CybersecurityJobs.io
← Back to all jobs

Job Description

Grambling State University is seeking an IT Infosec Associate Analyst (1 or 2) to support statewide cybersecurity operations from an onsite location in Baton Rouge, LA. In this role, you will monitor and analyze security signals across the enterprise, coordinate response activities, and provide technical support spanning computer systems, applications, and networks.

What you’ll do

  • Monitor, triage, and investigate real-time security alerts from Palo Alto Networks Cortex XSIAM and CrowdStrike Falcon Complete.
  • Validate high-priority threat notifications, assess supporting context, and perform initial containment actions aligned to enterprise incident response playbooks.
  • Coordinate remediation workflows with the CrowdStrike Falcon Complete managed service team and relevant OTS technical verticals.
  • Record investigation outcomes, root cause analysis, and response actions in the centralized security incident log.
  • Support detection engineering by tuning correlation rules, detection logic, and automated response playbooks in Cortex XSIAM to reduce false positives.
  • Monitor and manage the ServiceNow ticket queue for proxy-related issues, access requests, and categorized URL reclassification tickets.
  • Troubleshoot and resolve web filtering issues, SSL/TLS decryption exceptions, and secure web gateway (SWG) connection anomalies for enterprise users.
  • Analyze user traffic patterns against acceptable use policies to detect policy violations, unauthorized application usage, or potential evasion attempts.
  • Maintain operational documentation and standard operating procedures (SOPs) for enterprise proxy management and ticket workflows.
  • Investigate suspicious internal and perimeter network activity, protocol anomalies, and anomalous host behavior using network telemetry and log sources.
  • Conduct proactive threat hunting using IoCs and behavioral analytics to identify potential adversary activity (TTPs).
  • Correlate firewall, DNS, VPN, authentication, and endpoint logs to reconstruct attack timelines and evaluate scope of impact.
  • Escalate confirmed intrusions or APTs to senior incident response personnel and OTS leadership.
  • Monitor identity provider signals and behavioral analytics for indicators of compromised credentials, impossible travel, and unauthorized account modifications.
  • Coordinate with the OTS Service Desk and identity teams to initiate account locks, password resets, session revocations, and MFA step-up authentication for compromised users.
  • Verify post-compromise cleanup to ensure persistence mechanisms are identified and purged (for example, malicious inbox forwarding rules or unauthorized OAuth applications).
  • Advise agency points of contact and help desk personnel on user remediation best practices and credential hygiene.
  • Perform other tasks, special projects, analysis, studies, and plans as directed by OTS Leadership.

Minimum qualifications

  • Two years of experience in information technology; or
  • Six years of full-time work experience in any field; or
  • An associate’s degree in information technology; or
  • A bachelor’s degree.
  • Certification in an approved area may substitute for the education and/or experience requirements at time of hire or promotion, if the appointment is made from a Certificate of Eligibles.

Experience substitution

  • Every 30 semester hours earned from an accredited college or university counts as one year toward the six years of full-time work experience in any field.
  • The maximum substitution allowed is 120 semester hours, substituting for up to four years of experience in any field.

Tools and technologies

  • Palo Alto Networks Cortex XSIAM
  • CrowdStrike Falcon Complete
  • ServiceNow
  • SSL/TLS
  • Secure web gateway (SWG)
  • OAuth
  • IoCs, TTPs, APTs

Role details

  • Appointment type: new hire or promotion of a current permanent status classified employee.
  • Career progression: participates in a career progression group and may be filled as an IT Infosec Associate Analyst 1 or 2.
  • Official job specifications as defined by the State Civil Service are available via the posting’s linked document.

How to apply

  • No Civil Service test score is required to be considered.
  • Applicants must monitor the status of their application to see where they are in the recruitment process.
  • Eligibility supporting information must be included in the application; resumes will not be accepted in place of completed education and experience sections.
  • Applications may be rejected if incomplete.
  • Transcripts may be added as an attachment to the online application.
  • The selected candidate must provide original documentation upon hire.

Background check and pre-employment screening

  • Before a new hire, a background check including criminal record history will be conducted.
  • Background check information will be considered when determining suitability and competence.
  • A criminal history check may be conducted for employees changing positions, including promotions, demotions, details, reassignments, and transfers.
  • Candidates may be subject to pre-employment drug testing.
  • New hires will undergo employment eligibility verification via E-Verify.

For further information about this posting, contact Erica R. Gay, HR Specialist (Division of Administration / Office of Human Resources) at [email protected].

Similar Jobs