• Resume Builder
  • Jobs
  • Tools

    Cover Letter BuilderInterview Prep

    Explore

    Explore CareersSalary DataResume TemplatesResume Examples
  • Primary actions

    Post a JobCreate a local job listing and review applicantsJob posting pricingFlat-rate 15- and 30-day plans

    Learn more

    How it worksSee what happens after you publish a roleCompany profileBuild trust with a public employer pageEmployer HelpAnswers about posting, applicants, and payments

    Local hiring, made simpler

    Flat-rate job posts, map-based visibility, and tools built for local teams.

    Post a Job
  • Sign in

Products

  • Resume Builder
  • Turn your LinkedIn profile into a resume
  • Cover Letter Builder
  • Interview Prep
  • Jobs

Resources

  • Explore Careers
  • Resume Templates
  • Resume Examples
  • Salary Data
  • Data Sources

Company

  • About
  • Post a Job
  • Pricing
  • Help Center
  • Support
  • What's new
  • Contact

Legal

  • Privacy
  • Terms
  • Disclaimer
  • Refund
  • Accessibility
  • Data deletion

© 2026 Bespree. All rights reserved

Optional analytics

Allow Bespree to use Google Analytics, Vercel Analytics, and Meta Pixel to measure product usage, performance, and marketing. You can change this choice later. Privacy policy

SN

Manager Information Technology Services 1 Information Security - 11746

State of New York
Location
Albany, NY
Compensation
$111,708 - $137,590 / year

How to apply

Source: New York State Jobs · Bespree is not the employer.

Need a resume for this application?

Tailor your resume for this jobView Software Engineer resume example

Job description

Within the Chief Technology Office/Shared Delivery Services/Data Center Networks, Cloud Operations group, this position will manage advanced design, network security, and deployment of multi-Cloud connectivity projects, networking activities, and ongoing mission-critical initiatives.

Specific duties may include, but are not limited to, the following:

  • Serve as senior Cloud network security manager, engineer, subject matter expert, and liaison in the Cloud Operations group. Security tasks include: virtual network security, encryption management, identity and access governance, monitoring and threat detection.
  • Serve as lead liaison to manage implementation of approved security designs and virtual network architectures across Cloud platforms Microsoft Azure, Amazon Web Services (AWS), Google Cloud Platform (GCP), and multiple New York State (NYS) data centers.
  • Manage secure Cloud network connectivity for dozens of NYS agencies and their applications to/from/within Microsoft Azure, AWS, GCP, and multiple NYS data centers.
  • Design, deploy, and maintain Cloud networking infrastructure in AWS, Azure, and GCP to support new and existing NYS agency application deployments in the Cloud.
  • Design and implement on-premises to Cloud connectivity solutions as required by application needs in collaboration with the Chief Information Security Office and network/application/architecture teams.
  • Design, deploy, and maintain network virtual appliances as needed including Arista CloudEOS and Palo Alto PAN-OS with integrations into Cloud Service Provider (CSP) network infrastructure (Google Cloud Network Connectivity Center, AWS Transit Gateway Connect, etc.).
  • Manage ITSM Service Requests and Incidents related to the implementation and maintenance of network firewall security policies/profiles on Palo Alto Networks Cloud Next Generation Firewalls (NGFW).
  • Manage Virtual Private Network (VPN) tunneling between firewalls on premises (ZEN and Utica) and within the Cloud environments (Azure, AWS, and GCP).
  • Cross-train junior staff in physical, virtual, security, and Cloud network technologies.
  • Utilize Terraform to develop Infrastructure as Code (IaC) uniform Cloud configuration and backup solutions.
  • Manage and lead in the orchestration of multi-discipline technologies for the resolution of complex problems; communicate with technology and business leaders for problem resolution and make recommendations for system enhancements as required.
  • Provide 24x7x365 on-call network support for advanced troubleshooting, escalation, and ticket resolutions on a rotating basis.
  • Collaborate and troubleshoot with direct Cloud connectivity providers to develop solutions and solve problems.
  • Troubleshoot carrier-class network equipment and end-to-end network connectivity; proficiency in Layer 3 routing required, including Border Gateway Protocol (BGP), Virtual Routing and Forwarding (VRF), route maps, redistribution, Network Address Translation (NAT), subnetting, etc.
  • Provide in-depth analysis on network performance using tools such as Zenoss, Splunk, Palo Alto Panorama, Arista CloudVision as-a-Service, NfSen, Ixia, Gigastor, Wireshark, etc.
  • Ensure that network availability of Cloud environments is maximized by overseeing Change Control procedures, code upgrades, network monitoring, installations, moves and changes, and troubleshooting complex issues.
  • Participate in network performance analysis, training, and capacity planning.
  • Document all design and implementation work using Microsoft Visio.
  • Occasional travel may be required.
  • Perform the full range of supervisory responsibilities.

Minimum Qualifications

Non-competitive: Seven years of information technology, cybersecurity, or information

assurance experience, including one year at the supervisory level.

Substitutions:

A bachelor's or higher-level degree in any field including or supplemented by 15

semester credit hours in computer science or related field substitutes for three years of

required experience; any bachelor’s substitutes for two years of required experience.

An associate degree with 15 semester credit hours in computer science or related field

may substitute for one year of required experience. Candidates in a bachelor’s degree

program with at least 15 semester credit hours in computer science or related field may

substitute such credits for one year of required experience.

A master’s degree or higher in computer science or related field substitutes for one year

of required experience.

Preferred Qualifications:

  • Proven ability to work independently and as a team member
  • Proven ability to lead teams and develop network engineers
  • Proven analytical, problem solving, organizational and time management skills
  • Good communication (written and oral) and interpersonal skills
  • Good organizational, multi-tasking, and time-management skills
  • Expert AWS network infrastructure: VPCs, subnets, security groups, route tables, VPGs, Transit Gateway, NACLs, load balancers, peering, logging, alerting, and troubleshooting
  • Expert Azure network infrastructure: VNets, subnets, NSGs, route tables, VNGs, load balancers, logging, alerting, and troubleshooting
  • Expert GCP network infrastructure: VPCs, subnets, firewall rules, VPC routing, Cloud Router, CloudVPN, CloudNAT, load balancers, private service connections, logging, alerting, and troubleshooting
  • Basic working knowledge of CSP application platforms and their networking requirements (Kubernetes engines/services, ASE, serverless, etc.)
  • Proficiency with Cloud Shell in all platforms for data extraction and reporting at scale
  • Proficiency in Terraform to lead in the development of Infrastructure as Code (IaC) uniform Cloud configuration and backup solutions
  • Proficiency in Layer 3 routing including BGP, VRFs, route maps, redistribution, NAT, subnetting, etc.
  • Proficiency in Arista CloudEOS including routing, tunnels, upgrades, logging, and monitoring
  • Proficiency in Palo Alto PAN-OS including security policies, NAT policies, zones, routing, tunnels, upgrades, logging, and monitoring
  • Proficiency in IPSec and MACsec encrypted transport for Cloud connectivity across carrier networks and the Internet
  • Proficiency in Domain Name System (DNS) and managing split-brain public/private resolution designs
  • Experience supporting CSP dedicated connectivity (AWS DirectConnect, Azure ExpressRoute, GCP Interconnect)
  • Experience working with Telco carriers to troubleshoot circuit connectivity problems
  • Experience working with monitoring and packet capture/analysis tools such as Zenoss, Splunk, Palo Alto Panorama, Arista CloudVision as-a-Service, NfSen, Ixia, Gigastor, Wireshark, etc.
  • Proficiency in Microsoft Visio for solutions documentation
  • Networking certifications (CCNA/CCNP, PCNSA/PCNSE, Network+, etc.) are a plus

About employer

New York State agencies, departments, and public authorities provide services across healthcare, engineering, administration, public safety, the trades, and other areas.

Employment type
Full-time
Date posted
Oct 02, 2026
Albany, NY 12203

How to apply

Source: New York State Jobs · Bespree is not the employer.

Need a resume for this application?

Tailor your resume for this jobView Software Engineer resume example

Job description

Within the Chief Technology Office/Shared Delivery Services/Data Center Networks, Cloud Operations group, this position will manage advanced design, network security, and deployment of multi-Cloud connectivity projects, networking activities, and ongoing mission-critical initiatives.

Specific duties may include, but are not limited to, the following:

  • Serve as senior Cloud network security manager, engineer, subject matter expert, and liaison in the Cloud Operations group. Security tasks include: virtual network security, encryption management, identity and access governance, monitoring and threat detection.
  • Serve as lead liaison to manage implementation of approved security designs and virtual network architectures across Cloud platforms Microsoft Azure, Amazon Web Services (AWS), Google Cloud Platform (GCP), and multiple New York State (NYS) data centers.
  • Manage secure Cloud network connectivity for dozens of NYS agencies and their applications to/from/within Microsoft Azure, AWS, GCP, and multiple NYS data centers.
  • Design, deploy, and maintain Cloud networking infrastructure in AWS, Azure, and GCP to support new and existing NYS agency application deployments in the Cloud.
  • Design and implement on-premises to Cloud connectivity solutions as required by application needs in collaboration with the Chief Information Security Office and network/application/architecture teams.
  • Design, deploy, and maintain network virtual appliances as needed including Arista CloudEOS and Palo Alto PAN-OS with integrations into Cloud Service Provider (CSP) network infrastructure (Google Cloud Network Connectivity Center, AWS Transit Gateway Connect, etc.).
  • Manage ITSM Service Requests and Incidents related to the implementation and maintenance of network firewall security policies/profiles on Palo Alto Networks Cloud Next Generation Firewalls (NGFW).
  • Manage Virtual Private Network (VPN) tunneling between firewalls on premises (ZEN and Utica) and within the Cloud environments (Azure, AWS, and GCP).
  • Cross-train junior staff in physical, virtual, security, and Cloud network technologies.
  • Utilize Terraform to develop Infrastructure as Code (IaC) uniform Cloud configuration and backup solutions.
  • Manage and lead in the orchestration of multi-discipline technologies for the resolution of complex problems; communicate with technology and business leaders for problem resolution and make recommendations for system enhancements as required.
  • Provide 24x7x365 on-call network support for advanced troubleshooting, escalation, and ticket resolutions on a rotating basis.
  • Collaborate and troubleshoot with direct Cloud connectivity providers to develop solutions and solve problems.
  • Troubleshoot carrier-class network equipment and end-to-end network connectivity; proficiency in Layer 3 routing required, including Border Gateway Protocol (BGP), Virtual Routing and Forwarding (VRF), route maps, redistribution, Network Address Translation (NAT), subnetting, etc.
  • Provide in-depth analysis on network performance using tools such as Zenoss, Splunk, Palo Alto Panorama, Arista CloudVision as-a-Service, NfSen, Ixia, Gigastor, Wireshark, etc.
  • Ensure that network availability of Cloud environments is maximized by overseeing Change Control procedures, code upgrades, network monitoring, installations, moves and changes, and troubleshooting complex issues.
  • Participate in network performance analysis, training, and capacity planning.
  • Document all design and implementation work using Microsoft Visio.
  • Occasional travel may be required.
  • Perform the full range of supervisory responsibilities.

Minimum Qualifications

Non-competitive: Seven years of information technology, cybersecurity, or information

assurance experience, including one year at the supervisory level.

Substitutions:

A bachelor's or higher-level degree in any field including or supplemented by 15

semester credit hours in computer science or related field substitutes for three years of

required experience; any bachelor’s substitutes for two years of required experience.

An associate degree with 15 semester credit hours in computer science or related field

may substitute for one year of required experience. Candidates in a bachelor’s degree

program with at least 15 semester credit hours in computer science or related field may

substitute such credits for one year of required experience.

A master’s degree or higher in computer science or related field substitutes for one year

of required experience.

Preferred Qualifications:

  • Proven ability to work independently and as a team member
  • Proven ability to lead teams and develop network engineers
  • Proven analytical, problem solving, organizational and time management skills
  • Good communication (written and oral) and interpersonal skills
  • Good organizational, multi-tasking, and time-management skills
  • Expert AWS network infrastructure: VPCs, subnets, security groups, route tables, VPGs, Transit Gateway, NACLs, load balancers, peering, logging, alerting, and troubleshooting
  • Expert Azure network infrastructure: VNets, subnets, NSGs, route tables, VNGs, load balancers, logging, alerting, and troubleshooting
  • Expert GCP network infrastructure: VPCs, subnets, firewall rules, VPC routing, Cloud Router, CloudVPN, CloudNAT, load balancers, private service connections, logging, alerting, and troubleshooting
  • Basic working knowledge of CSP application platforms and their networking requirements (Kubernetes engines/services, ASE, serverless, etc.)
  • Proficiency with Cloud Shell in all platforms for data extraction and reporting at scale
  • Proficiency in Terraform to lead in the development of Infrastructure as Code (IaC) uniform Cloud configuration and backup solutions
  • Proficiency in Layer 3 routing including BGP, VRFs, route maps, redistribution, NAT, subnetting, etc.
  • Proficiency in Arista CloudEOS including routing, tunnels, upgrades, logging, and monitoring
  • Proficiency in Palo Alto PAN-OS including security policies, NAT policies, zones, routing, tunnels, upgrades, logging, and monitoring
  • Proficiency in IPSec and MACsec encrypted transport for Cloud connectivity across carrier networks and the Internet
  • Proficiency in Domain Name System (DNS) and managing split-brain public/private resolution designs
  • Experience supporting CSP dedicated connectivity (AWS DirectConnect, Azure ExpressRoute, GCP Interconnect)
  • Experience working with Telco carriers to troubleshoot circuit connectivity problems
  • Experience working with monitoring and packet capture/analysis tools such as Zenoss, Splunk, Palo Alto Panorama, Arista CloudVision as-a-Service, NfSen, Ixia, Gigastor, Wireshark, etc.
  • Proficiency in Microsoft Visio for solutions documentation
  • Networking certifications (CCNA/CCNP, PCNSA/PCNSE, Network+, etc.) are a plus
New York State is an equal opportunity employer. It is the policy of the State of New York to provide for and promote equal opportunity employment, compensation and other terms and conditions of employment without discrimination.

About employer

New York State agencies, departments, and public authorities provide services across healthcare, engineering, administration, public safety, the trades, and other areas.