A Cyber Security Analyst works on monitoring, controlling, and maintaining systems that protect the security of large databases, including databases with customer information and patient files. Analyzes the examination of client computer systems, identification of weak points in security, development and implementation of new systems, and monitoring and response to security issues.
Full time, 40 hours per week. Must be availability to work nights, weekends, and off hours as needed. (The standard work week is Monday through Friday, 8:00 AM to 5:00 PM. Exempt professionals, are expected to maintain a flexible schedule to ensure all responsibilities and collegiate needs are met, including occasional work outside of core business hours.) Summary The Endpoint Security Analyst is responsible for the security,integrity, and operational health of the institution's end-user computing environment. This includes the engineering and management of security controls for workstations (PC/Mac), mobile devices, and networked peripherals such as printers. The position works closely with the IT Support team to uphold academic productivity while maintaining a robust defense against evolving threats. Reports to Assistant Director of Network and Security.
Essential Duties and Responsibilities Endpoint Protection Management:
Administer and optimize Endpoint Detection and Response (EDR) and Next-Generation Antivirus (NGAV) solutions across all college-owned end-user devices.
Device Lifecycle Security:
Implement and maintain secure configuration baselines(e.g.,CIS Benchmarks) for workstations and mobile devices using unified endpoint management(UEM) tools like Jamf, SCCM, and WSUS.
Workstation Management:
Maintain standardized configurations for classroom and administrative work stations to ensure a consistent experience and prevent unauthorized persistent changes to software and settings.
Vulnerability & Patch Management:
Identify,prioritize,and automate the remediation of vulnerabilities on end-user hardware, including third-party application patching and firmware updates for networked printers, end-user workstations (Mac/PC), mobile devices, and other end user devices.
Secure Process Best Practices:
Implement and advocate for secure workflows, such a Follow-Me or authenticated release printing, to prevent sensitive information exposure,reduce waste, and create efficiencies.
General Print Administration & Support:
Provide high-level support for the college's networked printing environment, ensuring high availability of services while managing driver deployment and printer configuration via centralized management tools.
Print Infrastructure Security:
Secure the printing environment by hardening device firmware, disabling insecure protocols(e.g.,Telnet,FTP),and ensuring all print traffic is encrypted across the campus network.
Incident Triage:
Serve as the primary security escalation point for the IT Support desk,investigating alerts from endpoint sensors and performing initial forensic analysis of potentially compromised devices.
Security Automation:
Develop scripts (PowerShell, Bash,or Python) to automate routine security audits and the deployment of security agents acros the enterprise. Complianceℜporting: Monitor and report on end point compliance with federal and state regulations(e.g.,FERPA, GLBA )and institutional security policies. Maintains and updates an operational manual. Performs other duties/special projects as assigned.