|
Position Title: Information Security Analyst
Job Description: POSITION TITLE: Information Security Analyst
STATUS:Full time
DEPARTMENT: Information Security Office
DIVISION: Information Technology
CLASSIFICATION: Exempt
UNION: Non-Union
REPORTS TO: Senior Director Information Security
PLACEMENT: Professional staff, S11
HIRING RANGE: $70,689 - 79,526
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
The student population at the college is diverse in ethnicity, gender, language, age and background. Joliet Junior College is an AA/EO employer and strongly encourages applications from candidates who would enhance the diversity of its staff.
POSITION SUMMARY The Information Security Analyst is responsible for protecting the college's information systems and data by monitoring, analyzing, and responding to security incidents and threats. This role supports compliance with regulatory requirements (e.g., CIRCIA, HIPAA, GLBA), enhances operational efficiency, and contributes to the continual improvement of security processes and documentation. The analyst will also detect opportunities to develop and maintain security documentation, including knowledgebase articles, and manage security-related tickets from stakeholders. ESSENTIAL JOB DUTIES AND KEY RESPONSIBILITIES 1.Incident Management: Monitor, triage, and respond to cybersecurity threats and incidents across network, application, identity, and cloud layers. 2.Vulnerability Management: Participate in vulnerability assessments and penetration testing to identify and remediate security weaknesses. 3.Security Operations: Manage and maintain security tools (e.g., SIEM, IDS/IPS, vulnerability scanners), ensuring daily monitoring and compliance. 4.Facilitate the integration of SOC/Managed Security Services activities with the broader Information Security team, ensuring consistent application of ITIL processes such as Incident Management, Problem Management, and Event Management. 5.Identity Management: Support Office 365 email account management tasks, including user permissions, credential hand-offs, mailbox access provisioning, and coordination with identity and access management processes." 6.Compliance & Risk Management: Assist in legal and regulatory compliance efforts; conduct risk assessments and support audit activities. 7.Service Request Management: Handle, triage, and manage tier 2 level and up security-related tickets and requests from stakeholders, ensuring timely resolution and escalation as needed. 8.Knowledge Management: Detect opportunities to develop, improve, and maintain security documentation, including knowledgebase articles and process guides. 9.Process Improvement: Assist with the development and continual improvement of security-related processes, automation initiatives, and reporting tools. 10.Cloud Support: Support secure cloud infrastructure through systems auditing and account lifecycle management. 11.Collaboration & Training: Collaborate with IT and academic departments to ensure secure deployment of new technologies; provide security awareness training to staff and students. 12.Reporting: Prepare and present reports on security incidents, vulnerabilities, compliance status, and process improvements to leadership. 13.Professional Development: Stay current with emerging security threats, trends, best practices, and ITIL service management principles. 14.Perform related duties as assigned. MINIMUM QUALIFICATIONS 1.Bachelor's degree in Computer Science or a closely related field, OR an Associate's degree combined with 2-4 years of experience in information security or IT operations. 2.Ability to establish and maintain cooperative and effective working relationships with other members of the college and community, displaying cultural competence as well as emotional intelligence. 3.Demonstrated commitment to the college's core values of respect and inclusion, sustainability, integrity, collaboration, humor and well-being, innovation and quality. Bachelor's degree in information technology, Cybersecurity, Computer Science, or related field.. 4. Understanding of cybersecurity principles, tools, and compliance frameworks. 5.Experience with Microsoft Azure, Active Directory, and security monitoring tools. 6.Experience in information security and/or IT risk management with a focus on security performance and reliability 7.Familiarity multiple risk management concepts, frameworks, and standards (CSC, NIST, ISO, COBIT) 8.Excellent analytical, communication, documentation, and collaboration skills. 9.Possesses relevant industry certifications such as CEH, CISA, CCET, Network+, Security+, CySa+, or Microsoft SC-900, demonstrating foundational and specialized knowledge in cybersecurity. 10. Demonstrated understanding of the NIST Cybersecurity framework and auditing security controls identified in NIST800-171 and NIST SP800-53A. 11.Knowledgeable on ITIL process management. PREFERRED QUALIFICATIONS 1.Experience in higher education or public sector environments. 2.English and Spanish verbal and written communication proficiency. 3.Demonstrated multicultural competence. PHYSICAL DEMANDS 1.Normal office physical demands. 2.Ability to travel between campus locations and to and from community events. 3.Ability to travel in state and nationally. WORKING CONDITIONS 1. Duties are performed indoors in the usual office and/or outdoor environment. BENEFITS
Click on the link for information about JJC's Benefits: Non-Union Support Staff, Professional, Administrative Full Time/Part Time: Full time
Union (If Applicable): Scheduled Hours: 40
|