> Markdown version of [/jobs/ext/2684868-manager-information-technology-services-2](https://www.wearedevelopers.com/jobs/ext/2684868-manager-information-technology-services-2). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Manager Information Technology Services 2 - **Company:** Street One Commerce Plaza - **Location:** Albany, NY, United States (Remote available) - **Salary:** $118,425.0 - $145,039.0 - **Contract:** Temporary contract - **Skills:** Cyber Security, Information Systems, Computer Networks, Data Security, Web Browsers, Information Sciences, Information Security Management, Internet Security, Network Forensics, Information Technology, CIS Benchmarks, Vulnerability Analysis - **Published:** September 2, 2026 - **Apply:** https://www.careerbuilder.com/job-details/manager-information-technology-services-2-information-security-sg-29-new-york-ny--500af18c-63ae-4003-b10a-81e4e7daa113 ## About the Role * Bachelor's degree in Information Security, Computer Science, Management of Information Systems, or a related field required. Master's degree and professional certifications, such as CISSP, preferred. * Minimum of seven (7) years of experience in a combination of risk management, information security and information technology fields. Experience in a leadership role is preferred. Employment history should demonstrate increasing levels of responsibility. * Knowledge and understanding of common information security management frameworks, such as NIST 800-53, CIS Controls. * Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate security and risk-related concepts to technical and non-technical audiences. Technical experience in the fields of cybersecurity, information security, information technology and/or cybersecurity intelligence. * Proven track record and experience in developing information security policies and procedures, as well as successfully executing programs that meet the objectives of excellence in a dynamic environment. * Familiarity with cybersecurity regulations, including the DFS Cybersecurity Regulation (23 NYCRR Part 500). * Strong analytical skills and ability to write clearly on complex issues. Appointment Method: Candidates must meet the minimum qualifications listed below in order to be eligible for appointment. Non-Competitive: Eight years of information technology, cybersecurity, or information assurance experience*, including two years at the supervisory level. * Substitutions: A bachelor's degree or higher in any field including or supplemented by 15 semester credit hours in computer science or related field substitutes for three years of required experience; any bachelor's degree substitutes for two years of required experience. An associates degree with 15 semester credit hours in computer science or related field may substitute for one year of required experience. Candidates in a bachelor's degree program with at least 15 semester credit hours in computer science or related field may substitute such credits for one year of required experience. A master's degree or higher in computer science or related field substitutes for one year of required experience., Analysis Skills, Business Services, Business Support, CISSP - Certified Information Systems Security Professional, Communication Skills, Communications Security (COMSEC), Computer Forensics, Computer Science, Computer Security, Contract Review, Economic Growth, Financial Services, Financial Systems, Frequently Asked Questions (FAQ), Global Financial Markets, High Tech Industry, Human Resources Management, Incident Response, Information Architecture, Information Assets, Information Science, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Interpersonal Skills, Leadership, Legal Research, Maintain Compliance, Management of Information Systems/Technology (MIS), Metrics, Network Performance/Analysis, Network Traffic Analysis, People Management, Policy Development, Presentation/Verbal Skills, Procedure Development, Procedure Implementation, Regulations, Request for Information (RFI), Resource Management, Risk, Risk Analysis, Risk Management, Security Analysis, Security Architecture, Security Attacks, Security Compliance, Security Monitoring, Service Level Agreement (SLA), Team Player, U.S. National Institute of Standards and Technology (NIST), Vulnerability Scanners, Web Browsers, Willing to Travel, Writing Skills ## Description The Department of Financial Services is seeking candidates for the position of Manager Information Technology Services 2 (Information Security) within Information Security. Duties include, but are not limited to, the following: * Directs and manages implementation of information security and compliance programs; * Provides direction and guidance to teams with responsibility for developing, deploying, and maintaining information security architecture; * Directs the development, interpretation, review, and communication of information security policies, procedures, and standards; * Coordinates the implementation of information security procedures, risk reviews, and remediation activity, monitors information security compliance, recommends improvements to monitor access to information assets and ensure security safeguards are maintained; * Manages and resolves security threats to agency information systems and information security incident response; * Directs development and implementation of information security risk analysis and management processes; coordinates vulnerability scanning and analysis to help determine risk and remediation priorities; manages development and maintenance of enterprise risk registers, which includes reporting and tracking remediation efforts; * Directs the characterization and analysis of network traffic to identify anomalies and potential threats to network resources; determines events that require investigation and response; * Implements and improves information security incident response plans and reports; * Develops and implements plans and procedures to ensure business critical services are recovered in disaster efforts; * Directs investigation of alleged information security violations; coordinates collection, seizure, handling, and analysis of digital evidence; responds to requests for information from investigators; * May testify in proceedings regarding analytical processes and findings; Serves as an information security expert and evaluates systems and contracts for alignment with State policies and standards; * Reviews contract, service level agreement, memorandum of understanding language, and other documents to verify needs, requirements, and alignment with State policies and standards; * Provides information security expertise and recommendations to agency executives on a broad range of information security matters; * Researches laws and regulations that could affect the security controls and classification of information assets; * Monitors information security trends, tools, and techniques to maintain awareness and evaluate the applicability of the latest information security techniques and tools to agencies' security programs; * Develops a multilayered and adaptive approach to counter information security threat environments; represents the agency at internal and external information security meetings; * Manages staff and resources dedicated to information security programs; * Collects metrics to measure the efficiency and effectiveness of information security programs; * Performs the full range of supervisory responsibilities; and * Other duties as assigned. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [How Web AI Can Power the Agentic Web - Jason Mayes (Google)](https://www.wearedevelopers.com/videos/1896-how-web-ai-can-power-the-agentic-web-jason-mayes-google) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Privacy-first in-browser Generative AI web apps: offline-ready, future-proof, standards-based](https://www.wearedevelopers.com/videos/1572-privacy-first-in-browser-generative-ai-web-apps-offline-ready-future-proof-standards-based) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How should you format your IT resume?](https://www.wearedevelopers.com/magazine/68-how-should-you-format-your-it-resume) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer)