UC Irvine · 1 month ago
IT Security Analyst 3 - IS - Data Security - FT - Day - Remote SoCal
UCI Health is the clinical enterprise of the University of California, Irvine, and the only academic health system based in Orange County. The data security analyst will play a leading role in driving information security analysis, vulnerability remediation, and performing risk assessments to enhance information security for the UCI School of Medicine and UCI Health.
Higher Education
Responsibilities
Drive information security analysis and vulnerability remediation
Perform risk assessments and provide strategic recommendations for information security improvements
Engage with program employees, researchers, stakeholders, and executives to ensure appropriate security management
Qualification
Required
Understanding of security baselines and configuration standards for healthcare IT systems
Must possess the skill, knowledge and ability essential to the successful performance of assigned duties
Must demonstrate customer service skills appropriate to the job
Excellent written and verbal communication skills in English
Ability to review contractual language and Business Associate Agreements
Ability to review and interpret vulnerability assessment reports and prioritize findings based on risk
Ability to recommend risk mitigation strategies and controls based on risk assessment findings
Ability to maintain a work pace appropriate to the workload
Ability to deliver clear, actionable, and timely risk reports tailored for both technical staff and non-technical stakeholders
Ability to conduct security awareness training and compliance & management
Ability to assess levels of risk
Ability to analyze, support and maintain numerous proactive risk program
5+ years working in a heterogeneous IT environment
5+ years of experience in academic and/or healthcare IT environments
2+ years of experience in data security assessment and audit
Preferred
Understanding of cloud security risks and controls for platforms such as Microsoft Azure, AWS, or Google Cloud
Knowledge of risk management frameworks and methodologies such as NIST RMF, NIST CSF, ISO 27001, or FAIR
Knowledge of medical center and academic IT environments
Knowledge of HIPAA/HITECH, NIH, FISMA, CMS, CPHS, dbGaP, PCI-DSS and other State and Federal data security requirements and regulations
Industry certifications such as Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), HealthCare Information Security and Privacy Practitioner (HCISPP), Security+, or related GRC credentials
Familiarity with enterprise IT environments and common technology risks
Experience with GRC platforms or risk management tools (e.g., ServiceNow GRC, Archer, LogicGate)
Benefits
Medical insurance
Sick and vacation time
Retirement savings plans
Access to a number of discounts and perks
Company
UC Irvine
UC Irvine
Funding
Current Stage
Late StageRecent News
Business News: Pasadena Star-News
2025-12-29
2025-08-08
Company data provided by crunchbase