MTA - New York, NY

posted 5 months ago

Full-time - Mid Level
New York, NY
Professional, Scientific, and Technical Services

About the position

The Manager of Cybersecurity OT Operations is a pivotal role within the MTA IT Department, responsible for overseeing the cybersecurity measures that protect the organization’s operational technology systems. This position requires a comprehensive understanding of the cybersecurity landscape, particularly as it pertains to critical infrastructure and operational technology. The manager will lead multiple concurrent cybersecurity projects, ensuring that resources are allocated effectively and that projects are completed on time and within budget. This role involves not only technical oversight but also the management and development of staff, fostering a culture of continuous improvement and risk management in response to evolving cyber threats. In addition to project management, the Cybersecurity Manager will be responsible for the architecture of cybersecurity solutions, ensuring that all systems align with the latest reference architectures and standards. This includes reviewing and approving cybersecurity reference architectures, identifying gaps in current systems, and developing programs to address these gaps. The manager will also play a key role in vendor management, contributing to the technical aspects of RFPs and RFIs, negotiating contracts, and ensuring that service level agreements (SLAs) are met. This includes managing expenses and ensuring that vendor deliverables align with organizational requirements. Documentation is another critical aspect of this role, as the manager will participate in the creation of enterprise security documents, including policies, standards, and procedures. Providing guidance and training to project managers and senior leadership on cybersecurity strategies is essential, as is compiling and analyzing data for management reporting. The manager will need to stay informed about current cyber threats and trends, ensuring that the organization is proactive in its cybersecurity efforts. Overall, this position is integral to maintaining the security and integrity of the MTA’s operational technology systems, ensuring minimal disruption to services and safeguarding critical infrastructure.

Responsibilities

  • Manage and plan OT resource allocation for projects to ensure that the projects have the right SMEs and enough resources to meet milestones.
  • Manage and ensure disaster recovery and contingency plans for their domain(s) to provide users with minimal interruptions in service.
  • Understand, review, and approve Cybersecurity Reference Architectures and Solutions for applying them.
  • Revalidate systems to most recent reference architectures to determine gaps, develop and manage programs to align systems to newest standards and reference architectures.
  • Contribute and own technical elements of RFPs and RFIs and negotiate with vendors on technical issues to ensure results are delivered in line with user and organization requirements.
  • Manage contracts and expenses to ensure SLAs and contract renewals are processed timely.
  • Provide contract management support to ensure vendor deliverables are met.
  • Manage and lead major projects and assigned service providers with technical expertise to address mission critical issues, evaluates ongoing vendor service level and enforces SLAs and penalties.
  • Participate in the creation of enterprise security documents (policies, standards, baselines, guidelines, and procedures) under the direction of the IT Security Manager, where appropriate.
  • Provide technical guidance to project managers and senior leadership on cybersecurity and technology strategies.
  • Compile and analyze data for management reporting and metrics.
  • Monitor relevant information sources to stay up to date on current attacks and trends.
  • Observe the work performed by the contractor and review invoices, approving them if the work meets contractual standards.
  • Address performance issues with the contractor when possible and escalate issues to other parties as needed.

Requirements

  • Bachelor's Degree or related fields or equivalent experience.
  • A minimum of 5 plus years of relevant experience in cybersecurity operations.
  • 2+ years of experience in a Leadership/Management role.
  • Experienced in delivering to deadlines and managing vendor relationships.
  • Strong work ethic and the ability to handle multiple priorities.

Nice-to-haves

  • Cybersecurity General Certification (CISSP, CISM, CISA, CRISC, etc.)
  • Cybersecurity Specific Certification (OSCP, GICSP, etc.)
  • Project Management Certification (PMP, etc.)
  • 5+ years of cybersecurity experience and a deep understanding of technology and cybersecurity domain principles.
  • 3+ years of experience working specifically on securing OT/ICS systems.

Benefits

  • Telework eligibility after 30 days of hire (currently two days per week).
  • Competitive salary range of $156,275 - $184,456.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service