As a member of the UH Information Security team, this role oversees, manages, and maintains the UH information security data protection, risk management, and compliance program. The position serves as the primary Research Security Compliance Analyst, providing advice on regulatory/legal/compliance requirements related to Cybersecurity Maturity Model Certification (CMMC) and other international, federal, and state research compliance regulations. The role is responsible for the design, implementation, and oversight of security frameworks required for federally funded research, ensuring university infrastructure and specific secure research enclaves (SREs) meet requirements of CMMC, NIST SP 800-171, NIST SP 800-53, HIPAA, and other applicable federal regulations. This includes consulting with Principal Investigators (PIs) during the pre-award phase, developing and maintaining System Security Plans (SSPs) and Plan Of Action and Milestones (POAMs), mapping NIST 800-171 controls to CMMC levels, and serving as a point of contact for external auditors. The role also involves educating, advising, and training staff on compliance and security, developing online educational materials, conducting assessments, providing risk reports, assisting with policy implementation, managing self-assessment scores in SPRS, and participating in security incident responses.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior