Description

Mandatory Skills And Experience

Minimum of 12 years Security Engineering experience
Strong application security experience
Experience applying NIST 800-53 security controls to hardware and software products.
Experience in DevSecOps, secure configurations and benchmarking, automation, software testing, vulnerability management, malware defenses, networks, reverse engineering, and log analysis
Application Development with Java, Python, .Net, and scripting languages.
Experience with writing test plans and performing acceptance testing.
Bachelor's degree in computer science, information technology or related field.
Strong Identity and Access Management background
Strong experience in performing security risk assessments
Work with vendors, carriers and other technical groups to implement new security controls and troubleshoot existing controls
Excellent communication and verbal skills

Desirable Skills And Experience

Experience in auditing/assessing applications security design.
Hands on experience with OWASP Top 10 and cloud security
Any compliance experience, specifically HIPAA, is highly desirable
Understanding firewall policies and application security
Understanding of network security design.
Architect security controls.
Establish security best practices as well as review all vendor designs ensuring compliance with security standards and governance models established by the City of New York.
Provide expertise in Application security engineering.
Manage test cases and identify risks associated with system integrations.
Detects, manages, and investigates security monitoring tools.
Lead resolution of security incidents.
Provide security best practices in PSAPs as well as review all vendor designs ensuring compliance with security standards and governance models established by the City of New York.
Develop security configuration of the ESINET Network Technology.
Participate in the implementation of security controls in a Public Safety ESINET and NENA compliant NG911 system.
Ensure the National Emergency Number Association (NENA) and Association of Public Safety Communication Officials (APCO) standards are being met during the implementation of NG911.

Key Skills
Education

Bachelor's degree in computer science