Know ATS Score
CV/Résumé Score
  • Expertini Resume Scoring: Our Semantic Matching Algorithm evaluates your CV/Résumé before you apply for this job role: Cybersecurity Analyst SOC Levels 3 5.
United States Jobs Expertini

Urgent! Cybersecurity Analyst SOC Levels 3-5 Job Opening In New York – Now Hiring MTA

Cybersecurity Analyst SOC Levels 3 5



Job description

Cybersecurity Analyst SOC Levels 3-5












Job ID: 9687

Business Unit: MTA Headquarters

Location: New York, NY, United States



Regular/Temporary: Regular

Department: IT Cyber Security

Date Posted: Sep 19, 2025




Description


Job Information



Job Title: Cybersecurity Analyst SOC Levels 3-5

Salary Range: Level 3: $95,929 - $127,050

Level 4: $102,760 - $139,755

Level 5: $114,537 - $153,731

POINTS: Level 3 - 393

Level 4 - 451

Level 5 – 551

DEPT/DIV: MTA Information Technology/ Office of IT Cyber Security Services

SUPERVISOR : Cyber Security Officer, Monitoring

LOCATION: 2 Broadway, New York, NY 10004

HOURS: 12:00am – 8:30am (7.5hours/day)

8:00am – 4:30pm (7.5hours/day)

3:30pm – 12:00am (7.5hours/day)



This position is eligible for telework which is currently 2 days per week.

New Hires are eligible to apply 30 days after their effective date of hire.





Summary

The purpose of this position is to provide critical technical expertise in the detection, analysis and response to cybersecurity events.

Cybersecurity Analyst will be responsible for early and accurate detection, prevention response, containment, and guidance to remediation of threats directed against the MTA on a 24/7 basis.

The analysis is conducted through technology risk assessments, data analytics tools, business processes reviews and collaborate with security engineers, architects, developers, vendors, business units to constantly improve the overall security of the MTA.

The cybersecurity analyst will focus on specific domains and specialties within cybersecurity with a great degree of specialty to detect, protect and advise the organization proactively and reactively.





The Cybersecurity Analyst will be a member of the Cyber Security Operation Center “CSOC”.

This role will conduct real-time 24/7 security monitoring and intrusion detection analysis using a Security Incident & Event Management system “SIEM” along with various technology and analytic tools, such as web and next generation firewalls, machine and human behavior learning tools, host-based security system, security event and incident monitoring systems, virtual, physical, and cloud platforms, user endpoint (laptop, desktop, mobile, and internet of things/IOT) systems, etc.

The Analyst will research emerging threats and vulnerabilities to aid in the identification and analysis of network incidents, and supports the creation or improvement of security controls, policies, standards, and guidance to address them.





Desired Skills

+ Ability to perform analysis and remediation actions on threats from various attack vectors such as: malware, viruses, ransomware, phishing, SQL Injection, compromised credentials, DDOS etc.



+ Ability to provide incident response support

+ Ability to mitigate actions to contain activity

+ Ability to facility forensic analysis



Responsibilities:

+ Researching emerging threats and vulnerabilities to aid in the identification of network incidents, and supports the creation of new architecture, policies, standards, and guidance to address them

+ Provide incident response support, including mitigating actions to contain activity and facilitating forensics analysis when necessary

+ Conducts security monitoring and intrusion detection analysis using various technology and analytic tools, such as web and next generation firewalls, machine and human behavior learning tools, host-based security system, security event and incident monitoring systems, virtual, physical, and cloud platforms, user endpoint (laptop, desktop, mobile, and internet of things/IOT) systems, etc.



+ Correlates events and activities across systems to identify trends of unauthorized use

+ Reviews alerts and data from sensors and documents formal, technical incident reports

+ Tests new systems and manage cybersecurity risks and remediation through analysis

+ Responds to computer security incidents according to the computer security incident response policy and procedures

+ Provides technical guidance to first responders for handling information security incidents

+ Provides timely and relevant updates to appropriate stakeholders and decision makers

+ Communicates investigation findings to relevant business units to help improve the information security posture

+ Validates and maintains incident response plans and processes to address potential threats

+ Compiles and analyzes data for management reporting and metrics

+ Monitors relevant information sources to stay up to date on current attacks and trends

+ Analyzes potential impact of new threats and communicates risks back to detection engineering functions

+ Performs root-cause analysis to document findings, and participate in root-cause elimination activities as required

+ Works with data sets to identify patterns

+ Understands data automation and analysis techniques

+ Uses judgment to form conclusions that may challenge conventional wisdom

+ Hypothesizes new threats and indicators of compromise

+ Monitors threat intelligence feeds to identify a range of threats, including indicators of compromise and advanced persistent threats (APTs)

+ Identifies the tactics, techniques and procedures (TTPs) of potential threats through the MITRE ATT&CK or similar frameworks

+ Participate in the creation of enterprise security documents (policies, standards, baselines, guidelines, and procedures) under the direction of the IT Security Manager, where appropriate.



+ Perform Contract management and supply management functions appropriate to reduce security risks



The role will provide a proactive approach to cybersecurity while also performing investigation of security incidents related to MTA operations related to Cyber Security.





Level 3

+ Provides proactive monitoring and analysis for a domain of the cybersecurity to ensure systems security baseline targets are met.



+ Implements changes to one or more cybersecurity related domain technologies, executing tests and reporting on security baselines, violations/anomalies, to meet requested needs.



+ Troubleshoot and investigate cybersecurity incidents and issues by analyzing a chain of events and applying technical knowledge following established procedures and standards to resolve immediate customer needs.



+ Maintains and updates existing documentation and standard operating procedures to ensure accurate and timely information is available for assigned systems.



+ Works with more experienced colleagues and other IT technical resources to improve coordination of cybersecurity requirements and analyze issues as they arise

+ Participate in the evaluation of new products and technologies, under the direction and guidance of senior colleagues, relevant to assigned cybersecurity area to enhance cybersecurity posture and reduce risk to the MTA while achieving objectives.



+ Performs other duties and tasks as assigned.



+ Observing the work performed by the contractor.



+ Reviewing invoices and approving them if the work has contractual standards.



+ Addressing performance issues with the contractor when possible.



+ Escalating issues to other parties as needed.





Level 4

Same as Level 3 with the following additional qualifications:

+ Executes to the defined product lifecycle, manages the product lifecycle for a component of the infrastructure, proposes changes for implementation, gathers data and analyzes capacity and performance to assure operational availability.



+ Analyzes the current state of the infrastructure and identifies opportunities for improvement to ensure systems meet business needs.

Contributes to changes to established roadmaps, documents them effectively and executes the implementation of changes in their area(s) of responsibility.



+ Provides ongoing support and troubleshooting for installed technical solutions by analyzing a chain of events and applying technical knowledge, following established procedures and standards to resolve immediate customer needs.



+ Investigates, evaluates, and tests new products and technologies relevant to assigned infrastructure subsets to enhance cybersecurity analytics and overall security posture.

Implements and/or supports the implementation of new technologies for their area of the cybersecurity that affects infrastructure, applications and/or processes.



+ Promotes security standards and supports efforts to expand and migrate to future security architecture to improve security and share learning.





Level 5

Same as Level 4 with the following additional qualifications:

+ Provides more advanced analytical capability in several security domains.



+ Adds new components to a roadmap, documents them effectively, and directs the testing and implementation of changes.



+ When provided with an objective to improve security in their security domain(s) and related technology, develops and implements action plans needed to effect the change.



+ Research new technologies/products and their impact on the infrastructure, prepares a preliminary evaluation of technologies/products and associated costs, and develops and presents recommendations to support anticipated future business needs.



+ Receives security and performance data and analyzes the baselines and efficacy of installed technologies.

Proposes and implements any required changes, including identifying and planning for any resulting impacts on other technologies to optimize system availability and continuity.



+ Provides ongoing support and troubleshooting for incidents, correlations and reporting to more junior analysts to resolve immediate security threats and/or customer needs.



+ Provides technical leadership to project teams in their area of expertise and/or leads teams to complete projects specific to their area(s) of expertise to maximize and share learning.



+ Provides guidance and technical coaching to less experienced staff to support effective workflow and develop technical talent.





Education & Experience



Level 3



+ Bachelor’s Degree and minimum 1 year of relevant experience.

An equivalent combination of education and experience may be considered in lieu of a degree.



+ Bachelor’s degree in Computer Science or related fields preferred.



+ CISSP or other advanced security-related certification preferred but not required.



+ Certifications in technology subdomains preferred but not required (ie.

Cloud, Applications, Infrastructure, Security Technology, etc.)

+ Requires prior experience with installing, maintaining and troubleshooting technology systems.



+ Proven ability to troubleshoot and support technical issues using standardized procedures.



+ Proven ability to analyze a security risk assessment or conduct one with guidance

+ Understanding of Operating Systems and Hardware

+ Understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.



+ Scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed.



+ 1 year of experience in a specific (Cloud, Applications, Infrastructure, Security Technology, etc.) cybersecurity subdomain is preferred

Competencies:


Management Level​

Proficiency Level

Standard Competencies

Level 3

Adept

Values Diversity Collaborates


Capable

Cultivates Innovation


Customer Focus


Communicates Effectively


Fundamental Awareness

Tech Savvy


Technical Skills






Level 4

+ Bachelor’s Degree and minimum 3 year of relevant experience.

An equivalent combination of education and experience may be considered in lieu of a degree.



+ 3+ years of relevant experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.).



+ Prefer at least one certification in the current platform/domain/technical skills

+ Bachelor’s degree in Computer Science or related fields preferred.



+ Current CISSP or other advanced security-related certification preferred but not required.



+ Certifications in technology subdomains preferred but not required (i.e. Cloud, Applications, Infrastructure, Security Technology, etc.)

+ Proven ability to independently evaluate and resolve most problems within an area of infrastructure, applications within a security domain context.



+ Proven ability to analyze and/or conduct a security risk assessment

+ Understanding of Operating Systems and Hardware

+ Advanced understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.



+ Scripting or programming skills (PERL, Python, PowerShell, etc.).





Competencies:


Management Level​

Proficiency Level

Standard Competencies


Level 4

Adept

Communicates Effectively


Values Diversity

Collaborates


Capable

Cultivates Innovation


Customer Focus


Tech Savvy


Technical Skills




Level 5

+ Bachelor’s degree required.

An equivalent combination of education and experience may be considered in lieu of a degree.



+ 5+ years of relevant experience in a specific cybersecurity subdomain (Cloud, Applications, Infrastructure, Security Technology, etc.)

+ Must possess at least one of the following professional certifications in subject domain including but not limited to: Certified Information Security Professional (CISSP), or Global Information Assurance Certification (GIAC), or Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC), or Certified Information Systems Auditor (CISA), or other related certification(s)



+ Bachelor’s degree in Computer Science or related fields preferred.



+ Progressive cybersecurity related accomplishments

+ Requires broad technical knowledge of multiple technologies, or an in-depth knowledge of one technology including its impact on other technologies.



+ Proven ability to analyze and/or conduct a security risk assessment

+ Understanding of Operating Systems and Hardware

+ Advanced understanding of TCP/IP (OSI Layers 1– 4) and Internet and Intranet technologies required (OSI Layers 5-7) required.



+ Scripting or programming skills (PERL, Python, PowerShell, etc.) as needed.






Competencies:


Management Level​

Proficiency Level

Standard Competencies


Level 5

Advanced

Communicates Effectively


Values Diversity

Collaborates


Adept

Tech Savvy Technical Skills


Cultivates Innovation


Customer Focus




General:
• May need to work outside of normal work hours (i.e., evenings and weekends)
• Travel may be required to other MTA locations or other external sites



Other Information

Please be advised that pursuant to MTA Code of Ethics and New York State Ethics Law, you have been designated as a policy maker.

Therefore, you will be required to file an annual financial disclosure statement with the Commission on Ethics and Lobbying in Government.

The Commission will notify you of this filing requirement via your work email.

Upon receipt of notification from the Commission you will have 30 days to complete your financial disclosure statement.





Equal Employment Opportunity

MTA and its subsidiary and affiliated agencies are Equal Opportunity Employers, including with respect to veteran status and individuals with disabilities.



The MTA encourages qualified applicants from diverse backgrounds, experiences, and abilities, including military service members, to apply.












Required Skill Profession

Other General



Your Complete Job Search Toolkit

✨ Smart • Intelligent • Private • Secure

Start Using Our Tools

Join thousands of professionals who've advanced their careers with our platform

Rate or Report This Job
If you feel this job is inaccurate or spam kindly report to us using below form.
Please Note: This is NOT a job application form.


    Unlock Your Cybersecurity Analyst Potential: Insight & Career Growth Guide


  • Real-time Cybersecurity Analyst Jobs Trends in New York, United States (Graphical Representation)

    Explore profound insights with Expertini's real-time, in-depth analysis, showcased through the graph below. This graph displays the job market trends for Cybersecurity Analyst in New York, United States using a bar chart to represent the number of jobs available and a trend line to illustrate the trend over time. Specifically, the graph shows 64412 jobs in United States and 2885 jobs in New York. This comprehensive analysis highlights market share and opportunities for professionals in Cybersecurity Analyst roles. These dynamic trends provide a better understanding of the job market landscape in these regions.

  • Are You Looking for Cybersecurity Analyst SOC Levels 3 5 Job?

    Great news! is currently hiring and seeking a Cybersecurity Analyst SOC Levels 3 5 to join their team. Feel free to download the job details.

    Wait no longer! Are you also interested in exploring similar jobs? Search now: .

  • The Work Culture

    An organization's rules and standards set how people should be treated in the office and how different situations should be handled. The work culture at MTA adheres to the cultural norms as outlined by Expertini.

    The fundamental ethical values are:
    • 1. Independence
    • 2. Loyalty
    • 3. Impartiality
    • 4. Integrity
    • 5. Accountability
    • 6. Respect for human rights
    • 7. Obeying United States laws and regulations
  • What Is the Average Salary Range for Cybersecurity Analyst SOC Levels 3 5 Positions?

    The average salary range for a varies, but the pay scale is rated "Standard" in New York. Salary levels may vary depending on your industry, experience, and skills. It's essential to research and negotiate effectively. We advise reading the full job specification before proceeding with the application to understand the salary package.

  • What Are the Key Qualifications for Cybersecurity Analyst SOC Levels 3 5?

    Key qualifications for Cybersecurity Analyst SOC Levels 3 5 typically include Other General and a list of qualifications and expertise as mentioned in the job specification. Be sure to check the specific job listing for detailed requirements and qualifications.

  • How Can I Improve My Chances of Getting Hired for Cybersecurity Analyst SOC Levels 3 5?

    To improve your chances of getting hired for Cybersecurity Analyst SOC Levels 3 5, consider enhancing your skills. Check your CV/Résumé Score with our free Tool. We have an in-built Resume Scoring tool that gives you the matching score for each job based on your CV/Résumé once it is uploaded. This can help you align your CV/Résumé according to the job requirements and enhance your skills if needed.

  • Interview Tips for Cybersecurity Analyst SOC Levels 3 5 Job Success
    MTA interview tips for Cybersecurity Analyst SOC Levels 3 5

    Here are some tips to help you prepare for and ace your job interview:

    Before the Interview:
    • Research: Learn about the MTA's mission, values, products, and the specific job requirements and get further information about
    • Other Openings
    • Practice: Prepare answers to common interview questions and rehearse using the STAR method (Situation, Task, Action, Result) to showcase your skills and experiences.
    • Dress Professionally: Choose attire appropriate for the company culture.
    • Prepare Questions: Show your interest by having thoughtful questions for the interviewer.
    • Plan Your Commute: Allow ample time to arrive on time and avoid feeling rushed.
    During the Interview:
    • Be Punctual: Arrive on time to demonstrate professionalism and respect.
    • Make a Great First Impression: Greet the interviewer with a handshake, smile, and eye contact.
    • Confidence and Enthusiasm: Project a positive attitude and show your genuine interest in the opportunity.
    • Answer Thoughtfully: Listen carefully, take a moment to formulate clear and concise responses. Highlight relevant skills and experiences using the STAR method.
    • Ask Prepared Questions: Demonstrate curiosity and engagement with the role and company.
    • Follow Up: Send a thank-you email to the interviewer within 24 hours.
    Additional Tips:
    • Be Yourself: Let your personality shine through while maintaining professionalism.
    • Be Honest: Don't exaggerate your skills or experience.
    • Be Positive: Focus on your strengths and accomplishments.
    • Body Language: Maintain good posture, avoid fidgeting, and make eye contact.
    • Turn Off Phone: Avoid distractions during the interview.
    Final Thought:

    To prepare for your Cybersecurity Analyst SOC Levels 3 5 interview at MTA, research the company, understand the job requirements, and practice common interview questions.

    Highlight your leadership skills, achievements, and strategic thinking abilities. Be prepared to discuss your experience with HR, including your approach to meeting targets as a team player. Additionally, review the MTA's products or services and be prepared to discuss how you can contribute to their success.

    By following these tips, you can increase your chances of making a positive impression and landing the job!

  • How to Set Up Job Alerts for Cybersecurity Analyst SOC Levels 3 5 Positions

    Setting up job alerts for Cybersecurity Analyst SOC Levels 3 5 is easy with United States Jobs Expertini. Simply visit our job alerts page here, enter your preferred job title and location, and choose how often you want to receive notifications. You'll get the latest job openings sent directly to your email for FREE!