If you're passionate about building a better future for individuals, communities, and our country—and you're committed to working hard to play your part in building that future—consider WGU as the next step in your career.
Driven by a mission to expand access to higher education through online, competency-based degree programs, WGU is also committed to being a great place to work for a diverse workforce of student-focused professionals. The university has pioneered a new way to learn in the 21st century, one that has received praise from academic, industry, government, and media leaders. Whatever your role, working for WGU gives you a part to play in helping students graduate, creating a better tomorrow for themselves and their families.
The salary range for this position takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs.
At WGU, it is not typical for an individual to be hired at or near the top of the range for their position, and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is:
Grade: Technical 407Pay Range: $108,200.00 - $162,400.00
Job DescriptionThe current information security landscape is technically complex and constantly changing. The IT Security Analyst II uses their knowledge of current security methods and standards to gather operational information and assess and analyze tools, systems, and processes in defense of applications, systems, and networks and collaborate with Infrastructure and business teams.
This role has a strong incident response and security operations focus, with opportunities to apply expertise across digital forensics, intrusion detection, continuous monitoring, cloud security, and security automation. You'll collaborate with infrastructure teams, architects, risk professionals, and other security specialists to strengthen defensive capabilities and continuously improve how security threats are detected and addressed.
What You'll Do
Serve as a lead analyst for incident response and related security efforts, including digital forensics, continuous monitoring, intrusion detection and prevention, penetration testing, integration, and automation.
Investigate security events and unusual activity using SIEM, IDS/IPS, endpoint security, DLP, HIPS, EPP, client proxy, firewalls, and other security technologies.
Analyze phishing emails, logs, network traffic, alerts, and other security telemetry using industry-standard tools to identify malicious, suspicious, or anomalous behavior.
Lead or participate in tactical response efforts to investigate and address identified security risks across technical environments.
Develop and refine SIEM security rules and security use cases aligned with the MITRE ATT&CK Framework.
Collaborate with architects, risk professionals, infrastructure teams, and security specialists to build and integrate detective, preventive, and corrective security controls.
Improve incident response and security operations through documentation, automation, lessons learned, Correction of Errors (CoE), and the development of more effective security practices.
What You'll Bring
Bachelor's Degree in IT Security, Computer Science, Engineering, or related field.
3 years of Information Security experience.
Experience analyzing SIEM, network, event, security, and IDS alert logs.
Experience working with MITRE ATT&CK Framework.
Experience with security industry standards and best practices, specifically with interpreting and implementing those standards in a corporate environment.
Scripting language experience (Bash, Python, etc.) with strong working knowledge of automation.
Experience working with compliance and regulatory program requirements.
Experience designing and deploying security solutions.
Knowledge and experience in incident handling, computer forensics, intrusion detection systems, firewalls, antivirus, syslog, and related security technologies.
Strong understanding of SIEM content security rules to detect malicious, suspicious, and/or abnormal events.
Working knowledge of intrusion detection methodologies, network traffic analysis, sensor tuning, and interpreting signatures.
Understanding of AWS services, cloud security principles, CI/CD security, infrastructure-as-code, and data encryption strategies.
Excellent analytical, problem-solving, decision-making, written, and verbal communication skills.
Equivalent relevant experience performing the essential functions of this job may substitute for education degree requirements. Generally, equivalent relevant experience is defined as 1 year of experience for 1 year of education and is the discretion of the hiring manager.
Bonus Points
8 years of Information Security experience.
Experience recommending additional security requirements and safeguards.
Experience in the development of end-user operating manuals and documentation.
Familiarity with Cloud infrastructure.
Relevant security certifications (CISSP, GIAC, ISACA, CCSP, CCSK, AWS, etc.).
What to Expect
At WGU, our mission drives everything we do, including how we hire. Our interview experience is designed to give qualified candidates the opportunity to show their best work through meaningful conversations and collaboration.
We thoughtfully review every application and invite forward the candidates whose experience and potential best align with the role and our mission.
Introductory call
Hiring leader interview
Senior Executive Interview
Work Location
This is a full-time, in-office position requiring five days per week in our Salt Lake City, Utah or Raleigh, North Carolina office, designed to foster the collaboration and connection that fuel our best work.
This role works a swing shift of 3:00 p.m. to 12:00 a.m., aligned to either Eastern or Mountain Time.
#LI-AW2
Position & Application DetailsFull-Time Regular Positions (classified as regular and working 40 standard weekly hours): This is a full-time, regular position (classified for 40 standard weekly hours) that is eligible for bonuses; medical, dental, vision, telehealth and mental healthcare; health savings account and flexible spending account; basic and voluntary life insurance; disability coverage; accident, critical illness and hospital indemnity supplemental coverages; legal and identity theft coverage; retirement savings plan; wellbeing program; discounted WGU tuition; and flexible paid time off for rest and relaxation with no need for accrual, flexible paid sick time with no need for accrual, 11 paid holidays, and other paid leaves, including up to 12 weeks of parental leave.
How to Apply: If interested, an application will need to be submitted online. Internal WGU employees will need to apply through the internal job board in Workday.
Additional Information
Disclaimer: The job posting highlights the most critical responsibilities and requirements of the job. It's not all-inclusive.
Accommodations: Applicants with disabilities who require assistance or accommodation during the application or interview process should contact our Talent Acquisition team at
[email protected].
Equal Employment Opportunity: All qualified applicants will receive consideration for employment without regard to any protected characteristic as required by law.