Strategic Education, Inc.

IT Risk Management Analyst

Strategic Education, Inc.$75K — $113K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3 to 5 years of experience in IT risk management or a similar role.
  • Bachelor's degree in Information Technology, Cybersecurity, Business, or related field.
  • Familiarity with security incident response and security tools.
  • Proficiency in risk assessment methodologies, vulnerability assessment tools, and security frameworks.
  • Professional certifications like CISSP, CRISC, CISM, or CISA preferred.

Responsibilities

  • Identify and assess potential IT risks, including cybersecurity threats and compliance gaps.
  • Conduct risk assessments to evaluate the impact and likelihood of identified risks.
  • Develop and implement risk mitigation plans for identified vulnerabilities.
  • Collaborate with IT and security teams to design and implement risk controls.
  • Monitor compliance with IT regulations and standards (e.g., GDPR, HIPAA).
  • Participate in incident response activities, analyzing and mitigating security incidents.
  • Prepare and present reports on IT risks and mitigation efforts to stakeholders.

Benefits

  • Comprehensive medical, dental, and vision insurance plans.
  • Parental leave and paid time off, including certain paid holidays.
  • 401(k) retirement benefit and Employee Stock Purchase Plan.
  • Tuition assistance for career development.
  • Well-being incentives and discounts for entertainment and retail.
Full Job Description
The IT Risk Management Analyst plays a critical role in ensuring the security, compliance, and resilience of an organization's IT systems and infrastructure. This role involves identifying, assessing, and mitigating potential risks and vulnerabilities that could impact the confidentiality, integrity, and availability of digital assets. The IT Risk Management Analyst collaborates with various teams to implement effective risk management strategies and ensure that the organization maintains a robust and secure IT environment.

Essential Duties & Responsibilities:

Risk Assessment:

  • Identify and assess potential IT risks, including cybersecurity threats, vulnerabilities, and compliance gaps.

  • Conduct risk assessments to evaluate the potential impact and likelihood of identified risks.

  • Analyze and interpret data related to IT security incidents, breaches, and vulnerabilities.

Risk Mitigation:

  • Develop and implement risk mitigation plans to address identified vulnerabilities and threats.

  • Collaborate with IT and security teams to design and implement controls to reduce the organization's exposure to risks.

  • Stay up-to-date with emerging security threats and industry best practices to enhance the effectiveness of risk mitigation strategies.

Compliance and Regulation:

  • Monitor and ensure compliance with relevant IT regulations, standards, and frameworks (e.g., GDPR, FERPA, FFIEC, HIPAA, NIST, ISO 27001).

  • Assist in the development and maintenance of IT policies, procedures, and guidelines to ensure adherence to compliance requirements.

Security Incident Response:

  • Participate in incident response activities, providing expertise in analyzing and mitigating security incidents.

  • Collaborate with incident response teams to investigate and remediate security breaches or vulnerabilities.

Risk Reporting and Communication:

  • Prepare and present reports on IT risks, vulnerabilities, and mitigation efforts to management and relevant stakeholders.

  • Communicate complex technical concepts to non-technical audiences effectively.

Security Awareness and Training:

  • Assist in developing and delivering IT security awareness programs to educate employees about security best practices.

  • Provide guidance and training to employees regarding risk management procedures and policies.

Continuous Improvement:

  • Identify areas for process improvements and recommend solutions to enhance the overall IT risk management program.

  • Participate in the evaluation and implementation of new technologies and tools to enhance risk assessment and mitigation capabilities.

Job Skills:

  • Understanding of IT risk management principles, cybersecurity concepts, and industry standards.

  • Proficiency in risk assessment methodologies, vulnerability assessment tools, and security frameworks.

  • Excellent analytical and problem-solving skills, with the ability to assess complex situations and provide practical solutions.

  • Effective communication skills to convey technical information clearly to both technical and non-technical stakeholders.

  • Collaborative attitude with the ability to work across different teams and departments.

  • Experience with security incident response and familiarity with security tools and technologies.

Work Experience:

  • 3 to 5 years in a similar role.

Education:

  • Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field required.

Certificates, licenses and registrations:

  • Preference:  Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Control (CRISC) Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA) are advantageous.

Other:

  • Must be able to travel occasionally should a business need arise. For most roles travel would not be common. Travel may involve plane, car or metro. In accordance with ADA policies, reasonable accommodation regarding travel limitations can be provided. Travel will be more common for roles such as Account Executives (25 - 50%), senior leaders (10 – 20%) or Capella Core Faculty (5 – 10%). 

  • Ability to work onsite in Corporate or Campus location (in a typical office environment) may be required based on role. If so, this would include being mobile within the office, including movement from floor-to-floor using elevators or stairs.

  • If offsite or hybrid role, must have access to work in setting which enables meeting all requirements of the role (including privacy, reliable internet access, phone, ability to video conference, etc.) at a remote location.

  • Faculty and Federal Work Study roles require access to work in setting which enables meeting all requirements of the role (including computer, privacy, reliable internet access, phone, ability to video conference, etc.) at a remote location.

  • This role may require lifting, however reasonable accommodations will be provided in accordance with our ADA policies.

  • Must be able to meet critical thinking and problem solving aspects aligned to job duties, as well as effectively communicating with co-workers.

  • Must be able to work more than 40 hours per week when business needs warrant. Accommodations related to schedule may be considered. 

  • Able to access information using a computer.

  • Other essential functions and marginal job functions are subject to modification.


SEI offers a comprehensive package of benefits to employees scheduled 30 hours or more per week. In addition to medical, dental, vision, life and disability plans, SEI employees may take advantage of well-being incentives, parental leave, paid time off, certain paid holidays, tax saving accounts (FSA, HSA), 401(k) retirement benefit, Employee Stock Purchase Plan, tuition assistance as well as entertainment and retail discounts. Non-exempt employees are eligible for overtime pay, if applicable.


The expected salary range for this position is below.

$75,800.00 - $113,700.00 - Salary

About Strategic Education, Inc.

Strategic Education, Inc. (SEI) is a publicly traded education services company that provides a range of educational services to students, working adults, and employers. The company operates through three segments: Strayer University, Capella University, and Non-Degree Programs. Strayer University offers undergraduate and graduate degree programs in business administration, accounting, information technology, education, health services administration, public administration, and criminal justice. Capella University provides undergraduate and graduate degree programs in business, information technology, education, nursing, health administration, and psychology. Non-Degree Programs segment offers a range of programs, including coding and other courses through its DevMountain brand, which provides students with the skills needed to become software developers. SEI is headquartered in Herndon, Virginia and was founded in 1892.
Learn more about Strategic Education, Inc.
Size
3,742 employees
Market Cap
$1.9 billion
Industry
Net Income
$86.2 million
5 Year Trend
+20.7%
Revenue
$1 billion
NASDAQ

Similar Jobs

More Jobs at Strategic Education, Inc.

More Information Technology Jobs

Find similar IT Risk Management Analyst jobs: