← All roles
CISO

Chief Information Security Officer

New York City Fire Department · Public Sector · 10,000+ employees

Brooklyn, NY · Onsite · full_time

CLI Career Level

CISO

Moderate confidence

Opportunity Score

67/100

Solid

Moderate confidence

Executive Fit

Sign in

Add your background to score this role against you

Career Level and Opportunity Score describe the role itself. Executive Fit is the only figure that depends on your profile.

First seen Aug 17, 2026 · Last verified 2 hours ago · Sourced from LinkedIn — CISO (US)

CLI Take

Scope matches the title

CLI reads this as a CISO mandate, consistent with how the employer has titled it. CLI's analysis of the posting describes a strategic build or transformation mandate, and it carries PCI DSS and HIPAA accountability. The reporting line sits below the executive team — the role reports to Bureau of Technology Development & Systems leadership. Total compensation and team size are not disclosed and remain the main open questions before pursuing it.

Why this role scores the way it does

67/100 — solid opportunity quality. CLI reads this as a CISO mandate. Strongest signal: CLI's analysis of the posting describes a strategic build or transformation mandate. Main drag on the score: The reporting line sits below the executive team — the role reports to Bureau of Technology Development & Systems leadership. 5 of 10 dimensions are not disclosed, which lowers confidence rather than the score.

Career level read

CISO — The employer lists this as “Chief Information Security Officer”. CLI reads it as CISO because the role shows 10,000+ employee organization.

Moderate confidence

What makes it attractive

  • CLI's analysis of the posting describes a strategic build or transformation mandate.
  • Employer profile: 10,000+ employee organization, government ownership, not applicable, revenue over 10b.
  • Title and described scope are broadly consistent.
  • Signals worth probing: Minimum qualifications focus heavily on architecture and infrastructure (6-10 years) rather than dedicated security leadership experience.

What to probe before applying

  • The reporting line sits below the executive team — the role reports to Bureau of Technology Development & Systems leadership.

Scoring components · Solid

Compensation versus comparable rolesNot disclosed · excluded from the score

Compensation is not disclosed and there is no comparable set to place it against.

Reporting level0 · weight 12%

The reporting line sits below the executive team — the role reports to Bureau of Technology Development & Systems leadership.

Functional and geographic scopeNot disclosed · excluded from the score

Scope: no enterprise, global or multi-unit remit is described.

Quality of the mandate100 · weight 12%

CLI's analysis of the posting describes a strategic build or transformation mandate.

Executive and board exposureNot disclosed · excluded from the score

Executive and board exposure: not disclosed.

Role authority versus title70 · weight 10%

Title and described scope are broadly consistent.

Company scale and trajectory100 · weight 10%

Employer profile: 10,000+ employee organization, government ownership, not applicable, revenue over 10b.

Team ownershipNot disclosed · excluded from the score

Team size: not disclosed.

Budget ownershipNot disclosed · excluded from the score

Budget ownership: not disclosed.

Risk signals75 · weight 5%

Signals worth probing: Minimum qualifications focus heavily on architecture and infrastructure (6-10 years) rather than dedicated security leadership experience.

Dimensions the employer does not disclose are excluded and the remaining weights are rebalanced, so missing information lowers confidence rather than the score.

Sign in to see how this role scores against your background, and add your career goal to evaluate career value.

Compensation

No compensation disclosed and insufficient comparable data to estimate.

Sample size not yet sufficient for a market comparison

See the full benchmark bands by level and region

The mandate

Develop and implement the FDNY's information security strategy and enterprise vision. The role is responsible for identifying and mitigating risks to ensure the confidentiality, integrity, and availability of department data and technologies.

The role sits within the Bureau of Technology Development & Systems at FDNY. Remit includes enterprise-wide security strategy, risk management, and oversight of diverse technical environments from cloud to physical security.

Scope

  • Reports to Bureau of Technology Development & Systems leadership

Domains and regulation

  • Enterprise Security
  • Cloud Security
  • Infrastructure Security
  • Cyber Defense
  • GRC
  • Identity
  • Privacy
  • Physical Security
  • Resilience
  • Third-Party Risk
  • PCI DSS
  • HIPAA

Requirements

Must have

  • Minimum of 6 years experience managing information security programs in government (preferred)
  • Practical experience designing and implementing IT security solutions
  • Deep understanding of security threats and preventative measures
  • Experience with endpoint security management and enterprise mobility in the cloud
  • Knowledge of LAN/WAN, Active Directory, and PowerShell

Preferred / bonus

  • Baccalaureate degree in a related field plus six years of experience in enterprise/solutions/network architecture or IT infrastructure

Only must-have items are scored as hard constraints in Executive Fit.

Likely challenges

Signals worth probing

Not stated in the posting: Compensation range not disclosed; Direct reporting line (beyond the Bureau) not specified; Team size and budget details not provided; Specific board or city council reporting requirements not stated.

About New York City Fire Department

The FDNY is the largest municipal fire department in the United States, responsible for fire suppression, emergency medical services, and technical rescue for New York City's five boroughs. The department serves over 8.5 million residents across a highly complex urban environment, maintaining an extensive critical infrastructure network of stations and dispatch centers. For a security leader, the role involves protecting high-stakes emergency communications systems, public safety data, and large-scale operational technology.

Industry
Public Sector
Headcount
10,000+ employees
Headquarters
Brooklyn, New York
Founded
1865
Ownership
Government
Funding
Not applicable
Revenue
Over $10B

Full company profile for New York City Fire Department →

View original job description
JOB DESCRIPTIONThe Fire Department, City of New York (FDNY), seeks a full-time Chief Information Security Officer in the Bureau of Technology Development & Systems. The successful candidate will be responsible for developing and implementing an organization's information security strategy to protect data and systems from cyber threats. Key Responsibilities: Establish Security Strategy: Develop and maintain the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected. Risk Management: Identify, assess, and mitigate information security risks to ensure the confidentiality, integrity, and availability of data...MINIMUM QUALIFICATIONS1. A baccalaureate degree from an accredited college in computer science, information systems, engineering, mathematics or related field and six years of satisfactory full-time experience related to enterprise architecture, solutions architecture, network architecture and/or IT infrastructure systems; or2. A baccalaureate degree from an accredited college and ten years of satisfactory full-time experience related to enterprise architecture, solutions architecture, network architecture and/or IT infrastructure systems; or3. Education and/or experience which is equivalent to "1" or "2" above.PREFERRED SKILLSMinimum of 6 years’ experience managing information security programs, developing, and applying information security, risk management, and privacy practices in local, state, or federal government. - Minimum of 6 years’ practical experience designing and implementing IT security solutions deep understanding of various security threats and preventative measures. - Familiarity with cyber-security frameworks such as NIST, CIS Controls, PCI-DSS, HIPAA etc. - Strong demonstrated knowledge of LAN/WAN, systems administration, active directory, PowerShell, group policy, virtualization, cloud and IT security technologies. - Experience with systems access management, change management, security monitoring and intrusion detection, vulnerability management, endpoint security management, cloud security, data loss prevention, encryption, network security, disaster recovery, data management, physical security, vendor management. - Experience with CrowdStrike, McAfee, Pulse Secure, Cisco, firewalls, Windows Server, Rapid7, MS Office 365, Endpoint Security and Enterprise Mobility in the cloud. - IT certifications (1 or more) such as Security+, CISSP, CISA, CISM, CySA+, CRISC, C-CISO, SSCP, CASP, CEH, GIAC

Cyber Leadership Index is not the employer and does not represent candidates for these roles. Verify all details with the employer before acting.