Security Analyst
Brigham Young UniversityAbout the role
Why Work at BYU
As the flagship higher education institution of The Church of Jesus Christ of Latter-day Saints, Brigham Young University (BYU) strives to be among the exceptional universities in the world. At BYU, we are devoted to our faith and to our students. We take an active role in the University's Mission: "To assist individuals in their quest for perfection and eternal life.”
Our unique mission, deeply rooted in the Gospel of Jesus Christ, provides countless ways to serve and make an impact. This, along with our remarkable culture of belonging, weekly devotionals, and endless opportunities for learning and growth—all situated within a beautiful and historic campus—make it hard to imagine a more inspiring place to work.
Brigham Young University strongly prefers to hire faithful members of The Church of Jesus Christ of Latter-day Saints.
Security Analyst
The CES Security Operations Center is seeking a Security Analyst to support Brigham Young University, BYU–Hawaii, BYU–Idaho, and Ensign College. This role leads and contributes to one of our core security pillars while rotating to a new focus area every six months.
Analysts bring prior experience and judgment while expanding their skills across security operations, including event monitoring, incident response, penetration testing, vulnerability management, identity, and threat hunting. Our rotational model is designed to build both depth and breadth, helping analysts grow beyond a single specialty.
Strong communication skills are essential, as the role involves collaboration with campus partners and mentoring student employees. You’ll also continue developing through hands-on experience, professional development, and mentorship, with additional responsibilities evolving as your skills grow.
Impact of the role
As a Security Analyst at the CES SOC, your work directly protects four higher-education institutions, tens of thousands of students and employees, and critical academic and research systems. You will influence security posture at an enterprise scale and collaborate with a broad range of IT professionals to reduce institutional risk.
What you will be doing in this position
Basic Security Analyst Responsibilities
Participate in security analyst on-call rotation. Initial triage of security events, analysis of associated log data, security incident ticket population, and initial contact with relevant IT staff or end users. Drafting and editing security work instructions, for security analysts, IT staff, and end users; creating workflow diagrams to correlate work instructions to security incidents
Security Event Monitoring and Development
Security Analysts in this pillar design, maintain, and continuously improve enterprise security monitoring across CES institutions. This includes developing meaningful alerts and dashboards from diverse log sources, validating alert quality, and ensuring monitoring aligns with evolving threats and institutional priorities. Analysts partner closely with system owners and incident responders to ensure monitoring is actionable, resilient, and supports timely investigation and response.
Incident Investigation and response
This pillar leads the investigation, containment, and resolution of information security incidents across CES campuses, ranging from phishing and account compromise to system-level intrusions. Analysts apply professional judgment to triage events, coordinate with campus IT stakeholders, document findings, and guide remediation while escalating major incidents through formal response processes. The role emphasizes disciplined investigation, clear communication, and continuous improvement through lessons learned and playbooks.
Vulnerability management
The vulnerability management pillar provides visibility into security weaknesses across campus systems and works with IT partners to reduce risk over time. Analysts analyze vulnerability data, contextualize findings based on asset criticality and threat activity, and support prioritization and remediation efforts. As maturity increases, this work informs risk reporting, service-level objectives, and longer-term improvements to institutional security hygiene.
Threat hunting & Intelligence
Threat hunting focuses on proactively identifying attacker behavior that may evade automated controls by analyzing log data, indicators of compromise, and attacker tactics relevant to higher education. Analysts research emerging threats, develop
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s