The Office of Technology and Innovation (OTI) leverages technology to drive opportunity improve public safety and help government run better across New York City. From delivering affordable broadband to protecting against cybersecurity threats and building digital government services OTI is at the forefront of how the City delivers for New Yorkers in the 21st century. Watch our welcome video to see our work in action follow us on social media @NYCOfficeofTech and visit to learn more.
At OTI we offer great benefits and the chance to work on projects that have a meaningful impact on millions of people. Youll have the opportunity to work with cutting-edge technology and collaborate with other passionate professionals who share your drive and commitment to making a difference through technology.
About New York City Cyber Command
The New York City Office of Technology and Innovation (OTI) Cyber Command is committed to protecting City systems and technology infrastructure that provide and enable vital services to New Yorkers from cyber threats and helping residents become safer in their digital lives.
As the organization defending the largest municipality in the country OTI Cyber Command is charged with directing citywide incident response setting citywide cybersecurity policies and standards and working with city agencies to strengthen their cyber defenses.
Mission Statement
To lead and execute an innovative intelligence-driven risk-informed cyber defense and response strategy -- with the support of key partners and allies -- that enables the city government to properly function and provide services to New Yorkers.
Vision Statement
New York City the most cyber-resilient city in the world OTI- Cyber Commands Vulnerability Management (VM) program defines promotes assures and measures the security of connected infrastructure so vital to the City of New York that their incapacitation or destruction would have a debilitating effect on security economic security or public health or safety.
The Senior Vulnerability Management Specialist will work with NYC agencies that provide public safety and emergency response services to New Yorkers private sector technology services providers and teams within OTI to ensure the security and resiliency of systems that support these critical services. The Senior Vulnerability Management Specialist will perform assessments of systems and networks within the network environment or enclave and identify where those systems/networks deviate from acceptable configurations enclave policy or local policy. The Senior Vulnerability Management Specialist will measure effectiveness of defense-in-depth architecture against known vulnerabilities.
Responsibilities will include:
-Research analyze and brief management and team members on relevant Risk Vulnerabilities CVEs CVSS Vector Strings NVD Mitre TTPs attack vectors and mitigations for various technologies;
-Design architect and build vulnerability management scanning infrastructure and tools;
-Manage configure and conduct vulnerability management scans across various infrastructure;
-Conduct vulnerability threat intel analysis through industry research deep analysis generating of reports and dashboards in vulnerability management scanner tools to accurately assess and prioritize risk;
-Evaluate security vulnerabilities assess risk and impact develop mitigation strategies and implement remediation;
-Conduct vulnerability research for the purpose of threat exposure management and attack surface reduction;
-Conduct cybersecurity risk assessments;
-Work with City agencies to communicate risk and proper remediation;
-Present succinct technical briefings to team members and customers for intel research risk assessment CVEs vendor hardware/software industry trends;
-Create scripts utilizing Python PowerShell and others to automate vulnerability management tasks;
-The ability to automate detection reporting and tracking of vulnerabilities identified;
-Create deep analysis and reports around vulnerability management utilizing dashboards and reports;
-Develop security documentation and SOPs;
-Develop scripts for automation;
-Lead other Vulnerability Management Analysts in various tasks;
-Handle special projects and initiatives as assigned.
HOURS/SHIFT
Day - Due to the necessary technical duties of this position in a 24/7 operation candidate may be required to work various shifts such as weekends and/or nights/evenings
WORK LOCATION
Brooklyn NY
TO APPLY
* Interested applicants with other civil service titles who meet the preferred requirements should also submit a resume for consideration
Please go to and search for Job ID #769859
SUBMISSION OF A RESUME IS NOT A GUARANTEE THAT YOU WILL RECEIVE AN INTERVIEW
APPOINTMENTS ARE SUBJECT TO OVERSIGHT APPROVAL
OTI participates in E-Verify
IT SECURITY SPECIALIST - 95622
Qualifications :
A baccalaureate degree from an accredited college and four years of satisfactory full-time experience related to projects and policies required by the particular position; or
Education and/or experience which is equivalent to 1 above.
Additional Information :
The City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic including but not limited to an individuals sex race color ethnicity national origin age religion disability sexual orientation veteran status gender identity or pregnancy.
Remote Work :
No
Employment Type :
Full-time
The City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but ... View more