Senior Vulnerability and Threat Analyst

Monroe University
New York, NY, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$80,000.0 - $130,000.0
Working hours
Regular working hours
Job source

Tech stack

Data Analysis Software System Penetration Testing Automation of Tests Bash Shell Cyber Security Information Systems Data Discovery Information Technology Operations Python (Programming Language) Network Architecture Windows PowerShell Cloud Services
+11 more
Phishing Security Information and Event Management Software Vulnerability Management Scripting Mitre Att&ck Cyber Threat Analysis Information Technology Microsoft Sentinel Splunk Network Server Qualys

Job description

The Senior Vulnerability and Threat Analyst is a senior individual contributor supporting Cybersecurity at Monroe University. This role owns three tightly-integrated disciplines: continuous vulnerability management across Monroe’s environment, coordination of internal and external penetration testing activities, and consumption of threat intelligence relevant to the higher-education sector. The Senior Vulnerability and Threat Analyst serves as the primary analyst responsible for identifying, prioritizing, and driving remediation of technical exposures across the institution. This role partners closely with Monroe’s IT team, the outsourced Security Operations Center, and external specialized firms engaged for forensics or compromise assessment. The Senior Vulnerability and Threat Analyst also serve as the primary supervisor of the Student Cyber Corps program when it launches, providing faculty-aligned oversight of student-led security engagements.

Core Responsibilities:

  • Establish and operate a continuous vulnerability management program covering endpoints, servers, network infrastructure, cloud workloads, and critical applications.
  • Prioritize vulnerabilities based on exploitability, institutional exposure, and business impact - not raw CVSS scores - and drive remediation in partnership with IT operations.
  • Coordinate internal and external penetration testing engagements, including scoping, vendor management, findings validation, and remediation tracking.
  • Consume and operationalize higher-education-specific threat intelligence through REN-ISAC membership, commercial threat feeds, and government advisories (CISA, FBI IC3).
  • Serve as the primary Monroe contact for REN-ISAC community engagement, including participation in sector-wide information sharing and peer collaboration.
  • Conduct proactive threat hunting in the environment to identify indicators of compromise, persistence mechanisms, and suspicious activity not surfaced by automated detections.
  • Partner with the outsourced Security Operations Center to tune detection rules, improve alert quality, and close visibility gaps.
  • Own the scoping, vendor selection, and project management of external specialized engagements such as compromise assessments and data discovery projects, in coordination with the CISO.
  • Supervise the Student Cyber Corps program when launched - designing engagement scope, reviewing student work product, validating findings, and ensuring no student access touches production PII or sensitive systems.
  • Produce regular vulnerability and threat landscape reporting for the CISO, the CIO, and institutional leadership, translating technical exposure into institutional risk language.
  • Support GLBA Safeguards Rule compliance by maintaining continuous, documented evidence of vulnerability management and penetration testing activities.
  • Contribute to incident response investigations as a technical analyst, particularly where historical vulnerability data or threat intelligence is relevant.
  • Participate in Monroe’s incident response on-call rotation once established.

Requirements

Do you have experience in Risk assessment?, Do you have a Bachelor’s degree?, * Deep hands-on expertise with enterprise vulnerability management platforms (Tenable, Rapid7, Qualys, or equivalent), including scan policy design, credentialed scanning, and integration with remediation workflows.

  • Working knowledge of penetration testing methodologies (PTES, OSSTMM) and experience coordinating or conducting internal or external pen tests.
  • Familiarity with automated and continuous testing platforms (Pentera, Horizon3, RidgeBot, or similar) is preferred.
  • Fluency in threat intelligence frameworks - MITRE ATT&CK, Cyber Kill Chain, STIX/TAXII - and practical experience applying them to operational decisions.
  • Strong scripting skills in Python, PowerShell, or Bash for automation, data analysis, and custom tooling.
  • Experience with SIEM platforms (Microsoft Sentinel, Splunk, or equivalent) and the ability to write effective detection logic.
  • Understanding of higher-education threat landscape - ransomware targeting education, phishing against student populations, research-data attacks - or demonstrated ability to learn rapidly.
  • Strong written communication skills; ability to produce clear, audience-appropriate reporting for technical and non-technical audiences.
  • Collaborative orientation and comfort working across IT, the outsourced SOC, external vendors, and academic partners.
  • Interest in mentoring students through the Student Cyber Corps program; experience with applied academic-operational collaboration is a plus., * Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or a related field; equivalent professional experience considered.
  • Minimum 6-8 years of progressive experience in vulnerability management, penetration testing, threat intelligence, or security operations, with at least 3 years in a senior analyst role.
  • Professional certifications such as CISSP, GIAC GCIH, GIAC GPEN, OSCP, or equivalent strongly preferred.
  • Experience in higher education, healthcare, financial services, or another regulated environment is preferred.
  • Demonstrated experience managing third-party penetration testing or compromise assessment engagements is strongly preferred.
  • Ability to work on-site at Monroe’s Bronx and New Rochelle campuses at least four days per week.

Benefits & conditions

Pulled from the full job description

  • Tuition reimbursement
  • 401(k)
  • Health insurance
  • Retirement plan
  • Paid time off
  • Vision insurance
  • Health savings account, * 401(k)
  • Dental insurance
  • Flexible spending account
  • Health insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Retirement plan
  • Tuition reimbursement
  • Vision insurance

About the company

Monroe University, founded in 1933, is a national leader in higher education access, affordability, and attainment. We believe in the power of education to facilitate social mobility and transform communities, and embrace our responsibility to advocate national policies that serve students’ best interests. We are proud of our outcomes and unique caring environment, especially for first-generation college students, newly arriving immigrants, and international students. Our innovative curriculum, taught by experienced industry professionals, integrates local, national, and global perspectives. Our academic programs align with industries that drive the New York and international economies that we serve. Our graduates are prepared for continued scholarship, professional growth, and career advancement.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:55 min

Prioritizing system vulnerabilities and enhancing automated security posture

Raz Cohen · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all