About this role
Job title: Information Security Analyst
About the Role The Information Security Analyst is a technical role within the Information Security (InfoSec) group of Information Technology Services (ITS). The analyst defends the University’s data assets through policy controls, security operations, incident response, and AI-assisted tooling.
As the primary network defender, the analyst works at the intersection of threat detection, vulnerability management, and forensic investigation within a Security Operations Center (SOC).
What You'll Do
- Monitor network, endpoint, and identity telemetry continuously using SIEM tools such as Splunk, Elastic/OpenSearch, and Kibana.
- Triage IDS/EDR alerts, analyze logs and traffic, determine relevance and severity; provide second-level analysis of alerts escalated by student SOC employees with final disposition.
- Operate, tune, and improve SOC monitoring and detection platforms including Microsoft Defender for Endpoint; implement threat hunting; integrate new data sources; write Python and PowerShell scripts.
- Maintain firewall rulesets; assist in incident response including containment, eradication, and recovery; perform first-responder digital forensics.
- Mentor and oversee student SOC staff; serve as senior practitioner in a learning environment.
What We're Looking For
- Bachelor’s degree in information security/cybersecurity, Information Management, Computer Science, Computer Engineering, or related field.
- 5+ years IT experience with at least 2 years in information security/cybersecurity; prior SOC experience valued.
- Experience (2+ years each): SOC operations (IDS/EDR triage, log analysis, network traffic interpretation with Splunk/Kibana/Microsoft Sentinel); Microsoft Defender for Endpoint alert triage; Python; PowerShell; firewall operation.
- Experience (1+ years each): Windows/Active Directory; Linux administration; digital forensics; AI-assisted security tools.
- Broader knowledge: Network protocols, IDS/IPS, MITRE ATT&CK, Cyber Kill Chain, vulnerability scanning, cloud security basics, SOAR and automation; Microsoft security stack (Defender XDR, Sentinel, Purview, Entra ID) with KQL; active use of AI tooling.
- Soft skills: cross-functional collaboration, student mentorship, multi-source analytical precision, clear written and verbal communication, composure during active incidents, commitment to continuous learning.
Nice to Have
- Experience with AI tooling in security operations is a plus.
Compensation & Benefits
- Salary: $87,000-$92,000 USD per year.
- On-campus, in-person role with limited remote work arrangements in accordance with university policy.