×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Cybersecurity Analyst Tier 2

Job in Salt Lake City, Salt Lake County, Utah, 84193, USA
Listing for: University of Utah
Full Time position
Listed on 2026-09-25
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 73000 - 93000 USD Yearly USD 73000.00 93000.00 YEAR
Job Description & How to Apply Below

Cybersecurity Analyst Tier 2 Job Summary Information Security Analysts

The University of Utah has an opportunity for a Cybersecurity Analyst Tier 2 (Security Operations Center) to help support our Information Security and Compliance goals. The Tier 2 SOC analystwill drive mid-tier incident investigations, perform root cause analysis, and help optimize our operational capabilities. Operating as the primary escalation bridge between Tier 1 monitoring and Tier3 engineering, you will handle complex security events, collaborate closely with Tier 3 analysts to tune detection rules, refineresponse playbooks, and mentor junior analysts.

About

UIT

University Information Technology(UIT), the central IT service provider for the University of Utah, reports to the U's Chief Information Officer and is responsible for many of the U's sharedIT services including the wired and wireless network;
Campus Information Services (CIS) portal; UMail, telephone, and online collaboration; digital learning technologies; information security;software licensing; and a host of other IT systems and services.

About the University of Utah

Located in Salt Lake City, the U is the flagship institution of the State of Utah'ssystem of higher education, home to arts and museum venues and a member of the BIG-12 Conference. Skiing and snowboarding opportunities are a short distance from campus, and opportunities to pursue activities from biking to hiking to fishing abound. Salt Lake City ishome to the Utah Symphony and Opera, Ballet West, professional sports teams, and a wide range ofother cultural and recreational activities.

Responsibilities

Information Security Analyst II Incident Response:
  • Perform in-depth investigations, root cause analysis, andcontainment activities for escalated, complex, or multi-vectorsecurity incidents across endpoint, network, cloud, and identity domains
  • Serve as the primary escalation point for Tier 1 analysts,providing technical guidance during active triage and validatingescalation quality.
  • Perform initial scoping and technical artifact analysis tosupport response actions and prevent incident propagation.
  • Draft clear, detailed incident postmortem reports and documenttechnical findings for internal stakeholders.
Detection & Playbook Optimization:
  • Partner with Tier 3 analysts to tune, refine, and update existingdetection logic across SIEM, EDR, and cloud security platforms toreduce false positives and improve alert fidelity.
  • Identify detection coverage gaps and telemetry blind spots duringinvestigations, providing actionable recommendations to Tier 3 fornew rules or detection enhancements.
  • Assist Tier 3 analysts in testing, providing feedback on, and maintaining automated response workflows (SOAR) to streamlineroutine SOC tasks.
Threat Analysis:
  • Analyze complex adversary behavior from escalated alerts, mappingattack paths to the MITRE ATT&CK framework.
  • Assist Tier 3 analysts in executing structured, hypothesis-driventhreat hunting campaigns across corporate and cloudenvironments.
  • Operationalize threat intelligence updates by executingindicator-of-compromise (IOC) sweeps (threat hunting) and validating threat exposure.
Leadership & Team Support:
  • Mentor and develop Tier 1 SOC analysts through regular shifthandovers, technical guidance, and investigation peer reviews.
  • Identify operational bottlenecks and propose improvements to SOCworkflows and triage procedures.
  • Partner with internal IT and platform teams to address logginggaps and remediate host- or network-level securityweaknesses.

Job Code: P34212

Grade: P17

Minimum Qualifications

EQUIVALENCY STATEMENT: 1 year of higher education can be substituted for 1 year of directly related work experience(Example: bachelor's degree = 4 years of directly related work experience).

Information Security Analyst, II:
Requires abachelor's (or equivalency) + 4 years or a master's (or equivalency) + 2 years of directly related work experience.

Preferences

Experience: 4 years dedicated cybersecurityoperations, threat triage, or incident response experience in a SOCenvironment.

Technical mastery: Strong expertise analyzing logsacross Windows/Linux, cloud environments (AWS, Azure, GCP), networktraffic (PCAP, Net Flow), and identity platforms (Entra ,Okta).

Querying & Log Analysis: Proficiency usingplatform query languages (e.g. KQL, SPL, YARA) for deepinvestigation, log correlation, and evaluating ruleperformance.

Framework Alignment: Practical working knowledge of applying the MITRE ATT&CK framework to real-worldinvestigations, triage…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary