empty

Cybersecurity Audit Manager

City of New York

Job Description

Posted on: 
September 17, 2024

Summary and company overview

Job Description

_ OPEN TO APPLICANTS WHO ARE PERMANENT IN THE CIVIL SERVICE TITLE OF COMPUTER SYSTEMS MANAGER AND THOSE WHO ARE REACHABLE ON THE CIVIL SERVICE LIST, EXAM # 9011. _

The Bureau of Audit Services plays a leading role in risk-based assessments of the Department's systems, networks and endpoint controls; the department’s operational efficiencies, control effectiveness and compliance with Federal, NY State and Local governments laws and regulations using frameworks and guidance recommended by the National Institute of Standards and Technology (NIST). Rules and Regulations and the City’s Office of Technology and Innovation’s policies.

Position Description:

DOHMH is seeking a Cybersecurity Audit Manager to join the Bureau of Audit Services, the internal audit function for the agency. The Audit Manager will supervise a team of Cybersecurity analysts and will report to the Assistant Commissioner for Audit Service and Medicaid Compliance Officer, who reports to the Chief Operating Officer/Executive Deputy Commissioner.

Why you should work for us:

  • Loan Forgiveness: As a prospective employee of the City of New York, you may be eligible for federal/state loan forgiveness and repayment assistance programs that lessen your payments or even fully forgive your full balance. For more information, please visit the U.S. Department of Education’s website (https://studentaid.gov/pslf/)
  • Benefits: City employees are entitled to unmatched benefits such as:
  • a premium-free health insurance plan that saves employees over $10K annually, per a 2024 assessment.
  • additional health, fitness, and financial benefits may be available based on the position’s associated union/benefit fund.
  • a public sector defined benefit pension plan with steady monthly payments in retirement.
  • a tax-deferred savings program and
  • a robust Worksite Wellness Program that offers resources and opportunities to keep you healthy while serving New Yorkers.
  • Work From Home Policy: Depending on your position, you may be able to work up to two days during the week from home.
  • Job Security - you could enjoy more job security compared to private sector employment and be able to contribute to making NYC a healthy place to live and work.

Established in 1805, the New York City Department of Health and Mental Hygiene (NYC Health Department) is the oldest and largest health department in the U.S., dedicated to protecting and improving the health of NYC. Our mission is to safeguard the health of every resident and cultivate a city where everyone, regardless of age, background, or location, can achieve their optimal health. We provide a wide array of programs and services focused on food and nutrition, anti-tobacco support, chronic disease prevention, HIV/AIDS treatment, family and child health, environmental health, mental health, and social justice initiatives. As the primary population health strategist and policy authority for NYC, with a rich history of public health initiatives and scientific advancements, from addressing the 1822 yellow fever outbreak to the COVID-19 pandemic, we serve as a global leader in public health innovation and expertise.

Come join us and help to continue our efforts in making a difference in the lives of all New Yorkers!

Commitment to Equity:

The City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, veteran status, gender identity, or pregnancy.

Responsibilities

  • Develop and implement a technology risk assessment process that is designed to identify, evaluate, prioritizes the top technology threats and Cyber security vulnerabilities to DOHMH.
  • Analyze and evaluate technical, administrative and governance controls relevant to cyber security, identity and access security, web applications security, mobile applications, data sharing, third-party contractors etc. and provide risk reduction recommendations.
  • Perform system control audits, general control reviews and audits coordinated with operational and financial auditors.
  • Assess Department's compliance with the Health Insurance Portability and Accountability Act (HIPAA), evaluate Department's IT governance, policies and procedures using NIST framework, and other professional standards, including citywide Office of Technology and Innovation's policies.
  • Recommend solutions to improve effectiveness and efficiencies and enhance Department’s IT policies and procedures.
  • Develop summary reports of findings, and recommendations.
  • Manage, supervise, and mentor the Cyber audit staff.
  • Maintain ongoing and open communication with the Department's IT leadership.
  • Validate the implementation of corrective actions.
  • Research and stay up to date on technological advancements, Cyber security risk management Artificial Intelligence/Gen AI and relevant audit concepts and methods.

Job Requirements

Required Qualifications:

  1. A master's degree in computer science from an accredited college or university and three (3) years of progressively more responsible, full-time, satisfactory experience in Information Technology (IT) including applications development, systems development, data communications and networking, database administration, data processing, or user services. At least eighteen (18) months of this experience must have been in an administrative, managerial or executive capacity in the areas of applications development, systems development, data communications and networking, database administration, data processing or in the supervision of staff performing these duties; or
  2. A baccalaureate degree from an accredited college or university and four (4) years of progressively more responsible, full-time, satisfactory experience as described in "1" above; or
  3. A four-year high school diploma or its educational equivalent, and six (6) years of progressively more responsible, full-time, satisfactory experience as described in "1" above; or
  4. A satisfactory combination of education and experience equivalent to "1", "2" or "3" above. However, all candidates must have at least a four-year high school diploma or its educational equivalent and must possess at least three (3) years of experience as described in "1" above, including the eighteen (18) months of administrative, managerial, executive or supervisory experience as described in "1" above.

In the absence of a baccalaureate degree, undergraduate credits may be substituted for a maximum of two (2) years of the required experience in IT on the basis of 30 semester credits for six (6) months of the required experience. Graduate credits in computer science may be substituted for a maximum of one (1) year of the required experience in IT on the basis of 30 graduate semester credits in computer science for one (1) year of the required IT experience. However, undergraduate and/or graduate credits may not be substituted for the eighteen (18) months of experience in an administrative, managerial, executive, or supervisory capacity as described in "1" above.

Preferred Skills:

  • 5+ years of IT risk management and proficient understanding of Cybersecurity threats and IT systems
  • 2+ years managing information security assessments
  • Proficient knowledge of enterprise class networks, data center, virtualization, storage, backup, disaster recovery, high availability, encryption, mobile and cloud systems
  • Experience or proficient knowledge of with Microsoft Endpoint Configuration Manager, Microsoft Windows administration such as Active Directory.
  • Experienced in the application of COBIT and/or NIST frameworks

Additional commentary

NA

Summary and company overview

Job Description

_ OPEN TO APPLICANTS WHO ARE PERMANENT IN THE CIVIL SERVICE TITLE OF COMPUTER SYSTEMS MANAGER AND THOSE WHO ARE REACHABLE ON THE CIVIL SERVICE LIST, EXAM # 9011. _

The Bureau of Audit Services plays a leading role in risk-based assessments of the Department's systems, networks and endpoint controls; the department’s operational efficiencies, control effectiveness and compliance with Federal, NY State and Local governments laws and regulations using frameworks and guidance recommended by the National Institute of Standards and Technology (NIST). Rules and Regulations and the City’s Office of Technology and Innovation’s policies.

Position Description:

DOHMH is seeking a Cybersecurity Audit Manager to join the Bureau of Audit Services, the internal audit function for the agency. The Audit Manager will supervise a team of Cybersecurity analysts and will report to the Assistant Commissioner for Audit Service and Medicaid Compliance Officer, who reports to the Chief Operating Officer/Executive Deputy Commissioner.

Why you should work for us:

  • Loan Forgiveness: As a prospective employee of the City of New York, you may be eligible for federal/state loan forgiveness and repayment assistance programs that lessen your payments or even fully forgive your full balance. For more information, please visit the U.S. Department of Education’s website (https://studentaid.gov/pslf/)
  • Benefits: City employees are entitled to unmatched benefits such as:
  • a premium-free health insurance plan that saves employees over $10K annually, per a 2024 assessment.
  • additional health, fitness, and financial benefits may be available based on the position’s associated union/benefit fund.
  • a public sector defined benefit pension plan with steady monthly payments in retirement.
  • a tax-deferred savings program and
  • a robust Worksite Wellness Program that offers resources and opportunities to keep you healthy while serving New Yorkers.
  • Work From Home Policy: Depending on your position, you may be able to work up to two days during the week from home.
  • Job Security - you could enjoy more job security compared to private sector employment and be able to contribute to making NYC a healthy place to live and work.

Established in 1805, the New York City Department of Health and Mental Hygiene (NYC Health Department) is the oldest and largest health department in the U.S., dedicated to protecting and improving the health of NYC. Our mission is to safeguard the health of every resident and cultivate a city where everyone, regardless of age, background, or location, can achieve their optimal health. We provide a wide array of programs and services focused on food and nutrition, anti-tobacco support, chronic disease prevention, HIV/AIDS treatment, family and child health, environmental health, mental health, and social justice initiatives. As the primary population health strategist and policy authority for NYC, with a rich history of public health initiatives and scientific advancements, from addressing the 1822 yellow fever outbreak to the COVID-19 pandemic, we serve as a global leader in public health innovation and expertise.

Come join us and help to continue our efforts in making a difference in the lives of all New Yorkers!

Commitment to Equity:

The City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, veteran status, gender identity, or pregnancy.

Apply now