{"21663732":{"jobPath":"/jobs/21663732/senior-director-privacy-and-cybersecurity","source":"naylor","job":"21663732","jobTitle":"Senior Director, Privacy and Cybersecurity"},"21634238":{"jobPath":"/jobs/21634238/associate-vice-president-of-audit-services-and-institute-compliance-chief-compliance-officer","source":"naylor","job":"21634238","jobTitle":"Associate Vice President of Audit Services and Institute Compliance & Chief Compliance Officer"},"21694419":{"jobPath":"/jobs/21694419/26-41-electronic-security-operator-clerical-assistant-3-public-safety-department","source":"naylor","job":"21694419","jobTitle":"26-41 Electronic Security Operator (Clerical Assistant 3) ? Public Safety Department"},"21694557":{"jobPath":"/jobs/21694557/information-security-engineer-1-2-3","source":"naylor","job":"21694557","jobTitle":"Information Security Engineer 1/2/3"},"21688917":{"jobPath":"/jobs/21688917/manager-director-government-affairs-environment-occupational-health-safety-facility-security","source":"naylor","job":"21688917","jobTitle":"Manager/Director, Government Affairs (Environment, Occupational Health & Safety, Facility Security)"},"21696996":{"jobPath":"/jobs/21696996/security-cyber-physical-advisor","source":"naylor","job":"21696996","jobTitle":"Security (Cyber/Physical) Advisor"},"21568027":{"jobPath":"/jobs/21568027/it-audit-manager","source":"naylor","job":"21568027","jobTitle":"IT Audit Manager"},"21695201":{"jobPath":"/jobs/21695201/imaging-support-specialist-is-client-services-full-time-8-hour-days-non-exempt-non-union","source":"naylor","job":"21695201","jobTitle":"Imaging Support Specialist - IS Client Services - Full Time 8 Hour Days (Non-Exempt) (Non-Union)"},"21696663":{"jobPath":"/jobs/21696663/it-systems-administrator","source":"naylor","job":"21696663","jobTitle":"IT Systems Administrator"},"21653924":{"jobPath":"/jobs/21653924/information-systems-auditor-auditor-iv","source":"naylor","job":"21653924","jobTitle":"Information Systems Auditor (Auditor IV)"},"21697376":{"jobPath":"/jobs/21697376/it-desktop-field-service-technician","source":"naylor","job":"21697376","jobTitle":"IT Desktop Field Service Technician"},"21700492":{"jobPath":"/jobs/21700492/coordinator-student-governments","source":"naylor","job":"21700492","jobTitle":"Coordinator, Student Governments"},"21697692":{"jobPath":"/jobs/21697692/assistant-professor-decision-risk-and-operations","source":"naylor","job":"21697692","jobTitle":"Assistant Professor - Decision, Risk, and Operations"},"21623566":{"jobPath":"/jobs/21623566/senior-internal-audit-data-analyst","source":"naylor","job":"21623566","jobTitle":"Senior Internal Audit Data Analyst"},"21636806":{"jobPath":"/jobs/21636806/senior-it-and-data-analytics-internal-auditor","source":"naylor","job":"21636806","jobTitle":"Senior IT and Data Analytics Internal Auditor"},"21670759":{"jobPath":"/jobs/21670759/vice-president-office-of-audit-compliance-and-privacy","source":"naylor","job":"21670759","jobTitle":"Vice President, Office of Audit, Compliance and Privacy"},"21620258":{"jobPath":"/jobs/21620258/technology-audit-manager","source":"naylor","job":"21620258","jobTitle":"Technology Audit Manager"},"21700918":{"jobPath":"/jobs/21700918/postdoctoral-associate-ai-trust-and-the-governance-of-digital-transactions","source":"naylor","job":"21700918","jobTitle":"Postdoctoral Associate: “AI, Trust, and the Governance of Digital Transactions”"},"21696704":{"jobPath":"/jobs/21696704/it-instructional-technology-desktop-support-specialist","source":"naylor","job":"21696704","jobTitle":"IT Instructional Technology & Desktop Support Specialist"},"21699935":{"jobPath":"/jobs/21699935/museum-security-guard-part-time","source":"naylor","job":"21699935","jobTitle":"Museum Security Guard (Part-Time)"},"21696603":{"jobPath":"/jobs/21696603/security-officer","source":"naylor","job":"21696603","jobTitle":"Security Officer"},"21697388":{"jobPath":"/jobs/21697388/network-security-engineer","source":"naylor","job":"21697388","jobTitle":"Network Security Engineer"},"21695189":{"jobPath":"/jobs/21695189/director-cyber-governance","source":"naylor","job":"21695189","jobTitle":"Director, Cyber Governance"},"21697387":{"jobPath":"/jobs/21697387/it-service-desk-analyst-technical","source":"naylor","job":"21697387","jobTitle":"IT Service Desk Analyst - Technical"},"21698072":{"jobPath":"/jobs/21698072/research-data-security-analyst-intermediate","source":"naylor","job":"21698072","jobTitle":"Research Data Security Analyst Intermediate"}}
A cover letter and resume are important submissions for the hiring team to get a sense of your experience. In the cover letter, in one page or less, please let us know how this role aligns with your career aspirations and skills. Submit both a cover letter and resume as one file.
Competitive salary available based on qualifications, experience and education of the selected candidate.
Job Summary:
The Information and Technology Services (ITS) organization at the University of Michigan has an exciting opportunity for a Research Data Security Analyst Intermediate to join the IT Security Design and Engineering Team within Information Assurance (IA). As part of a high performance team with expanding responsibilities, you will have the opportunity to work in a very collaborative and dynamic environment to perform risk and compliance assessments of critical systems to improve the security posture of the University's most sensitive assets, and provide security consulting for university systems and units.
Positions that are eligible for hybrid or mobile/remote work mode are at the discretion of the hiring department. Work agreements are reviewed annually at a minimum and are subject to change at any time, and for any reason, throughout the course of employment. Learn more about the work modes.
Who we are:
Information and Technology Services (ITS) supports U-M faculty, researchers, staff, and students in their use of technology to teach, learn, research, and work, and be leaders in their fields. We are dedicated to creating cohesive digital experiences and promoting university wide innovations. ITS's mission is to be trusted enablers of technology for the U-M community. ITS works together to provide cohesive digital experiences and seamless support to the U-M community. For more information about ITS, visit:https://its.umich.edu/about
The Information Assurance (IA) Office:
Directs IT security, policy, compliance, privacy, enterprise continuity, and identity and access management (IAM) strategy across the entire university.
Proactively mitigates IT security risks in partnership with U-M's campuses: UM-Ann Arbor, UM-Dearborn, UM-Flint, and Michigan Medicine.
Collaborates with U-M units to:
Develop university IT security, privacy, and IAM strategy.
Implement best practice security, privacy, and IAM infrastructure and protocols.
Takes a risk-based approach to securing the university's most sensitive information assets that enables teaching, learning, research, and healthcare in a large open environment.
Provides operational information assurance and IAM services that enable the university to excel in its research, teaching, and patient care missions
Provides guidance to the entire university community on IT security and privacy compliance best practices to help individuals protect university systems and data, as well as their own personal information.
Participate in the successful execution of a potentially wide range of security services and activities. Primary responsibilities include:
Research Support - Support U-M researchers in understanding and meeting compliance requirements including but not limited to HIPAA, CUI, and NIST 800-53 and 800-171 standards by performing compliance based risk assessments on research environments at U-M and developing and maintaining and risk assessment templates and proposed options to simplify the work researchers have to perform to obtain compliance approval for their research projects.
Risk Management - Use tools and methodology to assess the information security risks associated with sensitive and mission critical systems based on the NIST 800-53 security control framework and develop mitigation strategies to bring risk levels into an acceptable range.
Compliance - Determine applicability and scope of various regulations; interpret and implement technical requirements to ensure compliance.
System and Application Hardening - Develop, implement, and monitor secure system and application configuration standards in accordance with applicable policies, regulations, and laws
Education & Awareness - Support campus units through creation and delivery of education and awareness materials, security orientations and training.
Additional Duties may include the following based on skills and experience of the candidate -
Security Advising - Provide on-demand and in-depth ongoing security advising to campus units regarding security initiatives, systems procurement and hardening, handling sensitive data, system security plans, research proposals, and other security related topics.
Subject Matter Expert - Participate as an information assurance subject matter expert in the analysis and design of new enterprise systems and services; Participate in the design, implementation, and continuous improvement of security service offerings. Provide consulting services to campus units on your subject matter expertise.
Required Qualifications:
Bachelor's degree in Computer Science, Computer Engineering, or Information Assurance or an equivalent combination of education and experience
Minimum of 4 years information technology experience
Minimum of 2 years of experience applying security related technologies, practices, or services
1 to 2 years experience working with various regulatory and compliance requirements including Export Control, HIPAA, CUI, FISMA
System administration background with Microsoft, Macintosh or *nix environments
Solid understanding of fundamental Operating System and TCP/IP Networking concepts
Solid understanding of fundamental information security concepts including: Authentication, Authorization, Audit, Encryption, Firewalls
Extensive exposure to, experience with, responsibility for, and deep understanding of at least two security related technologies or practices including Risk Management, Incident Response, Vulnerability Management, Penetration Testing, IDS/IPS, System and Application Hardening, Identity and Access Management, Security Information and Event Management, Firewall management, IDS/IPS
A strong commitment to collaboration, teamwork, and continual improvement
Outstanding verbal, written, and presentation communication skills, including the ability to explain technical concepts to a non-technical audience
Demonstrated success working independently, and completing tasks within established deadlines
Desired Qualifications:
Experience performing information security risk assessments using an interview-based approach
Experience assessing the security architecture of proposed IT solutions
Information Security Certification. For example, CISSP
Benefits at the University of Michigan:
In addition to a career filled with purpose and opportunity, The University of Michigan offers a comprehensive benefits package to help you stay well, protect yourself and your family and plan for a secure future. Benefits include:
Generous time off
A retirement plan that provides two-for-one matching contributions with immediate vesting
Many choices for comprehensive health insurance
Life insurance
Long-term disability coverage
Flexible spending accounts for healthcare and dependent care expenses
Dental and Vision Insurance
Parental and Maternity Leave
Application Deadline:
Job openings are posted for at least seven calendar days. The review and selection process may begin as early as the eighth day after posting. This opening may be removed from posting boards and filled anytime after the minimum posting period has ended.
The University of Michigan is an equal employment opportunity employer.
A great university is made so by its faculty and staff, and Michigan is recognized as one of the best universities to work for in the country. The Michigan culture is known for engaging faculty and staff in all facets of the university to create a workplace that is vibrant and stimulating.For two consecutive years, the Chronicle of Higher Education has placed U-M in its "Great Colleges to Work For" survey. In particular, the university earns high marks for strong relations between faculty and administrators, a collaborative system of governance, strong pay and benefits, and a healthy work/life balance.