Infrastructure Security and Data Protection Analyst, DIIT - 26052
Join to apply for the Infrastructure Security and Data Protection Analyst, DIIT - 26052 role at NYC Public Schools
Position Summary : The Infrastructure Security and Data Protection Analyst will assume the role of safeguarding sensitive data and securing devices across the New York City Public Schools (NYCPS) ecosystem. This role is responsible for planning, designing, documenting, configuring, and managing security controls that protect data, maintaining the integrity of desktops, laptops, servers, tablets, and network infrastructure and ensuring compliance with security policies. Performs related work.
Reports to : Director of Cybersecurity Engineering
Direct Reports : N / A
Key Relationships : Works collaboratively within areas of Information Technology (IT), Information Security, Office of Legal Affairs (OLA), internal business units, the Office of Special Investigations (OSI), the New York Police Department (NYPD), the Federal Bureau of Investigation (FBI), Microsoft, CISCO, IBM, Dell, and other vendors with whom the NYCPS’s business.
Responsibilities
- Serves as point of contact for penetration testing and documents findings, making recommendations for cost‑effective security controls.
- Develops and enforces security policies and procedures and ensures compliance with relevant security and data protection regulations.
- Creates reports on infrastructure health, access anomalies, and data protection metrics.
- Enforces access control policies based on user identity, device posture, and location to prevent unauthorized access and lateral movement.
- Monitors and optimizes the effectiveness of Zero Trust Network Access (ZTNA), analyzing traffic and authentication logs to improve security and performance.
- Implements security measures such as firewalls, encryption programs, and anti‑malware software to protect sensitive information and prevent unauthorized access.
- Acts as the subject matter expert and escalation point for ZTNA‑related issues affecting mobile endpoints like Chromebooks and iPads, performing security testing based on device requirements.
- Develops and maintains internal processes, security baselines, and documentation for various devices and systems.
- Conducts research on mobile security trends and vulnerabilities, certifying devices after successful security testing.
- Oversees security assessment projects from initiation to completion, collaborating with cross‑functional teams to align strategies with organizational goals.
- Ensures devices meet NYCPS and citywide security compliance and assumes supervisory duties in the supervisor's absence.
Qualification Requirements
Minimum Requirements
A baccalaureate degree, from an accredited college, including or supplemented by twenty‑four (24) semester credits in cybersecurity, network security, computer science, computer programming, computer engineering, information technology, information science, information systems management, network administration, or a pertinent scientific, technical or related area; orA four‑year high school diploma or its equivalent approved by a State’s department of education or a recognized accrediting organization and three years of satisfactory experience in any of the areas described in "1" above; orEducation and / or experience equivalent to "1" or "2", above. College education may be substituted for up to two years of the required experience in "2" above on the basis that sixty (60) semester credits from an accredited college is equated to one year of experience. In addition, twenty‑four (24) credits from an accredited college or graduate school in cybersecurity, network security, computer science, computer programming, computer engineering, information technology, information science, information systems management, network administration, or a pertinent scientific, technical or related area; or a certificate of at least 625 hours in computer programming from an accredited technical school (post high school), may be substituted for one year of experience.In addition to meeting the minimum requirements, individuals must have two additional years of the experience described in "1" above.
Preferred Qualifications
Ability to communicate effectively through written and verbal means to peers and senior leadership.Knowledge of computer networking concepts and protocols, and network security methodologies.Knowledge of application vulnerabilities.Knowledge of risk management processes (e.g., methods for assessing and mitigating risk).Knowledge of cyber threats and vulnerabilities.Knowledge of MDM and patch management solutions (e.g., SCCM, Intune).Certifications (ISC2 CC, CompTIA Security+, CompTIA CYSA+ is a plus).Knowledge of ZTNA, Zscaler.Salary : $107,725 - $113,000
(Internal candidates who are selected for this position and who currently hold comparable or less senior positions within the DOE will not earn less than their current salary.)
Please include a resume and cover letter with your application.
NOTE : The filling of all positions is subject to budget availability and / or grant funding.
New York City Residency is NOT Required.
Equal Opportunity Employer
The Department of Education of the City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment upon any legally protected status or protected characteristic, including but not limited to an individual's actual or perceived sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, gender identity, veteran status, or pregnancy. For more information, please refer to the DOE Non-Discrimination Policy.
Public Service Loan Forgiveness As a prospective employee of the City of New York, you may be eligible for federal loan forgiveness programs and state repayment assistance programs. For more information, please visit the U.S. Department of Education's website at https : / / studentaid.gov / pslf / .
#J-18808-Ljbffr