IT Security Analyst 3 - IS - Data Security - FT - Day - Remote SoCal jobs in United States
cer-icon
Apply on Employer Site
company-logo

UC Irvine · 1 month ago

IT Security Analyst 3 - IS - Data Security - FT - Day - Remote SoCal

UCI Health is the clinical enterprise of the University of California, Irvine, and the only academic health system based in Orange County. The data security analyst will play a leading role in driving information security analysis, vulnerability remediation, and performing risk assessments to enhance information security for the UCI School of Medicine and UCI Health.

Higher Education
check
Diversity & Inclusion
badNo H1Bnote

Responsibilities

Drive information security analysis and vulnerability remediation
Perform risk assessments and provide strategic recommendations for information security improvements
Engage with program employees, researchers, stakeholders, and executives to ensure appropriate security management

Qualification

Data security assessmentRisk management frameworksHealthcare IT experienceCloud security knowledgeVulnerability assessmentRisk mitigation strategiesCustomer service skillsSecurity awareness trainingWritten communicationVerbal communication

Required

Understanding of security baselines and configuration standards for healthcare IT systems
Must possess the skill, knowledge and ability essential to the successful performance of assigned duties
Must demonstrate customer service skills appropriate to the job
Excellent written and verbal communication skills in English
Ability to review contractual language and Business Associate Agreements
Ability to review and interpret vulnerability assessment reports and prioritize findings based on risk
Ability to recommend risk mitigation strategies and controls based on risk assessment findings
Ability to maintain a work pace appropriate to the workload
Ability to deliver clear, actionable, and timely risk reports tailored for both technical staff and non-technical stakeholders
Ability to conduct security awareness training and compliance & management
Ability to assess levels of risk
Ability to analyze, support and maintain numerous proactive risk program
5+ years working in a heterogeneous IT environment
5+ years of experience in academic and/or healthcare IT environments
2+ years of experience in data security assessment and audit

Preferred

Understanding of cloud security risks and controls for platforms such as Microsoft Azure, AWS, or Google Cloud
Knowledge of risk management frameworks and methodologies such as NIST RMF, NIST CSF, ISO 27001, or FAIR
Knowledge of medical center and academic IT environments
Knowledge of HIPAA/HITECH, NIH, FISMA, CMS, CPHS, dbGaP, PCI-DSS and other State and Federal data security requirements and regulations
Industry certifications such as Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), HealthCare Information Security and Privacy Practitioner (HCISPP), Security+, or related GRC credentials
Familiarity with enterprise IT environments and common technology risks
Experience with GRC platforms or risk management tools (e.g., ServiceNow GRC, Archer, LogicGate)

Benefits

Medical insurance
Sick and vacation time
Retirement savings plans
Access to a number of discounts and perks

Company

UC Irvine

company-logo
UC Irvine

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Anand Gala
CEO Roundtable Member
linkedin
leader-logo
Bob Romney
Chancellor's CEO Roundtable
linkedin
Company data provided by crunchbase