Information Security Analyst/Engineer
Job Description
The University at Albany is hiring an Information Security Analyst/Engineer to help protect critical infrastructure, institutional data, and research assets through detection, response, and security control improvements.
Responsibilities
- Monitor and triage security alerts across endpoints, identity, and cloud workloads using tools such as Microsoft Defender and Microsoft Sentinel.
- Investigate and respond to incidents end-to-end (scope, contain, eradicate, recover); document actions and escalate as needed.
- Build and improve incident response workflows, including cloud automation playbooks and scripts that reduce time-to-detect and time-to-respond (SOAR and automation).
- Partner with network, systems, and application teams to contain threats, remediate root causes, and improve detections and preventive controls.
- Design, review, and maintain next-generation firewall policies and exceptions (Palo Alto) and web application protections (Cloudflare) with change control and documentation.
- Analyze network telemetry for anomalies; build detections and workflows that correlate network, endpoint, identity, and cloud signals.
- Run regular vulnerability scans using Tenable (and similar tools).
- Automate vulnerability tracking and reporting.
- Coordinate remediation with system owners and technical teams.
- Support risk assessments, audits, and policy updates.
- Promote security awareness and best practices across campus.
- Develop and maintain scripts and automation workflows supporting incident response and network security.
- Integrate security tools and data sources (firewall, cloud, EDR) to improve correlation and response automation.
- Evaluate emerging capabilities to enhance detection, response, and network controls; prioritize solutions that can be operationalized and automated.
- Perform other reasonable duties as assigned.
Requirements
- Excellent communication skills and ability to work effectively with infrastructure teams in a fast-paced environment while balancing security, availability, and operational needs.
- Strong troubleshooting and organizational skills; ability to prioritize work and solve complex problems independently.
- Ability to develop inclusive and equitable relationships within a diverse campus community.
- Ability to support diversity, equity, access, inclusion, and belonging relative to the role.
- Bachelor’s degree from a U.S. Department of Education accredited institution or an internationally recognized accrediting organization.
- At least 3 years of professional experience in modern incident response, including investigation, containment, remediation, and use of enterprise security tooling such as Microsoft Defender, Microsoft Sentinel, or comparable platforms.
- At least 3 years of professional experience in network security, including hands-on work with next-generation firewalls, IDS/IPS, segmentation, traffic analysis, or related controls.
- Demonstrated experience collaborating with infrastructure, systems, or application teams to implement security controls, support remediation, or improve operational processes in an enterprise environment.
- Experience using scripting (such as Python or PowerShell), Artificial Intelligence, automation, or security workflows to improve detection, response, or efficiency.
Technologies
- Microsoft Defender, Microsoft Sentinel
- Palo Alto
- Cloudflare
- SOAR (security orchestration, automation, and response)
- Tenable
- Python, PowerShell
- Artificial Intelligence
- EDR (endpoint detection and response)
- SIEM, XDR
- Microsoft Azure, Amazon Web Services (AWS), Google Cloud
- Burp Suite, OWASP
Reporting & Supervision
- Reports to: Chief Information Security Officer
- May supervise: employees as assigned
Preferred Qualifications
- Relevant security certifications (examples: CISSP, CEH, GCDA).
- Experience securing cloud and web application environments, including Microsoft Azure, AWS, Google Cloud, Cloudflare, Burp Suite, or OWASP-based practices.
- Experience with enterprise detection and response platforms such as SIEM, XDR, or AI-assisted security operations tools.
- Experience in higher education or similarly complex environments, including support for institutional AI use, risk management, or compliance initiatives.
Working Environment
- Available for scheduled after-hours support, including occasional evenings, weekends, or holidays.
- On-site: Albany Mondays, Wednesdays, and Fridays (and as needed).
- Telecommuting: Tuesdays and Thursdays may be available after a probationary period, with supervisor approval.
Additional Information
- Promotional opportunity for current UAlbany employees.
- Visa sponsorship: not available.
- UAlbany is not an E-Verify employer.
Eligibility for Consideration
- Must be employed at the University at Albany campus.
- Must be in a State-funded UUP professional position (MC employees are not eligible).
- Must have a permanent, term, or probationary appointment; only temporary employees employed by UAlbany for three or more consecutive years can be considered eligible.
Compensation
- Salary: USD 90,000 - 95,000 per yearly
- Professional rank/salary grade: Senior Programmer/Analyst, SL4, $90,000-95,000
Job Location & Hybrid Schedule
- Location: Albany, NY
- Work model: hybrid