Demo

Security Analyst II/III

Gaston County Government
Gaston, NC Full Time
POSTED ON 8/18/2026
AVAILABLE BEFORE 10/1/2026
Provide secure, innovative, and efficient technology that enhances collaboration and empowers County departments to deliver outstanding public service.The anticipated hiring range for the Security Analyst II is $33.80 - $40.14
The anticipated hiring range for the Security Analyst III is $37.50 - $44.53


The duties listed below are not all of the duties that may be assigned but are those that are considered as essential for an employee to perform.

  • Alert and Incident Response: Monitor, investigate, and respond to cybersecurity alerts and incidents across endpoint, network, identity, email, cloud, and server environments. Analyze alerts from SIEM, EDR, firewalls, Microsoft 365/Entra ID, email security, and other security platforms to determine scope, severity, and potential business impact. Investigate indicators of compromise, suspicious authentication activity, malware, unauthorized access, and other anomalous behavior. Perform root cause analysis and coordinate containment, eradication, remediation, and recovery activities with other IT teams and County departments. Document incidents, investigative findings, actions taken, and lessons learned. Assist with tuning detections, reducing false positives, improving monitoring capabilities, and developing incident response procedures and playbooks. 

  • Security Engineering and Hygiene (M365/Entra, Firewalls, Endpoint): Implement, maintain, evaluate, and improve technical security controls across Microsoft 365, Entra ID, Active Directory, Windows Server, endpoint security, firewalls, networking, cloud services, and related security platforms. Review configurations, authentication and access controls, endpoint protections, firewall policies, security baselines, and system exposure to identify and remediate security weaknesses. Support identity protection, privileged access, MFA, conditional access, endpoint detection and response, network security, and other preventative security controls. Perform cybersecurity reviews of proposed software, hardware, cloud services, and technology purchases and provide risk-based recommendations. Participate in vendor security assessments and third-party risk reviews. Assist with security architecture, disaster recovery, backup validation, and business continuity activities, including consideration of RPO/RTO and cyber recovery requirements. 

  • Vulnerability Management:Perform ongoing identification, analysis, prioritization, tracking, remediation, validation, and reporting of vulnerabilities affecting County technology assets. Review vulnerability scan results and security advisories and analyze CVEs, CVSS scores, exploit availability, known exploitation, asset exposure, system criticality, and potential organizational impact to determine remediation priority. Work with infrastructure, networking, application, and support teams to coordinate patching, configuration changes, upgrades, compensating controls, or other remediation activities. Validate remediation and identify recurring or systemic security weaknesses. Maintain vulnerability documentation and metrics, communicate significant risks to appropriate technical and management personnel, and support continuous improvement of vulnerability and patch-management processes.

  • Security Awareness, Audits, and Compliance (HIPAA/NIST):Support County cybersecurity governance, security awareness, audit, risk management, and regulatory compliance activities. Assist with internal and external audits, security assessments, evidence collection, remediation tracking, and implementation of controls aligned with NIST, HIPAA, CJIS, and other applicable requirements. Develop and maintain cybersecurity standards, procedures, technical documentation, security guidance, and supporting evidence. Communicate cybersecurity risks and security requirements to County departments, IT personnel, management, vendors, and other stakeholders and recommend appropriate mitigation strategies. Participate in security awareness initiatives and provide technical security guidance to users and IT staff. Support vendor and third-party risk assessments and assist with documenting identified risks and corrective actions. Maintain professional cybersecurity knowledge through continuing education, technical training, seminars, and review of emerging threats and security practices. 
  • Bachelor's degree with 8 years of IT experience, including 3 years in cybersecurity-related roles. OR Associate's degree with 10 years of IT experience, including 3 years in cybersecurity-related roles.
  • At least one cybersecurity-focused certification (e.g., Security , CySA , CASP , CISSP, or equivalent)
  • Valid Driver's license
Candidates must possess advanced incident response expertise, including leading end-to-end investigations, analyzing alerts from EDR and other sources, performing root cause analysis, and coordinating containment, eradication, and recovery actions. Must have an understanding of disaster recovery, incident response coordination, and business continuity concepts, including recovery strategies and dependencies.The applicant selected must undergo a criminal background check and pass a drug screening test prior to employment

Salary : $34 - $59

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Analyst II/III?

Sign up to receive alerts about other jobs on the Security Analyst II/III career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$148,382 - $214,197
Income Estimation: 
$178,760 - $261,217
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Gaston County Government

  • Gaston County Government Gaston, NC
  • The mission of Gaston County Emergency Medical Services (GEMS) is to preserve and enhance the quality of life for the residents and visitors of Gaston Coun... more
  • 5 Days Ago

  • Gaston County Government Gaston, NC
  • Gaston County Information Technology (IT) supports application development, a County-wide network infrastructure, internet service, server management, cent... more
  • 7 Days Ago

  • Gaston County Government Gaston, NC
  • Gaston County Information Technology (IT) supports application development, a County-wide network infrastructure, internet service, server management, cent... more
  • 7 Days Ago

  • Gaston County Government Gaston, NC
  • The mission of Gaston County Emergency Medical Services (GEMS) is to preserve and enhance the quality of life for the residents and visitors of Gaston Coun... more
  • 11 Days Ago


Not the job you're looking for? Here are some other Security Analyst II/III jobs in the Gaston, NC area that may be a better fit.

  • Gaston County Government Gaston, NC
  • The mission of Gaston County Emergency Medical Services (GEMS) is to preserve and enhance the quality of life for the residents and visitors of Gaston Coun... more
  • 11 Days Ago

AI Assistant is available now!

Feel free to start your new journey!