Logo
Rutgers University

Information Security Risk Analyst

Rutgers University, New Brunswick, New Jersey, us, 08933


Position Details

Position Information

Recruitment/Posting Title:

Information Security Risk Analyst

Job Category:

Staff & Executive - Information Technology

Department:

OIT-Info Protection & Security-Z26723

Overview:

Rutgers, The State University of New Jersey, stands among the nation's highest-ranked, most diverse public research universities. The Office of Information Technology (OIT) provides university-wide services and support and collaborates with department and unit IT professionals on projects and initiatives for the Rutgers community.

Posting Summary:

Rutgers, The State University of New Jersey, is seeking an Information Security Analyst for the Office of Information Technology (OIT). This position is responsible for facilitating and evaluating internal and 3rd party information security risk assessments.

Key Duties:Provides risk remediation recommendations to mitigate identified control gaps and drives awareness of available supporting resources and technologies.Works closely with stakeholders across campus to ensure that risks are well documented and communicated.Maintains a formal risk register that drives security governance and ensures security findings are aligned with business objectives.Acts as a Subject Matter Expert (SME) for end-to-end management of findings for information security assessments for vendors and applications.Assists in creating policies and procedures to help reduce risk.Performs other tasks as assigned.

Position Status:

Full Time

FLSA:

Exempt

Annual Minimum Salary:

$104,442.00

Annual Mid Range Salary:

$126,225.00

Annual Maximum Salary:

$150,519.00

Qualifications:Minimum Education and Experience:Bachelor's degree is required, preferably in Computer Science, Information Systems, or Management Information.Minimum of five (5) years of experience performing Information Security assessments with knowledge of HIPAA, GLBA, and PCI DSS regulations and frameworks such as NIST CSF.Required Knowledge, Skills, and Abilities:Possess excellent interpersonal, communication, and influencing skills.Ability to collaborate effectively across a variety of disciplines and levels inside/outside the organization.Ability to effectively analyze, document, and communicate information security concepts to different user bases, including students, faculty, staff, and systems personnel.Demonstrates skill in conducting internal or external risk assessments and providing guidance on the implementation, monitoring, and reporting of control processes, documentation, and compliance measures and/or remediation items.Ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily understood, authoritative, and actionable manner.Ability to identify and assess the severity and potential impact of risks and to communicate findings effectively to risk owners.Preferred Qualifications:Knowledge of common cybersecurity frameworks and standards (e.g., NIST 800-171, ISO 27001/27002).Experience with Governance, Risk & Compliance and/or Vendor Risk Management platforms.Interpersonal skills sufficient to work effectively with both technical and non-technical personnel at various levels in the organization.CISSP, CRISC certification.Posting Details:Posting Number:

23ST2561Posting Open Date:

09/19/2023Regional Campus:

Rutgers University-New BrunswickHome Location Campus:

Rutgers University - New BrunswickCity:

New BrunswickState:

NJPre-employment Screenings:

All offers of employment are contingent upon successful completion of all pre-employment screenings.Immunization Requirements:

Under Policy 100.3.1 Immunization Policy for Covered Individuals, if employment will commence during Flu Season, Rutgers University may require certain prospective employees to provide proof that they are vaccinated against Seasonal Influenza for the current Flu Season, unless the University has granted the individual a medical or religious exemption.Affirmative Action/Equal Employment Opportunity Statement:

It is university policy to provide equal employment opportunity to all its employees and applicants for employment regardless of their race, creed, color, national origin, age, ancestry, nationality, marital or domestic partnership or civil union status, sex, pregnancy, gender identity or expression, disability status, liability for military service, protected veteran status, affectional or sexual orientation, atypical cellular or blood trait, genetic information (including the refusal to submit to genetic testing), or any other category protected by law.

#J-18808-Ljbffr