Information Security Engineer 2/3
Organizational Overview
The Connecticut Education Network (CEN) is Connecticut's trusted internet partner, committed to our member community and its success. By honoring this commitment, we have grown the member customer network and maintained our reputation as one of the most valued and secure Internet Service Providers serving CT for over 20 years. Join CEN to discover a culture that is rooted in innovation and thrives on collaboration. Imagine loving what you do, where you do it, and contributing to mission and vision that provides unprecedented value to CT.
Job Summary
CEN, in partnership with UConn ITS, is seeking an experienced Information Security Engineer to strengthen and advance cybersecurity services for Connecticut's research and education network. This role blends security operations, infrastructure engineering, and managed security services—offering broad technical scope in a mission-driven environment with real impact across the state. Engineers in this role design, operate, and continuously improve security capabilities spanning: Detection & response, Infrastructure security, Identity and access management, and Security automation and tooling.
Compensation
Please indicate the level you are applying for in your cover letter. All minimum qualifications must be met at the applicable level.
- Information Security Engineer 2, (Information Security Analyst 2, P6): $84,880 - $110,344
- Information Security Engineer 3, (Information Security Analyst 3, P7): $95,066 - $123,585
Benefits
- Defined contribution with employer match or defined benefit retirement options
- Excellent and affordable healthcare options
- 35-hour work week
- 22 paid vacation days per year, in addition to paid sick leave and 13 paid holidays
- Annual merit increase program
- Employee and dependent tuition waivers
- A highly desirable work environment and work-life balance
Duties And Responsibilities
Security Engineer 2
- Administer, operate, and enhance security tools to detect, investigate, and remediate threats.
- Monitor and analyze network traffic, system logs, and telemetry to identify intrusions, vulnerabilities, and compromises.
- Lead incident response activities: triage, root cause analysis, remediation, and recurrence prevention.
- Triage and fulfill service requests from customers and internal teams in alignment with service standards.
- Maintain situational awareness of emerging threats and adapt controls accordingly.
- Design and support security infrastructure including firewalls, DDoS protection, SIEM, and IAM.
- Develop automation, scripting, and tooling for provisioning, monitoring, and system integrity.
- Evaluate, implement, and operate security controls; perform penetration testing and report findings.
- Produce and maintain accurate documentation: engineering plans, standards, procedures, and diagrams.
- Monitor and report on security metrics, trends, and risk indicators.
- Promote security awareness and best practices across the organization and community.
- Build and maintain customer relationships; contribute to community engagement.
- Deliver training, workshops, and mentoring to strengthen staff and member capability.
- Collaborate with UConn Information Security Office and external partners as needed.
- Participate in on-call rotations, after-hours maintenance, and incident escalations as needed.
- Travel up to 20% for on-site support, customer engagement, and vendor coordination.
- Perform related duties as assigned.
Security Engineer 3 (additional Responsibilities Inclusive Of Engineer 2)
- Serve as senior technical resource and final escalation point for all information security matters.
- Lead major projects and initiatives related to information and network security.
- Operate autonomously with general direction and limited supervision.
- Identify gaps in security posture and implement solutions aligned with best practices.
- Create custom code to facilitate data gathering and sharing across applications.
- Assist in vendor and subcontractor negotiations.
Related Skills And Competencies
- Problem Solving: Diagnoses loosely defined issues, breaks them into manageable pieces, and drives timely resolution. Confronts problems directly and sees solutions through to implementation.
- Team Orientation: Builds cross-functional relationships, balances individual and shared responsibilities, and puts team success first. Open to feedback and operates within established policies and procedures.
- Planning & Project Management: Leads projects, identifies priorities, understands the bigger picture, and executes tasks with appropriate documentation.
Physical Demands
Primarily desk-based with extended computer use. Occasional stooping, kneeling, or ladder use. Must be able to lift 40 lbs. to shoulder height. Requires close/color vision and depth perception.
Minimum Qualifications
Security Engineer 2
- U.S. Citizenship or Permanent Residency (Green Card) required.
- Bachelor's Degree and 2 years of related experience AND 1-3 years of experience working in an information security role or supporting an information security program.
- Demonstrated understanding of network architecture, protocols, and security principles.
- Proven experience with firewall platforms (e.g., Fortinet, Palo Alto, Cisco), IDS/IPS, and endpoint protection.
- Experience with network flow data (NetFlow, sFlow, IPFIX) and packet capture analysis.
- Demonstrated SIM/SIEM log analysis and diagnosis skills.
- Experience developing and maintaining scripts (Python, PowerShell, Bash) to automate processes and analyze data.
- Experience working in a customer-facing environment responding to service requests.
Security Engineer 3 (inclusive of Security Engineer 2)
- Bachelor's Degree and 4 years of related experience AND 3-5 years of experience working in an information security role or supporting an information security program.
- Experience with firewall architecture, zero trust models, and network access control.
- Experience in a service provider or MSSP environment.
- Experience designing and implementing multi-tenant managed security service platforms.
Preferred Qualifications
Security Engineer 2
- Master's Degree and 2+ years of direct experience in a large enterprise or service provider environment.
- Proven exposure to SIEM/SOAR platforms in a SOC or MSSP environment.
- One or more certifications: Cisco CyberOps, CCNP Security, Fortinet NSE, Palo Alto PCNSA, or equivalent.
- Experience with IP routing protocols such as BGP, OSPF, and/or ISIS.
- Working knowledge of DNS, SMTP, LDAP, RADIUS, TACACS, and related enterprise services.
- Familiarity with Identity & Access Management, Application Security, and Incident Management frameworks.
Security Engineer 3 (in addition to Security Engineer 2)
- Master's Degree and 4+ years of direct experience in a large enterprise or service provider environment.
- CISSP, CISM, or equivalent information security certification.
- Understanding of NIST 800-53, 800-171/172 standards.
- Experience with contract negotiations, pricing, terms, and conditions.
- Experience supervising staff and managing employee performance.
Appointment Terms
This is a full-time, end-dated position with the possibility of renewal subject to performance and funding. The University offers a competitive salary, and outstanding benefits, including employee and dependent tuition waivers at UConn, and a highly desirable work environment. Other rights, terms, and conditions of employment are contained in the collective bargaining agreement between the University of Connecticut and the University of Connecticut Professional Employees Association (UCPEA).