What are the responsibilities and job description for the Cybersecurity Manager position at V Group Inc.?
For more details, please connect with Praveen H at praveenh@vgroupinc.com or call at 609-766-2733.
Must Have: 72 Months of experience in developing and implementing cybersecurity strategies, policies, and procedures in IT and OT environments specifically in the Transportation Systems Management and Operations.
End Client: New York State - Department of Transportation (DOT)
Job Title: Cybersecurity Manager
Duration: 24 Months
Location: Albany, NY 12233
Hours Per Week: 40 Hours
Interview Type: Webcam
Job Code: HBITS-08-14870
Ceipal: SNY_CYB870_PH
Scope of Project:
The incumbent will act as the Cybersecurity Manager for the DOT Transportation Safety Management and Operations (TSMO) Technology Program to lead efforts in securing integrated Information Technology (IT) and Operational Technology (OT) environments within transportation systems management and operations. This role is critical in protecting critical infrastructure from evolving cyber threats, ensuring the safety, reliability, and efficiency of transportation networks.
Responsibilities:
Develop and Implement Security Strategy: Design, implement, and maintain a comprehensive cybersecurity strategy specifically tailored for IT/OT convergence in transportation systems. This includes risk assessments, vulnerability management, and incident response planning.
IT/OT Security Architecture: Oversee the design and implementation of secure IT/OT architectures, ensuring that security controls are integrated at all levels, from enterprise networks to Industrial Control Systems (ICS) and SCADA environments.
Risk Management and Compliance: Conduct regular risk assessments of IT and OT systems, identify potential vulnerabilities, and develop mitigation strategies. Ensure compliance with relevant industry standards, regulations (e.g., TSA directives, NERC CIP if applicable, NIST frameworks), and best practices.
Threat Intelligence and Monitoring: Establish and manage a robust threat intelligence program to proactively identify and respond to emerging cyber threats targeting transportation infrastructure. Implement and oversee security monitoring tools and processes for both IT and OT environments.
Incident Response and Forensics: Develop and lead the incident response plan for cybersecurity events affecting IT/OT systems. Coordinate response efforts, conduct forensic investigations, and implement corrective actions to prevent recurrence.
Vulnerability Management: Implement and manage a comprehensive vulnerability management program for all IT and OT assets, including regular scanning, penetration testing, and patch management.
Security Awareness and Training: Develop and deliver cybersecurity awareness training programs for IT, OT, and operational staff, emphasizing the unique risks associated with IT/OT convergence.
Vendor and Third-Party Risk Management: Assess and manage the cybersecurity risks associated with third-party vendors and service providers who have access to or interact with IT/OT systems.
Collaboration and Stakeholder Management: Collaborate closely with IT, OT engineering, operations, and other relevant departments to ensure security is a core consideration in all system design, development, and operational activities. Communicate security risks and strategies effectively to senior management and stakeholders.
Budget Management: Develop and manage the cybersecurity budget for IT/OT convergence initiatives.
Stay Current: Continuously research and stay abreast of the latest cybersecurity threats, vulnerabilities, technologies, and best practices relevant to transportation and critical infrastructure.
Required/Preferred Skills:
84 Months of experience in cybersecurity, with at least 3–5 years in a management or leadership role.
84 Months of experience in securing IT and OT environments, IT/OT convergence challenges and solutions specifically in the Transportation Systems Management and Operations.
72 Months of experience in developing and implementing cybersecurity strategies, policies, and procedures in IT and OT environments specifically in the Transportation Systems Management and Operations.
60 Months of experience with risk assessment methodologies and frameworks (e.g., NIST RMF, ISO 27001).
60 Months of experience with incident response, threat hunting, and digital forensics.
60 Months of experience with vulnerability management tools and processes.
60 Months of experience collaborating with cross-functional teams; and producing both written and verbal communication articulating security concepts to both technical and non-technical audiences.
Certifications:
Must hold at least one of the following certifications:
CISSP
CISM
GIAC
GICSP
V Group Inc. is a NJ-based IT Services and Products Company with its business strategically categorized in various Business Units including Public Sector, Enterprise Solutions, Professional Services, Ecommerce, Projects, and Products. Within Public Sector business unit, we cater IT Professional Services to Federal, State and Local. We have multiple awards/contracts with 30 states, including but not limited to NY, CA, FL, GA, MD, MI, NC, OH, OR, CO, CT, TN, PA, TX, VA, NM, VT, and WA.
If you are considering applying for a position with V Group, or partnering with us on a position, please feel free to contact me for any questions you may have regarding our services and the advantages we can offer you as a consultant.
Please share my contact information with others working in Information Technology.
Website: https://www.vgroupinc.com/publicsector
LinkedIn: https://www.linkedin.com/company/v-group/
Facebook: https://www.facebook.com/VGroupIT
Twitter: https://www.twitter.com/vgroupinc