About The Position

The Office of Technology Services (OTS), Information Security Team has a vacancy for an Information Security Analyst. This position receives direction and priority from the Director of Information Security Engineering and Architecture to monitor, detect, analyze, and respond to cyber threats across the enterprise. This position is responsible for providing centralized security event triage, incident response coordination, and technical support across various computer systems, applications, and networks. The individual will utilize technical, analytical, and problem-resolution skills to investigate security alerts, mitigate emerging threats, and collaborate across technical support teams and state agencies to protect the State's information assets. The Division of Administration is the state government’s management arm and the hub of its financial operations. Division offices perform a wide variety of activities including overseeing the state’s capital construction program, working to provide state and federal grants for community development, development of the state budget, providing technology services, giving agencies guidance in the state purchasing and contracting process, and administering a program that provides federal funds to help Louisiana residents recover from a series of devastating hurricanes. This vacancy participates in a career progression group and may be filled from this recruitment as an IT Statewide Infosec Analyst 1 or 2.

Requirements

  • Four years of experience in information technology; OR Six years of full-time work experience in any field plus two years of experience in information technology; OR An associate's degree in information technology plus two years of experience in information technology; OR A bachelor’s degree plus two years of experience in information technology; OR A bachelor’s degree with twenty-four semester hours in an information technology, computer science, engineering, mathematics, or business analytics field plus one year of experience in information technology; OR A master’s degree plus one year of experience in information technology.
  • Every 30 semester hours earned from an accredited college or university will be credited as one year of experience towards the six years of full-time work experience in any field. The maximum substitution allowed is 120 semester hours which substitutes for a maximum of four years of experience in any field.
  • A certification in an approved area may be substituted for the education and/or experience requirements at the time of hire or promotion, provided the appointment is made from a Certificate of Eligibles.

Responsibilities

  • Monitor, triage, and investigate real-time security alerts generated through Palo Alto Networks Cortex XSIAM and CrowdStrike Falcon Complete platforms.
  • Validate high-priority threat notifications, evaluate context, and execute initial containment protocols in accordance with enterprise incident response playbooks.
  • Coordinate remediation workflows with the CrowdStrike Falcon Complete managed service team and relevant OTS technical verticals.
  • Document investigation findings, root cause analyses, and response actions taken within the centralized security incident log.
  • Assist in tuning detection logic, correlation rules, and automated response playbooks within Cortex XSIAM to reduce false positives.
  • Monitor and manage the ServiceNow ticketing queue for proxy-related issues, access requests, and categorized URL reclassification tickets.
  • Troubleshoot and resolve web filtering issues, SSL/TLS decryption exceptions, and secure web gateway (SWG) connection anomalies for enterprise users.
  • Analyze user traffic patterns against acceptable use policies to identify policy violations, unauthorized application usage, or potential evasion attempts.
  • Maintain operational documentation and standard operating procedures (SOPs) for enterprise proxy management and ticket workflows.
  • Investigate suspicious internal and perimeter network traffic, protocol anomalies, and anomalous host behaviors using network telemetry and log sources.
  • Perform proactive threat hunting using threat intelligence indicators (IoCs) and behavioral analytics to identify potential adversary activity (TTPs).
  • Correlate disparate log sources (firewall, DNS, VPN, authentication, and endpoint logs) to reconstruct attack timelines and assess scope of impact.
  • Escalate confirmed intrusions or advanced persistent threats (APTs) to senior incident response personnel and OTS leadership.
  • Monitor identity provider signals and behavioral analytics for indications of compromised user credentials, impossible travel, and unauthorized account modifications.
  • Coordinate directly with the OTS Service Desk and identity teams to initiate account locks, password resets, session revocations, and MFA step-up authentication for compromised users.
  • Verify post-compromise cleanup actions, ensuring persistent access mechanisms (e.g., malicious inbox forwarding rules, unauthorized OAuth applications) are identified and purged.
  • Advise agency points of contact and help desk personnel on best practices for user remediation and credential hygiene.
  • Performs all other tasks, special projects, analysis, studies, and plans as directed by OTS Leadership.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service