Endpoint Security Analyst
Listed on 2026-08-22
-
IT/Tech
Cybersecurity, IT Support, Network Security
Job Title: Endpoint Security Analyst
Work Schedule: Full time, 40 hours per week. Must be available to work nights, weekends, and off hours as needed. (The standard work week is Monday through Friday, 8:00 AM to 5:00 PM. Exempt professionals, are expected to maintain a flexible schedule to ensure all responsibilities and collegiate needs are met, including occasional work outside of core business hours.)
FLSA Status: Exempt
SummaryThe Endpoint Security Analyst is responsible for the security, integrity, and operational health of the institution’s end-user computing environment. This includes the engineering and management of security controls for workstations (PC/Mac), mobile devices, and networked peripherals such as printers. The position works closely with the IT Support team to uphold academic productivity while maintaining a robust defense against evolving threats.
Reports to Director of IT Support Services.
Essential Duties And Responsibilities- Endpoint Protection Management:
Administer and optimize Endpoint Detection and Response (EDR) and Next-Generation Antivirus (NGAV) solutions across all college-owned end-user devices. - Device Lifecycle Security:
Implement and maintain secure configuration baselines (e.g., CIS Benchmarks) for workstations and mobile devices using unified endpoint management (UEM) tools like Jamf, SCCM, and WSUS. - Workstation Management:
Maintain standardized configurations for classroom and administrative workstations to ensure a consistent experience and prevent unauthorized persistent changes to software and settings. - Vulnerability & Patch Management:
Identify, prioritize, and automate the remediation of vulnerabilities on end-user hardware, including third-party application patching and firmware updates for networked printers, end-user workstations (Mac/PC), mobile devices, and other end user devices. - Secure Process Best Practices:
Implement and advocate for secure workflows, such as Follow-Me or authenticated release printing, to prevent sensitive information exposure, reduce waste, and create efficiencies. - General Print Administration & Support:
Provide high-level support for the college’s networked printing environment, ensuring high availability of services while managing driver deployment and printer configuration via centralized management tools. - Print Infrastructure Security:
Secure the printing environment by hardening device firmware, disabling insecure protocols (e.g., Telnet, FTP), and ensuring all print traffic is encrypted across the campus network. - Incident Triage:
Serve as the primary security escalation point for the IT Support desk, investigating alerts from endpoint sensors and performing initial forensic analysis of potentially compromised devices. - Security Automation:
Develop scripts (Power Shell, Bash, or Python) to automate routine security audits and the deployment of security agents across the enterprise. - Compliance & Reporting:
Monitor and report on endpoint compliance with federal and state regulations (e.g., FERPA, GLBA) and institutional security policies. - Maintains and updates an operational manual.
- Performs other duties/special projects as assigned.
- High school diploma/or equivalent
- ComptIA Security+, CySA+ or related cybersecurity certification. If not in possession, must acquire within first 6 months of employment.
- Act 153 Clearances (Act 34 PA Criminal Background, Act 151 PA Child Abuse History, Act 114 FBI Clearance Fingerprinting)
- 3-5 years of experience in IT support or systems administration with a heavy focus on endpoint security and device management.
- In-depth knowledge of Windows, macOS, iOS, and Android security architectures.
- Experience with Unified Endpoint Management (UEM) and Mobile Device Management (MDM) platforms.
- Proficiency in scripting for automation (e.g., Power Shell or Python) to manage large-scale device environments.
- Knowledge of common attack vectors targeting end-users, such as phishing, credential theft, and drive-by downloads.
- Ability to communicate complex technical security concepts to non-technical faculty, staff, and students.
- Demonst…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).