Unfortunately, this job posting is expired.
Don't worry, we can still help! Below, please find related information to help you with your job search.
Some similar recruitments
Computer Support Analyst Levels 3-5 (Tcu Represented)
Recruited by Metropolitan Transportation Authority 8 months ago Address New York, NY, United States
Cybersecurity Engineer Levels 1-7, (Privileged Access Strategist
Recruited by Metropolitan Transportation Authority 8 months ago Address New York, NY, United States
Operations Analyst (Remote) Jobs
Recruited by Saks Fifth Avenue 9 months ago Address New York, NY, United States
Part-Time Esol Instructor - All Levels Mornings And Evenings
Recruited by Research Foundation of The City University of New York 9 months ago Address , New York $37 an hour
Cybersecurity Analyst Level 1-7 (Stealth Watch/Network Security)
Recruited by Metropolitan Transportation Authority 9 months ago Address , New York, 10004 $82,857 - $105,000 a year
Backend Engineer (All Levels)
Recruited by current 9 months ago Address , New York, 10011 $125,000 - $235,000 a year
Cybersecurity Engineer Level 1-7 Data Security
Recruited by Metropolitan Transportation Authority 9 months ago Address , New York, 10004, Ny $82,857 - $105,000 a year
Vulnerability Researcher Jobs
Recruited by Flashpoint 9 months ago Address New York, NY, United States
Project Managers - All Levels
Recruited by Ganymede 10 months ago Address Florida, United States
Pr Positions Food & Beverage All Levels
Recruited by PURPLE 10 months ago Address New York City Metropolitan Area, United States
360/Full-Desk Recruitment Consultant - All Levels
Recruited by Ashley James Group 11 months ago Address New York, United States
Service Technician - All Levels
Recruited by Koeppel Nissan 11 months ago Address Queens, NY, United States
Nyc Based Creatives (All Levels)
Recruited by BA Diversity Media Inc 11 months ago Address Brooklyn, NY, United States
Cybersecurity Analyst Level 1-7 (Stealth Watch/Network Security)
Recruited by Metropolitan Transportation Authority 11 months ago Address New York, NY, United States
Geologists/Environmental Scientists- All Experience Levels
Recruited by HRP Associates, Inc. 11 months ago Address , Clifton Park, 12065, Ny
Calibration Technician (All Levels - Trainee, I-Ii And Senior)
Recruited by Transcat 1 year ago Address Rochester, NY, United States
Cybersecurity Analyst 1-7, Iam Product Owner
Recruited by Metropolitan Transportation Authority 1 year ago Address New York, NY, United States
Analyst, Network Operations & Cybersecurity
Recruited by TriMet 1 year ago Address , Portland, Or $79,562 - $119,343 a year
Cybersecurity Analyst Levels 1-7 (User Behavior Analytics)
Recruited by Metropolitan Transportation Authority 1 year ago Address , New York, 10004, Ny $82,857 - $105,000 a year
Biomedical Device Integration/ Cybersecurity Analyst
Recruited by Crothall Healthcare 1 year ago Address New York, NY, United States
Cybersecurity Analyst Level2 Jobs
Recruited by Metropolitan Transportation Authority 1 year ago Address New York, NY, United States
Digital Media Planning Roles- All Levels!
Recruited by SourceLab Search 1 year ago Address New York City Metropolitan Area, United States
Automotive Technicians, All Levels
Recruited by Stoler Lexus 1 year ago Address , Farmingdale, 11735, Ny
Cybersecurity Analyst 1-7, Iam Product Owner
Recruited by Metropolitan Transportation Authority 1 year ago Address , New York, 10004, Ny $82,857 - $105,000 a year
Network Support Analyst Levels 1-5
Recruited by Metropolitan Transportation Authority 1 year ago Address , New York, 10004, Ny From $105,472 a year
Automotive Service Technician - All Levels
Recruited by The Premier Collection 1 year ago Address Wappingers Falls, NY, United States
Vulnerability Management Analyst Jobs
Recruited by TikTok 1 year ago Address , New York, Ny $104,960 - $168,960 a year

Cybersecurity Analyst Levels 1-7

Company

Metropolitan Transportation Authority

Address , New York, Ny
Employment type
Salary $82,857 - $105,000 a year
Expires 2023-07-18
Posted at 1 year ago
Job Description

Description

Job Information


GroupBox1


J
ob Title: Cybersecurity Analyst Levels 1-7

Salary Range: Level 1: $82,857 - $105,000

Level 2: $87,685 - $115,500

Level 3: $95,929 - $127,050

Level 4: $102,760 - $139,755

Level 5: $114,537 - $153,731

Level 6: $124,311 - $169,104

Level 7: $140,917 - $186,014


POINTS: Level 1 - 282

Level 2 - 323

Level 3 - 393

Level 4 - 451

Level 5 – 551

Level 6 – 634

Level 7 – 775

DEPT/DIV: MTA Information Technology/ Office of IT Cyber Security Services

SUPERVISOR: Cyber Security Officer, Monitoring

LOCATION: 2 Broadway, New York, NY 10004

HOURS OF WORK: 12:00am – 8:30am (7.5hours/day)

8:00am – 4:30pm (7.5hours/day)

3:30pm – 12:00am (7.5hours/day)

This position is eligible for telework which is currently 2 days per week. New Hires are eligible to apply 30 days after their effective date of hire.


GroupBox1


The purpose of this position is to provide critical technical expertise in the detection, analysis and response to cybersecurity events. Cybersecurity Analyst will be responsible for early and accurate detection, prevention response, containment, and guidance to remediation of threats directed against the MTA on a 24/7 basis. The analysis is conducted through technology risk assessments, data analytics tools, business processes reviews and collaborate with security engineers, architects, developers, vendors, business units to constantly improve the overall security of the MTA. The cybersecurity analyst will focus on specific domains and specialties within cybersecurity with a great degree of specialty to detect, protect and advise the organization proactively and reactively.


GroupBox1

  • Correlates events and activities across systems to identify trends of unauthorized use
  • Monitors relevant information sources to stay up to date on current attacks and trends
  • Anticipate new threats and indicators of compromise
  • Performs root-cause analysis to document findings, and participate in root-cause elimination activities as required
  • Communicates investigation findings to relevant business units to help improve the information security posture
  • Identifies the tactics, techniques, and procedures (TTPs) of potential threats through the MITRE ATT&CK or similar frameworks
  • Provides timely and relevant updates to appropriate stakeholders and decision makers
  • Analyzes potential impact of new threats and communicates risks back to detection engineering functions
  • Tests new systems and manage cybersecurity risks and remediation through analysis
  • Monitors threat intelligence feeds to identify a range of threats, including indicators of compromise and advanced persistent threats (APTs)
  • Responds to computer security incidents according to the computer security incident response policy and procedures
  • Validates and maintains incident response plans and processes to address potential threats
  • Perform Contract management and supply management functions appropriate to reduce security risks
  • Reviews alerts and data from sensors and documents formal, technical incident reports
  • Participate in the creation of enterprise security documents (policies, standards, baselines, guidelines, and procedures) under the direction of the IT Security Manager, where appropriate.
  • Provide incident response support, including mitigating actions to contain activity and facilitating forensics analysis when necessary
  • Understands data automation and analysis techniques
  • Conducts real-time 24/7 security monitoring and intrusion detection analysis using a Security Incident & Event Management system “SIEM” along with various technology and analytic tools, such as web and next generation firewalls, machine and human behavior learning tools, host-based security system, security event and incident monitoring systems, virtual, physical, and cloud platforms, user endpoint (laptop, desktop, mobile, and internet of things/IOT) systems, etc.
  • Provides technical guidance to first responders for handling information security incidents
  • Uses judgment to form conclusions that may challenge conventional wisdom
  • Researching emerging threats and vulnerabilities to aid in the identification and analysis of network incidents, and supports the creation or improvement of security controls, policies, standards, and guidance to address them.
  • Works with data sets to identify patterns
  • Compiles and analyzes data for management reporting and metrics

The role will provide a proactive approach to cybersecurity while also performing investigation of security incidents related to MTA operations related to Cyber Security.


GroupBox1


Level 1

  • Assists in executing tests and reporting on system security parameters to support security of system, contractor, and/or vendor.
  • Participates on project teams, providing information and documentation and executing well defined changes under guidance to ensure the infrastructure meets organization needs
  • Experience working as a member of a Cyber Security Operation Center “CSOC”
  • Perform analysis and remediation actions on threats from various attack vectors such as: malware, viruses, ransomware, phishing, SQL Injection, compromised credentials, DDOS etc.
  • Reviews and correlates system logs/events utilizing a Security Information & Event Management and provides support
  • Performs basic analysis while following established procedures to ensure security of systems, contractor, and/or process.
  • Ability to perform basic event analysis and validation of security incidents
  • Performs basic troubleshooting and escalates issues as appropriate to ensure effective resolution of security baseline deviations and risks.

Level 2

Same as Level 1 with the following additional qualifications:

  • Provides routine analysis on assigned technologies, following established procedures to ensure safety and security of systems, vendor performance, or processes.
  • Reviews and correlates system logs to identify potential cybersecurity and technical issues.

Level 3

Same as Level 2 with the following additional qualifications:

  • Troubleshoot and investigate cybersecurity incidents and issues by analyzing a chain of events and applying technical knowledge following established procedures and standards to resolve immediate customer needs.
  • Works with more experienced colleagues and other IT technical resources to improve coordination of cybersecurity requirements and analyze issues as they arise
  • Maintains and updates existing documentation and standard operating procedures to ensure accurate and timely information is available for assigned systems.
  • Provides proactive monitoring and analysis for a domain of the cybersecurity to ensure systems security baseline targets are met.
  • Implements changes to one or more cybersecurity related domain technologies, executing tests and reporting on security baselines, violations/anomalies, to meet requested needs.
  • Participate in the evaluation of new products and technologies, under the direction and guidance of senior colleagues, relevant to assigned cybersecurity area to enhance cybersecurity posture and reduce risk to the MTA while achieving objectives.

Level 4

Same as Level 3 with the following additional qualifications:

  • Investigates, evaluates, and tests new products and technologies relevant to assigned infrastructure subsets to enhance cybersecurity analytics and overall security posture. Implements and/or supports the implementation of new technologies for their area of the cybersecurity that affects infrastructure, applications and/or processes.
  • Promotes security standards and supports efforts to expand and migrate to future security architecture to improve security and share learning.
  • Executes to the defined product lifecycle, manages the product lifecycle for a component of the infrastructure, proposes changes for implementation, gathers data and analyzes capacity and performance to assure operational availability.
  • Provides ongoing support and troubleshooting for installed technical solutions by analyzing a chain of events and applying technical knowledge, following established procedures and standards to resolve immediate customer needs.
  • Analyzes the current state of the infrastructure and identifies opportunities for improvement to ensure systems meet business needs. Contributes to changes to established roadmaps, documents them effectively and executes the implementation of changes in their area(s) of responsibility.

Level 5

Same as Level 4 with the following additional qualifications:

  • Provides more advanced analytical capability in several security domains.
  • Adds new components to a roadmap, documents them effectively, and directs the testing and implementation of changes.
  • Provides ongoing support and troubleshooting for incidents, correlations and reporting to more junior analysts to resolve immediate security threats and/or customer needs.
  • Provides technical leadership to project teams in their area of expertise and/or leads teams to complete projects specific to their area(s) of expertise to maximize and share learning.
  • Research new technologies/products and their impact on the infrastructure, prepares a preliminary evaluation of technologies/products and associated costs, and develops and presents recommendations to support anticipated future business needs.
  • Provides guidance and technical coaching to less experienced staff to support effective workflow and develop technical talent.
  • When provided with an objective to improve security in their security domain(s) and related technology, develops and implements action plans needed to effect the change.
  • Receives security and performance data and analyzes the baselines and efficacy of installed technologies. Proposes and implements any required changes, including identifying and planning for any resulting impacts on other technologies to optimize system availability and continuity.

Level 6

Same as Level 5 with the following additional qualifications:

  • Participates in planning for the future technical architecture, providing insight into the future of their area of technology in order to continually improve effectiveness and efficiency.
  • Specifies the monitoring points to assess performance of technologies in their domain(s). Recommends the necessary actions to ensure optimal performance and reliability.
  • Develops disaster recovery and contingency plans for their domain(s) to provide users with minimal interruptions in service.
  • Provides technical leadership to project teams in their area of expertise to promote technical understanding and talent development and/or leads teams to complete projects when a project manager has not been assigned.
  • Troubleshoots and analyzes most problems within assigned area(s), providing cybersecurity correlation, expertise, and resolution that may be complicated by technology interdependency and challenging security issues
  • Participates in or leads the development of roadmaps related to their area(s) of expertise to manage and meet identified technology needs.
  • Participates in the evaluation of new technologies relative to their domain(s) to determine applicability to and best meet the needs of MTA and constituent agencies.
  • Contributes to the technical elements of RFPs and RFIs and negotiates with vendors on technical issues to ensure results are delivered in line with user and organization requirements.
  • Interacts with major providers at the technical expert level to address mission critical issues, evaluates ongoing vendor service level and enforces SLAs and penalties.
  • Serves as a technical resource for multiple components of the security architecture, risk analysis, and analytics to help define the problems and identify remediation strategies for them.

Level 7

Same as Level 6 with the following additional qualifications:

  • Demonstrates a strong understanding of the current and future technology architecture, including the inter-operability of technologies to effectively integrate MTA systems and support the long-term strategies of the business.
  • Creates complete RFPs and RFIs and negotiates contract terms and conditions with vendors and procurement in consideration of the needs of the business.
  • Establishes systems to monitor compliance with architectural standards and to ensure technical integrity.
  • Provides expert level guidance and training to the IT community to maximize and share learning.
  • Develops disaster recovery and contingency plans for their domain(s) to provide users with minimal interruptions in service.
  • Acts as a technical resource for multiple technologies, with vast knowledge of the capabilities and constraints of technologies supported to continually improve system effectiveness and efficiency.
  • Analyzes cross-technology/platform issues and addresses problems factoring in an understanding of the current and future architectures to ensure optimal performance and reliability across systems.
  • Leads the evaluation of new technologies relative to their domain(s) to determine applicability to and best meet the needs of MTA and constituent agencies. Proposes technology investments supported by a thorough technical analysis and business case.
  • Interacts with major providers at the technical expert level to address mission critical issues, evaluates ongoing vendor service level and enforces SLAs and penalties.


GroupBox1


Level 1

  • Basic knowledge and familiarity with monitoring, installing, maintaining and/or troubleshooting cybersecurity related issues associated with applications and/or infrastructure systems
  • Associate degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
  • Understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
  • Understanding of Operating Systems
  • Scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed

Level 2

  • Understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
  • 6 months of experience in a specific (Cloud, Applications, Infrastructure, Security Technology, etc.) cybersecurity domain is preferred
  • Proven ability to analyze a security risk assessment
  • Proven ability to troubleshoot and support technical issues.
  • Scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed.
  • Understanding of Operating Systems
  • Associate degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree and 2+ years of relevant experience, or a bachelor’s degree in Computer Science or related fields.
  • Basic knowledge and familiarity with installing, maintaining and troubleshooting technology systems.

Level 3

  • Scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed.
  • Requires prior experience with installing, maintaining and troubleshooting technology systems.
  • Bachelor’s Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
  • Proven ability to analyze a security risk assessment or conduct one with guidance
  • Understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
  • 1 year of experience in a specific (Cloud, Applications, Infrastructure, Security Technology, etc.) cybersecurity subdomain is preferred
  • Certifications in technology subdomains preferred but not required (ie. Cloud, Applications, Infrastructure, Security Technology, etc.)
  • 2+ years of relevant experience.
  • Proven ability to troubleshoot and support technical issues using standardized procedures.
  • CISSP or other advanced security-related certification preferred but not required.
  • Understanding of Operating Systems and Hardware

Level 4

  • Proven ability to independently evaluate and resolve most problems within an area of infrastructure, applications within a security domain context.
  • Proven ability to analyze and/or conduct a security risk assessment
  • 3+ years of relevant experience or 18 months of experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.).
  • Certifications in technology subdomains preferred but not required (ie. Cloud, Applications, Infrastructure, Security Technology, etc.)
  • Scripting or programming skills (PERL, Python, PowerShell, etc.).
  • Bachelor’s Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
  • Understanding of Operating Systems and Hardware
  • Advanced understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
  • Current CISSP or other advanced security-related certification preferred but not required.

Level 5

  • Advanced understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
  • Proven ability to analyze and/or conduct a security risk assessment
  • 5+ years of relevant experience or 2.5 years of experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.)
  • Bachelor’s Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
  • Requires broad technical knowledge of multiple technologies, or an in-depth knowledge of one technology including its impact on other technologies.
  • Scripting or programming skills (PERL, Python, PowerShell, etc.) as needed.
  • Understanding of Operating Systems and Hardware
  • Progressive cybersecurity related accomplishments
  • Certifications in technology subdomains preferred but not required (ie. Cloud, Applications, Infrastructure, Security Technology, etc.).
  • Current CISSP or other advanced security-related certification preferred

Level 6

  • Understanding of Operating Systems and Hardware
  • Advanced ability to conduct and analyze a security risk assessment
  • Bachelor’s Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
  • Some scripting or programming skills (PERL, Python, PowerShell, etc.) as needed.
  • Expert understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
  • Requires seasoned expertise in multiple technologies and strong understanding of the current and future technology architecture, including the inter-operability of technologies.
  • CISSP or other advanced security-related certification preferred
  • Certifications in technology subdomains preferred (ie. Cloud, Applications, Infrastructure, Security Technology, etc.).
  • 8+ years of relevant experience or 4 years of experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.).
  • Verifiable implementation of security domain controls for enterprise technologies

Level 7

  • Bachelor’s Degree in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree.
  • 10+ years of relevant technology based or cybersecurity experience or 5 years of experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.).
  • Certifications in technology subdomains preferred (ie. Cloud, Applications, Infrastructure, Security Technology, etc.).
  • Some scripting or programming skills (PERL, Python, PowerShell, etc.) as needed
  • Requires proven track record of successful implementation of architectural designs.
  • Expert understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.
  • Advanced understanding of Operating Systems and Hardware
  • Expert ability to conduct and analyze a security risk assessment
  • CISSP and other advanced security-related certification preferred.
  • Significant practical expertise in cybersecurity related disciplines.
  • Requires seasoned expertise in multiple security domains, technologies and strong understanding of the current and future technology and security architecture, including the inter-operability of security solutions and technologies.


GroupBox1


As an employee of MTA Headquarters, you may be required to complete an annual financial disclosure statement with the State of New York, if your position earns more than $105,472 (this figure is subject to change) per year or if the position is designated as a policy maker.


GroupBox1


Qualified applicants can submit an online application by clicking on the 'APPLY NOW' button from either the CAREERS page or from the JOB DESCRIPTION page.
If you have previously applied on line for other positions, enter your User Name and Password. If it is your first registration, click on the CLICK HERE TO REGISTER hyperlink and enter a User Name and Password; then click on the REGISTER button.


GroupBox1


MTA and its subsidiary and affiliated agencies are Equal Opportunity Employers, including with respect to veteran status and individuals with disabilities.


The MTA encourages qualified applicants from diverse backgrounds, experiences, and abilities, including military service members, to apply.