Information Security Analyst (Risk and Incident Response
Listed on 2026-08-13
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Consultant, Network Security
Location: Indianapolis
Position Overview
The Information Security Analyst for Risk and Incident Response ( Analyst ) provides technical expertise in support of Butler University's information security program and serves as a primary technical resource for cybersecurity operations related to vulnerability management, incident response, and risk assessment. Reporting to the Information Security Manager, this position is responsible for the day-to-day administration of security technologies, investigation of cybersecurity events, and implementation of security controls that protect the university's information assets, technology systems, and business operations.
Working closely with the Information Security Manager, IT teams, and Butler's managed security service providers, the Analyst identifies, assesses, and helps remediate cybersecurity risks through vulnerability management, security monitoring, incident response, and technical security assessments. The position also partners with technical staff to integrate security best practices into the design, implementation, and ongoing operation of university technology services while contributing to the continuous improvement of Butler's overall cybersecurity program.
Responsibilities- Administer and continuously improve Butler University's vulnerability management program, including identification, prioritization, tracking, and remediation of security vulnerabilities.
- Serve as the primary technical lead for the investigation, analysis, containment, and recovery of cybersecurity incidents, coordinating response activities with internal stakeholders and external partners as appropriate.
- Manage the day-to-day operational relationship with Butler's managed detection and response (MDR) provider, ensuring timely investigation, response, escalation, and resolution of security events and recommended actions.
- Administer, maintain, and optimize Butler's security technologies, including endpoint protection (EDR), endpoint privilege management (EPM), email security, data loss prevention (DLP), and other security platforms as assigned.
- Monitor the health, effectiveness, and configuration of security tools, ensuring they remain properly configured, updated, and aligned with industry best practices.
- Conduct technical security assessments of systems, applications, networks, and cloud services to identify security risks and recommend appropriate mitigation strategies.
- Partner with IT infrastructure, applications, and project teams to integrate security requirements and best practices into the design, implementation, and operation of university technology services.
- Develop and maintain incident response procedures, technical documentation, operational runbooks, and security standards related to assigned responsibilities.
- Analyze emerging threats, vulnerabilities, and security trends, recommending improvements to strengthen Butler University's overall security posture.
- Participate in third‑party security assessments, technology evaluations, and other risk management activities by providing technical expertise and security recommendations.
- Support security awareness, campus outreach, and education initiatives by providing technical guidance, developing content, and assisting with incident communications when appropriate.
- Perform additional duties as assigned.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; or an equivalent combination of education and relevant professional experience.
- Three (3) years of progressively responsible experience in information security, cybersecurity operations, systems administration, network administration, or a closely related technical field.
- Demonstrated experience investigating security events, responding to cybersecurity incidents, or administering enterprise security technologies.
- Experience performing vulnerability management, security assessments, or technical risk analysis in an enterprise environment.
- Working knowledge of information security principles, including network security, endpoint security, operating systems, cloud technologies, and common cybersecurity frameworks and best practices.
- Ex…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).