Job Opening ID:
538237
Location:
Modesto A. Maidique Campus
Full/Part Time:
Full-Time
Regular/Temporary:
Regular
Job Summary
This position serves as a senior technical security analyst responsible for identifying, investigating, and responding to threats across cloud, network, and endpoint environments. Leads proactive threat hunting; develops and tunes detections; analyzes security telemetry and suspicious activity; and coordinates containment, eradication, and recovery actions. Partners with infrastructure, cloud, application, and departmental IT teams to strengthen security controls, reduce attack surface, and improve the organization's detection and response capabilities.
- Conducts hypothesis-driven threat hunts across cloud, network, identity, and endpoint telemetry to identify malicious, anomalous, or high-risk activity not detected by existing controls.
- Develops, tests, documents, and tunes detection logic, correlation rules, behavioral analytics, dashboards, and alerts within SIEM, XDR/EDR, network security, and cloud-native security platforms.
- Maps adversary behaviors, hunt hypotheses, and detections to recognized threat frameworks and uses threat intelligence to prioritize relevant tactics, techniques, and procedures.
- Measures detection coverage and effectiveness; identifies visibility gaps, false-positive drivers, and opportunities to improve fidelity, context, and response time.
- Monitors and analyzes security events and alerts, validates potential incidents, determines scope and impact, and prioritizes response based on risk and business context.
- Leads or supports incident response activities, including evidence preservation, timeline development, root-cause analysis, containment, eradication, recovery, and post-incident review.
- Performs endpoint, network, cloud, identity, and malware analysis to determine attack vectors, persistence mechanisms, lateral movement, command-and-control activity, and potential data exposure.
- Creates and maintains response playbooks, investigation procedures, escalation criteria, and case documentation; communicates technical findings and recommended actions to technical and leadership audiences.
- Uses vulnerability, exposure, asset, and threat data to identify exploitable conditions, prioritize remediation, and validate risk reduction across cloud, network, and endpoint environments.
- Collaborates with IT administrators, engineers, application owners, and service providers to remediate security findings and implement sustainable security solutions.
- Automates recurring analysis, alerts, enrichment, investigation, reporting, and response tasks using scripting, orchestration, APIs, and security platform integrations.
- Develops operational metrics and reports for threat hunting, detection coverage, alert quality, incident trends, response performance, and remediation outcomes.
- Evaluates emerging threats, vulnerabilities, technologies, and control capabilities; recommends safeguards, process improvements, and security investments.
- Supports audits, risk assessments, exercises, and compliance activities applicable to the environment and performs other related duties as assigned.
- Provides technical guidance, knowledge transfer, and mentoring to analysts and IT staff; may coordinate the work of lower-level staff or project teams.
- Builds effective partnerships across central and distributed IT units and promotes consistent incident reporting, evidence handling, and remediation practices.
- Performs essential duties during any emergencies, such as hurricanes, storms and/or any other University emergency closing. Is expected to be available to report to work as needed during University emergency closings with appropriate notification by department administrator.
Minimum Qualifications
Bachelor's degree in Computer Science, Information Technology or a related field with five (5) years of experience in related field.
Desired Qualifications
- Demonstrated experience with security monitoring, threat hunting, detection engineering, digital forensics, and incident response in a large or complex enterprise environment.
- Hands-on experience securing and investigating public cloud, network, identity, and endpoint environments using SIEM, SOAR, EDR/XDR, network detection, cloud security, and threat intelligence technologies.
- Proficiency with one or more scripting or query languages used for security analysis and automation.
- Working knowledge of adversary behavior, security control frameworks, incident response practices, and cloud shared-responsibility models.
- Relevant professional certification in cloud security, incident response, digital forensics, network security, or information security.
- Solid understanding of industry regulations including HIPAA and FERPA.
Job Category
Administrative
Advertised Salary
$80,000 - $86,000
Work Schedule
Begin time: 8:30 AM
End time: 5:00 PM
Pre-Employment Requirements
Expanded Background Check
Other Information
- Ability to work flexible hours as needed.
- Travel to FIU Campus
Clery Notice
In compliance with the Jeanne Clery Disclosure of Campus Security Policy and Crime Statistics Act, the University Police department at Florida International University provides information on crimes statistics, crime prevention, law enforcement, crime reporting, and other related issues for the past three (3) calendar years. The FIU Annual Security report is available online at: https://police.fiu.edu/download/annual-security-fire-safety-report/.
To obtain a paper copy of the report, please visit the FIU Police Department located at 885 SW 109th Avenue, Miami, FL, 33199 (PG5 Market Station).
Pay Transparency
Florida International University will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information.
Notice of Non-Discrimination
FIU is a State University System of Florida member, Equal Opportunity, Equal Access, and Affirmative Action Employer for individuals with disabilities and veterans. All qualified applicants will receive consideration for employment decisions, programs, and events without regard to race, color, religion, sex, age, national origin, disability, or protected veteran status. For inquiries regarding non-discrimination, contact FIU's Office of Civil Rights at 305.348.2785 or email
[email protected].
Reasonable Accommodation Statement
Should you need an ADA accommodation to participate in a University event, program, or activity or need to request materials in an accessible format, please contact FIU's Office of Civil Rights (OCR) at 305-348-2785 or
[email protected]. All requests for ADA accommodation or accessible materials for this event must be submitted to OCR at least seven (7) business days prior to the event or at the earliest possible opportunity.