CANDIDATES MUST BE PERMANENT IN THE CYBER SECURITY ANALYST CIVIL SERVICE TITLE OR HAVE A COMPARABLE CIVIL SERVICE TITLE TO APPLY
The Information Security Analyst supports day-to-day security operations by monitoring alerts, investigating potential threats, and helping protect systems, networks, and data. This role will support many functions of the Information Security Program which include, access provisioning, log analysis for fraud mitigation, security accreditations of new products and services, vulnerability reviews and follow up remediation of vulnerabilities associated to our new pension platform, reviews of indicators or compromise to be applied to NYCERS security controls for awareness, monitoring and incident response of our SIEM and security tools for suspicious activity, triage alerts and escalate incidents to senior analysts, support phishing analysis and malware investigations, support phishing simulations and user awareness campaigns, assist with security reports and dashboards, help update playbooks, policies, procedures, standards, and guidelines, participate in basic risk assessments, and promote security best practices, across the agency.
Key Responsibilities
- Information and Cyber Security: Understanding of networking, familiarity with applications and operating systems, knowledge of cyber security concepts, and willingness to manage, fine tune, and optimize security tools, such as SIEM, Endpoint Detection, Fraud mitigation tools, Intrusion Detection, etc. (training provided). Additional skills include possessing or willing to obtain a security certification (CompTIA Security+, Google Cybersecurity professional, CISSP, etc.), detail oriented, good written and oral communications, comfortable interaction with agency colleagues, ability to follow procedures and ask questions.
- Business Continuity: The Information Security Analyst will play a critical role in strengthening organizational resilience by leading the development, support, and testing of the comprehensive Business Continuity Plan (BCP). This includes conducting regular Business Impact Analyses (BIA) to establish Recovery Time Objectives (RTO) and Recovery Point Objectives (RPO), maintaining up-to-date recovery documentation, and providing continuity training across business units. The candidate will design and facilitate annual tabletop exercises simulating cyberattacks or system outages, document the results, and track remediation actions to close identified gaps.
- Enterprise Risk Management: Additionally, this role will directly assist with the Enterprise Risk Management (ERM) program by identifying, analyzing, and cataloging security risks within the central corporate risk register. The analyst will partner with various agency divisions and the head of Enterprise Risk Management to develop risk mitigation strategies, monitor key risk indicators (KRIs), and prepare detailed risk profile reports and dashboards for senior leadership.
CYBER SECURITY ANALYST - 13633