Information Security Analyst - United States - Wesleyan University

    Wesleyan University
    Wesleyan University United States

    7 hours ago

    $92,700 - $120,525 (USD) per year
    Description

    Located in Middletown, Connecticut, Wesleyan University is one of the nation's premier liberal arts colleges with 3,000 undergraduates and 200 graduates. Established in 1831, Wesleyan is known for its rich, open, and interdisciplinary curriculum.
    Wesleyan University takes the security and privacy of information and resources seriously. Wesleyan University's Information Security program safeguards the confidentiality, integrity, and availability of the institution's information resources.
    Reporting to the Chief Information Security Officer, the Information Security Analyst helps protect Wesleyan University's data, systems, and community from evolving cyber threats. This role pairs monitoring and incident response with risk reduction across a distributed, cloud-forward environment (Workday, AWS, Salesforce, Slate, Stellic, and other SaaS platforms).
    The analyst works closely with Networking & Infrastructure, Enterprise Systems, Academic Technology, Unix Systems, and IT Service Delivery while improving our security posture in ways that support teaching, research, and business operations.
    Responsibilities include:
    Security Monitoring & Incident Response

    • Monitor, operate and tune Microsoft Defender console and related security tooling.
    • Develop and maintain detections, dashboards, alerts, and escalation procedures.
    • Serve as first or second level responder for security incidents in ServiceNow.
    • Coordinate containment, eradication, recovery, and post-incident reviews.
    • Maintain incident response playbooks.
    • Participate in an on-call rotation.
    Vulnerability & Configuration Management
    • Operate the Nessus Professional vulnerability management system and prioritize findings by exploitability and asset risk.
    • Partner with system owners to remediate vulnerabilities and validate secure configuration baselines for servers, endpoints, and cloud services.
    Identity, Access, and Data Protection
    • Support identity and access management controls including MFA (Duo), SSO/SAML/OAuth, privileged access.
    • Assist with access reviews, role hygiene and identity governance activities.
    • Implement data protection controls such as encryption, secure file-sharing aligned with data classification standards.
    Governance, Risk & Compliance
    • Conduct security risk assessments for new systems and vendors.
    • Review security terms and attestations, including SOC2 and HECVAT.
    • Support compliance obligations including FERPA, GLBA Safeguards Rule, PCI DSS, HIPAA, DMCA.
    • Assist with audit preparation and evidence collection.
    Security Awareness & Enablement
    • Deliver targeted training; publish advisories and publish guidance in ITS knowledge base.
    • Forward Data Privacy Officer requests to relevant business offices.
    • Administer security platforms including Duo, LastPass, and Mimecast.
    • Maintain Nmap SSL certificate scanning process and communicate findings to system owners.
    • Perform periodic user access reviews in systems such as Workday.
    Threat-Cloud and Third-Party Risk
    • Track higher-ed-relevant threat actor tactics and translate intelligence into detections, controls, and tabletop exercises.
    • Partner with service owners to show and remediate cloud and SaaS misconfigurations.
    • Support security reviews of new SaaS platforms and research tools; recommending compensating controls when vendors security capabilities fall short.
    Metrics & Continuous Improvement.
    • Produce metrics and reports that inform security prioritization and resource allocation.
    • Maintain right, auditable documentation, including asset inventories, data flows, and exception registers.
    • Propose practical high impact improvements such as policy, control, or automation that reduce risk quickly while minimizing disruptions to academic and business operations.
    This position is a hybrid position with on-campus and remote work schedule options.
    Remote work is only considered for residents of MA, VT, NH, ME, CT, RI, or NY. (Relocation assistance to CT is available for those who qualify).
    Minimum Qualifications
    • Bachelor's degree in information security, computer science, information systems, or related field and a minimum of two years of hands-on experience in at least two of the following: incident response, SOC operations, vulnerability management, endpoint security, cloud security, IAM or an or equivalent combination of education, training and relevant experience.
    • Familiarity with SIEM, EDR, email security gateways, vulnerability scanners, and basic network security concepts (firewalls, subnets, DNS, etc.).
    • Working knowledge of one or more of the following: Windows, macOS, Linux
    • Working knowledge of common enterprise/cloud services (e.g., AWS, Azure AD/Entra, Google Workspace, O365, SAML/OAuth).
    • Ability to read and interpret logs; comfort writing basic queries and simple scripts (PowerShell or Python) to automate routine tasks.
    • Understanding of FERPA and GLBA Safeguards; awareness of PCI DSS fundamentals.
    • Effective communicator with the ability to translate technical security requirements into language that helps non-technical users make informed decisions.
    • Proven ability to move security findings from identification to effective remediation.
    • Ability to work in a decentralized environment with diverse stakeholders.
    • Willingness to support incident response outside normal business hours when required.
    Preferred Qualifications
    • One or more of the following certifications (or in progress): Security+, CySA+, GSEC, GCIH, GCIA, GCED, GMON, SSCP, CISSP, or equivalent.
    • Experience with AWS security services and identity governance/access reviews.
    • Experience in a university or research-heavy environment, including support for labs or HPC and data use agreements.
    • Detection engineering (use-case development, sigma/KQL, threat hunting).
    • Forensics fundamentals (endpoint triage, memory/disk basics) and evidence handling.
    • Secure configuration management (CIS benchmarks), vulnerability prioritization (KEV/CVSS context), and patch orchestration.
    • Vendor/security assessment of SaaS with practical compensating controls when "perfect" is not available.
    Position is open until filled. For full consideration please apply by March 15, 2026 when first review of applications will begin.
    Compensation: $92,700-$120,525
    Work Location: Hybrid
    All offers to external applicants are contingent on the candidate's completion of a pre-employment background check screening to the satisfaction of Wesleyan University.
    Wesleyan University, located in Middletown, Connecticut, does not discriminate on the basis of race, color, religious creed, age, gender, gender identity or expression, national origin, marital status, ancestry, present or past history of mental disorder, learning disability or physical disability, political belief, veteran status, sexual orientation, genetic information or non-position-related criminal record. We welcome applications from women and historically underrepresented minority groups. Inquiries regarding Title IX, Section 504 or any other non-discrimination policies should be directed to Vice President for Equity and Inclusion, Title IX and ADA/504 Coordinator.
    Wesleyan University complies with the Clery Act and maintains records of campus crime statistics and security policies. Copies of Wesleyan University's Clery Act Report are available on request and online at
    Experience is taken into consideration in the determination of salary offers. For more information visit
    Wesleyan offers a broad range of employee benefits and development opportunities, including comprehensive group insurance plans, wellness programs and incentives, generous paid time off and retirement plans, flexible work schedules, employee and dependent tuition programs for those who qualify.

  • Work in company Remote job

    Security Analyst

    Only for registered members

    The Security Analyst plays a crucial role in safeguarding sensitive data, maintaining data privacy compliance, and preventing cyber-attacks. · 3 to 5 years of experience. · Bachelor's degree in computer science, cybersecurity, information security, or a related field. · ...

    United States

    1 month ago

  • Work in company

    IT Security Analyst

    Only for registered members

    If you're passionate about building a better future for individuals, communities, and our country—and you're committed to working hard to play your part in building that future—consider WGU as the next step in your career. · Driven by a mission to expand access to higher educatio ...

    United States $75,000 - $135,000 (USD) per year

    3 days ago

  • Work in company

    Security Operations Analyst

    Only for registered members

    Description · Security Operations Analyst · This position requires an active Public Trust clearance or the ability to obtain a   Public Trust clearance to be considered.  · The Security Operations Analyst provides monitoring, analysis, and response support within the Security Ope ...

    United States $65,000 - $125,000 (USD) per year

    3 days ago

  • Work in company

    Information Security Analyst

    Only for registered members

    · Job title: Information Security Analyst · Corporate Title: Analyst · Department: Technology · Location: Jacksonville · The pay range for this position at commencement of employment is expected to be between $72,000 and $85,000 annually. · Company overview · Nomura is a global ...

    United States $75,000 - $135,000 (USD) per year

    2 weeks ago

  • Work in company

    Junior Security Analyst

    Only for registered members

    · Description · Junior Security Analyst · The Company: Varonis (Nasdaq: VRNS) is a leader in data security, fighting a different battle than conventional cybersecurity companies. Our cloud-native Data Security Platform continuously discovers and classifies critical data, removes ...

    United States

    6 days ago

  • Work in company

    Information Security Analyst

    Only for registered members

    · Job Req ID: 28218 · About Supermicro: · Supermicro is a Top Tier provider of advanced server, storage, and networking solutions for Data Center, Cloud Computing, Enterprise IT, Hadoop/ Big Data, Hyperscale, HPC and IoT/Embedded customers worldwide. We are the #5 fastest growin ...

    United States $75,000 - $135,000 (USD) per year

    4 days ago

  • Work in company

    Associate Security Analyst

    Only for registered members

    Associate Security Analyst - Managed Detection and Response  · Our mission at Bitdefender is to reduce risk to customers' business to allow them to achieve their objectives. We are focused on delivering real security value for an affordable price – no snake oil. To help in this m ...

    United States

    1 week ago

  • Work in company Remote job

    Information Security Analyst

    Only for registered members

    This is a W2 Position - Contract - Remote (Montpelier, Vermont) VT - State Government Project Information Security Analyst role. · ...

    United States

    1 month ago

  • Work in company

    SAP Security Analyst

    Only for registered members

    · Job ID: · Exempt · Oldcastle Infrastructure, a CRH company, is the leading provider of utility infrastructure solutions for the water, energy, and communications markets throughout North America. We're more than just a manufacturer of precast concrete, polymer concrete, or pl ...

    United States $100,000 - $120,000 (USD) per year

    1 week ago

  • Work in company

    Information Security Analyst

    Only for registered members

    The Information Security Analyst monitors and analyzes network activity to identify anomalies, assess potential security risks, and protect company systems and data. · Monitor network activity and system logs to identify abnormal or suspicious behavior. · ...

    United States

    1 month ago

  • Work in company

    Information Security Analyst

    Only for registered members

    · Requisition Number: · Job Description · Cintas is currently looking for an Information Security GRC Analyst II for the Compliance team within the IT Security GRC (Governance, Risk, Compliance) organization.  The IT GRC Analyst II is responsible for:   supporting Cintas IT Gov ...

    United States $75,000 - $135,000 (USD) per year

    1 day ago

  • Work in company

    Senior Security Analyst

    Only for registered members

    Description · At Icertis, we power the contract intelligence platform that transforms how federal agencies and government organizations manage their most critical missions — from defense and national security to public safety and aerospace. We go beyond traditional contract syste ...

    United States $115,000 - $180,000 (USD) per year

    4 days ago

  • Work in company

    Senior IT Security Analyst

    Only for registered members

    The Sr. Information Security Analyst is responsible for assessing information risk and facilitates remediation of identified vulnerabilities for IT security and IT risk across the enterprise. Assesses information risk and facilitates remediation of identified vulnerabilities with ...

    United States $95,000 - $155,000 (USD) per year

    1 week ago

  • Work in company

    Security Compliance Analyst

    Only for registered members

    · Security Compliance Analyst · You will get the opportunity to be on the cutting edge of Cloud Security and Compliance. Sumo Logic is looking for a Security and Compliance Analyst who will be responsible for supporting existing compliance initiatives and continued audits for a ...

    United States

    1 week ago

  • Work in company Remote job

    Information Security Analyst

    Only for registered members

    This Information Security Analyst will have 5 to 8 years of experience in information security, cyber risk management, or IT security operations. The role requires system security analysis, vulnerability management, or incident response within a Federal Information Systems Securi ...

    United States

    2 weeks ago

  • Work in company

    IT Security Compliance Analyst

    Only for registered members

    · About Boomi and What Makes Us Special · Are you ready to work at a fast-growing company where you can make a difference? Boomi aims to make the world a better place by connecting everyone to everything, anywhere. Our award-winning, intelligent integration and automation platfo ...

    United States of America $70,000 - $125,000 (USD) per year

    1 day ago

  • Work in company

    Associate IT Security Analyst

    Only for registered members

    +Job summary+Join a Fortune 1000 company that respects hard work, honors diversity and invests in our employees as we focus on creating the world of tomorrow, today. We are the modern workforce. · +Qualifications+Preferred Bachelor's degree in relevant field or Associate's degree ...

    United States

    1 month ago

  • Work in company

    Cyber Security Analyst

    Only for registered members

    · At BWX Technologies, Inc. (NYSE: BWXT), we are People Strong, Innovation Driven. A U.S.-based company, BWXT is a Fortune 1000 and Defense News Top 100 manufacturing and engineering innovator that provides safe and effective nuclear solutions for global security, clean energy, ...

    United States $75,000 - $135,000 (USD) per year

    6 days ago

  • Work in company

    Security Operations Analyst

    Only for registered members

    · Security Operations Analyst  · Remote, United States (CT, MT, or PT timezones)  · About Blumira and Our Culture · Blumira is the security operations platform built for growing teams and partners supporting them, integrating comprehensive visibility, tools, and expert guidance ...

    United States $65,000 - $125,000 (USD) per year

    1 week ago

  • Work in company

    Manager, IT Security Analyst

    Only for registered members

    · Are you ready to join a team committed to making a meaningful impact on cancer treatment through the discovery and development of precision medicines? At Kura Oncology, you have an opportunity to be a part of something bigger, with a lasting impact that you can be proud of. · ...

    United States

    16 hours ago

  • Work in company

    Security Assistance Data Analyst

    Only for registered members

    The Security Assistance Data Analyst will serve as core member of CTP's embedded team within the U.S. Department of State's Bureau of Political-Military Affairs (PM/SA).Medical, Dental and Vision insurance, · Short Term and Long-Term Disability insurance, · Life Insurance,Bachelo ...

    United States

    1 month ago

Jobs
>
Information security analyst