University of California - Los Angeles, CA

posted 3 months ago

Full-time - Mid Level
Los Angeles, CA
Educational Services

About the position

The Senior Information Security Compliance Analyst at UCLA plays a crucial role in safeguarding the university's information technology systems and data through effective governance practices. This position is situated within the UCLA Information Security Office, which is dedicated to ensuring the confidentiality, integrity, and availability of the university's information resources. The office is responsible for implementing risk assessment strategies to identify vulnerabilities and threats to departmental information resources and enterprise systems. The Senior Analyst will lead the execution of a comprehensive IT security plan, which includes proposing, delivering, and enforcing administrative, technical, and physical security measures to address identified risks based on their sensitivity or criticality. In this role, the Senior Information Security Compliance Analyst will develop, implement, and maintain comprehensive IT security governance frameworks, policies, and procedures to protect valuable information assets and ensure compliance with industry standards and regulations. The Analyst will collaborate closely with various stakeholders to assess security risks, devise robust security strategies, monitor incidents and vulnerabilities, and oversee all governance-related activities. This position is pivotal in cultivating a proactive cyber risk management culture, thereby fortifying the university's cybersecurity posture. The Senior Information Security Compliance Analyst will have a significant impact on UCLA's operations and culture by protecting the information and data of university stakeholders in service of the institution's academic mission. This team member will advance the university's mission by delivering exceptional security services comprehensively and consistently across faculty, staff, and students. The role embodies UCLA's vision while modeling the university's culture and values.

Responsibilities

  • Develop, implement, and maintain IT security governance frameworks, policies, and procedures.
  • Assess security risks and devise robust security strategies.
  • Monitor incidents and vulnerabilities related to information security.
  • Oversee all governance-related activities to ensure compliance with industry standards and regulations.
  • Collaborate with various stakeholders to enhance security practices and awareness.
  • Conduct security risk assessments and develop risk mitigation strategies.
  • Lead the execution of a comprehensive IT security plan, including administrative, technical, and physical security measures.
  • Cultivate a proactive cyber risk management culture within the university.

Requirements

  • 5 years of experience in cybersecurity, information technology, computer science, or related field.
  • Proven experience in IT security governance or a related role, preferably in an educational or large organizational setting.
  • Experience in advancing an inclusive environment that values equity, diversity, inclusion, and belonging.
  • Strong knowledge of security governance frameworks and standards such as ISO 27001, NIST, or COBIT.
  • Proficiency in conducting security risk assessments and developing risk mitigation strategies.
  • Expert knowledge of IT security and demonstrated skill in designing and developing complex security policies and procedures.
  • Advanced written and verbal communication skills, able to communicate complex technical ideas to diverse audiences.
  • Ability to establish and advance positive working relationships with a diverse community of colleagues.
  • Advanced organizational skills to balance competing priorities and deliver concurrent projects.
  • Advanced problem-solving skills to uncover root causes of difficult problems and scope solutions.

Nice-to-haves

  • Experience in complex higher education environments, serving academic and administrative functions of a large public university.
  • 7+ years of experience in information technology, computer science, or related field.
  • Bachelor's Degree in information technology, computer science, public administration, business administration, communications, or related field (preferred).
  • CISSP, CISA, Security+, CEH, CISM, or equivalent certification (preferred).

Benefits

  • Comprehensive health insurance coverage starting on day one.
  • Retirement savings plan options including 401k.
  • Tuition reimbursement for further education.
  • Professional development opportunities and training programs.
  • Paid holidays and vacation time.
  • Flexible scheduling options based on operational needs.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service