Lead Security Analyst

Albany, NY, US • Posted 2 hours ago • Updated 1 hour ago
Contract W2
12 Months
On-site
Depends on Experience
Fitment

Dice Job Match Score™

✨ Finding the perfect fit...

Job Details

Skills

  • Security Analyst
  • Budget
  • Budget Management
  • Collaboration
  • Communication
  • Cyber Security
  • Incident Management
  • Information Technology
  • Leadership
  • Management
  • NERC
  • Digital Forensics
  • Penetration Testing
  • Policies and Procedures
  • RMF
  • Regulatory Compliance
  • Enterprise Networks
  • Forensics
  • Risk Management
  • Risk Management Framework
  • ICS
  • ISO/IEC 27001:2005
  • Patch Management
  • Research
  • Risk Assessment
  • SCADA
  • Safety Management
  • Security Architecture
  • Security Awareness
  • Security Controls
  • Stakeholder Management
  • Systems Design
  • Systems Management
  • Threat Analysis
  • Training
  • Vulnerability Management

Summary

Description

The incumbent will act as the Cybersecurity Manager for the DOT Transportation Safety Management and Operations (TSMO) Technology Program to lead our efforts in securing our integrated Information Technology (IT) and Operational Technology (OT) environments within transportation systems management and operations. This role is critical in protecting our critical infrastructure from evolving cyber threats, ensuring the safety, reliability, and efficiency of our transportation networks.

Duties

  • Develop and Implement Security Strategy: Design, implement, and maintain a comprehensive cybersecurity strategy specifically tailored for IT/OT convergence in transportation systems. This includes risk assessments, vulnerability management, and incident response planning.
  • IT/OT Security Architecture: Oversee the design and implementation of secure IT/OT architectures, ensuring that security controls are integrated at all levels, from enterprise networks to industrial control systems (ICS) and SCADA environments.
  • Risk Management and Compliance: Conduct regular risk assessments of IT and OT systems, identify potential vulnerabilities, and develop mitigation strategies. Ensure compliance with relevant industry standards, regulations (e.g., TSA directives, NERC CIP if applicable, NIST frameworks), and best practices.
  • Threat Intelligence and Monitoring: Establish and manage a robust threat intelligence program to proactively identify and respond to emerging cyber threats targeting transportation infrastructure. Implement and oversee security monitoring tools and processes for both IT and OT environments.
  • Incident Response and Forensics: Develop and lead the incident response plan for cybersecurity events affecting IT/OT systems. Coordinate response efforts, conduct forensic investigations, and implement corrective actions to prevent recurrence.
  • Vulnerability Management: Implement and manage a comprehensive vulnerability management program for all IT and OT assets, including regular scanning, penetration testing, and patch management.
  • Security Awareness and Training: Develop and deliver cybersecurity awareness training programs for IT, OT, and operational staff, emphasizing the unique risks associated with IT/OT convergence.
  • Vendor and Third-Party Risk Management: Assess and manage the cybersecurity risks associated with third-party vendors and service providers who have access to or interact with IT/OT systems.
  • Collaboration and Stakeholder Management: Collaborate closely with IT, OT engineering, operations, and other relevant departments to ensure security is a core consideration in all system design, development, and operational activities. Communicate security risks and strategies effectively to senior management and stakeholders.
  • Budget Management: Develop and manage the cybersecurity budget for IT/OT convergence initiatives.
  • Stay Current: Continuously research and stay abreast of the latest cybersecurity threats, vulnerabilities, technologies, and best practices relevant to transportation and critical infrastructure.

Mandatory Requirements

  • Experience (15+ Years)
  • Monitors networks for security breaches and investigates violations when they occurs. Helps to design, implement, and maintain the organization's cybersecurity plan.

Requirements

  • This is an 100% Onsite.
  • 84 months of experience in cybersecurity, with at least 3-5 years in a management or leadership role.
  • 84 months of experience in securing IT and OT environments, IT/OT convergence challenges and solutions specifically in the Transportation Systems Management and Operations.
  • 72 months of experience in developing and implementing cybersecurity strategies, policies, and procedures in IT and OT environments specifically in the Transportation Systems Management and Operations.
  • 60 months of experience with risk assessment methodologies and frameworks (e.g., NIST RMF, ISO 27001).
  • 60 months of experience with incident response, threat hunting, and digital forensics.
  • 60 months of experience with vulnerability management tools and processes.
  • 60 months of experience collaboration with cross-functional teams; and producing both written and verbal communication articulating security concepts to both technical and non-technical audiences.
  • MUST hold at least one of these Certifications:
    • CISSP
    • CISM
    • GIAC
    • GICSP
  • Rsum
  • Copy of Candidate Identification (i.e., Driver s License//Visa and Passport if applicable)
  • Any documents referenced in the above Requested Qualifications (i.e., professional certifications, degrees, etc.)
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91097274
  • Position Id: 9033534
  • Posted 2 hours ago
Contact the job poster
Nikhil Gabriel

Nikhil Gabriel

Techincal Recruiting Manager @ Donato Technologies Inc
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Albany, New York

Today

Easy Apply

Full-time, Third Party

70 - 84

Albany, New York

Yesterday

Easy Apply

Contract, Third Party

Depends on Experience

Hybrid in Albany, New York

Yesterday

Easy Apply

Contract

Up to $100

Albany, New York

Today

Easy Apply

Full-time, Part-time, Third Party, Contract

Search all similar jobs