Information Security Analyst IIJob no: 562153
Work type: Staff
Location: Chico
Categories: Unit 9 - CSUEU - Technical Support Services, Probationary, Full Time, Information Systems & Technology
Job/Department Summary:Under general supervision of the Information Security Officer (ISO}, the Information Security Risk Analyst provides functional governance, risk and compliance (GRC) reporting, oversight and user support for critical campus systems, data repositories, business processes, critical vendors, and partner operations that impact information security and compliance. This position is responsible for ongoing cyber risk management assessment and reporting, IT risk assessment and reporting, critical vendor risk monitoring and serves as the point of contact for information security governance and compliance related issues. Additionally, this position is responsible for managing GRC tools, software, risk assessments, and providing necessary training for end users in support of state and/or locally mandated cyber and information security directives.
Required Education and Experience:Equivalent to a bachelor's degree in a related field. Relevant education and/or experience which demonstrates acquired and successfully applied knowledge and abilities shown above may be substituted for the required education on a year-for-year basis.
AND Two years of relevant experience.
Preferences:Preference may be given to applicants with the following as they may be considered specialized skills:
- Master's Degree in Cybersecurity, Computer Science, information systems, or other job-related field
- Experience working in information technology in a higher education setting
- Experience in Information Security or risk management related position
- Experience related to compliance frameworks (PCI-DSS, GLBA, HIPAA, and FERPA)
- Experience with PeopleSoft security
- Experience using vulnerability management software
- Experience using GRC tools to track/monitor/report cyber risk
- Experience performing third-party IT vendor security risk reviews
- Information Security Certification (CISA, CRISC, CISM, CISSP, CGRC, or comparable cybersecurity, GRC, audit, or compliance certification)
Time Base: Full-time
Pay Plan: 12/12
Work Schedule: Mon-Fri 8:00am-5:00pm, Summer: Mon-Thurs 7:00am-5:30pm
CSU Classification Salary Range: $77,904 (Step 1) - $113,496 (Step 20) per year.
Benefits: This position qualifies for benefits including tuition fee waiver (if eligible).
CSU, Chico offers a number of benefits to its employees (e.g., sick leave, vacation, health insurance). For more information please visit https://www.calstate.edu/csu-system/careers/benefits/Documents/employee-benefits-summary.pdf
Additional Information:Education Code 89521 Requirements: Applicants will be required to disclose whether they have received a final administrative decision or final judicial decision determining that they have committed sexual harassment within the last 7 years only after a determination is made that they meet the minimum qualifications for the position, and before an offer of employment is extended. Applicants who reach the final stages of the application process must also sign a release form that authorizes the release of information by the applicant's current and/or former employers to the CSU concerning any substantiated allegations of misconduct.
California State University, Chico, in accordance with CSU policy, may require that the successful candidate complete a background check (including a criminal records check, sexual offender registry check, and/or fingerprinting) prior to assuming this position. Failure to satisfactorily complete or pass the background check may impact the job offer or continued employment of current CSU employees who apply for posted positions identified as sensitive.
This position is considered a sensitive position based on CSU guidelines. Incumbent is responsible for the safety and security of Level 1 data, sometimes also referred to as Level 1 protected data. This is confidential information that is in most cases protected by statutes, regulations, or other legal mandates.
Open Until Filled (Review of Applications will begin 10/06/26. Applications received after that date may be considered.)
Advertised: Sep 22 2026 Pacific Daylight Time
Applications close: Whatsapp Facebook LinkedIn Email App