CybersecurityJobs.io
← Back to all jobs

Job Description

The University at Albany is hiring an Information Security Analyst/Engineer to help protect critical infrastructure, institutional data, and research assets through detection, response, and security control improvements.

Responsibilities

  • Monitor and triage security alerts across endpoints, identity, and cloud workloads using tools such as Microsoft Defender and Microsoft Sentinel.
  • Investigate and respond to incidents end-to-end (scope, contain, eradicate, recover); document actions and escalate as needed.
  • Build and improve incident response workflows, including cloud automation playbooks and scripts that reduce time-to-detect and time-to-respond (SOAR and automation).
  • Partner with network, systems, and application teams to contain threats, remediate root causes, and improve detections and preventive controls.
  • Design, review, and maintain next-generation firewall policies and exceptions (Palo Alto) and web application protections (Cloudflare) with change control and documentation.
  • Analyze network telemetry for anomalies; build detections and workflows that correlate network, endpoint, identity, and cloud signals.
  • Run regular vulnerability scans using Tenable (and similar tools).
  • Automate vulnerability tracking and reporting.
  • Coordinate remediation with system owners and technical teams.
  • Support risk assessments, audits, and policy updates.
  • Promote security awareness and best practices across campus.
  • Develop and maintain scripts and automation workflows supporting incident response and network security.
  • Integrate security tools and data sources (firewall, cloud, EDR) to improve correlation and response automation.
  • Evaluate emerging capabilities to enhance detection, response, and network controls; prioritize solutions that can be operationalized and automated.
  • Perform other reasonable duties as assigned.

Requirements

  • Excellent communication skills and ability to work effectively with infrastructure teams in a fast-paced environment while balancing security, availability, and operational needs.
  • Strong troubleshooting and organizational skills; ability to prioritize work and solve complex problems independently.
  • Ability to develop inclusive and equitable relationships within a diverse campus community.
  • Ability to support diversity, equity, access, inclusion, and belonging relative to the role.
  • Bachelor’s degree from a U.S. Department of Education accredited institution or an internationally recognized accrediting organization.
  • At least 3 years of professional experience in modern incident response, including investigation, containment, remediation, and use of enterprise security tooling such as Microsoft Defender, Microsoft Sentinel, or comparable platforms.
  • At least 3 years of professional experience in network security, including hands-on work with next-generation firewalls, IDS/IPS, segmentation, traffic analysis, or related controls.
  • Demonstrated experience collaborating with infrastructure, systems, or application teams to implement security controls, support remediation, or improve operational processes in an enterprise environment.
  • Experience using scripting (such as Python or PowerShell), Artificial Intelligence, automation, or security workflows to improve detection, response, or efficiency.

Technologies

  • Microsoft Defender, Microsoft Sentinel
  • Palo Alto
  • Cloudflare
  • SOAR (security orchestration, automation, and response)
  • Tenable
  • Python, PowerShell
  • Artificial Intelligence
  • EDR (endpoint detection and response)
  • SIEM, XDR
  • Microsoft Azure, Amazon Web Services (AWS), Google Cloud
  • Burp Suite, OWASP

Reporting & Supervision

  • Reports to: Chief Information Security Officer
  • May supervise: employees as assigned

Preferred Qualifications

  • Relevant security certifications (examples: CISSP, CEH, GCDA).
  • Experience securing cloud and web application environments, including Microsoft Azure, AWS, Google Cloud, Cloudflare, Burp Suite, or OWASP-based practices.
  • Experience with enterprise detection and response platforms such as SIEM, XDR, or AI-assisted security operations tools.
  • Experience in higher education or similarly complex environments, including support for institutional AI use, risk management, or compliance initiatives.

Working Environment

  • Available for scheduled after-hours support, including occasional evenings, weekends, or holidays.
  • On-site: Albany Mondays, Wednesdays, and Fridays (and as needed).
  • Telecommuting: Tuesdays and Thursdays may be available after a probationary period, with supervisor approval.

Additional Information

  • Promotional opportunity for current UAlbany employees.
  • Visa sponsorship: not available.
  • UAlbany is not an E-Verify employer.

Eligibility for Consideration

  • Must be employed at the University at Albany campus.
  • Must be in a State-funded UUP professional position (MC employees are not eligible).
  • Must have a permanent, term, or probationary appointment; only temporary employees employed by UAlbany for three or more consecutive years can be considered eligible.

Compensation

  • Salary: USD 90,000 - 95,000 per yearly
  • Professional rank/salary grade: Senior Programmer/Analyst, SL4, $90,000-95,000

Job Location & Hybrid Schedule

  • Location: Albany, NY
  • Work model: hybrid

Similar Jobs