Information Security Analyst 2, Digital Technology Solutions
University of Cincinnati
Cincinnati, OH
Job posting number: #7328781
Posted: April 2, 2026
Application Deadline: Open Until Filled
Job Description
Job OverviewThis position will primarily work in the area of information security operations. The ideal candidate will have education and/or experience in the field of information security operations. Responsibilities may include, but are not limited to: endpoint security, full-disk encryption, multi-factor authentication, security incident and event management (SIEM), SSL and client certificate management, vulnerability management, privileged access management, password management, system/application administration for security related technologies, as well as departmental customer service via enterprise incident ticketing system and departmental mailboxes. CISSP, CISM, GISP, GSEC, SEC+ or similar information security certification(s) are preferred.
Essential Functions
Clearly convey complex security information to both technical and non-technical stakeholders.
Participate in developing technical documentation (designs, specifications, processes, workflows) and communications.
Mentor and delegate work assignments to student workers.
Participate in multiple low and moderate risk projects.
Work with a team to advance project goals and provide technical assistance.
Document individual progress on assigned deliverables.
Gather metrics fr area of responsibility.Carry out procedures to ensure that all systems, products, and services meet organization security standards.
Research information security trends to understand the latest vulnerabilities and threats.
Conduct risk and vulnerability assessments of information systems to identity vulnerabilities, risk, and protection needs.
Assist with providing artifacts to Governance, Risk & Compliance in relation to internal & external audits.
With limited support, work with business units to achieve security objectives. Identify, report, and resolve security risks and violations.
Develop subject matter expertise on security applications and services in the area of responsibility.
With limited support, conduct information security reviews; determine and document risk and impact on the university; provide baseline remediation recommendations.
Assist with cyber investigations through forensic fact gathering with a focus on e-discovery.
Analyze high volumes of logs, network data, and other attack artifacts in support of incident investigations.
Develop content fo and present information security training and awareness programs.
Develop familirity with data security laws and regulations applicable to higher education.
Participate in troubleshooting processes during and outside of normal business hours and participate in change management.
Mentor non-security teams regarding risk management, information security controls, incident analysis, incident response, monitoring, and other operational tasks (tools, techniques, procedures) in support of technologies managed by the Office of Information Security (OIS).
Serve as seasoned and proficient information security professional.
Perform related duties based on departmental need.
This job description can be changed at any time.
Required Education
Bachelor's Degree in in Computer Science, Information Technology, Computer Engineering, or related field.
Four (4) years of relevant work experience and/or other specialized training can be used in lieu of education requirement.
Required Experience
Experience in security tool administration.
Basic scripting skills.
Basic project management skills.
Understanding of system administration.
Basic of network architecture.
Moderate understanding of risk and vulnerability management.
Basic awareness of incident response.
Experience with industry standard security and compliance frameworks.
Additional Qualifications Considered
Technical security certifications such as Security+, GSEC, or Subject Matter Expert in CRISC/GCIH/GMON/GCFE/Splunk Admin


