, Heal, Create - and Make the World Ever Better. In support of our values and those of our society, the University is committed to not discriminating on the basis of age, color, disability, ethnicity, gender identity or expression, genetic information, marital status, military/veteran status, national origin, race, religion, creed, sex, sexual orientation, citizenship status, or any other characteristic protected by federal, state, or local law (Protected Characteristics). This commitment extends to non-discrimination in the administration of our policies, admissions, employment, access, and recruitment of candidates, for all persons consistent with our values and based on applicable law.
Notice: If you are a **Current** **Employee,** please **log into myURHR** to search for and apply to jobs using the Jobs Hub. Your application, if submitted using this portal, cannot be moved forward.
**Learn. Discover. Heal. Create.**
Located in western New York, Rochester is our namesake and our home. One of the world's leading research universities, Rochester has a long tradition of breaking boundaries-always pushing and questioning, learning and unlearning. We transform ideas into enterprises that create value and make the world ever better.
If you're looking for a career in higher education or health care, the University of Rochester may offer the perfect opportunity for your background and goals
At the University of Rochester, we are committed to fostering, cultivating, and preserving an inclusive and welcoming culture and are united by a strong commitment to be ever better-Meliora. It is an ideal that informs our shared mission to ensure all members of our community feel safe, respected, included, and valued.
View Now

Information Technology Specialist 4 (Information Security), ref #Roch25

14600 Rochester, New York New York State Civil Service

Posted today

Job Viewed

Tap Again To Close

Job Description

NY HELP No

Agency Information Technology Services, Office of

Title Information Technology Specialist 4 (Information Security), ref #Roch25

Occupational Category I.T. Engineering, Sciences

Salary Grade 25

Bargaining Unit PS&T - Professional, Scientific, and Technical (PEF)

Salary Range From $96336 to $21413 Annually

Employment Type Full-Time

Appointment Type Contingent Permanent

Jurisdictional Class Non-competitive Class

Travel Percentage 0%

Workweek Other (see below)

"Other" Explanation Multiple shifts being filled for 24x7x365 operationsAdditional details on work shift will be discussed at time of interview

Hours Per Week 37.5

Workday

From 8 AM

To 5 PM

Flextime allowed? No

Mandatory overtime? No

Compressed workweek allowed? Yes

Telecommuting allowed? Yes

County Monroe

Street Address 1 East Avenue

With the possibility of New York City or other locations statewide

City Rochester

State NY

Zip Code 14604

Duties Description ITS provides operational support to state agencies on a 24x7x365 basis; some positions may be required to provide this critical service at any time.This position will be located in Rochester, NY. The position requires availability during off-shift hours to ensure appropriate response to security incidents or other critical activities that may impact sensitive information, critical systems, NYS agencies, or ITS. Additional information on shift will be discussed at time of interview.Under the direction of senior leadership within the Office of Information Technology Services Chief Information Security Office, the incumbent will be a Tier 2 Analyst working in the New York Security Operations Center (NYSOC) participating in the intake and triage of a wide variety of security events for NYSOC subscribers. The incumbent will leverage a variety of threat intelligence sources and indicators of compromise (IOCs) to perform SOC services across a large and diverse multi-entity environment. The incumbent will participate in the ingestion and response to all forms of threat intelligence and vulnerability announcements received from many third parties such as vendors, DHS CISA, MS-ISAC, NYSP, and other sources of open-source intelligence. This position requires the incumbent to possess a solid understanding of the current cyber threat landscape, the tactics, techniques, tools, and procedures commonly leveraged, and the steps necessary to swiftly identify, and contain a potential cyber threat. Additionally, this position requires an incumbent to act with a great deal of independence in alignment with agency and upper-level management strategic direction. Due to the nature of the work performed by the SOC, this position requires availability during off-shift hours to ensure appropriate response to security incidents or other critical activities as needed.Duties include, but are not limited to:• Lead and support Tier 0 and Tier 1 analysts in the identification, triage, and escalation of security events. • Monitor multiple sources (phone, email, automated systems, etc.) for new security events. • Follow all established procedures, workflows, and tasks related to NYSOC activities. • Work with Tier 0 and Tier 1 analysts and the SOC team to ensure identified incidents are documented and escalated efficiently.• Ensure that tickets are properly created and tracked in the ticket management system, and in a timely manner. • Ensure that trusted third party notifications are forwarded to the appropriate stakeholders. • Provide input and feedback in the development and revision of standard operating procedures and workflows. • Provide supporting analysis related to cyber security incidents and events.• Provide input and feedback to the engineering and development team to appropriately tune the performance of multiple security tools such as endpoint detection and response (EDR), Security Orchestration, automation and response (SOAR), sandbox tools, antivirus/antimalware, and security incident and event management (SIEM) to increase the quality of generated alerts.• Participate in active projects to help identify and resolve issues/problems to ensure successful outcomes are achieved.• Maintain an adequate level of current knowledge and proficiency in information security through annual Continuing Professional Education (CPE) credits directly related to information security. • Perform the full range of supervisory responsibilities and additional duties as assigned.

Minimum Qualifications Information Technology Specialist 4 (Information Security)Non-competitive: seven years of information technology, cybersecurity, or information assurance experience**, including one year at the supervisory level.**Substitutions:A bachelor's or higher-level degree in any field including or supplemented by 15 semester credit hours in computer science or related field substitutes for three years of required experience; any bachelor’s substitutes for two years of required experience.An associate degree with 15 semester credit hours in computer science or related field may substitute for one year of required experience. Candidates in a bachelor’s degree program with at least 15 semester credit hours in computer science or related field may substitute such credits for one year of required experience.A master’s degree or higher in computer science or related field substitutes for one year of required experience.Preferred Qualifications: The ideal candidate would possess one or more of the following preferred qualifications:• Certifications in one or more of the following:• Cyber Defense (e.g., GCIA, GCIH, GCED, GSOM, GSOC, GMON, GCDA)• Cyber Threat Intelligence (e.g., GCTI, CTIA, CCIP, GOSI)• Information Security and Management (e.g., CISSP, CISM, CCISO, CCSK)• 2+ years’ experience in one or more of the following:• Working as a senior SOC analyst or team lead• Conducting log analysis (e.g., firewall logs, DNS logs, proxy logs, IDS/IPS logs)• Using SIEM technologies to support in-depth investigations, specifically IBM QRadar• 1+ years’ experience in one or more of the following:• Developing process and training documentation• Participating in cyber incident response• Strong understanding of enterprise IT environments, including but not limited to system administration, network architecture, operating systems, endpoint detection and response tools, and network-based security solutions (e.g., IDS/IPS, firewalls).• Strong understanding of the foundations of Information Security, such as the CIA triad, information classification, identity and access management, risk management, vulnerability management, secure architecture and engineering, network security, software development security, etc.• Excellent oral and written communication skills including the ability to clearly articulate information technology and information security concepts to a varied audience to facilitate wide understanding.• Excellent analytical process, hypothesis generation, and reporting skills.

Additional Comments This posting may be used to fill multiple positions.ITS will not offer permanent employment to any candidate unless the candidate provides documentation that they are authorized to accept work in the United States on a permanent basis. It is the policy of ITS not to hire F1 or H1 visa holders for permanent employment or to sponsor non-immigrant aliens for temporary work authorization visas or for permanent residence.Some positions may require fingerprinting.Some positions may require up to 25% travel and/or lifting up to 50 lbs. Some positions are pending Civil Service approval. Details of position(s) will be described further if you are selected for an interview.Positions located in New York City, will receive an additional $3,400 downstate adjustment location pay with regular annual sal ry. Positions located in the Mid-Hudson will receive an additional 1,650 adjustment location pay.Benefits of Working for NYS Generous benefits package, worth 65% of salary, including:Holiday & Paid Time Off• Thirteen (13) paid holidays annually• Up to Thirteen (13) days of paid vacation leave annually• Up to Five (5) days of paid personal leave annually• Up to Thirteen (13) days of paid sick leave annually for PEF.• Up to three (3) days of professional leave annually to participate in professional developmentHealth Care Benefits• Eligible employees and dependents can pick from a variety of affordable health insurance programs• Family dental and vision benefits at no additional costAdditional Benefits• New York State Employees’ Retirement System (ERS) Membership• NYS Deferred Compensation• Access to NY 529 and NY ABLE College Savings Programs, as well as U.S. Savings Bonds• Public Service Loan Forgiveness (PSLF)• And many more.The Office of Information Technology Services is an equal opportunity employer, and we recognize that diversity in our workforce is critical to fulfilling our mission. We encourage all individuals with disabilities to apply.Some positions may require additional credentials or a background check to verify your identity.

Some positions may require additional credentials or a background check to verify your identity.

Name ITS Human Resources

Telephone

Fax

Email Address

Address

Street Empire State Plaza

Swan Street Building, Core 4, Floor 1

City Albany

State NY

Zip Code 12220

Notes on Applying To apply for this position, please submit a cover letter and resume clearly indicating how you qualify. Ensure that you include the vacancy ID in the subject of your email for prompt routing. Your Social Security number may be required to confirm eligibility.

View Now
Be The First To Know

About the latest Cybersecurity professionals Jobs in Greece !

Information Technology Specialist 3 (Information Security), ref #Roch23

14600 Rochester, New York New York State Civil Service

Posted today

Job Viewed

Tap Again To Close

Job Description

NY HELP No

Agency Information Technology Services, Office of

Title Information Technology Specialist 3 (Information Security), ref #Roch23

Occupational Category I.T. Engineering, Sciences

Salary Grade 23

Bargaining Unit PS&T - Professional, Scientific, and Technical (PEF)

Salary Range From $86681 to $09650 Annually

Employment Type Full-Time

Appointment Type Contingent Permanent

Jurisdictional Class Non-competitive Class

Travel Percentage 0%

Workweek Other (see below)

"Other" Explanation Multiple shifts being filled for 24x7x365 operationsAdditional details on work shift will be discussed at time of interview

Hours Per Week 37.50

Workday

From 8 AM

To 5 PM

Flextime allowed? No

Mandatory overtime? No

Compressed workweek allowed? Yes

Telecommuting allowed? Yes

County Monroe

Street Address 1 East Avenue

With the possibility of New York City or other locations statewide

City Rochester

State NY

Zip Code 14604

Duties Description ITS provides operational support to state agencies on a 24x7x365 basis; some positions may be required to provide this critical service at any time.This position will be located in Rochester, NY. The position requires availability during off-shift hours to ensure appropriate response to security incidents or other critical activities that may impact sensitive information, critical systems, NYS agencies, or ITS. Additional information on shift will be discussed at time of interview.Under the direction of senior leadership within the Office of Information Technology Services Chief Information Security Office, the incumbent will be a Tier 1 Analyst working in the New York Security Operations Center (NYSOC) participating in the intake and triage of a wide variety of security events for NYSOC subscribers. The incumbent will leverage a variety of threat intelligence sources and indicators of compromise (IOCs) to perform SOC services across a large and diverse multi-entity environment. The incumbent will participate in the ingestion and response to all forms of threat intelligence and vulnerability announcements received from many third parties such as vendors, DHS CISA, MS-ISAC, NYSP, and other sources of open-source intelligence. This position requires the incumbent to possess a solid understanding of the current cyber threat landscape, the tactics, techniques, tools, and procedures commonly leveraged, and the steps necessary to swiftly identify, and contain a potential cyber threat. Additionally, this position requires an incumbent to act with a great deal of independence in alignment with agency and upper-level management strategic direction. Due to the nature of the work performed by the SOC, this position requires availability during off-shift hours to ensure appropriate response to security incidents or other critical activities as needed.Duties include, but are not limited to:• Support Tier 0 analysts in the identification, triage, and escalation of security events. • Monitor multiple sources (phone, email, automated systems, etc.) for new security events. • Follow all established procedures, workflows, and tasks related to NYSOC activities. • Work with Tier 0 analysts and the SOC team to ensure identified incidents are documented and escalated efficiently.• Ensure that tickets are properly created and tracked in the ticket management system, and in a timely manner. • Ensure that trusted third party notifications are forwarded to the appropriate stakeholders. • Provide input and feedback in the development and revision of standard operating procedures and workflows. • Provide supporting analysis related to cyber security incidents and events.• Provide input and feedback to the engineering and development team to appropriately tune the performance of multiple security tools such as endpoint detection and response (EDR), Security Orchestration, automation and response (SOAR), sandbox tools, antivirus/antimalware, and security incident and event management (SIEM) to increase the quality of generated alerts.• Participate in active projects to help identify and resolve issues/problems to ensure successful outcomes are achieved.• Maintain an adequate level of current knowledge and proficiency in information security through annual Continuing Professional Education (CPE) credits directly related to information security. • Perform additional duties as assigned.

Minimum Qualifications Information Technology Specialist 3 (Information Security)Non-competitive: five years of information technology, cybersecurity, or information assurance experience**.**Substitutions:A bachelor's or higher-level degree in any field including or supplemented by 15 semester credit hours in computer science or related field substitutes for three years of required experience; any bachelor’s substitutes for two years of required experience.An associate degree with 15 semester credit hours in computer science or related field may substitute for one year of required experience. Candidates in a bachelor’s degree program with at least 15 semester credit hours in computer science or related field may substitute such credits for one year of required experience.A master’s degree or higher in computer science or related field substitutes for one year of required experience.Preferred Qualifications: The ideal candidate would possess one or more of the following preferred qualifications:• Certifications in one or more of the following:• Cyber Defense (e.g., GCIA, GCIH, GCED, GSOM, GSOC, GMON, GCDA)• Cyber Threat Intelligence (e.g., GCTI, CTIA, CCIP, GOSI)• Information Security Management (e.g., CISSP, CISM, CCISO)• 1+ years’ experience in one or more of the following:• Working as a SOC analyst• Conducting log analysis (e.g., firewall logs, DNS logs, proxy logs, IDS/IPS logs)• Using SIEM technologies to support in-depth investigations• Participating in cyber incident response• Strong understanding of enterprise IT environments, including but not limited to system administration, network architecture, operating systems, endpoint detection and response tools, and network-based security solutions (e.g., IDS/IPS, firewalls).• Strong understanding of the foundations of Information Security, such as the CIA triad, information classification, identity and access management, risk management, vulnerability management, secure architecture and engineering, network security, software development security, etc.• Excellent oral and written communication skills including the ability to clearly articulate information technology and information security concepts to a varied audience to facilitate wide understanding.• Demonstrated critical thinking, problem solving and analytical skills

Additional Comments This posting may be used to fill multiple positions.ITS will not offer permanent employment to any candidate unless the candidate provides documentation that they are authorized to accept work in the United States on a permanent basis. It is the policy of ITS not to hire F1 or H1 visa holders for permanent employment or to sponsor non-immigrant aliens for temporary work authorization visas or for permanent residence.Some positions may require fingerprinting.Some positions may require up to 25% travel and/or lifting up to 50 lbs. Some positions are pending Civil Service approval. Details of position(s) will be described further if you are selected for an interview.Positions located in New York City, will receive an additional $3,400 downstate adjustment location pay with regular annu l salary. Positions located in the Mid-Hudson will receive an additional 1,650 adjustment location pay.Benefits of Working for NYS Generous benefits package, worth 65% of salary, including:Holiday & Paid Time Off• Thirteen (13) paid holidays annually• Up to Thirteen (13) days of paid vacation leave annually• Up to Five (5) days of paid personal leave annually• Up to Thirteen (13) days of paid sick leave annually for PEF.• Up to three (3) days of professional leave annually to participate in professional developmentHealth Care Benefits• Eligible employees and dependents can pick from a variety of affordable health insurance programs• Family dental and vision benefits at no additional costAdditional Benefits• New York State Employees’ Retirement System (ERS) Membership• NYS Deferred Compensation• Access to NY 529 and NY ABLE College Savings Programs, as well as U.S. Savings Bonds• Public Service Loan Forgiveness (PSLF)• And many more.The Office of Information Technology Services is an equal opportunity employer, and we recognize that diversity in our workforce is critical to fulfilling our mission. We encourage all individuals with disabilities to apply.Some positions may require additional credentials or a background check to verify your identity.

Some positions may require additional credentials or a background check to verify your identity.

Name ITS Human Resources

Telephone

Fax

Email Address

Address

Street Empire State Plaza

Swan Street Building, Core 4, Floor 1

City Albany

State NY

Zip Code 12220

Notes on Applying To apply for this position, please submit a cover letter and resume clearly indicating how you qualify. Ensure that you include the vacancy ID in the subject of your email for prompt routing. Your Social Security number may be required to confirm eligibility.

View Now

Information Technology Specialist 2 (Information Security), ref #Roch18

14600 Rochester, New York New York State Civil Service

Posted today

Job Viewed

Tap Again To Close

Job Description

NY HELP No

Agency Information Technology Services, Office of

Title Information Technology Specialist 2 (Information Security), ref #Roch18

Occupational Category I.T. Engineering, Sciences

Salary Grade 18

Bargaining Unit PS&T - Professional, Scientific, and Technical (PEF)

Salary Range From $66951 to $5138 Annually

Employment Type Full-Time

Appointment Type Contingent Permanent

Jurisdictional Class Non-competitive Class

Travel Percentage 0%

Workweek Other (see below)

"Other" Explanation Multiple shifts being filled for 24x7x365 operationsAdditional details on work shift will be discussed at time of interview

Hours Per Week 37.50

Workday

From 8 AM

To 5 PM

Flextime allowed? No

Mandatory overtime? No

Compressed workweek allowed? Yes

Telecommuting allowed? Yes

County Monroe

Street Address 1 East Avenue

With the possibility of New York City or other locations statewide

City Rochester

State NY

Zip Code 14604

Duties Description ITS provides operational support to state agencies on a 24x7x365 basis; some positions may be required to provide this critical service at any time.This position will be located in Rochester, NY. The position requires availability during off-shift hours to ensure appropriate response to security incidents or other critical activities that may impact sensitive information, critical systems, NYS agencies, or ITS. Additional information on shift will be discussed at time of interview.Under the direction of senior leadership within the Office of Information Technology Services Chief Information Security Office, the incumbent will be a Tier 0 Analyst working in the New York Security Operations Center (NYSOC) participating in the intake and triage of a wide variety of security events for NYSOC subscribers. The incumbent will leverage a variety of threat intelligence sources and indicators of compromise (IOCs) to perform SOC services across a large and diverse multi-entity environment. The incumbent will participate in the ingestion and response to all forms of threat intelligence and vulnerability announcements received from many third parties such as vendors, DHS CISA, MS-ISAC, NYSP, and other sources of open-source intelligence. This position requires the incumbent to possess a solid understanding of the current cyber threat landscape, the tactics, techniques, tools, and procedures commonly leveraged, and the steps necessary to swiftly identify, and contain a potential cyber threat. Additionally, this position requires an incumbent to act with a great deal of independence in alignment with agency and upper-level management strategic direction. Due to the nature of the work performed by the SOC, this position requires availability during off-shift hours to ensure appropriate response to security incidents or other critical activities as needed.Duties include, but are not limited to:• Participate in the identification, triage, and escalation of security events. • Respond to customer phone calls and emails in a professional manner.• Analyze emails for malicious content and respond to customers with appropriate actions.• Follow all established procedures, workflows, and tasks related to NYSOC activities. • Ensure identified incidents are escalated efficiently.• Create and track tickets are properly in the ticket management system in a timely manner. • Respond to NYSOC subscriber’s alerts in a timely manner.• Assist with incident response activities including log and packet analysis.• Work with teams inside and outside of the NYSOC to resolve incidents.• Provide input and feedback in the development and revision of standard operating procedures and workflows. • Provide supporting analysis related to cyber security incidents and events. • Maintain an adequate level of current knowledge and proficiency in information security through annual Continuing Professional Education (CPE) credits directly related to information security. • Perform additional duties as assigned.

Minimum Qualifications Information Technology Specialist 2 (Information Security)Non-competitive: two years* of information technology, cybersecurity, or information assurance experience.*Substitutions: A bachelor's or higher-level degree including or supplemented by 15 semester credit hours in computer science substitutes for both years of required experience; or a bachelor's or higher-level degree in any field substitutes for one year of required experience; 60 semester credit hours including or supplemented by 15 semester credit hours in computer science substitutes for one year of required experience.Preferred Qualifications: The ideal candidate would possess one or more of the following preferred qualifications:• Certifications in one or more of the following:• Cyber Defense (e.g., GCIA, GCIH, GCED, GSOM, GSOC, GMON, GCDA)• Cyber Threat Intelligence (e.g., GCTI, CTIA, CCIP, GOSI)• Information Security Management (e.g., CISSP, CISM, CCISO)• 1+ years’ experience in one or more of the following:• Working as a SOC analyst• Conducting log analysis (e.g., firewall logs, DNS logs, proxy logs, IDS/IPS logs)• Using SIEM technologies to support in-depth investigations• Participating in cyber incident response• Strong understanding of enterprise IT environments, including but not limited to system administration, network architecture, operating systems, endpoint detection and response tools, and network-based security solutions (e.g., IDS/IPS, firewalls).• Strong understanding of the foundations of Information Security, such as the CIA triad, information classification, identity and access management, risk management, vulnerability management, secure architecture and engineering, network security, software development security, etc.• Excellent oral and written communication skills including the ability to clearly articulate information technology and information security concepts to a varied audience to facilitate wide understanding.• Demonstrated critical thinking, problem solving and analytical skills.

Additional Comments This posting may be used to fill multiple positions.ITS will not offer permanent employment to any candidate unless the candidate provides documentation that they are authorized to accept work in the United States on a permanent basis. It is the policy of ITS not to hire F1 or H1 visa holders for permanent employment or to sponsor non-immigrant aliens for temporary work authorization visas or for permanent residence.Some positions may require fingerprinting.Some positions may require up to 25% travel and/or lifting up to 50 lbs. Some positions are pending Civil Service approval. Details of position(s) will be described further if you are selected for an interview.Positions located in New York City, will receive an additional $3,400 downstate adjustment location pay with regular an ual salary. Positions located in the Mid-Hudson will receive an additional 1,650 adjustment location pay.Benefits of Working for NYS Generous benefits package, worth 65% of salary, including:Holiday & Paid Time Off• Thirteen (13) paid holidays annually• Up to Thirteen (13) days of paid vacation leave annually• Up to Five (5) days of paid personal leave annually• Up to Thirteen (13) days of paid sick leave annually for PEF.• Up to three (3) days of professional leave annually to participate in professional developmentHealth Care Benefits• Eligible employees and dependents can pick from a variety of affordable health insurance programs• Family dental and vision benefits at no additional costAdditional Benefits• New York State Employees’ Retirement System (ERS) Membership• NYS Deferred Compensation• Access to NY 529 and NY ABLE College Savings Programs, as well as U.S. Savings Bonds• Public Service Loan Forgiveness (PSLF)• And many more.The Office of Information Technology Services is an equal opportunity employer, and we recognize that diversity in our workforce is critical to fulfilling our mission. We encourage all individuals with disabilities to apply.Some positions may require additional credentials or a background check to verify your identity.

Some positions may require additional credentials or a background check to verify your identity.

Name ITS Human Resources

Telephone

Fax

Email Address

Address

Street Empire State Plaza

Swan Street Building, Core 4, Floor 1

City Albany

State NY

Zip Code 12220

Notes on Applying To apply for this position, please submit a cover letter and resume clearly indicating how you qualify. Ensure that you include the vacancy ID in the subject of your email for prompt routing. Your Social Security number may be required to confirm eligibility.

View Now

Information Technology Specialist 3 (Information Security), ref #Roch23

14600 Rochester, New York StateJobsNY

Posted today

Job Viewed

Tap Again To Close

Job Description

Duties Description ITS provides operational support to state agencies on a 24x7x365 basis; some positions may be required to provide this critical service at any time.

This position will be located in Rochester, NY. The position requires availability during off-shift hours to ensure appropriate response to security incidents or other critical activities that may impact sensitive information, critical systems, NYS agencies, or ITS. Additional information on shift will be discussed at time of interview.

Under the direction of senior leadership within the Office of Information Technology Services Chief Information Security Office, the incumbent will be a Tier 1 Analyst working in the New York Security Operations Center (NYSOC) participating in the intake and triage of a wide variety of security events for NYSOC subscribers. The incumbent will leverage a variety of threat intelligence sources and indicators of compromise (IOCs) to perform SOC services across a large and diverse multi-entity environment. The incumbent will participate in the ingestion and response to all forms of threat intelligence and vulnerability announcements received from many third parties such as vendors, DHS CISA, MS-ISAC, NYSP, and other sources of open-source intelligence.
This position requires the incumbent to possess a solid understanding of the current cyber threat landscape, the tactics, techniques, tools, and procedures commonly leveraged, and the steps necessary to swiftly identify, and contain a potential cyber threat. Additionally, this position requires an incumbent to act with a great deal of independence in alignment with agency and upper-level management strategic direction.
Due to the nature of the work performed by the SOC, this position requires availability during off-shift hours to ensure appropriate response to security incidents or other critical activities as needed.
Duties include, but are not limited to:
• Support Tier 0 analysts in the identification, triage, and escalation of security events.
• Monitor multiple sources (phone, email, automated systems, etc.) for new security events.
• Follow all established procedures, workflows, and tasks related to NYSOC activities.
• Work with Tier 0 analysts and the SOC team to ensure identified incidents are documented and escalated efficiently.
• Ensure that tickets are properly created and tracked in the ticket management system, and in a timely manner.
• Ensure that trusted third party notifications are forwarded to the appropriate stakeholders.
• Provide input and feedback in the development and revision of standard operating procedures and workflows.
• Provide supporting analysis related to cyber security incidents and events.
• Provide input and feedback to the engineering and development team to appropriately tune the performance of multiple security tools such as endpoint detection and response (EDR), Security Orchestration, automation and response (SOAR), sandbox tools, antivirus/antimalware, and security incident and event management (SIEM) to increase the quality of generated alerts.
• Participate in active projects to help identify and resolve issues/problems to ensure successful outcomes are achieved.
• Maintain an adequate level of current knowledge and proficiency in information security through annual Continuing Professional Education (CPE) credits directly related to information security.
• Perform additional duties as assigned.

Minimum Qualifications Information Technology Specialist 3 (Information Security)

Non-competitive: five years of information technology, cybersecurity, or information assurance experience**.
**Substitutions:

A bachelor's or higher-level degree in any field including or supplemented by 15 semester credit hours in computer science or related field substitutes for three years of required experience; any bachelor's substitutes for two years of required experience.

An associate degree with 15 semester credit hours in computer science or related field may substitute for one year of required experience. Candidates in a bachelor's degree program with at least 15 semester credit hours in computer science or related field may substitute such credits for one year of required experience.

A master's degree or higher in computer science or related field substitutes for one year of required experience.

Preferred Qualifications:
The ideal candidate would possess one or more of the following preferred qualifications:
• Certifications in one or more of the following:
• Cyber Defense (e.g., GCIA, GCIH, GCED, GSOM, GSOC, GMON, GCDA)
• Cyber Threat Intelligence (e.g., GCTI, CTIA, CCIP, GOSI)
• Information Security Management (e.g., CISSP, CISM, CCISO)
• 1+ years' experience in one or more of the following:
• Working as a SOC analyst
• Conducting log analysis (e.g., firewall logs, DNS logs, proxy logs, IDS/IPS logs)
• Using SIEM technologies to support in-depth investigations
• Participating in cyber incident response
• Strong understanding of enterprise IT environments, including but not limited to system administration, network architecture, operating systems, endpoint detection and response tools, and network-based security solutions (e.g., IDS/IPS, firewalls).
• Strong understanding of the foundations of Information Security, such as the CIA triad, information classification, identity and access management, risk management, vulnerability management, secure architecture and engineering, network security, software development security, etc.
• Excellent oral and written communication skills including the ability to clearly articulate information technology and information security concepts to a varied audience to facilitate wide understanding.
• Demonstrated critical thinking, problem solving and analytical skills

Additional Comments This posting may be used to fill multiple positions.

ITS will not offer permanent employment to any candidate unless the candidate provides documentation that they are authorized to accept work in the United States on a permanent basis. It is the policy of ITS not to hire F1 or H1 visa holders for permanent employment or to sponsor non-immigrant aliens for temporary work authorization visas or for permanent residence.

Some positions may require fingerprinting.

Some positions may require up to 25% travel and/or lifting up to 50 lbs. Some positions are pending Civil Service approval. Details of position(s) will be described further if you are selected for an interview.

Positions located in New York City, will receive an additional $3,400 downstate adjustment location pay with regular annual salary. Positions located in the Mid-Hudson will receive an additional $1,650 adjustment location pay.

Benefits of Working for NYS Generous benefits package, worth 65% of salary, including:
Holiday & Paid Time Off
• Thirteen (13) paid holidays annually
• Up to Thirteen (13) days of paid vacation leave annually
• Up to Five (5) days of paid personal leave annually
• Up to Thirteen (13) days of paid sick leave annually for PEF.
• Up to three (3) days of professional leave annually to participate in professional development

Health Care Benefits
• Eligible employees and dependents can pick from a variety of affordable health insurance programs
• Family dental and vision benefits at no additional cost

Additional Benefits
• New York State Employees' Retirement System (ERS) Membership
• NYS Deferred Compensation
• Access to NY 529 and NY ABLE College Savings Programs, as well as U.S. Savings Bonds
• Public Service Loan Forgiveness (PSLF)
• And many more.

The Office of Information Technology Services is an equal opportunity employer, and we recognize that diversity in our workforce is critical to fulfilling our mission. We encourage all individuals with disabilities to apply.
Some positions may require additional credentials or a background check to verify your identity.

Some positions may require additional credentials or a background check to verify your identity.

Name ITS Human Resources

Telephone

Fax

Email Address

Address

Street Empire State Plaza

Swan Street Building, Core 4, Floor 1

City Albany

State NY

Zip Code 12220

Notes on Applying To apply for this position, please submit a cover letter and resume clearly indicating how you qualify. Ensure that you include the vacancy ID in the subject of your email for prompt routing. Your Social Security number may be required to confirm eligibility.

View Now
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Cybersecurity Professionals Jobs View All Jobs in Greece