Search jobs > Los Angeles, CA > Information security

Information Security Risk Analyst

InsideHigherEd
Silver Lake, California, USA
$113.2K-$127.9K a year
Full-time

Information Security Risk Analyst

University of California Los Angeles

Budgeted Pay Scale : $113,166-$127,915

Full Salary Range : USD $78,800.00 / Yr. - USD $175,000.00 / Yr.

Department Summary

The UCLA Information Security Office enables UCLA's goals by providing leadership assuring the confidentiality, integrity, and availability of its information resources.

The Information Security Office enables efficient incident response planning and notification procedures. In addition, the office aims to implement risk assessment strategies to identify vulnerabilities and threats to departmental information resources and enterprise systems.

This includes executing a comprehensive UCLA IT security plan, which involves proposing, delivering, and enforcing administrative, technical, and physical security measures to tackle identified risks based on their sensitivity or criticality.

The Information Security Governance, Risk Management, and Compliance team develops institutional security policies, standards, procedures, compliance guidelines, strategies, requirements, and documentation for all administrative and academic units, departments, and teams.

The team also develops, deploys, and manages security education and training.

Position Summary

The Information Security Risk Analyst will be responsible for ensuring the success of UCLA's Cybersecurity Risk Management strategy.

As part of the Governance Risk & Compliance (GRC) team this role will work closely with business stakeholders, technology experts, cybersecurity professionals, and industry partners to ensure policies, procedures, and technology systems align with UCLA's goals and compliance requirements to support and drive a culture of proactively managing cyber risk.

This role will help proselytize governance, risk and compliance to support and drive a culture of proactively managing cyber risk for the UCLA Campus.

This individual will own and coordinate risk assessments in the areas of IT, information security, risk management & compliance.

They will also own remediation of non-compliant areas of IT. Additionally, they will support the development and implementation of IT security awareness programs for both technical and non-technical audiences.

The Information Security Risk Analyst will positively impact UCLA's operations and culture by protecting University stakeholders' to effectively implement and maintain UCLA's GRC framework, ensuring compliance with relevant regulations and standards, and providing insightful analysis of risk and control data.

This team member will advance the University's mission by delivering exceptional security service comprehensively and consistently across faculty, staff, and students.

This role will execute UCLA's vision while modeling UCLA's culture and values.

Salary & Compensation

UCLA provides a full pay range. Actual salary offers consider factors, including budget, prior experience, skills, knowledge, abilities, education, licensure and certifications, and other business considerations.

Salary offers at the top of the range are not common. Visit UC Benefit package to discover benefits that start on day one, and UC Total Compensation Estimator to calculate the total compensation value with benefits.

Qualifications

  • Three years experience working in one or more of the following fields : computer science, cybersecurity, computer information systems . (Required)
  • Three years performing technical assessments in direct support of a major compliance efforts, such as PCI, GDPR, NIST- CSF, ISO 27001, CMMC, FISMA, FedRAMP, or a related field. (Required)
  • Experience using IT security systems and tools. (Required)
  • Experience in performing risk, privacy, and data protection impact analyses, vendor reviews and maintaining records of processing. (Required)
  • Experience in complex higher education environments, serving academic and administrative functions of a large public university. (Preferred)
  • Demonstrated skills applying security controls to computer software and hardware. Demonstrated skill with applying complex security controls and configurations to computer hardware, software and networks. (Required)
  • Strong written and verbal communication skills and is able to communicate technical information and ideas to a diverse community of colleagues and stakeholders. (Required)
  • Able to establish and advance positive working relationships and a strong rapport with team members, stakeholders, and customers. (Required)
  • Strong organizational skills and is able to balance competing priorities and support concurrent projects. Ability to work in a project-based environment using project management practices. (Required)
  • Strong demonstrated problem-solving skills; scopes solutions based on knowledge of available resources and timelines. Able to ask questions, gather information, evaluate options, and make decisions with integrity. (Required)
  • Able to participate in activities to advance an inclusive environment that values equity, diversity, inclusion and belonging. (Required)
  • Thinks creatively and proposes innovative ideas, including the incorporation of new technologies or processes. Is able to work with agility in a fast-paced environment. (Required)

Education, Licenses, Certifications & Personal Affiliations

  • Bachelor's Degree in one or more of the following fields : information technology, cybersecurity, computer science, engineering, public administration, business administration, communications, or a related field. (Required)
  • Bachelor's Degree In one or more of the following fields : information technology, cybersecurity, computer science, engineering, public administration, business administration, communications. (Preferred)
  • Certified Information Security Manager (CISM) (Preferred)
  • Certified Information Systems Auditor (CISA) (Preferred)
  • Certified Information System Security Professional (CISSP) (Preferred)

Special Conditions for Employment

This position is eligible for a hybrid work arrangement that includes regular visits to campus as needed (for those who work remotely, travel / lodging expenses are not eligible for reimbursement).

The anticipated pay range for this position is $113,166-$127,915, annually; salary is dependent upon the skills and experience of the selected finalist.

NOTE : This position REQUIRES that a RESUME and COVER LETTER be submitted in addition to the application. Please have these two files ready to upload when applying.

  • Background Check : Continued employment is contingent upon the completion of a satisfactory background investigation.
  • Live Scan Background Check : A Live Scan background check must be completed prior to the start of employment.

Schedule

8 : 00 A.M. to 5 : 00 P.M. PT, Monday through Friday and / or variable based upon operational needs.

Union / Policy Covered

99-Policy Covered

To apply, please visit : https : / / jobs.ucla.edu / careers-home / jobs / 3006

Application Deadline : 8 : 50 p.m. on

Copyright 2024 Jobelephant.com Inc. All rights reserved.

Posted by the FREE value-added recruitment advertising agency

jeid-9ff597ade589b84bb940d2b963925939

8 hours ago
Related jobs
Promoted
Sumitomo Mitsui Banking Corporation (SMBC)
Los Angeles, California

Assist and begin to lead in the administration of Information Security Governance, Risk & Compliance (GRC) work across a broad spectrum of projects & programs within areas such as Audit & Regulatory Management, Risk & Control Management and Security Assessments. They will be given opportunities to p...

Promoted
VirtualVocations
Norwalk, California

An organization is seeking an Information Security Analyst II. ...

Promoted
University of California - Los Angeles (UCLA)
Los Angeles, California

The Information Security Analyst will support the security of UCLA's systems and data by supporting and maintaining enterprise cyber security tools and services that help to safeguard the organization's networks, systems, and data. ...

Promoted
VirtualVocations
Inglewood, California

A company is looking for an Information Security Analyst. ...

InsideHigherEd
Beverly Hills, California

The Information Security Risk Analyst will be responsible for ensuring the success of UCLA's Cybersecurity Risk Management strategy. The Information Security Risk Analyst will positively impact UCLA's operations and culture by protecting University stakeholders' to effectively implement and maintain...

University of California, Los Angeles
Los Angeles, California

The Information Security Risk Analyst will be responsible for ensuring the success of UCLA's Cybersecurity Risk Management strategy. The Information Security Risk Analyst will positively impact UCLA's operations and culture by protecting University stakeholders' to effectively implement and maintain...

InsideHigherEd
South Gate, California

The Senior Information Security Risk Analyst will drive the execution of UCLA's cybersecurity risk management strategy. The Senior Information Security Risk Analyst will also mentor and guide junior risk analysts in the team. The Senior Information Security Risk Analyst will positively impact UCLA's...

RAND
Santa Monica, California
Remote

RAND AI &Information Security Analysts advance RAND’s research in the intersection of AI, information security, and biosecurity by performing qualitative and quantitative research driving recommendations for the White House, multiple regulatory agencies, intelligence community, and other arms of the...

InsideHigherEd
Florence-Graham, California

Collaborating closely with various stakeholders, the Senior Information Security Compliance Analyst will assess security risks, devise robust security strategies, monitor incidents and vulnerabilities, and oversee all governance-related activities. The Senior Information Security Compliance Analyst ...

Munger, Tolles & Olson LLP
Los Angeles, California

Research, test, and recommend information security products based on the firm’s information security strategy, cost/benefit, and risk reduction methodologies. The Information Security Analyst role is responsible for ensuring the security of the firm’s data and systems. The Information Security Analy...