Information Security Analyst III Job at University of Arizona

Job ID : bGpQazJYZ0ZNeGFPc0YyMlY0MjJydz09

Posting Number
req14446

Department
Research & Discovery Tech

Department Website Link

Location
Main Campus

Address
Tucson, AZ USA

Position Highlights

University Information Technology Services (UITS) Research and Discovery Technologies (UITS RDT), within the University of Arizona, is seeking an Information Security Analyst III. The Information Security Analyst III will work with UArizona researchers and other UArizona offices to assess project information security requirements and other compliance controls as well as recommend and implement appropriate controls for the protection of controlled and regulated data. Research Technologies is responsible for supporting the research mission of the University using technology and other services such High Performance Computing (HPC), data visualization, statistical and HPC consulting, and Controlled and Regulated Research Data Services.

The position will work closely with department/college technology staff, the University Export Control Program, the UA Information Security Office, and the UA HIPAA Privacy Program to ensure a collaborative and common approach to security information issues across the institution. Federal regulations require that the incumbent be a U.S. citizen or legal permanent resident to be ITAR/EAR compliant.

Outstanding UA benefits include health, dental, and vision insurance plans; life insurance and disability programs; paid vacation, sick leave, and holidays; UA/ASU/NAU tuition reduction for the employee and qualified family members; state and optional retirement plans; access to UA recreation and cultural activities; and more!

The University of Arizona has been recognized for our innovative work-life programs.



Duties & Responsibilities

JOB DESCRIPTION:

  • Review existing IT security plans with system, application, and data owners/managers to ensure that controls are properly implemented, and to actively identify any gaps that may result in non-compliance with regulatory requirements.
  • Support the implementation, monitoring and audit of security controls in the controlled and regulated research services environments and services through conducting risk assessments, coordinating vulnerability scans, and penetration tests to identify security risks, and report on findings to system owners and management. Using output from risk assessments and requirements analysis, assist system, application, and data owners/managers with selecting IT security controls and documenting system IT security plans to attain and maintain compliance with various regulatory requirements, including but not limited to CMMC, NIST, FIPS, HIPAA, etc.
  • Build and maintain positive working relationships by working directly with faculty, staff, departmental technology staff and students to provide expert guidance on federal regulations, UA policy and procedures, and IT security protocols implemented to achieve compliance.
  • Participate in the planning process to ensure information security is a core principle for all UITS Research and Discover Technology services.
  • Provide reports / presentations on the status of IT security controls and industry trends to management, technical staff, and other stakeholders.
  • Respond to relevant service requests received from end-users conducting activities subject to IT security requirements.
  • Conduct physical audits and inventories of IT assets used in controlled and regulated research activities, analyzing variances of IT assets with federal standards.
  • Review of weekly security reports for compliance purposes
  • Participate in institution-wide efforts to ensure compliant technical solutions are in place and readily accessible for researchers.
  • SPECIAL PROJECTS OF INTEREST – CMMC Readiness, Office 365 GCC High and Secure HPC Services.

KNOWLEDGE, SKILLS AND ABILITIES:

  • Knowledge of security frameworks based on NIST 800-53, NIST 800-171, or ISO 27001
  • Knowledge of complex government (federal and/or state) security regulations.
  • Ability to translate complex government security regulations into security controls both technical and administrative in nature.
  • Proven strong communication (both verbal and written) and interpersonal skills.
  • Ability to collaborate with a multi-functional, cross-department team.
  • Ability to practice discretion around sensitive issues.

Minimum Qualifications
  • Bachelor’s degree in computer or information systems or a related area AND 5 years of information technology security, information assurance, identity and access management, or related experience.
  • Experience with industry security standards, frameworks, processes, and controls with in-depth expertise in at least one of the following areas: information technology security, information assurance, identity and access management, or secure development practices.

Preferred Qualifications
  • Security specific certification such as CISA, CISM, various GIAC (such as GCED, GPPA), COMP TIA.
  • Knowledge and experience in developing and maintaining cybersecurity policies based on NIST 800-53, NIST 800-171, or ISO 27001.
  • Knowledge and experience with complex government regulations (HIPAA, CMMC / CUI) with expertise in at least one of the following areas: Secure development practices, information technology security, information assurance, identity and access management, or related experience, with preferred service in the Federal Government, DoD Industrial Security environment, or Health Care Organization.
  • Experience leading technical initiatives in a collaborative environment.
  • Experience problem-solving in secure IT environments.
  • Experience in a Higher Education environment.
  • Already have or be able to obtain a U.S. Government Security Clearance.

FLSA
Exempt

Full Time/Part Time
Full Time

Number of Hours Worked per Week
40

Job FTE
1.0

Work Calendar
Fiscal

Job Category
Information Technology

Benefits Eligible
Yes - Full Benefits

Rate of Pay
$80,265 - $109,002, DOE

Compensation Type
salary at 1.0 full-time equivalency (FTE)

Grade
11

Career Stream and Level
PC3

Job Family
Information Security

Job Function
Information Technology

Type of criminal background check required:
Fingerprint criminal background check (security sensitive due to title or department)

Number of Vacancies
1

Target Hire Date

Expected End Date

Contact Information for Candidates
uits-jobs@arizona.edu

Open Date
4/14/2023

Open Until Filled
Yes

Documents Needed to Apply
Resume, Cover Letter, and One Additional Document

Special Instructions to Applicant
INSTRUCTIONS FOR WRITING SAMPLE:
Provide a written sample of a security or compliance standard, policy or technical/administrative control document. At a minimum, it should contain the following: Purpose and Summary, Scope, Standard/Policy/Control statements, Recourse for noncompliance statements.

Diversity Statement
At the University of Arizona, we value our inclusive climate because we know that diversity in experiences and perspectives is vital to advancing innovation, critical thinking, solving complex problems, and creating an inclusive academic community. As a Hispanic-serving institution, we translate these values into action by seeking individuals who have experience and expertise working with diverse students, colleagues, and constituencies. Because we seek a workforce with a wide range of perspectives and experiences, we provide equal employment opportunities to applicants and employees without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity, or genetic information. As an Employer of National Service, we also welcome alumni of AmeriCorps, Peace Corps, and other national service programs and others who will help us advance our Inclusive Excellence initiative aimed at creating a university that values student, staff and faculty engagement in addressing issues of diversity and inclusiveness.
themediafat.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, themediafat.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, themediafat.com is the ideal place to find your next job.

Related jobs

Community health center in Yakima, Washington has an urgent need for a Nurse Practitioner with Pediatrics experience. The ideal provider will have experience and be bilingual in Spanish. This is a
Route 130 Chrysler Dodge Jeep is looking to hire a Part Time Receptionist for our busy switchboard. Good Customer Service Skills are a MUST! Hours are as follows:Must be available afternoons,
Please note, this position is located at Steamboat Resort in Steamboat Springs, CO. Seasonal (Seasonal) Who We Are: Steamboat- Ski Town, U.S.A. is known as the friendliest mountain
Front Desk Receptionist Job at Cole Pain Therapy Group
Cole Pain Therapy Group Memphis, TN 38134 Full time 16 days ago
$15 - $20 an hour
Call 901-300-5013 in order to apply.Full details at https://colepaintherapygroup.com/careers/Front Desk Receptionist (full-time and part-time opportunities)Our growing company seeks an outgoing
SHT Washington DC is the latest concept from globally renowned restaurateur and venture capitalist Arjun Waney (ZUMA, ROKA, COYA, La Petite Maison [LPM] & The Arts Club). Launched in the
Rally House is IMMEDIATELY HIRING part-time retail sales associates! Who We Are Rally House Aggieville is a local specialty retail store that specializes in all things Kansas State. We are fans,
JOB FUNCTION: Job functions include but are not limited to the following. Provide support for improvement projects at the West Monroe Mill. Depending on area assigned and major, you may work
Are you motivated to play a role in creating the next generation in humanoid robotics? As a Senior Software Engineer on the Manipulation R&D team, you will help design, develop, and