Information Security Analyst
Listed on 2026-06-27
-
IT/Tech
Cybersecurity, Information Security, IT Support
JOB SUMMARY:
The Information Security Analyst plays a key supporting role in the college’s cybersecurity operations. Under the guidance of the Technical Manager, Information Security & Infrastructure, this position monitors IT systems for potential threats, assists with policy compliance tasks, 3rd party vendor reviews and assessments, and contributes to user education and awareness initiatives.
The Information Security Analyst is responsible for and administers the college’s Security Awareness Training program, EDR/MDR platform, email filtering rules, and the institutional risk register. This role also works closely with the Endpoint Management Coordinator to support the vulnerability and patch management program.
Additionally, as a crucial part of the College's incident response team, the Information Security Analyst supports the efficacy and readiness of technology disaster recovery plans.
ESSENTIAL JOB FUNCTIONS:- Monitor system alerts, logs, and endpoint protection tools to identify potential security events and action upon them with direction from senior staff as appropriate.
- Support the Technical Manager, Information Security & Infrastructure, vCISO, and Information Security Team during incident response by gathering data, documenting findings, and performing preliminary triage.
- Assist with compliance activities by preparing audit documentation, tracking remediation efforts, and maintaining access control records.
- Contribute to information security awareness and training programs by updating materials and coordinating outreach efforts.
- Working closely with the Endpoint Management Coordinator, perform basic vulnerability scans and assist in tracking remediation plans provided by the engineering or infrastructure teams.
- Help maintain identity and access management controls by reviewing user permissions and supporting periodic access reviews.
- Participate in regular risk assessments, vendor reviews, business impact analysis, and implement controls to mitigate potential threats and vulnerabilities, as directed.
- Stay current with emerging cybersecurity threats, tools, and best practices; participate in professional development opportunities.
- Maintain documentation of security procedures, tools, and workflows for future reference and audit readiness.
- Collaborate with IT staff to support secure configuration and deployment of systems.
- Provide guidance on best practices for data protection and cybersecurity.
- Serve on College committees and/or external committees as directed by the supervisor and/or Chief Information Officer.
- Perform other duties as assigned.
- Associate degree;
Bachelor degree preferred. - Entry-level certifications such as CompTIA Security+, Microsoft SC-900, or equivalent.
- Experience with help desk ticketing systems or logging tools (e.g., Team Dynamix, Splunk, Azure Monitor, etc.).
- Basic understanding of cybersecurity principles, networking fundamentals, and common operating systems.
- Familiarity with tools such as antivirus, multi-factor authentication, and enterprise endpoint security.
- Ability to handle sensitive information with discretion and follow written procedures.
- Strong analytical and problem‑solving skills.
- Effective written and verbal communication skills.
- Demonstrated interest in pursuing a career in information security.
To be successful in this position, candidates will need the following:
- Knowledge of risk management processes (e.g., methods for assessing and mitigating risk).
- Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy (e.g., GLBA, FERPA, GDPR, HIPAA, PCI, etc.)
- Knowledge of cybersecurity and privacy principles used to manage risks related to the use, processing, storage, and transmission of information or data.
- Working knowledge and experience with Microsoft 365 (SharePoint, MS Teams, Purview, security, DLP, etc.), Sentinel One, and Abnormal Security is highly desirable.
- Skill in verbal and written communication, facilitation, and interpersonal skills.
- Knowledge of industry security frameworks (e.g., NIST 800-171, CIS, etc.)
- Knowledge of ITSM frameworks (ITIL, etc.) and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).