Salary: $9,016.00 - $10,959.00 Monthly
Location : Main Campus 411 Central Avenue, Salinas
Job Type: Full-Time Classified
Job Number:Division: Information Technology
Department: Technoloy Resouces
Opening Date: 09/03/2026
Closing Date: 9/17/2026 11:59 PM Pacific
Description Under general supervision, the Cybersecurity Analyst assists in protecting the District's hybrid technology infrastructure, networks, and data from cyberattacks and security breaches. This role includes continuous monitoring, analysis, and response to internal and external security threats, as well as administration and monitoring of key security controls such as firewalls and threat detection systems. The Analyst assists with the planning, coordination, and implementation of comprehensive cybersecurity programs, policies, tools, training, communication, and services, ensuring the integrity, confidentiality, and availability of District data across cloud and on-premises environments.
The position assists IT leadership with the development, maintenance, and continuous improvement of incident response plans and coordinates regular tabletop exercises to test organizational readiness, strengthen cross-functional response, and enhance overall resilience under management direction and in accordance with District policies and established cybersecurity practices. Responsibilities also include conducting threat and vulnerability assessments, supporting incident investigations, and ensuring compliance with District policies, applicable laws, and relevant regulatory frameworks.
The Cybersecurity Analyst prepares and delivers cybersecurity reports and executive briefings for and to management, translating complex technical risks into clear insights, risk impacts, and actionable recommendations for senior leadership. The incumbent exercises sound independent judgment within established District policies, procedures, security frameworks, and management direction.
Examples of Duties REPRESENTATIVE DUTIES:
- Continuously monitors network traffic, systems, and security alerts generated by enterprise tools and third-party monitoring using SIEM tools to identify potential threats and anomalies.
- Responds to security incidents, conducts investigations, troubleshoots and resolves system errors and failures, identifies false positives, and escalates anomalies; coordinates with IT teams to mitigate and remediate issues. Threat Analysis and Risk Assessment:
- Documents actions taken for all security alerts, events, and incidents; responds in a timely manner to suspected or active threats and breaches in accordance with established security protocols, playbooks, and management direction.
- Participates in authorized security readiness activities, defensive security exercises, and vulnerability assessments to ensure assets and resources are securable and protected.
- Analyzes security alerts and threat intelligence to identify and evaluate potential threats; conducts periodic risk and vulnerability assessments to identify existing or potential electronic data and information system compromises and their sources.
- Analyzes multiple security-related incidents including phishing, malware, and enrollment of fraudulent students; tracks logins and reviews data entering systems from state and federal databases.
- Conducts risk assessments to determine the organization's vulnerability to cyberattacks and recommends strategies to mitigate risks; performs regular vulnerability scans on networks, applications, and systems.
- As directed by management, assists with or coordinates investigations of IT security incidents with law enforcement agencies.
- Participates in the planning, coordination, and implementation of security programs, policies, tools, and services to prevent unauthorized access, use, disclosure, modification, loss, or destruction of District data; works with other IT staff to support secure operations.
- Researches and recommends enhancements to the District IT security framework, including security policies, standards, procedures, and applications; implements strong authentication and authorization policies and tools.
- Reviews, evaluates, and recommends software and hardware products related to IT system security, including firewalls, intrusion detection/prevention systems, and other network security controls.
- Configures firewall equipment and security software at District locations; performs administration and operational management of network firewall, antivirus, spam filtering, and SSL certificates.
- Assists in developing, implementing, and supporting security policies, procedures, and standards; supports compliance with applicable District policies, laws, regulations, industry best practices and, frameworks, and other applicable cybersecurity standards such as ISO 27001, NIST, GDPR, HIPAA, FERPA.
- Works with other IT staff to ensure the integrity and security of the District's cloud data, applications, and infrastructure across hybrid environments.
- Monitors system resources including server utilization, disk usage, response time, and other performance issues; maintains network connections at District locations as related to assigned cybersecurity and infrastructure responsibilities.
- Assists in the development and maintenance of disaster recovery plans for District technology and data; implements and maintains current recovery technologies and researches new options for improving data and systems recovery.
- Coordinates and monitors external contractor and vendor activities to ensure contract requirements, timelines, and District standards are met; serves as liaison between vendors and users in assigned areas.
- Interacts with third-party software vendors and MSSPs to mitigate potential security events and implement security improvements.
- Assists with developing and delivering security awareness training sessions for faculty, staff, and students to promote a culture of security within the organization; provides guidance on best security practices and protocols.
- Maintains detailed records of security incidents, investigations, and actions taken; prepares regular reports on security status, vulnerabilities, and risk assessments for management review.
- Provides concise and actionable information to management and stakeholders in a timely manner as directed; assists in the development of District response and communication plans.
OTHER FUNCTIONS:
- Supports the implementation, monitoring, and management of building security and access systems.
- Troubleshoots and resolves related, escalated help desk support tickets with the IT team.
- Utilizes online and other resources to stay current on rapidly changing technologies, emerging threats, and advancements in cybersecurity; may participate in industry groups and training.
Typical Qualifications KNOWLEDGE, SKILLS AND ABILTIES:
Knowledge of:
- Principles, practices, and methods of security infrastructure and vulnerability management, including evolving sources of security threats and vulnerabilities, preventative security controls, applicable cybersecurity standards, and common security management frameworks (e.g. ISO 27001, NIST, GDPR, HIPAA, FERPA)
- Network security, incident response, penetration and vulnerability testing, SIEM tools, encryption, malware analysis, and intrusion detection/prevention systems.
- Cloud platforms (e.g. AWS, Azure) and related operating systems, security tools, and scripting languages.
- Network design and security practices in hybrid environments
- Applicable principles and general understanding of voice, video, storage, and data platform operations.
- Best practices, methods, and procedures for conducting security audits, performing risk assessments, and developing business continuity and disaster recovery plans.
- Principles and practices of information and technology security.
- Risk management, threat modeling, policy development, security testing concepts, and project coordination principles.
- Information systems and architectures used in a college or higher education setting.
- Research methods, analysis techniques, and principles of sound business communication.
- Federal, state, and local laws, regulations, and court decisions governing the area of assignment.
Skills and Abilities to:
- Monitor network traffic and systems; use SIEM tools to analyze security incidents and respond to alerts in a timely manner.
- Conduct comprehensive IT security risk assessments, perform vulnerability scans, and develop sound mitigation solutions under established procedures and management direction.
- Configure and manage firewalls, VPNs, and implement encryption methods to secure data and network infrastructure.
- Analyze security policies, trends, and intelligence using deductive reasoning and problem-solving skills to develop preventative countermeasures.
- Apply and demonstrate familiarity with ISO, NIST, FERPA GDPR, HIPAA, and other applicable security or regulatory frameworks.
- Utilize security tools and platforms in a proficient manner (e.g., SIEM, IDS/IPS, firewalls, antivirus software).
- Demonstrate programming and scripting skills in languages such as Python, JavaScript, or PowerShell for automating security tasks.
- Assess complex systems and identify vulnerabilities; analyze and solve security problems effectively under pressure.
- Communicate clearly and concisely, both orally and in writing; explain technical information to non-technical stakeholders.
- Compose clear, concise analyses, reports, correspondence, and presentations from brief instructions.
- Make informed decisions in a timely manner based on available data; remain calm and effective during security incidents.
- Maintain confidentiality of college and student files and records.
- Track and coordinate assigned cybersecurity tasks and projects running in parallel; organize and schedule work to maximize efficiency.
- Work independently within established procedures and management direction and collaboratively in a team environment.
- Establish and maintain effective working relationships with those contacted in the performance of required duties.
- Demonstrate an understanding of, sensitivity to, and appreciation for the academic, ethnic, socio-economic, cultural, linguistic, disability, and gender diversity of students and employees attending, visiting, or working on a community college campus.
Supplemental Information EDUCATION AND EXPERIENCE:
- A bachelor's degree in computer science, information technology, information security, network administration, cybersecurity, or a related field, and four (4) years of related experience;
- Or an equivalent combination of training and experience.
PREFERRED QUALIFICATIONS:
- Possession of a relevant certification such as CompTIA Security+, CEH, GSEC, CISSP, GIAC, AWS Certified Security - Specialty, or Azure Security Engineer Associate.
LICENSES AND OTHER REQUIREMENTS:
- A valid driver's license and the ability to maintain insurability under the District's vehicle insurance program.
CONDITIONS OF EMPLOYMENT / PHYSICAL DEMANDS:
PHYSICAL EFFORT/WORK ENVIRONMENT:
Employees perform work, with or without accommodations, in an indoor office environment and may be subject to constant interruptions. Physical effort is typically light to moderate, with occasional lifting and carrying of heavy objects up to 50 pounds. Duties involve regular contact with stakeholders via phone, electronic message, or in-person, and regular reading of screens and use of a computer, tablet, or similar device including prolonged screen time and use of a mouse and keyboard. Compliance with all applicable safety policies and procedures is mandatory at all times.
CONDITIONS OF EMPLOYMENT:
Regular, full-time, 12-month per year classified position on Main Campus. Weekly Schedule: Monday - Friday, 8:00 a.m.5:00 p.m. Starting salary: $9,016.00/monthly (Step A). The salary range 50 on the CSEA salary schedule is $9,016 - $10,959 (5Steps). The district provides health benefits, consisting of full medical, dental, and vision insurance for employees and a high percentage of coverage for eligible dependents. District-paid life, accident, and income protection insurance is provided for the employee only. Must become a Public Employees' Retirement System (PERS) member.
APPLICATION PROCEDURE:
The following documents
MUST be uploaded as attachments to your online application:
1) Resume
2) Cover letter
3) Unofficial College/university transcripts