Information Security Analyst IV Job Summary Information Security Analyst IV Monitor, analyze, and maintain systems and procedures to safeguard internal information systems, network, databases, and Web-based security. Conduct vulnerability assessments and monitor systems, network, databases, and Web for potential system breaches / intrusions. Install security measures and operate software to protect systems and information infrastructure, including firewalls and data encryption programs. Respond
to alerts from information security tools. Report, investigate, and resolve security incidents. Educate and communicate security requirements and procedures to all users and new employees. Recommend and implement changes to enhance systems security and prevent unauthorized access. Research security trends, new methods, and techniques used in unauthorized access of data in order to preemptively eliminate the possibility of system breach. Ensure compliance with regulations and privacy laws. May oversee internal or external systems security (i.e. cloud services). About UIT : University Information Technology (UIT) , the central IT service provider for the University of Utah, reports to the U's Chief Information Officer and is responsible for many of the U's shared IT services including the wired and wireless network; Campus Information Services (CIS) portal; UMail, telephone, and online collaboration; digital learning technologies; information security; software licensing; and a host of other IT systems and services. About the University of Utah : Located in Salt Lake City, the U is the flagship institution of the State of Utah's system of higher education, home to arts and museum venues and a member of the BIG-12 Conference . Skiing and snowboarding opportunities are a short distance from campus, and opportunities to pursue activities from biking to hiking to fishing abound . Salt Lake City is home to the Utah Symphony and Opera , Ballet West , professional sports teams , and a wide range of other cultural and recreational activities. Responsibilities Information Security Analyst IV • Conduct formal cyber security risk assessments to identify and measure information security risks for applications, devices, systems and networks. • Have a working knowledge of policies, rules, procedures and guidelines from the University of Utah's regulations website. • Review and provide analysis for completed inherent risk questionnaires. • Have an in-depth knowledge of the University Information Security Policy • Familiarity with HIPAA/HITECH, GDPR, PCI-DSS, and FERPA compliance requirements. • Have an in-depth knowledge of NIST and CIS controls. • Prepare and present risk assessment reports. • Collaborate closely with and strengthen partnerships with other divisions within ISO • Identify opportunities to improve risk posture, proposing solutions for remediating or mitigating risk and assessing the residual risk. • Manage relationships with security, technology, and business stakeholders to identify and communicate security risks and mitigation approaches. • Assist in the continuous development, implementation, and ongoing maintenance of the information security training and awareness program. • Assist with the development and implementation of solutions and processes to remediate policy gaps. • Development of guidelines and best practice documents which provide direction to university students, staff and faculty on implementing appropriate controls. • Participate in compliance assessments. • Review and provide analysis for Exception to Policy requests. This job description is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to the job. Job Code: P34214Grade: P21 Minimum Qualifications EQUIVALENCY STATEMENT: 1 year of higher education can be substituted for 1 year of directly related work experience (Example: bachelor's degree = 4 years of directly related work experience). Information Security Analyst, IV: Requires a bachelor's (or equivalency) + 8 years or a master's (or equivalency) + 6 years of directly related work experience. Preferences • A bachelor's degree in information technology or systems, computer science, or equivalent experience in related fields. • One or more information security or technology risk assessment certifications (Security+, CIPT, CRISC, CISA, etc.) • Experience developing and implementing information security policy and procedures. • Experience with information security in a higher-education or healthcare environment. • Experience assessing and documenting the design of technology controls to effectively mitigate risk. Special Instructions A writing sample (cover letter) is required. The writing sample should demonstrate the applicant's ability to explain a technical, cybersecurity, risk, or compliance topic to a professional audience. Requisition Number: PRN46223B Full Time or Part Time? Full Time Work Schedule Summary: Monday through Friday, 8:00 a.m. to 5:00 p.m., with flexibility to work additional hours as needed to meet business or operational requirements. Department: 00954 - UIT Systems & Security Location: Campus Pay Rate Range: $102,000.00 - 117,000.00 Close Date: 12/15/2026 Open Until Filled: To apply, visit https://apptrkr.com/9832797 "">https://utah.peopleadmin.com/postings/209301 je-bce0dd49ddee4140b49cc8de3e7f413c
This is a Preview Listing…
You must sign in to see the full job description, and to apply.
Manage / Upgrade this job to a Full Job Listing.
Find Your Best Opportunity
Tell them AcademicJobs.com sent you!

