hero

AEG Job Board

Discover career opportunities in the AEG Sponsor network

Endpoint Security and Identity and Access Management (IAM) Specialist for the Division of HPD TECH

City of New York

City of New York

USD 69,324-79,723 / year
Posted on May 30, 2025

Endpoint Security and Identity and Access Management (IAM) Specialist for the Division of HPD TECH

  1. HOUSING PRESERVATION & DVLPMNT
Posted on: 05/29/2025
  1. Full-time

Location

NYC-ALL BOROS

  1. Exam may be required

Department

HPD Tech

$69,324.00 – $79,723.00

Job Description

About the Agency:

The New York City Department of Housing Preservation Development (HPD) promotes quality and affordability in the city's housing, and diversity and strength in the city’s neighborhoods because every New Yorker deserves a safe, affordable place to live in a neighborhood they love.

- We maintain building and resident safety and health
- We create opportunities for New Yorkers through housing affordability
- We engage New Yorkers to build and sustain neighborhood strength and diversity.

HPD is entrusted with fulfilling these objectives through the goals and strategies of “Housing Our Neighbors: A Blueprint for Housing and Homelessness,” Mayor Adams’ comprehensive housing framework. To support this important work, the administration has committed $5 billion in new capital funding, bringing the 10-year planned investment in housing to $22 billion the largest in the city’s history. This investment, coupled with a commitment to reduce administrative and regulatory barriers, is a multi-pronged strategy to tackle New York City’s complex housing crisis, by addressing homelessness and housing instability, promoting economic stability and mobility, increasing homeownership opportunities, improving health and safety, and increasing opportunities for equitable growth.
________________________________________

Your Team:

Housing Preservation & Development Technology (HPD Tech) is the IT division within HPD. The Office of HPD Tech leads the agency’s effort to transform HPD through technology by promoting productivity and eliminating manual processing, shrinking costs, and increasing the pace of work. HPD Tech works to improve effectiveness of business processes using core applications for flawless execution. HPD Tech empowers decision makers with access to quality (complete and accurate) information to anticipate and pro-actively react to building, neighborhood and market conditions.

The Office of HPDTech is composed of 7 units: CIO (Chief Information Office), CTO (Chief Technology Office), CPO (Chief Product Office), Budget, Enterprise Architecture, Planning & Compliance, and Information Security.


Your Impact:

As the Endpoint Security and Identity and Access Management (IAM) Specialist for the Division of HPDTech, you will play a pivotal role in safeguarding our organization’s digital assets by focusing on the management of endpoint security solutions from various vendors such as Trelix, Crowdstrike, and Microsoft, and ensuring the right individuals have the appropriate access to critical systems and data. This position is central to enhancing our security posture, reducing risk, and ensuring compliance with regulatory requirements. By driving the implementation and continuous improvement of our endpoint security tools and IAM processes, tools, and policies, the successful candidate will help shape a secure and scalable access environment that supports business agility and operational efficiency across the enterprise. Your contributions will directly impact user experience, security incident prevention, and the organization’s ability to meet its governance and audit goals.

Your Role:

We are seeking a skilled and detail-oriented Endpoint Security and Identity and Access Management (IAM) Specialist to join our cybersecurity team. In this role, you will be responsible for implementing and maintaining identity and access solutions that ensure secure, compliant, and efficient access to organizational resources. You will manage the full identity lifecycle, including provisioning, deprovisioning, role-based access controls, authentication mechanisms, and access reviews. The ideal candidate will have a strong understanding of IAM technologies, security best practices, and regulatory requirements. This role is essential to strengthening our security posture, supporting operational efficiency, and enabling secure digital transformation across the agency. Additionally, the candidate will be required to focus on the management of endpoint security solutions from various vendors such as Trelix, Crowdstrike, and Microsoft, within our environments. The role will be responsible for the day-to-day operations, installations, troubleshooting, reporting and incident management of the security products across the entire infrastructure environment. The analyst will also be required to support new configuration requests, testing and deployment for endpoint solutions.


Your Responsibilities:

- Deploy, manage, and monitor endpoint protection solutions (e.g., antivirus, anti-malware) across all agency devices.
- Investigate and respond to endpoint security incidents and alerts in coordination with the SOC or incident response team.
- Conduct periodic security assessments and audits of endpoints to identify and remediate risks.
- Maintain visibility into endpoint health and compliance using centralized management tools.
- Manage the full identity lifecycle, including user provisioning, access changes, and deprovisioning for employees, contractors, and third parties.
- Implement and support IAM technologies such as Multi-Factor Authentication (MFA), and role-based access control (RBAC).
- Conduct periodic access reviews, entitlement audits, and segregation of duties analysis to ensure access compliance.
- Create and maintain IAM policies, standards, and documentation to align with regulatory and organizational requirements.
- Automate IAM workflows and integrate identity systems with tools such as ManageEngine
- Monitor for anomalous access behavior and support incident response for identity-related security events.
- Collaborate with business units and compliance teams to enforce least privilege and secure access practices.
- Includes all duties completed by the incumbent.

Required Skills

- Identity lifecycle management and provisioning workflows
- Experience with IAM platforms: ManageEngine, Microsoft Entra ID (Azure AD), One Identity Active Roles (ARS)
- Directory services: LDAP, Active Directory, Azure AD
- Multi-Factor Authentication (MFA)
- Experience with antivirus, anti-malware solutions: CrowdStrike, Trelix/McAfee, Microsoft Defender for Endpoint
- Patch management tools: Ivanti Patchlink, SCCM, Tanium

Preferred skills

- CrowdStrike Certified Falcon Administrator (CCFA) – Preferred
- Trellix (McAfee EPO/FireEye) related certifications – a plus
- IAM Tools (ManageEngine)

NOTE: Only those candidates under consideration will be contacted. This position is open to applicants who filed for an exam or those who are already permanent in the Computer Associate Technical Support title.

Please indicate in your cover letter whether you have filed for an exam or are already permanent in the Computer Associate Technical Support title. Applicants who filed for an exam will be required to produce a copy of their Order Confirmation Receipt at time of interview for verification.

This position may be eligible for remote work up to 2 days per week, pursuant to the Remote Work Pilot Program agreed to between the City and various unions.

COMPUTER ASSOC (TECH SUPP) - 13611


Minimum Qualifications

1. A baccalaureate degree from an accredited college or university and two years of satisfactory full-time experience, in mainframe computer, mid-range computer, LAN or WAN computer environments and or local desktop support; or"
2. An associate degree or 60 semester credits from an accredited college or university and three years of satisfactory, full-time experience as described in "1" above; or
3. A four-year high school diploma or its educational equivalent and four years of satisfactory, full-time experience, as described in "1" above; or
4. Education and/or experience equivalent to "1", "2", or "3" above. Undergraduate college credit can be substituted for experience on the basis of 30 semester credits, from an accredited college or university, for six months of experience. However, all candidates must have at least a four-year high school diploma or its educational equivalent and two years of satisfactory full-time experience, as described in "1" above.


55a Program

This position is also open to qualified persons with a disability who are eligible for the 55-a Program. Please indicate at the top of your resume and cover letter that you would like to be considered for the position through the 55-a Program.
Public Service Loan Forgiveness

As a prospective employee of the City of New York, you may be eligible for federal loan forgiveness programs and state repayment assistance programs. For more information, please visit the U.S. Department of Education’s website at https://studentaid.gov/pslf/.
Residency Requirement

New York City residency is generally required within 90 days of appointment. However, City Employees in certain titles who have worked for the City for 2 continuous years may also be eligible to reside in Nassau, Suffolk, Putnam, Westchester, Rockland, or Orange County. To determine if the residency requirement applies to you, please discuss with the agency representative at the time of interview.
Additional Information

The City of New York is an inclusive equal opportunity employer committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, veteran status, gender identity, or pregnancy.

Job ID

715744

Title code

13611

Civil service title

COMPUTER ASSOC (TECH SUPP)

Title classification

Competitive-1

Business title

Endpoint Security and Identity and Access Management (IAM) Specialist for the Division of HPD TECH

Posted until

2025-08-26

  1. Experienced (non-manager)

Job level

02

Number of positions

1

Work location

100 Gold Street

  1. Technology, Data & Innovation

Endpoint Security and Identity and Access Management (IAM) Specialist for the Division of HPD TECH