Department
Booth Information Technology
Job Summary
The Information Security Administrator plays a key role in protecting the organization's information systems, applications, and data assets. This position is responsible for administering security technologies, supporting governance and compliance initiatives, monitoring and responding to security events, and implementing controls that reduce organizational risk. Working closely with IT leadership, system owners, and business stakeholders, the Information Security Administrator helps ensure the confidentiality, integrity, and availability of institutional data and technology resources.
Responsibilities
- Administers, monitors, and maintains information security technologies, including endpoint protection, vulnerability management, security monitoring, encryption, multi-factor authentication, and identity and access management solutions.
- Protects systems and applications that store, process, or transmit sensitive and regulated data, including HIPAA, PII, FERPA, and other confidential information.
- Implements and maintains identity and access management controls, role-based access models, and least-privilege access practices.
- Monitors security alerts, investigates potential threats, and coordinates remediation activities to mitigate organizational risk.
- Conducts security assessments, vulnerability reviews, and configuration audits to identify and address security weaknesses.
- Analyzes security incidents, determines root causes, and supports containment, recovery, and corrective action efforts.
- Supports the development, implementation, and maintenance of information security policies, standards, procedures, and best practices.
- Participates in risk assessments, control evaluations, and remediation planning to strengthen the organization's security posture.
- Assists with compliance initiatives, audits, regulatory reviews, and security assessments aligned with applicable laws, regulations, and industry frameworks.
- Maintains security documentation, reports, and records to support compliance, audit readiness, and operational effectiveness.
- Supports business continuity, disaster recovery, and incident response planning and testing activities.
- Collaborates with IT teams, system owners, and business stakeholders to implement security controls and mitigate risk.
- Provides guidance on secure system design, implementation, configuration, and change management practices.
- Leads teams to conduct in-depth information technology risk assessments; makes recommendations and designs improvements to IT security procedures.
- Guides communications with users to understand their security needs and supports the implementation of procedures to accommodate them. Ensures that user community understands and adheres to necessary procedures to maintain security.
- Performs other related work as needed.
Minimum Qualifications
Education:
Minimum requirements include a college or university degree in related field.
Work Experience:
Minimum requirements include knowledge and skills developed through 5-7 years of work experience in a related job discipline.
Certifications:
---
Preferred Qualifications
Education:
- Bachelor's degree.
- Degree preferably in information technology, computer science, cybersecurity, or a related field.
Experience:
- Hands-on information security experience in an enterprise environment.
- Background analyzing security events, identifying root causes, and recommending corrective actions.
Certifications:
- Security+ certification or an equivalent industry-recognized security certification.
- Advanced certifications.
Technical Skills or Knowledge:
- Proficient at securing systems containing sensitive or regulated data, including HIPAA, PII, FERPA, or similar data classifications.
- Working knowledge of cybersecurity principles, access control methodologies, identity management, and security operations practices.
Preferred Competencies
- Strong analytical, troubleshooting, and problem-solving skills strongly preferred.
- Effective written, verbal, and interpersonal communication skills.
Working Conditions
- This position is currently expected to work a minimum three days per week in the office.
Application Documents
- Resume/CV (required)
- Cover Letter (required)
The University of Chicago uses AI-assisted tools to streamline and augment some recruitment processes; however, AI is not used to make hiring decisions.
When applying, the document(s) MUST be uploaded via the My Experience page, in the section titled Application Documents of the application.
Job Family
Information Technology
Role Impact
Individual Contributor
Scheduled Weekly Hours
37.5
Drug Test Required
No
Health Screen Required
No
Motor Vehicle Record Inquiry Required
No
Pay Rate Type
Salary
FLSA Status
Exempt
Pay Range
$80,000.00 - $115,000.00
The included pay rate or range represents the University’s good faith estimate of the possible compensation offer for this role at the time of posting.
Benefits Eligible
Yes
The University of Chicago offers a wide range of benefits programs and resources for eligible employees, including health, retirement, and paid time off. Information about the benefit offerings can be found in theBenefits Guidebook.