Senior IT Security Analyst Risk Management

UVA Health SystemNewcomb Hall, VA
79d$74,922 - $149,843

About The Position

The Senior IT Security Analyst -Risk Management is a highly skilled and technically proficient member of the Cybersecurity Operations team within the University of Virginia Health System Health IT (HIT) organization. This role is critical in deploying, configuring, operating, troubleshooting, and evaluating the effectiveness of a wide array of cybersecurity controls and services. The ideal candidate will have deep technical expertise and a passion for defending complex environments against evolving cyber threats.

Requirements

  • Bachelor's degree
  • 5-7 years relevant experience
  • Relevant experience may be considered in lieu of a degree
  • CISSP or HCISPP or similar preferred

Responsibilities

  • Assess the effectiveness of security controls
  • Perform security reviews
  • Work with Leadership to develop a cybersecurity risk management plan
  • Recommend risk mitigation strategies
  • Conduct risk analysis of applications and systems undergoing major changes
  • Advise on Risk Management Framework process activities and documentation
  • Determine if authorization and assurance documents identify an acceptable level of risk for software applications, systems, and networks
  • Update security documentation to reflect current application and system security design features
  • Document software, network, and system deviations from implemented security postures
  • Recommend required actions to correct software, network, and system deviations from implemented security postures
  • Work with Leadership to develop cybersecurity compliance processes for external services
  • Work with Leadership to develop cybersecurity audit processes for external services
  • Work with Leadership to provide cybersecurity guidance to organizational risk governance processes
  • Determine if vulnerability remediation plans are in place
  • Develop vulnerability remediation plans
  • Determine if cybersecurity requirements have been successfully implemented
  • Maintenance of data security tables and files used to manage for access controls and identity management systems
  • Assist with investigative process during computer security incident responses
  • Implement and maintain information security infrastructure
  • Collaborate with other HSCS teams to ensure Information Security Plan and Standards are implemented
  • Collaborate with other HSCS teams to ensure facility and physical security is implemented
  • Coordinate Information Security Awareness program and educational activities

Benefits

  • Comprehensive Benefits Package: Medical, Dental, and Vision Insurance
  • Paid Time Off
  • Long-term and Short-term Disability
  • Retirement Savings
  • Health Saving Plans
  • Flexible Spending Accounts
  • Certification and education support
  • Generous Paid Time Off
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service