Avatar for University at Albany
University at Albany
Actively Hiring
The University at Albany provides higher education with a focus on academic excellence and research

Information Security Analyst/Engineer

  • $90k – $95k
  • |
    Albany
  • |3 years of exp
  • |Full Time
Posted: 1 week ago• Recruiter recently active
Job Location
Albany
Remote Work Policy

In office - WFH flexibility

Visa Sponsorship

Not Available

RelocationAllowed
Skills
Python
Traffic Analysis
Segmentation
PowerShell
CloudFlare
Palo Alto
Microsoft Sentinel
Microsoft Defender
Next-Generation Firewalls
Tenable
Intrusion Detection System/intrusion Prevention System (IDS/IPS)
Microsoft Defender Extended Detection and Response (XDR)

About the job

About University At Albany

The University at Albany is a Carnegie-classified Research 1 institution driven by academic excellence, pioneering research and scientific discovery, and service to community. UAlbany's world-class faculty experts and approximately 17,500 students are creating new knowledge in fields such as artificial intelligence, semiconductor engineering, atmospheric and environmental sciences, cybersecurity, public health, public administration and social welfare while deepening our understanding of our world through scholarship and creative activity in the social sciences and humanities. As one of the most diverse public research institutions in the nation, the University is a national leader in public engagement, educational equity and social mobility. For over 180 years, UAlbany has molded bright, curious and engaged students and launched them toward success.

Located in Albany, New York, New York State's capital, the University is convenient to Boston, New York City, and the Adirondacks.

Job Description

Join the University at Albany's Information Technology Services (ITS) as an Information Security Analyst/Engineer and help protect critical infrastructure, institutional data, and research assets in a fast-moving, research-intensive environment at a Carnegie R1 research institution.

We're looking for someone to join a small, senior team that operates with real ownership. You'll work directly with the Chief Information Security Officer (CISO) and partner with network, systems, and application teams. You'll handle modern incident response and network security on a stack that includes Microsoft Defender extended detection and response (XDR), Palo Alto and Cloudflare.

You'll investigate and respond to incidents end-to-end, build automation playbooks that make the next response faster, and manage firewall policy for an institution that takes security seriously. You'll also handle day-to-day triage and ticket work - but the expectation is that you're building systems that reduce that burden over time, not just clearing the queue.

This is an excellent opportunity if you want breadth - incident response (IR), network defense, automation, and engineering - without being siloed into one function.

Primary Responsibilities

  • Incident detection, response, and automation

  • Monitor and triage security alerts across endpoints, identity, and cloud workloads using tools such as Microsoft Defender and Sentinel.

  • Investigate and respond to incidents end-to-end (scope, contain, eradicate, recover); document actions and escalate as needed.

  • Build and improve incident response workflows, including cloud automation playbooks (security orchestration, automation, and response (SOAR) and scripts that reduce time-to-detect and time-to-respond.

  • Partner with network, systems, and application teams to contain threats, remediate root causes, and improve detections and preventive controls.

  • Network security (firewalls, visibility, and threat-driven monitoring)

  • Design, review, and maintain next-generation firewall policies and exceptions (Palo Alto) and web application protections (Cloudflare), including change control and documentation.

  • Analyze network telemetry for anomalies; build detections and workflows that correlate network, endpoint, identity, and cloud signals.

  • Vulnerability management (secondary/backup)

  • Run regular vulnerability scans using Tenable (and similar tools).

  • Automate vulnerability tracking and reporting.

  • Coordinate remediation with system owners and technical teams.

  • Risk and compliance (secondary/backup)

  • Support risk assessments, audits, and policy updates.

  • Promote security awareness and best practices across campus.

  • Engineering and integration (supporting IR and network security)

  • Develop and maintain scripts and automation workflows supporting incident response and network security.

  • Integrate security tools and data sources (firewall, cloud, endpoint detection and response (EDR)) to improve correlation and response automation.

  • Evaluate emerging capabilities to enhance detection, response, and network controls; prioritize solutions that can be operationalized and automated.

  • Other reasonable duties as assigned

Functional And Supervisory Relationships

  • Reports to: Chief Information Security Officer
  • May supervise employees as assigned

Job Requirements

  • Excellent communication skills and the ability to work effectively with infrastructure teams in a fast-paced environment while balancing security, availability, and operational needs.
  • Strong troubleshooting and organizational skills, with the ability to prioritize work and solve complex problems independently.
  • Applicants must demonstrate an ability to develop inclusive and equitable relationships within our diverse campus community.
  • Applicants must demonstrate an ability to support diversity, equity, access, inclusion, and belonging relative to their role.

Requirements

*Minimum Qualifications:*

  • Bachelor's degree from a college or university accredited by a U.S. Department of Education (DOE) or an internationally recognized accrediting organization.
  • At least 3 years of professional experience in modern incident response, including investigation, containment, remediation, and use of enterprise security tooling such as Microsoft Defender, Microsoft Sentinel, or comparable platforms.
  • At least 3 years of professional experience in network security, including hands-on work with technologies and practices such as next-generation firewalls, intrusion detection system/intrusion prevention system (IDS/IPS), segmentation, traffic analysis, or related controls.
  • Demonstrated experience collaborating with infrastructure, systems, or application teams to implement security controls, support remediation efforts, or improve operational processes in an enterprise environment.
  • Experience using scripting (such as Python or PowerShell), Artificial Intelligence, automation, or security workflows to improve detection, response, or efficiency.

Preferred Qualifications

  • Relevant security certifications (e.g., Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or GIAC Certified Detection Analyst (GCDA)).
  • Experience securing cloud and web application environments, including platforms and tools such as Microsoft Azure, Amazon Web Services (AWS), Google Cloud, Cloudflare, Burp Suite, or Open Worldwide Application Security Project (OWASP)-based practices.
  • Experience with enterprise detection and response platforms, such as SIEM, XDR, or AI-assisted security operations tools.
  • Experience working in higher education or similarly complex environments, including support for institutional AI use, risk management, or compliance initiatives.

Working Environment

  • Available for scheduled after-hours support, including occasional evenings, weekends, or holidays.
  • On-site in Albany Mondays, Wednesdays, and Fridays (and as needed). Telecommuting on Tuesdays and Thursdays may be available after a probationary period, with supervisor approval.

Additional Information

*Professional Rank and Salary Grade:* Senior Programmer/Analyst, SL4, $90,000-95,000

*Special Note:* Visa sponsorship is not available for this position. If you currently need sponsorship or will need it in the future to maintain employment authorization, you do not meet eligibility requirements. *Additionally, please note that UAlbany is not an E-Verify employer.*The Jeanne Clery Disclosure of Campus Security Policy and Campus Crime Statistics Act, or Clery Act, mandates that all Title IV institutions, without exception, prepare, publish and distribute an Annual Security Report. This report consists of two basic parts: disclosure of the University's crime statistics for the past three years; and disclosures regarding the University's current campus security policies. The University at Albany's Annual Security Report is available in portable document format [PDF] by clicking this link http://police.albany.edu/ASR.shtml

Pursuant to New York Labor Law

  • 194-a, the University will not seek, request, or rely upon an applicant's wage or salary history in determining whether to interview, hire, or establish compensation for an applicant. Applicants are not required to provide wage or salary history information as a condition of employment consideration. Salary history may only be verified in the limited circumstances permitted by law.

*THE UNIVERSITY AT ALBANY IS AN EO/AA/IRCA/ADA EMPLOYER**Please apply online* via https://albany.interviewexchange.com/jobofferdetails.jsp?JOBID=204078&CNTRNO=14&TSTMP=1790169986686

Copyright ©2025 Jobelephant.com Inc. All rights reserved.

Posted by the FREE value-added recruitment advertising agency je-944b213f233a4daaaaa9288085d15622

About the company

University at Albany company logo

University at Albany

Actively Hiring
The University at Albany provides higher education with a focus on academic excellence and research5000+ Employees
Company Location
Albany
Company Size
5000+
Learn more about University at Albany image

Funding

AMOUNT RAISED
$46K
FUNDED OVER
1 round
Round
S
$46612
Seed - Apr 2022