Information Security Analyst

College of Charleston
United States
15 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$79,600.0 - $111,500.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Android Software Development Antivirus Softwares Apple IOS Software System Penetration Testing Computing Platforms Cloud Computing Cyber Security Information Systems Computer Networks Linux Intrusion Detection and Prevention
+9 more
Information Systems Security Architecture Professional Security Information and Event Management Network Routers Firewalls (Computer Science) Information Technology Patch Management Network Server Vulnerability Analysis Vmware

Job description

Provides expertise for the design and development of security systems and procedures within a wide range of complexity levels. Primarily responsible for assessing and evaluating enterprise information security solutions. Guides Junior Security Analyst to identify and address risk, and lead the response to information security issues. Provides management and oversees the daily monitoring and mitigation of security threats and issues as they arise. Collaborates and participates in the auditing and assessment of college security policies and procedures to ensure compliance in order to minimize the risk to the confidentiality, integrity, and availability of college data, network, and information systems. Provides recommendations on security initiatives, controls, and best practices. Participates in the development and approval of the designs and selection of security solutions., Activity Security Analysis and Event Management - Actively monitor college Information Security operations and reporting systems for security issues / risk including network, endpoint devices, mobile devices, and servers. Monitor system consoles including but not limited to DLP, SIEM, anti-virus, endpoint advance threats, patch management, windows update services, software inventories and network traffic for potential security threats, risk and issues. Participate in the active remediation and/or oversight in the correction of identified issues, risk, deficiencies and incidents. Review daily security reports / dash boards for anomalies or security threats and remediate any issues identified. Promptly investigate high priority notifications and report findings to the CISO or appropriate designee. Document daily activities/incidents in the appropriate tracking systems where applicable. Essential or Marginal Essential Percent of Time 25 Activity Vulnerability and Penetration Testing - Perform vulnerability scanning and penetration testing for applications, servers, network, endpoint devices and mobile devices. Develop and validate baseline security configurations and controls for critical network configurations. Coordinate vulnerability patch management process and prioritization. Provide guidance for remediation of system vulnerabilities and baseline security configurations. Essential or Marginal Essential Percent of Time 25 Activity Security Subject Matter Expert - Along with the CISO, serve as an Information Security Subject Matter Expert on College RFP and Project Teams. Plan, assist and approve any Information Security Architecture design and procurement. Work with the CISO and other staff to develop and implement security procedures and practices following best security practices and the State Information Security Framework (DIS-200). Coordinate and lead technical security activities. Actively participate in routine assessments of college offices and programs for compliance. Essential or Marginal Essential Percent of Time 15 Activity Incident Response and Remediation - Work with the CISO to investigate suspected security breaches and/or policy violations and formulate recommendations for corrective action. Develop and maintain incident verification and remediation playbooks in partnership with IT technical teams. Work with the CISO, Office of General Counsel, IT and Office of Personnel Services to facilitate eDiscovery requests, litigation holds and priority personnel actions. Essential or Marginal Essential Percent of Time 20 Activity Security Research and Evaluation - Stay abreast of current security threats and vulnerabilities. Maintain a working knowledge of established college policies and procedures. Maintain a working knowledge of established Federal and State Information Security regulations. Essential or Marginal Essential Percent of Time 5 Activity Lead Junior Information Security Analyst. Provide mentorship and guidance to junior staff; provide relevant technical training and guidance to junior analysts and other departments. Leads junior analysts in core information security functions (for example, installation, configuration and maintenance of information security equipment). Collaborates with management to design and implement long-term information security strategies.

Essential or Marginal Essential Percent of Time 10

Supplemental Questions

Required fields are indicated with an asterisk (*).

    • How did you hear about this employment opportunity? + Chronicle of Higher Education + CofC - Alumni Career Services + College of Charleston Website + Diverse: Issues in Higher Education + Glassdoor + Handshake + HigherEdJobs + Indeed.com + Internal Job Posting + jbcjobs (Joint Base Charleston Military & Family Readiness) + Job Fair + LinkedIn + Monster.com + Personal Referral + Post and Courier + Public Job Posting + SC Works (SC Department of Employment and Workforce) + Twitter + Word of mouth + Other + National Labor Exchange + CareerBuilder

Applicant Documents

Required Documents

Optional Documents

  1. Resume
  2. Cover Letter / Letter of Application
  3. Other Document
  4. Other Document 2
  5. Other Document 3
  6. Form DD 214

Requirements

A Bachelor’s Degree in computer science, information technology, or related field. 5-10 years of experience in areas of information security administration, network administration and/or information technology systems administration. Candidates with an equivalent combination of experience and/or education are encouraged to apply. Required Knowledge, Skills and Abilities Knowledge of information technology, security concepts, and security frameworks. Experience in the installation, setup and operation of IT infrastructure (e.g., routers, switches, firewalls, intrusion detection/protection devices, and data encryption). Knowledge of operating systems (e.g., Android, iOS, Linux, Windows, VMWare), Cloud computing, networks, hardware and software platforms, and protocols related to information security. Experience performing vulnerability scanning, assessment, and analysis and leading infrastructure patch management. Experience managing and responding to information security risks, threats and incidents. Expert knowledge of applicable information security trends and best practices. Knowledge of applicable internal and/or external regulatory policies, standards, procedures and controls (e.g., NIST, CIS). Knowledge of Payment Card Industry (PCI) controls, and the Federal Risk and Authorization Management Program (FedRAMP). Experience working with IT security vendors to implement and maintain security solutions. Preferred, but not required certifications include: Certified Information Systems Security Professional (CISSP), or Global Information Assurance Certification (GIAC). Additional Comments Regarding Position Must possess a valid driver’s license and a good driving record; must successfully pass a background check.

Benefits & conditions

*Salary is commensurate with education/experience which exceeds the minimum requirements. Offers of employment are contingent upon a successful background check., *Salary is commensurate with education/experience which exceeds the minimum requirements., * Insurance: Health/Dental/Vision

  • Life Insurance
  • Paid Leave: Sick/Annual/Parental
  • Retirement
  • Long Term Disability
  • Paid Holidays
  • Free CARTA Bus Service
  • Employee Tuition Assistance Program (ETAP)
  • Employee Assistance Program (EAP)
  • Full Benefits Package - Click Here

Open Until Filled No Posting Number 2026115 EEO Statement

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.cofc.edu

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:25 min

Testing the AI generated Apple iOS Flashcards application

MIlan Todorović MIlan Todorović · WWC Europe 2026

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · WWC 2025

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

1:33 min

Anticipating web push notification support on mobile browser architectures

Christian Liebel Christian Liebel · JS Congress

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · WWC 2024

Videos

See all

Related articles

See all