Please note: State agencies that contact job applicants do not usually request personal or financial information via text message or over the phone in connection with your response to a job posting. If you are contacted for such information by these methods, or any other method, please verify the identity of the individual before transmitting such information to that person.
Note: For questions about the job posting, please contact the agency that posted this position by using the contact information provided on the "Contact" tab for the position.

Review Vacancy

Date Posted 10/16/19

Applications Due10/26/19

Vacancy ID75068

AgencyInformation Technology Services, Office of

TitleInformation Technology Specialist 4 (Information Security) Ref #18589

Occupational CategoryI.T. Engineering, Sciences

Salary Grade25

Bargaining UnitPS&T - Professional, Scientific, and Technical (PEF)

Salary RangeFrom $81446 to $102661 Annually

Employment Type Full-Time

Appointment Type Permanent

Jurisdictional Class Non-competitive Class

Travel Percentage 0%

Workweek Mon-Fri

Hours Per Week 37.50


From 9 AM

To 5 PM

Flextime allowed? No

Mandatory overtime? No

Compressed workweek allowed? No

Telecommuting allowed? No

County Albany

Street Address 201 Fuller Road

City Albany


Zip Code12203

Minimum Qualifications Bachelor’s degree* in a cyber security, information assurance, or information technology related field, OR bachelor's degree with 15 credit hours in cyber security, information assurance, or informational technology AND three years of information technology experience**.

* Appropriate information security or information assurance experience may substitute for the bachelor’s degree on a year-for-year basis; an associate’s degree requires an additional two years of information technology, information security, or information assurance experience.

**Experience solely in information security or information assurance may substitute for the general information technology experience.

Preferred Qualifications:

• Bachelor’s Degree with a concentration or major in Information Security, Cyber Security, Digital Forensics, Information Assurance, or a related field
• Applicable Information Security certificate(s), including but not limited to:
o Certificate in Computer Network Defense (e.g., GCIA, GCED, GDAT, GPPA, GCDA, GMON, GWEB, CND, ECIH, GCIH)
o Certificate in Cyber Threat Intelligence (e.g., CTIA, GCTI, CCIP, CSTIR)
o Certificate in Digital Forensics (e.g., ACE, GCFA, GCFE, GREM, GNFA)
o Certificate in Penetration Testing (e.g., GPEN, CEH, GAWN, GWAPT, LPT)

• 2+ years’ experience in the following areas:
o Applying and implementing network and/or system security
o Information security incident response
o Experience in cyber digital forensics
o With log analysis (e.g., firewall logs, DNS logs, proxy logs, IPS/IDS logs)
o Using SIEM technologies to support in-depth investigations
o Using computer security investigation tools (e.g. FTK)

• Possess a working knowledge of the following areas:
o Computer networks with a strong understanding of networking concepts, protocols, services and operating systems (TCP/IP, UDP, DNS, DHCP, HTTP, SMTP, Windows, UNIX, Linux, etc.)
o Technical security solutions (e.g., intrusion detection/prevention systems, firewalls)
o System administration
o Vulnerability management
o Computer programming and scripting
o Information Security (CIA triad, Information Classification, Risk Management, Incident Response, Vulnerability Management, Security Architecture & Engineering)

• Excellent oral and written communication skills including the ability to clearly articulate information technology and information security concepts to a varied audience to facilitate wide understanding.

• Demonstrated critical thinking, problem solving and analytical skills.

• Ability to obtain and maintain a Secret clearance.

Duties Description Under the direction of a Manager Information Technology Services 2, SG-29, within the Chief Information Security Office, the position will supervise and participate in threat detection and prevention activities on specialized technical systems to protect NYS Enterprise Networks. Specific duties include but are not limited to:
• Perform analysis of security events/incidents, traffic anomalies, and suspicious traffic/behavior;
• Configure, tune, and test new IDS/IPS rules based on in-depth security analysis, emerging threats, and previous incidents;
• Conduct threat and vulnerability research, intelligence and monitoring, and provide recommendations as necessary;
• Assist staff, customers, and partners in technical problem resolution, as necessary;
• Work in concert with colleagues in the Cyber Command Center, in other verticals within the Chief Information Security Office (CISO), and across all of ITS, to achieve the mission, goals and objectives outlined in the CISO Strategic Plan and the ITS Strategic Plan;
• Maintain the relationship and functions of the Managed Security Services vendor for New York State;
• Provide direction and support to security engineering staff to perform more complex security analysis, design, and implementation;
• Lead moderately complex security projects as assigned;
• Maintain a working knowledge of information security best practices;
• Support CISO project initiatives and all other projects as assigned;
• Perform the full range of supervisory responsibilities.

Additional Comments Approval to fill this position is pending with Division of the Budget (DOB). Background check and fingerprinting are required.

Some positions may require additional credentials or a background check to verify your identity.

Name Krina Homrighaus

Telephone 518-473-0398

Fax 518-402-4924

Email Address


Street Empire State Plaza, Swan Street Building, Core 4

PO Box 2062

City Albany

State NY

Zip Code 12220


Notes on ApplyingTo apply, please submit a resume and cover letter indicating that you are applying for the Information Technology Specialist 4 (Information Security) Ref: #18589. Please clearly indicate how you meet the minimum qualifications for this position. Your Social Security number may be required to confirm your eligibility.

Printable Version