Information Security Analyst II

Posted 4 Days Ago
Be an Early Applicant
CCAHAU Main Campus, Hisar Police Line Area, Hisar, Haryana, IND
In-Office
Mid level
Edtech • Information Technology • Professional Services
The Role
Administer and maintain IAM and security controls; investigate and escalate security incidents; perform access certifications and entitlement audits; configure DLP/encryption and monitor SIEM/EDR/IDS telemetry; manage user provisioning workflows; document controls for compliance (FERPA, HIPAA, PCI-DSS); partner with IT and academic units to integrate security best practices and lead security improvement projects.
Summary Generated by Built In

Job Summary

The Information Security Analyst II supports and strengthens the university’s information security program by implementing, monitoring, and improving controls that protect institutional data, systems, and infrastructure. This role administers security configurations, investigates threats and incidents, conducts risk-based access reviews, and ensures alignment with applicable regulatory requirements and security standards. The analyst collaborates across IT and academic units to integrate security best practices into daily operations, communicates security requirements to technical and non-technical audiences, and supports ongoing security awareness and continuous improvement.
FGCU is building a culture of curiosity, commitment and collaboration. We value employees who successfully work with others and drive positive change through critical thinking and decisive action. If you thrive in an environment of innovation, accountability and mutual respect, you will find a good home here.

Job Description

Typical duties include but are not limited to:

  • Administers and maintains identity and access management (IAM) controls, including roles, permission sets, query and report access, component interfaces, and automated process groups, in alignment with least-privilege principles.
  • Designs and maintains security items such as roles, permission lists, query and report access, component interfaces, and batch process groups.
  • Detects, investigates, and resolves security events, policy violations, and anomalous activity; documents findings and escalates incidents in accordance with the university’s incident response procedures.
  • Identifies, reports, and resolves security violations.
  • Manages user provisioning and de-provisioning workflows, evaluates access requests against established role definitions, and troubleshoots authentication and authorization issues across enterprise platforms.
  • Administers security aspects for users, identifies appropriate security accesses, and troubleshoots security and access issues.
  • Partners with IT and academic units to assess security risks, drive process improvements, and ensure that security controls are effectively integrated into operational workflows and project delivery.
  • Collaborates with users to maintain and improve information security processes and procedures.
  • Maintains accurate security documentation, including asset records, acceptable use guidance, network security standards, and evidence artifacts required for audit and compliance purposes.
  • Maintains records, forms, and documents the proper use of the network.
  • Tracks and manages security-related work requests, incidents, and projects using the IT service management (ITSM) platform, ensuring timely resolution and accurate reporting.
  • Completes tracking in the work order system.
  • Conducts periodic access certification reviews and user entitlement audits to verify compliance with established security standards, FERPA, HIPAA, PCI-DSS, and other applicable regulatory requirements.
  • Conducts access review audits to ensure compliance with established security standards and policy guidelines.
  • Designs and implements data protection controls, including encryption, data loss prevention (DLP) configurations, and secure data handling procedures to reduce exposure from unauthorized access or exfiltration.
  • Develops new techniques and procedures to protect data from unauthorized users.
  • Continuously evaluates security processes and tool effectiveness; develops recommendations for control improvements and promotes adoption of current security frameworks and industry best practices.
  • Reviews processes, evaluates results, recommends new processes, and promotes best practices.
  • Identifies capability gaps in the university’s security posture, develops business cases for security investments, and leads or contributes to implementation projects that advance institutional security objectives.
  • Identifies the need for functionalities that enhance the organization's security posture and manages projects to implement these enhancements.

Other Duties:

  • Performs other job-related duties as assigned.

Additional Job Description

Required Qualifications:

  • This position requires either seven years of directly related full-time experience or, as an alternative, a Bachelor’s degree from an accredited institution in computer science, business administration, or related field and three years of full-time experience directly related to the job functions.
  • Professional full-time experience working with wide and local area networks, business applications development and support, systems security, or related experience.
  • Any appropriate combination of relevant education, experience, and/or certifications may be considered.

Preferred Qualifications:

  • Three years full time professional experience working with wide and local area networks or business applications development and support.
  • Security specific certifications such as GIAC, CEH, or CISSP.
  • Experience working with CIS Critical Controls or NIST 800 series documents.
  • Experience working in Higher Education.

Knowledge, Skills & Abilities:

  • Proven ability to think strategically and approach challenges with creativity.
  • Demonstrated track record of reliability, meeting goals, and holding oneself accountable.
  • Strong interpersonal skills and experience working effectively across teams.
  • Knowledge of security strategies (operating system hardening, vulnerability management, change management, application testing/patching, security tools, and software products).Knowledge of modern security domains including endpoint and OS hardening, vulnerability and patch management, identity and access management, cloud security, application security testing, and security tooling (SIEM, EDR, DLP, IDS/IPS).
  • Knowledge of network/system security access, management, and testing.Knowledge of network and system security principles, including segmentation, access control architectures, zero trust concepts, and security testing methodologies.
  • Knowledge of applicable security policies, best practices, and principles.
  • Knowledge of standard computer logging processes and understanding of the types of events logged.
  • Skill in identifying complex problems and reviewing related information to develop and evaluate options and implement solutions.
  • Excellent interpersonal skills.
  • Advanced verbal and written communication skills and the ability to present effectively to small and large groups.
  • Ability to take initiative to plan, organize, coordinate and perform work in various situations when numerous and competing demands are involved.
  • Ability to collaborate and work effectively within the community and willing to contribute to a team effort.
  • Ability to work independently and follow through on assignments.
  • Ability to translate security concepts to all areas of the business.Ability to communicate security risk and technical concepts clearly to both technical and non-technical audiences, including faculty, senior leadership, and end users.
  • Ability to interpret log data and investigate potential issues.Ability to analyze SIEM alerts, log data, and security telemetry to identify indicators of compromise, anomalous behavior, or emerging threats, and triage findings for investigation or escalation.
  • Ability to prepare network/system diagrams and advise on secure implementations of systems and services.Ability to develop network and system security architecture diagrams and provide guidance on secure design principles, configuration baselines, and hardening standards for infrastructure and cloud environments.
  • Ability to discern between security breaches and more innocent technical bugs.Ability to apply sound analytical judgment to differentiate genuine security incidents from false positives, technical misconfigurations, or benign anomalies, reducing alert fatigue and improving response quality.

Institutional Values & Behavioral Expectation:

In this role, the successful candidate will be expected to

  • Seek out new approaches to improve outcomes; remain open for feedback and new ideas.
  • Lead with integrity; consistently produce high-quality work; persevere to overcome obstacles to meet deadlines and achieve deliverables.
  • Share information and insights thoughtfully; build partnerships across departments; communicate respectfully; support colleagues to achieve common goals.

Pay Grade 18

FGCU is a State University System of Florida member and an Equal Opportunity and Equal Access employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, disability, or protected veteran status.

Skills Required

  • Seven years of directly related full-time experience OR Bachelor's degree and three years of related experience
  • Professional experience with wide and local area networks, business applications development/support, or systems security
  • Experience administering identity and access management (IAM), user provisioning and de-provisioning workflows
  • Knowledge and hands-on experience with SIEM, EDR, DLP, IDS/IPS, and related security tooling
  • Experience with vulnerability management, patch management, OS hardening, encryption, and data protection controls
  • Experience conducting access reviews, user entitlement audits, and maintaining security documentation for compliance
  • Ability to analyze SIEM alerts, log data, and security telemetry to triage and investigate incidents
  • Experience using an IT service management (ITSM) platform to track incidents, work requests, and projects
  • Security certifications (GIAC, CEH, CISSP)
  • Experience working with CIS Critical Controls or NIST 800 series
  • Experience working in Higher Education
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Fort Myers, FL
5,000 Employees
Year Founded: 1991

What We Do

Florida Gulf Coast University is a public university with a division of Administrative Services and Finance responsible for fiscal and business operations, including IT and campus maintenance.

Similar Jobs

TP Logo TP

Information Security Analyst II

Artificial Intelligence • Digital Media • Information Technology • Software
In-Office
Gurugram, Haryana, IND
201018 Employees

Coursera + Udemy  Logo Coursera + Udemy

Senior Software Engineer

Artificial Intelligence • Consumer Web • Edtech • Enterprise Web • HR Tech • Social Impact • Generative AI
Remote or Hybrid
India
1500 Employees

ZS Logo ZS

Consultant

Artificial Intelligence • Healthtech • Professional Services • Analytics • Consulting
Hybrid
4 Locations
15000 Employees
Remote or Hybrid
2 Locations
289097 Employees

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account