Lead Security Analyst
Sligo Software Solutions Inc.
Greetings from Sligo Software Solutions, Inc. !!
This is Dasharatham from SLIGO. We have an urgent requirement for Lead Security Analyst position with our client.
Title : Lead Security Analyst
Location : Albany, New York
Duration : 24 Months
Client : NY State - Information Technology Services (ITS)
Job ID: SLG - 26 - 12190
Respond by: 07/22/26 5:00 PM
The incumbent will act as the Cybersecurity Manager for the DOT Transportation Safety Management and Operations (TSMO) Technology Program to lead our efforts in securing our integrated Information Technology (IT) and Operational Technology (OT) environments within transportation systems management and operations. This role is critical in protecting our critical infrastructure from evolving cyber threats, ensuring the safety, reliability, and efficiency of our transportation networks.
Duties
- Develop and Implement Security Strategy: Design, implement, and maintain a comprehensive cybersecurity strategy specifically tailored for IT/OT convergence in transportation systems. This includes risk assessments, vulnerability management, and incident response planning.
- IT/OT Security Architecture: Oversee the design and implementation of secure IT/OT architectures, ensuring that security controls are integrated at all levels, from enterprise networks to industrial control systems (ICS) and SCADA environments.
- Risk Management and Compliance: Conduct regular risk assessments of IT and OT systems, identify potential vulnerabilities, and develop mitigation strategies. Ensure compliance with relevant industry standards, regulations (e.g., TSA directives, NERC CIP if applicable, NIST frameworks), and best practices.
- Threat Intelligence and Monitoring: Establish and manage a robust threat intelligence program to proactively identify and respond to emerging cyber threats targeting transportation infrastructure. Implement and oversee security monitoring tools and processes for both IT and OT environments.
- Incident Response and Forensics: Develop and lead the incident response plan for cybersecurity events affecting IT/OT systems. Coordinate response efforts, conduct forensic investigations, and implement corrective actions to prevent recurrence.
- Vulnerability Management: Implement and manage a comprehensive vulnerability management program for all IT and OT assets, including regular scanning, penetration testing, and patch management.
- Security Awareness and Training: Develop and deliver cybersecurity awareness training programs for IT, OT, and operational staff, emphasizing the unique risks associated with IT/OT convergence.
- Vendor and Third-Party Risk Management: Assess and manage the cybersecurity risks associated with third-party vendors and service providers who have access to or interact with IT/OT systems.
- Collaboration and Stakeholder Management: Collaborate closely with IT, OT engineering, operations, and other relevant departments to ensure security is a core consideration in all system design, development, and operational activities. Communicate security risks and strategies effectively to senior management and stakeholders.
- Budget Management: Develop and manage the cybersecurity budget for IT/OT convergence initiatives.
- Stay Current: Continuously research and stay abreast of the latest cybersecurity threats, vulnerabilities, technologies, and best practices relevant to transportation and critical infrastructure.
Mandatory Requirements
- Experience (15+ Years)
- Monitors networks for security breaches and investigates violations when they occurs. Helps to design, implement, and maintain the organization's cybersecurity plan.
Requirements
- This is an 100% Onsite.
- 84 months of experience in cybersecurity, with at least 3-5 years in a management or leadership role.
- 84 months of experience in securing IT and OT environments, IT/OT convergence challenges and solutions specifically in the Transportation Systems Management and Operations.
- 72 months of experience in developing and implementing cybersecurity strategies, policies, and procedures in IT and OT environments specifically in the Transportation Systems Management and Operations.
- 60 months of experience with risk assessment methodologies and frameworks (e.g., NIST RMF, ISO 27001).
- 60 months of experience with incident response, threat hunting, and digital forensics.
- 60 months of experience with vulnerability management tools and processes.
- 60 months of experience collaboration with cross-functional teams; and producing both written and verbal communication articulating security concepts to both technical and non-technical audiences.
- MUST hold at least one of these Certifications:
- CISSP
- CISM
- GIAC
- GICSP
- R sum
- Copy of Candidate Identification (i.e., Driver s License/Green Card/Visa and Passport if applicable)
- Any documents referenced in the above Requested Qualifications (i.e., professional certifications, degrees, etc.)
Thank you,
Katta Dasharatham
Recruiting Team Lead
Sligo Software Solutions Inc.
www.sligosoft.com
Direct: (518) 818-6239
Office: (518) 444 0459 x 116
Fax : (518) 444 0457
https://www.linkedin.com/in/dasharatham/
Due to my back-to-back calls, there are times when I might miss your calls. Email is the best way to reach me
For employers only
Is this your company's job post? Verify ownership to manage this listing and receive applications directly.
Claim this listingLooking to apply for this job? Use the Apply button above.
See more jobs in Albany, NY