Review Vacancy
AgencyInformation Technology Services, Office of
TitleInformation Technology Specialist 3 (Information Security) Ref #30475
Occupational CategoryI.T. Engineering, Sciences
Bargaining UnitPS&T - Professional, Scientific, and Technical (PEF)
Salary RangeFrom $79325 to $100342 Annually
Appointment Type Contingent Permanent
Street Address Averell Harriman State Office Campus, Bldg 5 Fl 4 - Albany
OR NYC or other locations statewide*
Minimum Qualifications Bachelor’s degree* with at least 15 credit hours in cyber security, information assurance, or information technology; and two years of information technology experience, including one year of information security or information assurance experience**.
*Substitution: bachelor's degree candidates without at least 15 course credits in cyber security, information assurance, or information technology require an additional year of general information technology experience to qualify. Appropriate information security or information assurance experience may substitute for the bachelor's degree on a year-for-year basis; an associate degree requires an additional two years of general information technology experience.
**Experience solely in information security or information assurance may substitute for the general information technology experience.
Preferred Qualifications:
• Bachelor's Degree with a concentration or major in Information Security, Cyber Security, Digital Forensics, Information Assurance, or a related field.
• 2+ years’ experience in the following areas:
o Network defense or network systems
o Computer programming and scripting
o technical writing.
• Certifications in one or more of the following:
o Certificate in Computer Network Defense (e.g., GCIA, GCED, GDAT, GPPA, GCDA, GMON, GWEB, CND, ECIH, GCIH)
o Certificate in Cyber Threat Intelligence (e.g., CTIA, GCTI, CCIP, CSTIR)
o Certificate in Digital Forensics (e.g., ACE, GCFA, GCFE, GREM, GNFA)
o Certificate in Penetration Testing (e.g., GPEN, CEH, GAWN, GWAPT, LPT)
• 1+ years’ experience in the following areas:
o applying and implementing network and/or system security.
o information security incident response.
o cyber digital forensics.
o log analysis (e.g., firewall logs, DNS logs, proxy logs, IPS/IDS logs)
o using SIEM technologies to support in-depth investigations
o using computer security investigation tools (e.g. FTK).
• Working knowledge of the following:
o computer networks, intrusion detection systems, routers, firewalls, operating systems, network vulnerability assessments, web application vulnerability assessments, computer programming and scripting
o network security solutions (e.g., intrusion detection/prevention systems, firewalls)
o system administration
o vulnerability management
o computer programming and scripting
o Information Security (CIA triad, Information Classification, Risk Management, Incident Response, Vulnerability Management, Security Architecture & Engineering)
• Excellent oral and written communication skills including the ability to clearly articulate information technology and information security concepts to a varied audience to facilitate wide understanding.
• Demonstrated critical thinking, problem solving and analytical skills.
Duties Description Under the direction and support senior team members, the incumbent will assist in responding to cyber-attacks and in conducting investigations of cyber security events reported by state entities, the Cyber Command Center and other sources. Response efforts may include log analysis, malware analysis, network capture analysis, reverse engineering of malicious code, computer forensics, network forensics, and post intrusion analysis.
The desired candidate should have experience with cyber security, digital forensics, computer networks, intrusion detection systems, routers, firewalls, operating systems, network vulnerability assessments, and web application vulnerability assessments. Other desired skills include computer programming, scripting, databases, database queries, and reporting. Excellent written and verbal communication skills are essential. This position requires off-shift work on an ad-hoc basis and occasional travel.
The incumbent will assist and perform incident response and digital forensic activities as part of cyber incident investigations.
The activities performed include, but are not limited to, the following:
• Assist Incident Response and Forensic activities related to computer security incidents.
• Utilize specialized computer investigation tools, techniques, procedures.
• Assist IR coordination efforts with internal (HR) and external organizations (i.e.: law enforcement or inspector general)
• Collect/seize evidence and maintain chain of custody
• Assist with digital forensic analysis,
• Assist with malware analysis
• Perform log analysis
• Assist with identifying elements to prove a crime or other violation has been committed
• Assist with all phases of research maintenance and support of digital forensics lab infrastructure. This will include but not limited to evidence handling, tracking evidence inventory, setting up and maintaining appropriate hardware and software tools to facilitate incident response, digital forensics, and support ongoing research, including malware analysis and reverse engineering etc.
• Draft technical reports and executive summary related to cyber security incidents and events as directed by Senior Team members.
• Assist with developing documentation on standard operating procedures
Additional Comments Positions require fingerprinting.
*Please note, this position may be filled in either Albany or NYC or other locations statewide.
Benefits of Working for NYS
Generous benefits package, worth 65% of salary, including:
• Holiday & Paid Time Off
• Thirteen (13) paid holidays annually
• Up to thirteen (13) days of paid vacation leave annually
• Up to five (5) days of paid personal leave annually
• Up to thirteen (13) days of paid sick leave annually for PEF
• Up to three (3) days of professional leave annually to participate in professional development
Health Care Benefits
• Eligible employees and dependents can pick from a variety of affordable health insurance programs
• Family dental and vision benefits at no additional cost
Additional Benefits
• New York State Employees’ Retirement System (ERS) Membership
• NYS Deferred Compensation
• Access to NY 529 and NY ABLE College Savings Programs, as well as U.S. Savings Bonds
• Public Service Loan Forgiveness (PSLF)
• Up to 50% telecommuting
• And many more.
Some positions may require additional credentials or a background check to verify your identity.
Email Address PostingResponses@its.ny.gov
Address
Street Office of Information Technology Services
Human Resources Services - Swan Street Building, Core 4, Floor 1
Notes on ApplyingTo apply, please submit a resume and cover letter indicating that you are applying for the Information Technology Specialist 3 (Information Security) Ref #30475 and reference the vacancy ID in your subject line. Please clearly indicate how you meet the minimum qualifications for this position.
Some positions may require additional credentials or a background check to verify your identity. Selected candidates who are new or returning to NYS service may be required to pay for fingerprinting fees. New York State is an equal opportunity employer.