Jump to main content.

The Official Careers Website of the City of New York

Search

Senior CERT Specialist

  1. TECHNOLOGY & INNOVATION
Posted on: 10/08/2024
  1. Full-time

Location

BROOKLYN

  1. No exam required

Department

THREAT MANAGEMENT

$75,000.00 – $160,000.00

Job Description

This vacancy has now expired.

The Office of Technology and Innovation (OTI) leverages technology to drive opportunity, improve public safety, and help government run better across New York City. From delivering affordable broadband to protecting against cybersecurity threats and building digital government services, OTI is at the forefront of how the City delivers for New Yorkers in the 21st century. Watch our welcome video to see our work in action, follow us on social media @NYCOfficeofTech, and visit oti.nyc.gov to learn more.

At OTI, we offer great benefits, and the chance to work on projects that have a meaningful impact on millions of people. You'll have the opportunity to work with cutting-edge technology and collaborate with other passionate professionals who share your drive and commitment to making a difference through technology.

Job Description
The Senior Computer Emergency Response Team (CERT) Specialist will serve the City of New York as a senior-level cybersecurity advisor and practitioner, whose expertise will guide the development, enhancement, and deployment of City-wide incident response policies and procedures. The Senior Cert Specialist will also utilize expert knowledge of cloud technology.

This team is the escalation point for high-profile cybersecurity incidents impacting City agencies. The CERT team engages in malware analysis, digital forensics, and campaign assessments; and harmonizes response activities among OTI- Cyber Command, City departments, and state, federal, and private partners. Specialists work alongside internal teams such as, but not limited to, cyber threat intelligence, counter-threat automation, urban technology, and data science teams to innovate detection, investigation, response, and remediation methods and capabilities.

Responsibilities will include:
- Assist NYC agencies in improving cyber incident response;
- Design and participate in cyber tabletop exercises with City departments to identify capability gaps, procedural weaknesses, and critical infrastructure;
- Design, build and enhance cyber-incident detection tools and capabilities;
- Work with cyber intelligence teams to identify new cyber threats and campaigns and proactively deploy countermeasures;
- Serve as the escalation point for high-profile cybersecurity incidents;
- Prioritize incident response activities and coordinate response efforts among City departments and external partners;
- Handle and respond to enterprise cloud environments.
- Investigate cybersecurity incidents through log, file, and malware analysis;
- Perform memory, network, and disk forensics;
- Devise appropriate remediation strategies and assist affected City agencies in containing, eradicating, and recovering from cybersecurity incidents;
- Develop post-incident action plans to improve Mean Time to Recover/Restore;
- Maintain knowledge of current cyber threat campaigns and tradecraft;
- Participate in on-call rotation;
- Handle special projects and initiatives as assigned.

Hours/Shift:
Due to the necessary technical duties of this position in a 24/7 operation, candidate may be required to work various shifts such as weekends and/or nights/evenings.

To Apply:
* Interested applicants with other civil service titles who meet the preferred requirements should also submit a resume for consideration

SUBMISSION OF A RESUME IS NOT A GUARANTEE THAT YOU WILL RECEIVE AN INTERVIEW
APPOINTMENTS ARE SUBJECT TO OVERSIGHT APPROVAL

OTI participates in E-Verify


Minimum Qualifications

A baccalaureate degree from an accredited college and four years of satisfactory full-time experience related to projects and policies required by the particular position; or,

Education and/or experience which is equivalent to "1" above.


Preferred Skills

The preferred candidate should possess the following: - Familiarity with incident response, threat detection in Public Cloud environments (Azure, AWS, GCP), and SaaS platforms (Office 365, Google Workspace) - Experience in performing security event and incident detection and handling in an operational environment such as SOC, CSIRT, CERT, etc. - Experience reviewing and analyzing security events from various monitoring and logging sources - Knowledge of and experience with packet analysis and IDS/IPS technology - Experience in website and web application security assessment or penetration testing - Previous experience working as a part of an IT Security team - Formal education or a strong background in Computer Science, Computer Engineering or similar experience Incident response experience - Active knowledge of current trends in computer security, software/hardware vulnerabilities Active interest in current security research - Ability to work as part of a CERT which may require rotational weekday/weekend on-call coverage - Strong sense of teamwork, an inquisitive mind, and the desire to share knowledge - Ability to understand and implement technical vulnerability corrections - Experience conducting malware analysis - Experience with automation, scripting (Python, Bash, Powershell, etc.) - Development of security tools - Understanding of intrusion analysis - Knowledge of multiple operating systems (Windows, Linux, OS X) - Security product assessments - Host and network forensics - Excellent verbal and written communication skills.
Public Service Loan Forgiveness

As a prospective employee of the City of New York, you may be eligible for federal loan forgiveness programs and state repayment assistance programs. For more information, please visit the U.S. Department of Education’s website at https://studentaid.gov/pslf/.
Residency Requirement

New York City Residency is not required for this position
Additional Information

The City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, veteran status, gender identity, or pregnancy.

Job ID

633113

Title code

95622

Civil service title

IT SECURITY SPECIALIST

Title classification

Non-Competitive-5

Business title

Senior CERT Specialist

Posted until

2024-11-02

  1. Experienced (non-manager)

Job level

00

Number of positions

1

Work location

2 Metro Tech

  1. Technology, Data & Innovation

Senior CERT Specialist

Search