University of California Job - 49490919 | CareerArc
  Search for More Jobs
Get alerts for jobs like this Get jobs like this tweeted to you
Company: University of California
Location: Oakland, CA
Career Level: Associate
Industries: Government, Nonprofit, Education

Description

Job Posting

For UCOP internal applicants, please login to the internal candidate gateway at: Jobs at UCOP  

UC OFFICE OF THE PRESIDENT

At the University of California (UC), your contributions make a difference. A world leader producing Nobel and Pulitzer prize recipients with over 150 years of groundbreaking research transforming the world. Choose a career where you can leverage your knowledge, skills and aspirations to inspire and support some of the greatest minds in the world, and those who will follow in their footsteps. Working at the University of California is being part of a unique institution, and a vibrant and diverse community. At the University of California, Office of the President, we propel our mission through impactful work locally, in government centers and systemwide. We are passionate people, serving the greater good.

The University of California, one of the largest and most acclaimed institutions of higher learning in the world, is dedicated to excellence in teaching, research and public service. The University of California Office of the President is the headquarters to the 10 campuses, six academic medical centers and three national laboratories and enrolls premier students from California, the nation and the world. Learn more about the UC Office of the President

Department Overview
The Information Technology (IT) department is a security first organization. We deliver data and technology services and, through collaboration with partners, transform the role of Information Technology to advance the UC mission. We maintain an innovative, inclusive, and supportive work environment. The Cyber-Risk Coordination Center (C3) provides systemwide services to address timely and pervasive issues such as identity theft, data security breaches, data leakage, cyber security, system outages, and risk assessment across organizations of various sizes and industries, with the goal of enabling ongoing, secure and reliable operations across the enterprise. 

Position Summary
As a senior member of the C3 Risk Assessment Unit, perform complex supplier security reviews involving highly sensitive or PHI data. Help maintain strong relationships with security teams across all UC locations. Review supplier security policies and controls documentation; administer questionnaires via automated platforms. Collaborate with procurement, IT, privacy, accessibility and risk services to determine level of risk to UC for potential and current vendors. Develop reporting standards for effectively communicating risk to internal stakeholders. Occasionally review work performed by team members or contractors to ensure all deliverables maintain a high level of quality. 

Key Responsibilities

50% Supplier assessment: Use TPRM systems to configure and manage HECVAT-based questionnaires, gather security documentation, assess and track risk. Use knowledge of risk management frameworks and UC's risk appetite to determine findings and provide recommendations as appropriate.

20% Communication and training: Regularly communicate with UC locations to understand anticipated work and help set priorities. Communicate as needed with external stakeholders to gather required materials. Train internal stakeholders on how to engage the team effectively.

20% Report development: Develop effective reporting and other deliverables to help stakeholders understand risk. Evaluate current and potential tools & software to help optimize the team's capabilities.

10% Quality control: Perform peer reviews of work performed by others to ensure accuracy, consistency, and clarity.


Experience
Required Qualifications

  • Min 8 years of relevant work experience.


Skills and Abilities
Required Qualifications

  • Knowledge of regulatory compliance frameworks including ISO27001, SOC 1 / 2, HIPAA, PCI-DSS, NIST CSF.
  • Familiarity with security questionnaires such as CAIQ, HECVAT, SIG/SIG Lite.
  • Familiarity with TPRM and GRC tools and platforms (ServiceNow, Archer etc.)
  • Experience conducting supplier security reviews.
  • Solid understanding of risk analysis and evaluation.
  • Ability to operate independently and set priorities in a fast-paced environment.
  • Advanced interpersonal skills sufficient to work effectively with both technical and non-technical personnel at various levels in the organization.
  • Advanced experience using IT security systems and tools.
  • Knowledge of department processes and procedures.
  • Demonstrated skills applying security controls to computer software and hardware.
  • Demonstrated skill at administering complex security controls and configurations to computer hardware, software and networks.
  • Advanced knowledge of data encryption technologies and experience selecting and applying appropriate data encryption technologies.
  • Advanced knowledge of IT security.
  • Broad knowledge of other areas of IT.
  • Demonstrated knowledge of secure hardware, software and network design techniques.
  • Demonstrated skill at analyzing and preventing security incidents of high complexity.
  • In-depth knowledge of computer hardware, software and network security issues and approaches.
  • Advanced experience in incident response and digital forensics including reporting.


Education
Required Qualifications

  • Bachelor's degree in related area and / or equivalent experience / training 


Licenses and Certifications
Preferred Qualifications

  • Security Certifications (CISSP, CISA, CRISC)


Job Title
IT Security Analyst 4

Job Code
000661

Salary Grade
Grade 25

Payscale:
$150,000 - $173,000

Full Salary Range:
$105,500 - $200,700

The University of California, Office of the President, is required to provide a reasonable estimate of the compensation range for this role. This range takes into account the wide range of factors that are considered in making compensation decisions including but not limited to experience, skills, knowledge, abilities, education, licensure and certifications, and other business and organizational needs. It is not typical for an individual to be offered a salary at or near the top of the range for a position. Salary offers are determined based on final candidate qualifications and experience. The full salary range shows the growth potential for this position and the pay scale is the budgeted salary or hourly range that the University reasonably expects to pay for this position.

Benefits: For information on the comprehensive benefits package offered by the University visit: Benefits of Belonging

ADDITIONAL INFORMATION

California Residency Requirement: California residents (or those willing to relocate*) who wish to hybrid or fully remotely, will be considered. This position is not eligible for visa transfer or partnership.

*If currently living out of state, please indicate on your application whether you are willing to relocate within a reasonable time frame by checking the "willing to relocate" box.

HOW TO APPLY

Please be prepared to attach a cover letter and resume with your application.

APPLICATION REVIEW DATE

The first review date for this job is (6/20/2024). The position will be open until filled.

CONDITIONS OF EMPLOYMENT

Background Check Process: Successful completion of a background check is required for this critical position. Background check process at UCOP

Smoke Free Work Environment: The University of California, Office of the President, is smoke & tobacco-free as of January 1, 2014. UC Smoke & Tobacco Free Policy

As a condition of employment, you will be required to comply with the University of California Policy on Vaccination Programs, as may be amended or revised from time to time. Federal, state, or local public health directives may impose additional requirements.

EEO STATEMENT

The University of California, Office of the President, is an Equal Opportunity/Affirmative Action Employer.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age or protected veteran status. For the University of California's Affirmative Action Policy please visit:  https://policy.ucop.edu/doc/4010393/PPSM-20.  For the University of California's Anti-Discrimination Policy, please visit: https://policy.ucop.edu/doc/1001004/Anti-Discrimination.

The University of California, Office of the President, strives to make this job board accessible to any and all users. If you have comments regarding the accessibility of our website or need assistance completing the application process, please contact us at: Accessibility or email the Human Resource Department at: epost@ucop.edu.

 



 Apply on company website