Information Security Manager
New York State Jobs
Information Security Manager
ITS provides operational support to state agencies on a 24x7x365 basis; some positions may be required to provide this critical service at any time. Under the direction of the Executive Director of Security Shared Services (S3), within the Chief Information Security Office/Security Shared Services section, this position will assist with the oversight of the Security Shared Services Bureau. The position will supervise four or more Senior Information Security Officers SG-29 which lead teams supporting the security needs of multiple ITS dedicated agency/sector teams. The position will oversee the Incident Response Program. The position will assist with oversight of the NYS Cyber Risk Remediation Program (CRRP) and the development of products offered by the Chief Information Security Office (CISO). The incumbent will act as a member of the Chief Information Security Office Executive Leadership Team and participate in shaping and implementing the strategic vision for cybersecurity within NYS.
The position requires an incumbent to act with a great deal of independence in alignment with agency and upper-level management strategic direction. The position requires communicating orally and in writing with various individuals and groups including, but not limited to, executive management, business users and other IT staff. The incumbent must be able to communicate with clarity to subordinate staff regarding work priorities and performance. The incumbent will have to work with ITS Dedicated Support Teams and upper-level agency management to resolve technically complex and politically sensitive issues under pressure. The incumbent will have strong customer service skills and will focus on developing relationships with key stakeholders. The position requires availability during off-shift hours to ensure appropriate response to security incidents or other critical matters that may impact sensitive information, critical systems, ITS, NYS agencies, or other partners (such as local governments).
Duties include, but are not limited to:
- Assist with the direction of the Security Shared Services Bureau in developing, deploying, and maintaining processes and procedures in alignment with NYS State and agency information security policies and standards. Monitor compliance and take appropriate action as needed.
- Oversee the continued development of the ITS Cyber Incident Response Program which includes continuously improving procedures and ensuring 24x7x365 rotating coverage schedules for IR responders.
- Enhance the Secure Software Development Lifecycle (SSDLC) process in response to shifting cyber landscape and the requirements of ITS, agencies, and NYS.
- Foster and develop relationships with key stakeholders, such as the Dedicated Commissioners of Technology (DCTs).
- Provide off-hours leadership in response to cyber threats, incidents, and events on a rotating basis.
- Serve as information security expert and evaluate systems and contracts for alignment with agency and State information security policies.
- Provide advisement and expertise in the development of NYS security policies and standards.
- Assist with development and implementation of the Security Shared Services Bureau's program and associated products.
- Perform administrative and strategic functions to assist the CISO Executive Leadership team in managing the operations of the Chief Information Security Office.
- Monitor and maintain awareness of information security industry trends, tools, and techniques.
- Perform the full range of supervisory responsibilities.
Minimum Qualifications:
Information Security Manager
Non-competitive: Nine years of information technology, cybersecurity, or information assurance experience*, including three years at the supervisory level or one year at the managerial level.
*Substitutions:
A bachelor's or higher-level degree in any field including or supplemented by 15 semester credit hours in computer science or related field substitutes for three years of required experience; any bachelor's substitutes for two years of required experience.
An associate degree with 15 semester credit hours in computer science or related field may substitute for one year of required experience. Candidates in a bachelor's degree program with at least 15 semester credit hours in computer science or related field may substitute such credits for one year of required experience.
A master's degree or higher in computer science or related field substitutes for one year of required experience.
Preferred qualifications:
• Applicable Information Security certificate(s) such as CISSP, CISM, etc.
• Experience in one or more of the following areas:
- Leading information security teams
- Applying and implementing network, system, or application security
- Security policy/standard/guideline development, implementation, or interpretation
- Conducting risk assessments and evaluating information technology systems for security controls (SSDLC)
- Process development, improvement, and measurement
- Information security incident response
- Developing metrics and key performance indicators
• Strong understanding of enterprise IT environments, including but not limited to system administration, application architecture, network architecture, operating systems, and associated security controls and solutions (e.g., WAF, firewalls)
• Strong understanding of the foundations of Information Security, such as the CIA triad, information classification, identity and access management, risk management, vulnerability management, secure architecture and engineering, network security, software development security, etc.
• Excellent oral and written communication skills including the ability to clearly articulate information technology and information security concepts to a varied audience to facilitate wide understanding
• Demonstrated critical thinking, problem solving and analytical skills
• Demonstrated excellence in customer service
• Demonstrated skill in facilitating meetings, listening, and negotiating between multiple stakeholders to drive results
$80k - $105k
...skilled Cybersecurity Analyst to join our security operations team. The ideal candidate... ...Endpoint Detection and Response (EDR), Managed Detection and Response (MDR), Managed Risk... ...s. Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related...SuggestedFull timeTemporary workRemote workVisa sponsorship- Latham, The Pool Company, based in New York, is seeking a Cybersecurity Analyst to join their security operations team. This full-time hybrid role requires hands-on experience with EDR/MDR systems, incident response, and Zero Trust frameworks. Responsibilities include...SuggestedRemote jobFull time
$95k - $100k
...Reporting to the chief information officer (CIO), the Information Security Officer (ISO) is responsible for the strategic and operational direction of Union... ...; information security incident response and management; risk assessment and management; and information security...SuggestedFull timeWork experience placementLocal areaFlexible hours- ...Administrative Services is seeking a highly skilled and proactive Information Security professional to join our team. In this role, you'll be... ...our information assets and technologies. You'll develop and manage security policies, assess organizational risks, guide third-...SuggestedFull timeFlexible hours
$145k - $205k
Edwards Lifesciences Belgium is seeking a leader for offensive cyber operations in Albany, NY. This role is pivotal in delivering unique threat insights essential for protecting the company’s innovative medical solutions. You'll oversee activities like penetration tests...Suggested- The Hispanic Alliance for Career Enhancement is seeking a Cyber Resiliency Manager to define and execute strategic directions within CVS Health's Cybersecurity team. This role focuses on managing procedures and improving internal controls, ensuring compliance with NIST...
$115k - $130k
CHA Consulting, Inc. is seeking a Security Electronics Engineer IV to join our MEP Team in Albany, NY; Syracuse, NY; or Rochester, NY. This role involves the planning, design, and implementation of physical security systems for critical infrastructure. The ideal candidate...- ...Title: Elastic Security Engineer - SIEM Migration Location: Albany, NY Job Type: Contract to Hire Job Responsibilities: Lead and support a time-sensitive migration from Splunk to Elastic Security / SIEM Analyze existing Splunk use cases,...Full timeContract work
- ...Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF... ...life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support...Full timeLocal areaFlexible hours
- Location: Troy, NY Job Title: Unarmed Security Guard Job Type: Full-Time Duties: Conduct scheduled patrols at the Albany Field Office (AFO) facility, ensuring the security of the perimeter, buildings, and equipment. Monitor access points and report any signs...Full timeWork at officeImmediate start
$144.9k - $265.8k
...Entra, Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS,... ..., authorization, identity management) Design and re-engineer processes for... ...California, please click here for additional information. EY focuses on high-ethical standards...Work experience placementSummer holidayFlexible hours$22.25 - $29.35 per hour
Employment Type: Full time Shift: Day Shift Description: Full Time Community Liaison - Prevention Education and Community Engagement Program Location: Based out of Samaritan Hospital with some travel required Schedule: Monday - Friday, 8:00am-4:3...Hourly payFull timeLocal areaMonday to FridayShift workDay shiftAfternoon shift$25 - $35.7 per hour
...Employment Type: Full time Shift: Evening Shift Description: Licensed Sr. Security Officer - Samaritan Hospital - FT Evenings Under the direction of the Lead Security Officer, is responsible for the performance of all security and safety duties as assigned...Hourly payFull timeLocal areaImmediate startShift workAfternoon shift$20.2 - $26.5 per hour
...assuring that all plans are complete and accurate. Follows-up with distribution of tickets, itinerary and any other appropriate information. Maintains telephone and office contact lists. What you will need: Associate degree in Administrative Medical Secretary...Hourly payWork at officeLocal area$87.7k - $164k
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider... ...and assessment on perceived security threats Maintain, manage, improve and update security incident process and protocol documentation...Summer holidayLocal areaFlexible hours$87.7k - $164k
...looking for a Cyber Triage and Forensics Incident Analyst to join their team in Albany, NY. This senior role involves responding to security incidents, conducting digital forensic analysis, and supporting remediation efforts. Candidates must have a Bachelor's or Master's...Flexible hours$70k - $90k
...to play a key role in maintaining and strengthening NYeC’s information security and compliance posture within a healthcare data exchange environment... .... A minimum of 5 years in information security or risk management, with a focus on security operations highly preferred....Full timeWork at office1 day per week$144.9k - $265.8k
...Entra, Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS,... ...authentication, authorization, identity management) Design and re‑engineer processes for... ...identity/expression, pregnancy, genetic information, national origin, protected veteran...Work experience placementSummer holidayFlexible hours$20 - $20.5 per hour
...Corporate Security Officer - Part-Time Troy - 21588 - Troy, NY 12180 Overview Salary Range $20.00 - $20.50 Hourly Position Type... ...over 25,000 security officer personnel world-wide, trained and managed by a team of professionals with unsurpassed military, law...Hourly payFull timeTemporary workPart timeFlexible hoursShift work$67.4k - $128.7k
A leading pharmaceutical company in Rensselaer, New York seeks a Senior Trade Analyst to manage trade compliance in import/export activities. The role involves working with Customs, FDA, and USDA, validating classifications, and providing training and support. Candidates...$36 - $54 per hour
NOW HIRING - QUALITY & LABORATORY PROFESSIONALS We are actively hiring for multiple Quality Control and Quality Assurance opportunities within a GMP-regulated pharmaceutical/life sciences environment. Multiple shifts are available, including standard day shifts, rotating...Immediate startShift workNight shiftRotating shiftDay shift- ...skills in Microsoft products, particularly Excel. The position requires excellent communication and organizational abilities, along with the capacity to manage multiple tasks in a collaborative environment. This is a contract position with hourly pay. #J-18808-Ljbffr eTeamHourly payContract work
$60.41k - $75.51k
...the Role:As an associate consultant - security and privacy advisor, you will collaborate... ...in support of significant health information technology (HIT) programs.Performing research... ..., disaster recovery, vulnerability management, and software development life cycle (SDLC...For contractorsLocal areaVisa sponsorship- A technical organization supporting national security is looking for a Cybersecurity Analyst to oversee compliance in the development of a dual-environment software system. The role involves collaborating with teams, driving compliance efforts, ensuring secure data-sharing...Remote job
$57.9 per hour
...directors to confirm eligibility for hospice services. Gather information and ensure a smooth handoff to the hospice RN admitting the... ...the acute care team. Work closely with the hospital case management department. What you will need: A current license...Hourly payFull timeLocal areaShift workWeekend work$105.79k - $141.05k
...network and connected ecosystem. We enable secure, high‑performance connectivity across... ...join us today. The Role The Senior Information Security Auditor is an experienced... ...and as an experienced member of a team to manage the execution of multiple security controls...Full timeTemporary workRemote work- Job Opportunity At TEP At TEP, growth isn't just for our students—continued growth is also a central priority for our staff members. That's why we're redefining the employee experience, offering a rewarding career that includes benefits that match TEP's high expectations...
$94.8k - $148.2k
...balance strict cybersecurity requirements with the need to securely share unclassified information beyond NNPP, ensuring operational success in... ...classified and FedRAMP CUI moderate compliance. Experience managing cybersecurity requirements for software solutions involving...For contractorsLocal areaFlexible hours$67k - $83k
Curia is seeking a Quality Assurance Specialist II in Rensselaer, NY, responsible for ensuring compliance within operations and managing quality assurance tasks. Key duties include overseeing quality control, handling deviations, and participating in audits. Candidates...$24.51 - $34.53 per hour
...Quality team in Latham, ensuring compliance with legal, regulatory, and international standards as applied to the company’s Quality Management System. This role is critical in ensuring that manufacturing records for components of medical devices are compliant with...Hourly payWork experience placementWork at officeVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Manager. Be the first to apply!



