June 13, 2024

Information Systems Security Engineer

back to news

NYSTEC has a job opening for a information systems security engineer. Are you ready to contribute to our engaged workforce and to deliver the NYSTEC Experience?

Department: Corporate Information Security
Location: Rome, NY
Salary:  $79,793.00 – 109,716.20 Per Year

About Us

NYSTEC is a nonprofit technology consulting company, advising agencies, organizations, institutions, and businesses since 1996. We’re independent and vendor-neutral, so we have our clients’ best interests at heart. At NYSTEC, we know that we succeed when individuals and teams flourish personally and professionally, so our benefits and perks support that mindset. Are you ready to contribute to our engaged workforce and to deliver the NYSTEC Experience?

About the Information Systems Security Engineer

The information systems security engineer assists the deputy chief information security officer (CISO) with the development and support of NYSTEC’s information security initiatives. This position will interface with staff and management across all levels of NYSTEC, as well as with external business partners, to ensure that NYSTEC’s critical business functions and systems are secure and in accordance with best practices. The information systems security engineer will execute all information security functions for the company to mitigate risk and to balance enhanced capacity and productivity.

Key Responsibilities: Information Systems Security Engineer

Overall, in the role of information systems security engineer, you will:

  • Ensure security configuration compliance on requirements, including but not limited to Health Insurance Portability and Accountability Act/Health Information Trust Alliance (HIPPA/HiTrust), National Institute of Standards and Technology (NIST) Cybersecurity Framework, and state and federal regulations.
  • Administer security toolsets and assist external security vendors and the NYSTEC technical systems team (Service Delivery and Internal Services) in defining the scope of internal and external vulnerability scans and penetration tests.
  • Develop and deliver security awareness training for the organization.
  • Lead the creation and review of enterprise security documents, policies, standards, guidelines, and procedures.
  • Ensure the confidentiality, integrity, and availability of the data residing on or transmitted through the organization’s systems, applications, databases, and any other data repositories.
  • Collaborate with the technical services team and cross-functional departments to remediate security risks.
  • Provide recommendations for additional security solutions or enhancements to improve the overall security and “defense-in-depth” strategy.
  • Assist in the deployment, integration, and initial configuration of all new security solutions — and any enhancements to security solutions — in accordance with established best practices and standards.
  • Research, develop, implement, test, and review the organization’s information security to protect information and to prevent unauthorized access.
Required Qualifications: Information Systems Security Engineer

Candidates applying for the role of information systems security engineer should have the following knowledge, skills, and/or abilities:

  • Proficient in Windows operating environment using Microsoft Office applications, email, and internet programs.
  • Experienced information security professionals skilled in developing, documenting, and driving the adoption of information security standards and procedures.
  • Strong background with firewall products, intrusion detection systems, demilitarized zone (DMZ), Internet Protocol Security (IPSec), Domain Name System (DNS), Simple Mail Transfer Protocol (SMTP), Hypertext Transfer Protocol (HTTP) proxies, etc.
  • Willing to maintain up-to-date knowledge of the information technology (IT) security industry, including awareness of new or revised security solutions, improved security processes, and the development of new attacks of threat outbreaks. This should include the continuation of education and certifications to maintain compliance with regulatory requirements and guidelines.
  • Good organizational skills to maintain documentation and to gather evidence for reporting and incident analysis.
  • Knowledge of security best practices across multiple platforms, such as Microsoft Windows, Microsoft Office365, and Azure.
  • Strong project management skills.
  • Strong written and verbal communication skills, time-management skills, and task prioritization skills.
  • Experienced in zero trust technologies, least privileges, network architectures, and segmentation.
  • Understands NYSTEC’s mission, brand mindsets, and core values and can put the behaviors into practice.
Preferred Qualifications: Information Systems Security Engineer
  • Certified information systems security professional (CISSP) or similar certification in information security preferred.
Education and Experience: Information Systems Security Engineer

For the information systems security engineer role, candidates should have the following education/experience:

  • A bachelor’s degree, preferably in cybersecurity or a similar discipline, and five years of experience with security management frameworks (e.g., National Institute of Standards and Technology [NIST], SysAdmin, Audit, and Network and Security [SANS]). An equivalent combination of advanced education, training, and experience will be considered.
Equal Employment Opportunity (EEO)

It is NYSTEC’s policy to provide equal employment opportunity (EEO) to all individuals, regardless of actual or perceived race, color, creed, religion, sex or gender (including pregnancy, childbirth, and related medical conditions), gender identity or gender expression (including transgender status), age, national origin, ancestry, citizenship status, physical or mental disability, protected medical condition as defined by applicable state or local law, genetic information, military service and veteran status, sexual orientation, marital status, or any other characteristic protected by local, state, or federal laws and ordinances. NYSTEC is strongly committed to this policy and believes in the concept and spirit of the law.

Reasonable Accommodations

Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact Talent_Management-Confidential@nystec.com if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.

Work Authorization

Applicants must be authorized to work in the United States without the need for visa sponsorship now or in the future.

Learn More about NYSTEC

Interested in NYSTEC’s culture and values? Find out what it’s like to be a NYSTECer.

Apply Today

If you’re an effective communicator who enjoys working in complex and collaborative environments, using your critical thinking and research skills to develop solutions for clients, and providing support to customers, we want to hear from you.

Do work that matters.

Start Your Application

Share
close
Close

Cookies

This site uses cookies. By accepting cookies, you optimize your viewing experience. For more information, see our Privacy Policy.