Director, Cyber Security Engineering

City of New YorkNew York, NY
Hybrid

About The Position

The NYC Department of Finance (DOF) is responsible for administering the tax revenue laws of the city. The Finance Information Technology (FIT) Division supports all of DOF's computer systems, including hardware, software, applications, infrastructure, telephone, and data security. FIT delivers and administers tax-related payment programs for the City of New York by providing the necessary IT solutions. FIT is also responsible for the systems and websites that enable citywide payments, land records, property assessment, parking adjudications, customer service, and the Sheriff’s public safety work. The FIT’s Cyber Security Unit is seeking a Director of Cyber Security Engineering. This role reports to the Chief Information Security Officer (CISO) and requires strong organizational and team leadership skills to ensure interdepartmental compliance and the adoption of appropriate security and privacy practices by IT security staff. Extensive technical knowledge in cyber-security and information systems, detailed knowledge of security and privacy technologies and best practices, knowledge of appropriate security methods and controls, and IT security privacy legislation and related policy issues are required. The ability to develop and maintain effective working relationships with executive management, IT technical staff, legal staff, third-party vendors, and industry experts is also essential. The selected candidate will represent the Agency's information security interests to State and Federal agencies and regulatory bodies.

Requirements

  • Permanent in the COMPUTER SYSTEMS MANAGER CIVIL SERVICE TITLE or reachable on the current Open Competitive Exam No. 4035.
  • Include Employee Identification Number (EIN) when applying.
  • Indicate permanent Civil Service title or List No. for Exam No. 4035 in cover letter.
  • Extensive technical knowledge in cyber-security and information systems.
  • Detailed knowledge of security and privacy technologies and best practices.
  • Knowledge of appropriate security methods and controls.
  • Knowledge of IT security privacy legislation and related policy issues.
  • Ability to develop and maintain effective working relationships with Agency's executive management, IT technical staff, legal staff, third-party vendors, and related industry experts.
  • A master's degree in computer science from an accredited college or university and three (3) years of progressively more responsible, full-time, satisfactory experience in Information Technology (IT) including applications development, systems development, data communications and networking, database administration, data processing, or user services. At least eighteen (18) months of this experience must have been in an administrative, managerial or executive capacity in the areas of applications development, systems development, data communications and networking, database administration, data processing or in the supervision of staff performing these duties.
  • OR A baccalaureate degree from an accredited college or university and four (4) years of progressively more responsible, full-time, satisfactory experience as described above.
  • OR A four-year high school diploma or its educational equivalent, and six (6) years of progressively more responsible, full-time, satisfactory experience as described above.
  • OR A satisfactory combination of education and experience equivalent to the above.
  • All candidates must have at least a four-year high school diploma or its educational equivalent and must possess at least three (3) years of experience as described in IT experience, including the eighteen (18) months of administrative, managerial, executive or supervisory experience.
  • In the absence of a baccalaureate degree, undergraduate credits may be substituted for a maximum of two (2) years of the required experience in IT on the basis of 30 semester credits for six (6) months of the required experience.
  • Graduate credits in computer science may be substituted for a maximum of one (1) year of the required experience in IT on the basis of 30 graduate semester credits in computer science for one (1) year of the required IT experience.
  • Undergraduate and/or graduate credits may not be substituted for the eighteen (18) months of experience in an administrative, managerial, executive, or supervisory capacity.

Nice To Haves

  • Strong organizational and team leadership skills.

Responsibilities

  • Manage the Cyber Security Engineering team.
  • Develop Cyber Security policies, guidelines, and standards per NIST Cyber Security Framework.
  • Provide comprehensive IT security program management under DOF's CISO's guidance.
  • Perform complex system security design, development, analysis, and testing of all DOF's internal, hosted facilities and cloud implementation.
  • Evaluate network information security and develop appropriate solutions.
  • Research new developments in information technology and their relevance to current business needs and security strategies.
  • Development of strategies for secure, cloud-based services.
  • Project budgeting, quality assessment and control and resource management.
  • Implement and advocate for security best practices and security awareness.
  • Discuss and convey complex information technology security concepts and terminology with both technical and non-technical staff at all levels within and outside the County.

Benefits

  • Eligibility for remote work up to 2 days per week, pursuant to the Remote Work Pilot Program.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service