Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Deputy Chief Info Sec Officer image - Rise Careers
Job details

Deputy Chief Info Sec Officer - job 1 of 2

Job Description

IMPORTANT NOTE: CANDIDATES WITH A PERMANENT COMPUTER OPERATIONS MANAGER OR COMPARABLE CIVIL SERVICE TITLE WITH SIMILAR DUTIES/RESPONSIBILITES ARE ENCOURAGED TO APPLY. PLEASE INCLUDE YOUR EMPLOYEE IDENTIFICATION NUMBER (EIN) WHEN APPLYING AND INDICATE IN YOUR COVER LETTER YOUR PERMANENT CIVIL SERVICE TITLE.

NYC Department of Finance (DOF) is responsible for administering the tax revenue laws of the city fairly, efficiently, and transparently to instill public confidence and encourage compliance while providing exceptional customer service.

The Finance Information Technology (FIT) Division designs, builds, and supports all facets of DOF’s computer systems, including hardware, software, applications, infrastructure, telephone, and data security. FIT delivers and administers tax-related payment programs for the City of New York by providing the information technology solutions needed to achieve its mission of collecting revenue while ensuring an efficient and improved customer experience. FIT is also responsible for the systems and websites which enable citywide payments, land records, property assessment, parking adjudications, customer service, and the Sheriff’s public safety work.

DOF is seeking to hire an experienced, engaging, and innovative Deputy Chief Information Security Officer (Deputy CISO), to serve as a senior-level executive to oversee and coordinate all IT security efforts for the agency. DOF is continuously embarking on new technology initiatives, and the selected candidate must be able to work effectively within this dynamic environment to maintain and grow an enterprise-wide, Cyber Security program to prevent Cyber-attacks and other security breaches.

Reporting directly to the Chief Information Security Officer (CISO), the selected candidate must have strong organizational and team leadership skills. DOF has recruited top Cyber professionals to form one of the largest Cyber Security teams in New York City government and, through this team's efforts, has implemented high-impact security protocols grounded in the NIST Cyber Security framework. The candidate would need to have the ability to build on this strong base to propel the agency to even higher levels of maturity. To that end, a proven track record of securing classified data as well as the ability to maintain the resiliency of applications generating revenues of 35 billion dollars annually is expected.

The Deputy CISO will oversee the following:

- Comprehensive Cyber Security program management, leading teams across a broad range of disciplines, including but not limited to Cyber Security operations, governance, risk, & compliance, security engineering, Cyber security forensics, identity access management, security event and incident management, data loss prevention, and privileged access management.
- The information security function across the entire agency to ensure consistent and high-quality information security management in support of the DOF business goals.
- Audit and compliance mechanisms to measure and enforce alignment with regulatory Cybersecurity requirements, as well as the implementation and maintenance of policies, and a comprehensive control framework to ensure technical systems and information assets are protected.
- Interact with internal and external counsel, Audit & IT Controls teams, internal risk committees, and external agencies Plan, develop, drive, and manage complex, multi-year projects and associated initiatives designed to improve the overall information security program, maintain an annual budget, ensure projects are executed as planned and aligned with Cybersecurity mandates.
- Disaster recovery policies and standards to align with the enterprise business continuity management (BCM) program goals, with the realization that components supporting primary business processes may be outside the corporate perimeter.
- Secure application architecture and design of high classified data network security with hosting facility.
- Development of strategic and tactical solutions for secure, cloud-based services.
- Code testing and validation methodologies for all application development life-cycle for all DOF applications.
- Penetration testing methodologies and vulnerability management efforts.
- Technology dependencies outside of direct organizational control. This includes reviewing contracts and the creation of alternatives for managing risk.
- Containment of information security incidents and events to protect corporate IT assets, intellectual property, regulated data and the company's reputation.
- The monitoring of the external threat environment for emerging threats, advising relevant stakeholders on the appropriate courses of action.
- Strategic relationships with the Office of Technology and other mayoral agencies and external agencies, such as law enforcement.

Additional Information:
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification document form upon hire.

COMPUTER OPERATIONS MANAGER (S - 10074

Qualifications

1. Six (6) years of progressively responsible full-time paid experience supervising or administering computer operations involving a large-scale mainframe, network, or multi-tier computer environment at least 18 months of which shall have been in an administrative, managerial or executive capacity.

2. A baccalaureate degree from an accredited college or university may be substituted for a maximum of two (2) years of general experience described above. In the absence of a baccalaureate degree, undergraduate credits may be substituted for a maximum of two (2) years of general experience described above on the basis of 30 semester credits for six (6) months of experience.

3. A master’s degree in Computer Science, Computer Engineering, Electrical Engineering, Business Administration, Public Administration or Management of Administration may be substituted for a maximum of one (1) year of general experience described above. In the absence of a master's degree, graduate credits in Computer Science, Computer Engineering, Electrical Engineering, Business Administration, Public Administration or Management of Administration may be substituted for a maximum of one (1) year of the general experience on the basis of 30 graduate semester credits for one (1) year of experience. However, undergraduate and/or graduate credits may not be substituted for the eighteen (18) months of experience in an administrative, managerial, or executive capacity.

Additional Information

The City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, veteran status, gender identity, or pregnancy.

Average salary estimate

$135000 / YEARLY (est.)
min
max
$120000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Deputy Chief Info Sec Officer, City of New York

Are you ready to step up your career in cybersecurity? The NYC Department of Finance (DOF) is looking for an experienced and innovative Deputy Chief Information Security Officer (Deputy CISO) to join our dynamic team in New York, NY. In this pivotal role, you'll oversee all IT security efforts for the agency, ensuring our robust cybersecurity program remains on the cutting edge. Collaborating directly with our Chief Information Security Officer (CISO), you'll enjoy the exciting challenge of adapting to new technology initiatives while maintaining a resilient environment for handling the city’s tax-related operations. With your background in computer operations management, you can lead a talented team implementing high-impact security protocols based on the NIST Cyber Security framework. If you've got a track record of securing classified data and managing substantial annual revenue systems, we want you on our team. You will be involved in a diverse range of responsibilities, from managing cybersecurity operations to interacting with internal and external stakeholders. Your skills will help shape our strategies for risk management, incident response, and compliance audits amidst a fast-paced environment. Beyond just protecting our data, your leadership will facilitate the development of secure cloud-based solutions and cutting-edge application security measures. Join us at DOF, where your contributions will directly impact the efficiency and safety of public services in New York City. Let’s work together to enhance our cybersecurity posture and ensure the integrity of city operations!

Frequently Asked Questions (FAQs) for Deputy Chief Info Sec Officer Role at City of New York
What are the key responsibilities of the Deputy Chief Information Security Officer at NYC Department of Finance?

As the Deputy Chief Information Security Officer (Deputy CISO) at NYC Department of Finance (DOF), your primary responsibilities include overseeing the comprehensive Cyber Security program management, leading cybersecurity operations, risk management, security engineering, and incident management. You'll also be responsible for ensuring compliance with regulatory requirements and maintaining a proactive cybersecurity posture amid evolving threats.

Join Rise to see the full answer
What qualifications are required for the Deputy Chief Information Security Officer position at DOF?

To qualify for the Deputy Chief Information Security Officer (Deputy CISO) position at NYC Department of Finance, candidates should possess six years of progressively responsible experience in supervising large-scale computer operations, with at least 18 months in an administrative or managerial role. A bachelor's degree may substitute for two years of experience, while a relevant master's degree can substitute for one year.

Join Rise to see the full answer
How does the Deputy CISO contribute to the NYC Department of Finance's cybersecurity strategy?

The Deputy Chief Information Security Officer plays an essential role in shaping the NYC Department of Finance’s cybersecurity strategy by overseeing the implementation of security protocols grounded in the NIST Cyber Security framework. The Deputy CISO will lead multi-disciplinary teams and drive initiatives aimed at enhancing governance, risk management, and compliance while securing the agency's valuable information assets.

Join Rise to see the full answer
What is the work environment like for the Deputy Chief Information Security Officer at DOF?

Working as the Deputy Chief Information Security Officer at NYC Department of Finance involves a collaborative and fast-paced environment where you will manage a talented team dedicated to enhancing cybersecurity measures. You will engage with auditors, legal counsel, and various internal and external stakeholders, promoting a culture of security while advancing the agency's technology goals.

Join Rise to see the full answer
What career growth opportunities exist for the Deputy CISO at NYC Department of Finance?

The role of Deputy Chief Information Security Officer at NYC Department of Finance offers substantial career growth opportunities. With ongoing new technology initiatives and the potential for advancement in leadership roles, you can expand your expertise in cybersecurity while contributing to one of the largest cyber teams within New York City government.

Join Rise to see the full answer
Common Interview Questions for Deputy Chief Info Sec Officer
What experience do you have in managing cybersecurity programs?

In answering this question, highlight your previous experience in overseeing comprehensive cybersecurity programs, detailing specific initiatives you've led, challenges faced, and how you implemented solutions that improved overall security posture.

Join Rise to see the full answer
Can you discuss a time when you managed a cybersecurity incident?

Provide a detailed example of a cybersecurity incident you managed, explaining your role in containment, response, and recovery. Discuss the lessons learned and how you applied those lessons to strengthen future security protocols.

Join Rise to see the full answer
How do you stay updated with the latest cybersecurity threats and trends?

Discuss your methods for remaining informed about current cybersecurity threats, such as subscribing to industry publications, joining professional associations, attending conferences, and engaging in continuous learning through courses and training programs.

Join Rise to see the full answer
How do you approach building a cybersecurity team?

Your answer should reflect your philosophy on team building, including how you identify talent, foster a positive team culture, and provide ongoing training and development opportunities to ensure your team remains skilled and motivated.

Join Rise to see the full answer
What strategies would you implement to ensure compliance with cybersecurity regulations?

Explain your understanding of relevant cybersecurity regulations and how you plan to develop and enforce compliance mechanisms within the organization. Highlight past experiences where you've implemented compliance measures successfully.

Join Rise to see the full answer
Can you explain the importance of incident management in cybersecurity?

Discuss the critical role incident management plays in cybersecurity, emphasizing timely detection, response, and recovery processes that minimize damage and protect valuable data and resources.

Join Rise to see the full answer
How do you prioritize security initiatives?

Share your methodology for assessing risks and prioritizing security initiatives based on factors such as potential impact, regulatory requirements, and available resources to ensure the most effective use of efforts.

Join Rise to see the full answer
What role does threat intelligence play in your cybersecurity strategy?

Articulate how incorporating threat intelligence into your cybersecurity strategy allows for proactive measures against potential security breaches, sharing examples of how you've integrated such intelligence in previous roles.

Join Rise to see the full answer
What experience do you have with cloud security?

Discuss your background working with cloud security solutions, including any specific cloud services you've managed and strategies you've used to secure cloud environments against unauthorized access and data breaches.

Join Rise to see the full answer
How do you ensure effective communication of cybersecurity policies to employees?

Your answer should showcase your approach to employee education and engagement regarding cybersecurity policies, including training programs, awareness campaigns, and open lines of communication to address concerns.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
City of New York Remote New York City, NY
Posted 11 days ago

Join the NYC Department of Consumer and Worker Protection as a Staff Counsel to provide legal support and advice in shaping youth financial empowerment programs.

Photo of the Rise User
Posted 11 days ago

Become a vital part of the New York City agency as a Senior Case Reviewer, ensuring compliance and quality in public assistance programs.

Photo of the Rise User
Posted 8 days ago

Launch your career at LeanTaaS as an Information Systems Intern, where you'll contribute to innovative healthcare software solutions.

Photo of the Rise User
Ohalo Hybrid San Francisco, CA
Posted 22 hours ago

Join Ohalo as an IT Manager and lead our IT operations to drive efficiency and innovation in a collaborative team.

Photo of the Rise User
Posted 3 days ago

Become a key player at Freeman Health System as an IAM Analyst, safeguarding critical information through innovative identity management solutions.

Photo of the Rise User

Join HRL as an IT Asset Management Specialist where you'll oversee the life cycle management of critical IT assets.

Photo of the Rise User
Posted 3 days ago

As an IT Business Systems Analyst at Cianbro, you will ensure the reliability and performance of vital systems while mentoring junior support staff.

Posted 3 days ago

Maverc Technologies is seeking an experienced Senior System Administrator to manage and optimize our critical IT infrastructure.

Posted 13 days ago

As a Senior Site Reliability Engineer at Tripstack, you'll leverage your extensive experience to enhance the stability and performance of cutting-edge travel technology.

Photo of the Rise User
Posted 12 days ago

Join the Longview Police Department as a Crime Analyst, where you'll blend IT support with crime analysis to enhance community safety.

Photo of the Rise User
Posted 10 months ago
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)

Our Mission To work to eliminate ageism and ensure the dignity and quality-of-life of New York City’s diverse older adults, and for the support of their caregivers through service, advocacy, and education. Strategic Goals To foster independence...

2477 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 30, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Cincinnati just viewed Learning Content Designer at QuantHub
Photo of the Rise User
Someone from OH, Tallmadge just viewed Manufacturing and Process Engineer at CVRx
Q
Someone from OH, Columbus just viewed Part-Time Medical Assistant at QualDerm Partners
Photo of the Rise User
Someone from OH, Cincinnati just viewed Summer 2025 Intern – Finance – Michigan at Stryker
Photo of the Rise User
19 people applied to SOC Analyst I at CBIZ
Photo of the Rise User
Someone from OH, Cleveland just viewed Remote Customer Service Representative at Conduent
Photo of the Rise User
Someone from OH, Cleveland just viewed Customer Support Team Lead (6-month Contract) at Jane App
o
Someone from OH, Cincinnati just viewed Marketing and Communications Consultant at osu
Photo of the Rise User
Someone from OH, Toledo just viewed Registered Nurse (Part-time) at Calibrate
Photo of the Rise User
Someone from OH, Toledo just viewed Clinical Research Associate II at Alimentiv
Photo of the Rise User
Someone from OH, Cleveland just viewed IT Support Engineer at Level AI
Photo of the Rise User
Someone from OH, Dayton just viewed Customer Content Specialist at Cision
Photo of the Rise User
Someone from OH, Cuyahoga Falls just viewed Senior Corporate Communications Manager at Bumble Inc.