Analyst, Information Security (Seasonal)
Major League Baseball
| Company | Major League Baseball |
| Category | Security |
| Location | Remote |
| Remote | Remote |
| Employment | Not stated |
| Level | Not stated |
| Salary | Not stated by the employer |
| Posted | 15 Jul 2026 |
| Last verified | 30 Jul 2026 |
| Source | Employer career page (greenhouse) |
Description
The Analyst, Information Security (Seasonal) position will support Major League Baseball’s Email Security team with hands-on operational work, Microsoft 365 administration, ICES platform support, DMARC and sender authentication efforts, scripting, automation, and email security project execution. This role is ideal for someone with practical experience investigating email threats, working with enterprise email security tools, supporting authentication and domain protection efforts, and automating repetitive security workflows. The analyst will help protect Major League Baseball, Clubs, and related business units from phishing, business email compromise, spoofing, malware, impersonation, credential harvesting, and other email-based threats.
Responsibilities
Email Security Operations
Support administration, monitoring, and tuning of Major League Baseball’s email security platforms, including Microsoft Defender for Office 365, Exchange Online Protection, ICES solutions, secure email gateways, and related tools
Assist with phishing, BEC, spoofing, malware, impersonation, credential harvesting, and suspicious-message investigations
Analyze email headers, message traces, authentication results, URLs, attachments, sender reputation, and related telemetry to support detection and response
Review quarantined messages, investigate false positives and false negatives, and support allow/block and policy-tuning decisions
Microsoft 365, ICES, and Authentication Support
Assist with Microsoft 365 email security administration, including Defender for Office 365, Exchange Online Protection, Exchange Admin Center, Defender XDR, Threat Explorer, message trace, and related capabilities
Support ICES platform configuration, integrations, testing, operational maintenance, and reporting
Support SPF, DKIM, and DMARC configuration, reporting, and alignment across Major League Baseball-managed domains; exposure to BIMI and VMC is a plus
Assist with third-party sender validation, mail-flow review, authentication alignment, and domain protection efforts
Scripting, Automation, and Tooling
Use scripting languages such as Python, PowerShell, Go, or Bash to automate repetitive email security tasks, parse data, enrich investigations, and improve reporting
Work with Microsoft Graph, REST APIs, and security tool APIs to collect data, integrate systems, and support automation
Support proof-of-concept testing and evaluation of new email security tools, integrations, and workflows
Help improve operational efficiency through lightweight automation, repeatable processes, and clear documentation
Documentation and Project Support
Maintain accurate Jira, Asana, Confluence, GitHub, change-management, and configuration records
Create and update SOPs, runbooks, investigation guides, configuration documentation, and operational procedures
Track action items, document findings, and coordinate with security engineering, IT, infrastructure, and business stakeholders
Stay current on email-based threats and summarize relevant trends, risks, and recommendations for the team
Qualifications & Skills
Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent practical experience
2+ years of experience in email security, information security, SOC operations, messaging administration, IT operations, or a related technical role
Experience investigating suspicious emails, phishing reports, BEC attempts, spoofing, impersonation, malware delivery, or credential-harvesting activity
Familiarity with Microsoft 365 email administration or security tools, such as Defender for Office 365, Exchange Online Protection, Exchange Admin Center, Defender XDR, message trace, or Microsoft Graph
Familiarity with SPF, DKIM, DMARC, and common email authentication concepts
Technical Skills
Ability to investigate suspicious emails using headers, message t
970,107 openings. Erioun finds yours.Scored against your own profile, every hour.Try the radar →