Senior Information Security Analyst
Listed on 2026-07-01
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Network Security
General Experience Expectations: Typically has three (3) years of experience with information security and five (5) years of combined IT and security work experience with a broad range of exposure to systems analysis, applications development, database design, and administration.
Scope of Work/Job CharacteristicsThe Advanced Information Security Analyst is responsible for leading the technical implementation of security projects, focusing on system hardening, network security, and identity management, while collaborating with teams to meet law enforcement-specific security standards. The role requires hands on expertise in firewalls, Intrusion Detection and Prevention Systems (IDS/IPS), encryption, and secure Microsoft configurations, as well as conducting vulnerability assessments and developing remediation strategies.
The Advanced Information Security Analyst will manage security tools, support threat detection and incident response, and ensure integration of security platforms. Compliance with regulations is critical, as is working with Governance, Risk, and Compliance (GRC) teams to ensure adherence and address audit gaps. Documentation and training on cybersecurity solutions and processes are required, with a focus on regulations. The role also demands reengineering security processes for efficiency and compliance, providing support for cybersecurity issues, and staying informed on emerging threats and technologies.
The duties and responsibilities of this position are as follows:
- Lead the technical implementation of security projects, focusing on system hardening, network security, encryption tools, vulnerability management, security monitoring, and identity and access management (IAM) systems within a Microsoft and Azure environment.
- Collaborate with cross-functional teams to deploy security solutions that meet project requirements, with a focus on law enforcement-specific security standards
- Ensure timely delivery of security projects in line with the organization's requirements, maintaining adherence to scope, timeline, and budget.
- Provide hands-on expertise in areas such as firewalls, IDS/IPS, encryption, endpoint protection, and secure configuration of Microsoft environments.
- Implement secure system architecture and networking solutions, particularly within Microsoft Azure; and
- Conduct vulnerability assessments and develop remediation strategies, ensuring continuous improvement in the Department’s security posture.
- Configure, deploy, and manage security tools such as Security Information and Event Management (SIEM) systems, Microsoft Azure Security Center, and endpoint security solutions tailored for a Microsoft environment
- Ensure proper integration of security platforms across IT systems and support threat detection, prevention, and incident response.
- Design and maintain incident response procedures, specifically tailored to a law enforcement setting
- Conduct root cause analysis and develop and implement appropriate remediation measures.
- Ensure adherence to CJIS, State regulations, and other relevant security compliance standards.
- Work closely with GRC teams to ensure the organization remains in compliance with state and federal security regulations.
- Assist with security audits, including CJIS compliance reviews, and address any identified gaps to maintain compliance in Microsoft and Azure systems.
- Develop and maintain up-to-date documentation of new and existing cybersecurity solutions and processes specific to law enforcement and CJIS requirements.
- Provide training to IT staff on security protocols and contribute to security awareness initiatives for the organization, with a focus on compliance with CJIS and state regulations.
- Design, implement, and optimize security processes to enhance operational efficiency, align with compliance requirements (e.g., CJIS), and mitigate risks across IT and organizational functions.
- Reengineer existing security processes to improve system integrity, streamline workflows, and ensure alignment with evolving…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).