FIT NYC Deputy Director of Cyber & Endpoint Security
- Lead day-to-day cybersecurity operations for the institution, including monitoring, threat detection, hardening, vulnerability management, endpoint protection, phishing defense, data protection, and remediation activities.
- Oversee security controls across institutional endpoints, servers, cloud platforms, mobile devices, and smart technologies.
- Manage security tools and services such as SIEM/log correlation, MDR/XDR, anti-malware, DLP, email security, intrusion detection/prevention, and vulnerability scanning platforms.
- Partner with infrastructure and engineering teams to ensure secure configurations, patching, image management, and lifecycle security practices.
- Lead or coordinate cybersecurity incident response activities including investigation, containment, recovery, root cause analysis, and communication.
- Maintain readiness for urgent or after-hours incidents requiring rapid response.
- Evaluate risks related to new technologies, vendors, systems, and business processes; recommend practical mitigation strategies.
- Lead vulnerability remediation planning and risk prioritization across enterprise systems.
- Support institutional compliance obligations and security controls aligned with frameworks such as NIST, ISO, FERPA, PCI-DSS, and related standards.
- Assist in developing and maintaining cybersecurity policies, standards, procedures, and operational controls.
- Conduct or coordinate audits, control assessments, third-party security reviews, and documentation efforts.
- Partner with the CISO on cybersecurity strategy, roadmaps, investments, and continuous improvement initiatives.
- Monitor emerging threats, technologies, and regulatory developments to inform institutional planning.
- Recommend enhancements that improve security maturity, efficiency, user experience, and cost effectiveness.
- Lead or support enterprise cybersecurity initiatives and cross-functional projects.
- Lead cybersecurity awareness programs for faculty, staff, and students including phishing simulations, training campaigns, events, and outreach.
- Provide expert guidance to IT teams and business stakeholders regarding cyber risk, secure practices, and operational controls.
- Prepare metrics, dashboards, and executive-ready communications for audiences ranging from technical staff to senior leadership.
- Maintain security documentation, SOPs, knowledge articles, response playbooks, implementation plans, and operational reporting.
- Promote a culture of accountability, customer service, collaboration, and continuous improvement.
- Bachelor's degree in Information Security, Computer Science, Information Systems, Enterprise Applications, Information Architecture, Engineering, Networking, or a related field.
- CISSP, CISM, or ISSMP certification.
- Minimum of five (5) years of relevant professional experience working within an information security/IT risk functional area, preferably with several years at a higher education institution.
- Experience administering or managing enterprise security technologies such as endpoint protection, vulnerability management, SIEM/log monitoring, identity/access controls, phishing defense, or incident response tools.
- Experience leading technical initiatives, coordinating cross-functional teams, and managing competing priorities.
- Experience developing or implementing security standards, procedures, or controls.
- Experience in higher education.
- Experience supporting hybrid or remote workforce security models.
- Experience with JAMF, KACE, GPO, vulnerability scanners, cloud security tools, or SaaS security platforms.
- Experience leading awareness programs, phishing campaigns, audits, or regulatory compliance initiatives.
- Experience supporting strategic planning, budgeting, or cybersecurity program maturity efforts.
- Additional certifications in cloud security, privacy, audit, risk, or incident response.
- Strong knowledge of cybersecurity principles, threat detection, endpoint security, systems hardening, patch governance, and incident response.
- Working knowledge of Windows, macOS, Microsoft Active Directory, and Google Workspace administration.
- Knowledge of cybersecurity frameworks and regulations including NIST, ISO, FERPA, and PCI-DSS.
- Knowledge of enterprise IT environments, cloud services, SaaS applications, and security operations best practices.
- Strong analytical, troubleshooting, problem-solving, and risk assessment skills.
- Strong verbal, written, and presentation communication skills.
- Strong project leadership, vendor management, and cross-functional collaboration skills.
- Ability to prepare executive summaries, dashboards, reports, and technical documentation.
- Ability to operate effectively during incidents and high-pressure situations.
- Ability to explain technical matters clearly to technical and non-technical audiences.
- Ability to influence stakeholders and lead through collaboration without direct authority.
- Ability to balance institutional accessibility, service needs, and cybersecurity priorities.
- Ability to manage multiple priorities with sound judgment and minimal supervision.
- Retirement Plans
- Health Care Plan and Dental Plan
- Employee Assistance Program
- Flexible Spending Account
- Commuter Benefit Plan
- FIT Tuition Exemption Program
- Paid Time Off (Vacation, Personal, Sick and Holidays)
- 4-day Summer Workweek
- Qualifying Employer for the Public Service Loan Forgiveness (PSLF) Program
- Resume
- Cover letter
- Unofficial Transcript
- A list of three references with telephone numbers and email addresses
Recommended Jobs
School RN (Registered Nurse)
School RN (Registered Nurse) Location: Manhattan–NY Company: TheraCare Job Type: Full-Time Schools Available ______________________________________________________________________ About Th…
Catering Clerk
Love helping people celebrate life’s delicious moments? We have an exciting opportunity for a Catering Clerk to join our gourmet family at Uncle Giuseppe’s Marketplace. Our Catering Department …
Neurologists
The Department of Neurology at Albany Medical College is seeking a full-time board-certified or board-eligible Neurologists to join their team. As the only academic medical center in northeastern Ne…
Sales Manager
Here's one: Sales Manager - Global Accounts Samsung Electronics | Worldwide About the Role Samsung Electronics is looking for a driven and experienced Sales Manager to lead and grow our g…
Sr. Staff Construction Project Manager
About EVgo EVgo (Nasdaq: EVGO) is one of the nation’s largest public fast charging networks for electric vehicles. Our mission is to build a sustainable business that powers our transportation and…
Assistant Sales Manager
Job Description Job Description Job Title: Assistant Sales Manager – IV Therapy Location: Setauket Company: The DripBar Join the Fast-Growing Wellness Industry at The DripBar! …
Travel Registered Nurse Med Surg|Tele Job
Job Overview TLC Nursing Associates, Inc. is seeking a dedicated RN – Medical-Surgical Telemetry (Med Surg Tele) for travel assignments . This role involves providing comprehensive nursing ca…
A/R Specialist
Job Description Job Description Description: Summary: Accounts Receivable will be responsible for the timely, consistent and accurate posting and tracking of all accounts receivable activity …
Compliance Executive Assistant
As a leading, global financial information services provider, Fitch Group delivers vital credit and risk insights, robust data, and dynamic tools to champion more efficient, transparent financial mar…