GovServicesHub | Contract
New York, United States | Posted on 02/25/2025
New York, NY 10038 (100% Onsite)
The My City portal is a single platform designed to simplify interactions with City services. This initiative focuses on delivering secure, seamless, and user-friendly digital experiences. Several key projects are underway, including Childcare, Business Portal, and Workforce Development Services.
The NYC Cyber Command is seeking a Senior Application Security Engineer to enhance security across large, complex networked environments. The ideal candidate will provide security guidance, risk assessments, and technical leadership throughout the application development lifecycle.
This role requires close collaboration with NYC Cyber Command leadership, engineering teams, incident response teams, and application security practitioners to strengthen the City's cybersecurity posture.
Skill | Required/Desired | Years of Experience |
---|---|---|
Application Security | Required | 12+ Years |
Vulnerability Assessments & Pen Testing | Required | 10+ Years |
Secure Application Development (OWASP) | Required | 8+ Years |
Software Composition Analysis (SCA) | Required | 5+ Years |
SAST/DAST Tools (Veracode, Burp Suite) | Required | 5+ Years |
Cloud Security (AWS, Azure, GCP) | Required | 5+ Years |
CI/CD Security Integration | Required | 5+ Years |
Web Application Firewalls (WAF) | Preferred | 3+ Years |
Scripting (Python, Bash, PowerShell) | Preferred | 3+ Years |
Compliance (NIST, PCI-DSS, GDPR) | Preferred | 3+ Years |
Leadership & Team Mentorship | Preferred | 3+ Years |
Certifications (CISSP, CEH, CCSP, GWAPT) | Preferred | N/A |
Step {{curStepInMandatorySecPrompt}}/{{totalNumOfStepsInMandatorySecPrompt}}
{{cxPropBodyMessage}}
{{getI18n("zr.cw.apply.sign",cxPropCompanyInfo.name)}}