Department
Research & Discovery Tech
Position Highlights
University Information Technology Services (UITS) Research and Discovery Technologies (UITS RDT), within the University of Arizona, is seeking an Information Security Analyst III. The Information Security Analyst III will work with UArizona researchers and other UArizona offices to assess project information security requirements and other compliance controls as well as recommend and implement appropriate controls for the protection of controlled and regulated data. Research Technologies is responsible for supporting the research mission of the University using technology and other services such High Performance Computing (HPC), data visualization, statistical and HPC consulting, and Controlled and Regulated Research Data Services.
The position will work closely with department/college technology staff, the University Export Control Program, the UA Information Security Office, and the UA HIPAA Privacy Program to ensure a collaborative and common approach to security information issues across the institution. Federal regulations require that the incumbent be a U.S. citizen or legal permanent resident to be ITAR/EAR compliant.
Outstanding UA benefits include health, dental, and vision insurance plans; life insurance and disability programs; paid vacation, sick leave, and holidays; UA/ASU/NAU tuition reduction for the employee and qualified family members; state and optional retirement plans; access to UA recreation and cultural activities; and more!
The University of Arizona has been recognized for our innovative work-life programs.
Duties & Responsibilities
JOB DESCRIPTION:
- Review existing IT security plans with system, application, and data owners/managers to ensure that controls are properly implemented, and to actively identify any gaps that may result in non-compliance with regulatory requirements.
- Support the implementation, monitoring and audit of security controls in the controlled and regulated research services environments and services through conducting risk assessments, coordinating vulnerability scans, and penetration tests to identify security risks, and report on findings to system owners and management. Using output from risk assessments and requirements analysis, assist system, application, and data owners/managers with selecting IT security controls and documenting system IT security plans to attain and maintain compliance with various regulatory requirements, including but not limited to CMMC, NIST, FIPS, HIPAA, etc.
- Build and maintain positive working relationships by working directly with faculty, staff, departmental technology staff and students to provide expert guidance on federal regulations, UA policy and procedures, and IT security protocols implemented to achieve compliance.
- Participate in the planning process to ensure information security is a core principle for all UITS Research and Discover Technology services.
- Provide reports / presentations on the status of IT security controls and industry trends to management, technical staff, and other stakeholders.
- Respond to relevant service requests received from end-users conducting activities subject to IT security requirements.
- Conduct physical audits and inventories of IT assets used in controlled and regulated research activities, analyzing variances of IT assets with federal standards.
- Review of weekly security reports for compliance purposes
- Participate in institution-wide efforts to ensure compliant technical solutions are in place and readily accessible for researchers.
- SPECIAL PROJECTS OF INTEREST – CMMC Readiness, Office 365 GCC High and Secure HPC Services.
KNOWLEDGE, SKILLS AND ABILITIES:
- Knowledge of security frameworks based on NIST 800-53, NIST 800-171, or ISO 27001
- Knowledge of complex government (federal and/or state) security regulations.
- Ability to translate complex government security regulations into security controls both technical and administrative in nature.
- Proven strong communication (both verbal and written) and interpersonal skills.
- Ability to collaborate with a multi-functional, cross-department team.
- Ability to practice discretion around sensitive issues.
Minimum Qualifications
- Bachelor’s degree in computer or information systems or a related area AND 5 years of information technology security, information assurance, identity and access management, or related experience.
- Experience with industry security standards, frameworks, processes, and controls with in-depth expertise in at least one of the following areas: information technology security, information assurance, identity and access management, or secure development practices.
Preferred Qualifications
- Security specific certification such as CISA, CISM, various GIAC (such as GCED, GPPA), COMP TIA.
- Knowledge and experience in developing and maintaining cybersecurity policies based on NIST 800-53, NIST 800-171, or ISO 27001.
- Knowledge and experience with complex government regulations (HIPAA, CMMC / CUI) with expertise in at least one of the following areas: Secure development practices, information technology security, information assurance, identity and access management, or related experience, with preferred service in the Federal Government, DoD Industrial Security environment, or Health Care Organization.
- Experience leading technical initiatives in a collaborative environment.
- Experience problem-solving in secure IT environments.
- Experience in a Higher Education environment.
- Already have or be able to obtain a U.S. Government Security Clearance.
Full Time/Part Time
Full Time
Number of Hours Worked per Week
40
Job Category
Information Technology
Benefits Eligible
Yes - Full Benefits
Rate of Pay
$80,265 - $109,002, DOE
Compensation Type
salary at 1.0 full-time equivalency (FTE)
Career Stream and Level
PC3
Job Family
Information Security
Job Function
Information Technology
Type of criminal background check required:
Fingerprint criminal background check (security sensitive due to title or department)
Contact Information for Candidates
uits-jobs@arizona.edu
Documents Needed to Apply
Resume, Cover Letter, and One Additional Document
Special Instructions to Applicant
INSTRUCTIONS FOR WRITING SAMPLE:
Provide a written sample of a security or compliance standard, policy or technical/administrative control document. At a minimum, it should contain the following: Purpose and Summary, Scope, Standard/Policy/Control statements, Recourse for noncompliance statements.
Diversity Statement
At the University of Arizona, we value our inclusive climate because we know that diversity in experiences and perspectives is vital to advancing innovation, critical thinking, solving complex problems, and creating an inclusive academic community. As a Hispanic-serving institution, we translate these values into action by seeking individuals who have experience and expertise working with diverse students, colleagues, and constituencies. Because we seek a workforce with a wide range of perspectives and experiences, we provide equal employment opportunities to applicants and employees without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity, or genetic information. As an Employer of National Service, we also welcome alumni of AmeriCorps, Peace Corps, and other national service programs and others who will help us advance our Inclusive Excellence initiative aimed at creating a university that values student, staff and faculty engagement in addressing issues of diversity and inclusiveness.
themediafat.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, themediafat.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, themediafat.com is the ideal place to find your next job.