Security Analyst II Information Technologist II
East Lansing, MI - USA
Job Summary
Security Analyst II
Reporting to and supporting the Governance Risk and Compliance (GRC) Manager the Security Analyst II plays a key role in implementing MSUs cybersecurity governance and risk processes. This position assists with security assessments evaluates and documents security controls supports incident response activities and provides guidance to campus units on cybersecurity best practices. The Security Analyst II helps ensure consistent application of MSUs security policies standards and procedures and contributes to the continuous improvement of enterprise security operations.
Note: This position is hybrid and requiresat least 2days of workon campus.
Michigan State University (MSU) is ranked #30 among public universities and #63 overall in U.S. News & World Reports Americas Best Colleges 2025. Located in East Lansing three miles east of the states capitol the MSU community includes more than 12000 faculty academic and support staff as well as over 51000 students. MSU offers an extensive benefits package to its employees including health care prescription and dental coverage and a base retirement program with a University matching contribution as well as basic life addition MSU offers educational benefits including a course fee courtesy program and educational assistance.
MSU Information Technology provides the primary leadership for strategic financial and policy initiatives affecting information technology (IT) across MSU. MSU IT offers technology resources that support MSUs mission of providing education conducting research and advancing engagement.
Knowledge equivalent to that which normally would be acquired by completing a four-year college degree program; three to five years of related and progressively more responsible or expansive work experience in information technology risk and/or compliance; or security administration and operations or an equivalent combination of education and experience.
- Knowledge of risk management processes (e.g. methods for assessing and mitigating risk) and knowledge of cyber threats and vulnerabilities.
- Knowledge of host/network access control mechanisms (e.g. access control list capabilities lists) and of network services and protocols interactions that provide network communications.
- Knowledge of incident response and handling methodologies.
- Skill in determining how a security system should work (including its resilience and dependability capabilities) and how changes in conditions operations or the environment will affect these outcomes.
- Skill in discerning the protection needs (i.e. security controls) of information systems and networks including how the CIA triad may apply.
- Skill in interfacing with customers
- Certification(s) or study in an area of information assurance or risk management are considered a plus (e.g. Security; CISSP; CISA; CISM; CRISC; CSX-P) Other certifications from credentialling bodies such as: ISACA; (ISC)2; SANS GIAC; CompTIA; EC-Council or even network/security/system vendors will also be considered.
All qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender identity national origin citizenship age disability or protected veteran status.
Resume and cover letter
Please provide three professional references who are knowledgeable of your work.
STANDARD 8-5
MSU strives to provide a flexible work environment and this position has been designated as remote-friendly. Remote-friendly means some or all of the duties can be performed remotely as mutually agreed upon.
Required Experience:
IC
About Company
Spartan excellence and our will to make a difference are making a better tomorrow for all.