Information Security Analyst

Capital Area Intermediate Unit
Enola, PA, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$66,320.0 - $82,900.0
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Cyber Security Data Recovery Digital Assets Disaster Recovery Intrusion Detection Systems Network Protocols Phishing Security Information and Event Management Technical Data Management Systems Virtualization Technology Software Vulnerability Management
+5 more
Malware Cyber Threat Analysis CIS Benchmarks Vulnerability Analysis Vmware

Job description

Job Goal: To perform day-to-day cybersecurity threat analysis, incident response, and vulnerability remediation to ensure confidentiality, integrity, and availability of digital assets. Collect data from cybersecurity consortium members to create reports, plans and policies that support the regions cybersecurity efforts.

Performance Responsibilities:

  1. Identify, monitor, resolve, and triage security issues when appropriate using various technical security solutions.

  2. Monitor system security baselines, conduct vulnerability analysis and coordinate mitigation and response for systems within the CAIU and its member districts environments.

  3. Conduct incident analysis and response using various technical security solutions such as Security Information and Event Management (SIEM), User Entity Behavior Analytics (UEBA), network threat analysis, Intrusion Detection System (IDS)/Intrusion Protection Systems (IPS), endpoint protection platforms, next generation firewall tools, and more.

  4. Create, deploy, and administer various technical security solutions for the CAIU and its member districts.

  5. Coordinate the ongoing development, maintenance, execution, and testing of the Disaster Recovery and Data Recovery Plans for the CAIU and its member districts. Perform regular review and testing of critical system backups in accordance with defined retention policies.

  6. Participate in the implementation and development of technical, governance, risk, and compliance policies and procedures to protect the CAIU and its member districts.

  7. Review and ensure the compliance of protocols and standards throughout the CAIU and its member districts.

  8. Establish and maintain a documentation library for processes, policies, as well as technical data covering systems and networks for the CAIU and its member districts.

  9. Create and maintain a documentation library for processes, policies, evidence control, as well as technical data covering systems and networks for the CAIU and its member districts.

  10. Works with end users and CAIU member districts to communicate and train on best IT security measures.

  11. Deliver security awareness training, support phishing awareness activities, conduct data/malware analysis.

  12. Maintain proficiency in cybersecurity trends and issues. Participate in continuing education in cybersecurity with a focus on vulnerability and threat identification, mitigation, incident response, and security assessment/penetration testing.

  13. Maintain confidentiality regarding sensitive incidents and information being processed, stored, or accessed by the network.

  14. Provides support for the implementation of projects that are in support of the CAIU security goals.

  15. Attend CAIU technology meetings as assigned and other team or CAIU meetings as requested.

  16. Assume any other responsibilities as assigned by Supervisor/Director of Technology or his/her designee.

  17. Assume any other responsibilities as assigned by the Executive Director or his/her designee.

Requirements

  1. A two-year college degree or completion of a specialized course of study at a business or trade school

  2. IT certifications or IT security certifications preferred.

  3. Three years of similar or related experience, including preparatory experience.

  4. Knowledge of Windows server environment, Active Directory and Group Policy Management

  5. Working knowledge of VMWare or virtualization technologies

  6. Experience using enterprise firewall experience

  7. Strong knowledge of security frameworks, CIS controls

  8. Strong knowledge of software, hardware, and networking protocols

  9. Ability to work with technical and nontechnical staff.

  10. Knowledge of implementing industry best practices for security, storage, and disaster recovery protocols

  11. Experience in delivering training to large groups of people.

  12. Excellent communication skills

  13. Must demonstrate leadership abilities.

Benefits & conditions

Salary: $66,320.00 - $82,900.00 (depending on experience)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · World Congress 2025

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all