New York City, NY-posted 3 months ago
Full-time • Entry Level
Remote • Queens, NY
5,001-10,000 employees
Justice, Public Order, and Safety Activities

The Division of Information Technology's mission and vision is to promote and protect the health of all New Yorkers through the use of innovative technology and health information that is useful and available. The nation's leading local health department seeks a Cyber Operations Analyst to join its award-winning, innovative technology team in revolutionizing public health IT.

  • Perform engineering, design, implementation, maintenance, analysis, and administration of security technologies.
  • Remain current on cybersecurity trends and intelligence to enhance security analysis and incident identification capabilities for the incident response team.
  • Evaluate emerging security technologies and provide recommendations to strengthen the information security environment.
  • Develop, configure, and implement daily vulnerability scans to detect, analyze, remediate, and prevent exploitation of network endpoints.
  • Evaluate the risks of identified vulnerabilities, ensure they are prioritized, and that appropriate countermeasures are operationalized.
  • Create custom rules and modify existing rules, policies, alerts, etc., within security applications based on stakeholder needs or situational conditions.
  • Work on and lead the Security Information and Event Management (SIEM) architecture, design, and implementation.
  • Create custom alert schemas, reports, and custom dashboards within the SIEM.
  • Implement protections such as Firewall blocks, EPO/AV (Endpoint Protection/Antivirus) policies and rules, and the creation of Indicators of Compromise (IOCs).
  • Resolve client Remote Access requests, providing Tier 2/3 support.
  • A baccalaureate degree from an accredited college including or supplemented by twenty-four (24) semester credits in cyber security, network security, computer science, computer programming, computer engineering, information technology, information science, information systems management, network administration, or a pertinent scientific, technical or related area.
  • A four-year high school diploma or its equivalent approved by a State's department of education or a recognized accrediting organization and three years of satisfactory experience in any of the areas described above.
  • Education and/or experience equivalent to the above, with college education substituting for up to two years of required experience.
  • Certifications related to SIEM and/or security incident monitoring (e.g., GCIA, GCIH, CEH).
  • Industry security certifications such as CISSP, CISM, CISA, SSCP, and/or CCSP.
  • Proficiency in SIEMs, log collection, event correlation, and incident response best practices.
  • Knowledge of tools and processes used to expose known and undocumented vulnerabilities in various system platforms.
  • Experience in building security processes, run books, and documenting important security tasks.
  • Ability to communicate clearly and effectively with technical and business stakeholders.
  • Self-directed, self-starter, and highly motivated with the ability to work with minimal supervision.
  • Excellent analytical skills to discuss problems, analyze solutions/options, evaluate, and enable improved processes.
  • Loan Forgiveness: Eligibility for federal/state loan forgiveness and repayment assistance programs.
  • Premium-free health insurance plan that saves employees over $10K annually.
  • Public sector defined benefit pension plan with steady monthly payments in retirement.
  • Tax-deferred savings program.
  • Robust Worksite Wellness Program that offers resources and opportunities to keep you healthy.
  • Work From Home Policy: Ability to work up to two days during the week from home.
  • Job Security compared to private sector employment.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service