Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
UO
University of Massachusetts Amherst
Senior Information Security Analyst
Career Insights for Cyber Security Analyst
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Massachusetts data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Analyst works on monitoring, controlling, and maintaining systems that protect the security of large databases, including databases with customer information and patient files. Analyzes the examination of client computer systems, identification of weak points in security, development and implementation of new systems, and monitoring and response to security issues.
$120,247 / year median in Massachusetts
-2% projected decline
Job Description
Title:
Senior Information Security Analyst Executive Area:
Information Technologies College/School/MBU:
Information Technology Department:
IT Information Security Work Location:
Amherst Schedule:
Full Time Work Arrangement:
Hybrid Job Summary The Senior Information Security Analyst delivers advanced technical and strategic leadership for the University's hybrid information security program. The role oversees enterprise security operations—including vulnerability management, threat detection, incident response, and digital forensics—across on premises and cloud environments. The analyst leads secure architecture design for major technology projects, conducts complex security audits and risk assessments, and implements technical safeguards to protect institutional systems. They research emerging security technologies, advise leadership on solution strategy, and collaborate with stakeholders to manage risk, ensure compliance, and support the ongoing maturity of security policies, training, and metrics. Essential Functions Provides advanced technical leadership for enterprise security operations across hybrid on premises and cloud environments. Directs end to end vulnerability lifecycle management, coordinates complex incident response and digital forensics, and oversees continuous threat detection, containment, and remediation using both traditional security platforms and cloud native security services (e.g., AWS Security Hub). Drives the architecture, automation, and optimization of security operations to ensure resilient, scalable, and intelligence driven protection aligned with institutional risk and compliance requirements. Conducts advanced security audits and enterprise risk assessments across hybrid on premises and cloud environments. Designs and implements technical safeguards to protect university systems, leveraging both traditional security technologies and cloud native security controls. Provides expert level support for security tools and frameworks, performs deep dive analysis of intrusion artifacts and malware, and reconstructs attack timelines to identify indicators of compromise and strengthen detection and response capabilities. Leads secure architecture design for major security and technology projects by evaluating, selecting, and engineering security solutions across hybrid on premises and cloud environments. Ensures project designs incorporate appropriate security controls, architecture principles, and governance requirements, and provides expert direction on how security technologies should be implemented and integrated throughout the project lifecycle. Conducts deep technical research and analysis of emerging security capabilities—both traditional and cloud‑native—to inform technology strategy and solution design. Advises senior leadership and project teams on optimal approaches for implementing, integrating, and operationalizing security solutions to strengthen the institution's overall security posture. Manages complex system and information security incidents across on premises and cloud environments, including coordinating digital forensics investigations, analyzing cloud native logs and telemetry, and leading containment, eradication, and notification activities. Leverages both traditional security tools and cloud native capabilities to investigate threats and ensure rapid, effective response. Work with internal and external stakeholders on strategic security initiatives. Collaborates with campus business units to manage information security risks and meet relevant compliance requirements, including conducting risk assessments, analyzing security threats, and advising on risk mitigation strategies aligned with institutional goals. Develops and recommend updates to policies, standards, procedures, solutions and governance frameworks to address information security, compliance and privacy risks. Contributes to documentation, training, and metrics gathering in support of the information security program. Other Functions Performs other duties as assigned. Minimum Qualifications Bachelor's Degree with seven (7) years' relevant experience- or•associate's degree with nine (9) years' relevant experience•or•high school diploma with 11 years' relevant experience.