Purdue University

Lead IT Security Risk Analyst

Purdue University$100K — $120K *
US-AnywhereRemote in Indiana, US
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Business, Computer Science, Engineering, Computer/Information Technology, or Information Security, or equivalent experience.
  • At least six years of progressive technical information security and/or IT compliance experience.
  • Experience conducting information security risk assessments and compliance evaluations.
  • Familiarity with regulatory frameworks like ISO and NIST, plus complex security initiatives in large organizations.
  • Technical security certifications (e.g., CISSP, GIAC) preferred.

Responsibilities

  • Lead and execute ISO-related certification and Business Continuity/Disaster Recovery programs.
  • Conduct security and compliance risk assessments according to University requirements.
  • Consult on security controls for compliance with regulations such as HIPAA, FERPA, and PCI.
  • Document and present findings to management and technical staff after thorough analysis.
  • Develop and deliver security awareness training on policies and best practices.
  • Monitor and interpret relevant laws and recommend changes to the organization.

Benefits

  • Comprehensive benefit package including medical, dental, and vision insurance.
  • Generous paid time off for sick and vacation days.
  • Immediate Defined Contribution retirement plan eligibility.
Full Job Description
Lead IT Security Risk Analyst City: REMOTE Job Description: Job Summary The IT Security Risk Analyst is a recognized subject matter expert under limited oversight from their supervisor that provides information security risk assessment and compliance consulting services that contribute to a comprehensive information security risk management program. As a primary responsibility, this position provides Purdue IT International Organization for Standardization (ISO) related certification and Business Continuity/Disaster Recovery (BC/DR) subject matter expertise (SME) to the university. This involves a combination of leading, coordinating, and executing programs associated with SME. The position also leads the execution of security and compliance (e.g., HIPAA, FERPA, GLBA, PCI, and other relevant regulations or standards) risk assessments as required by the University and as requested to improve information security posture. This position provides consulting on appropriate administrative, technical, and physical security controls for implementation to address security and compliance requirements. This position includes analyzing and interpreting information to document findings that are presented to management and technical staff. The position provides awareness training of security policies, tools, methodologies, and best practices. This position will monitor developments regarding laws and regulations, especially those associated with areas of SME, that could impact the organization and recommend measurable changes where necessary. What We're Looking For Education and Experience Required: - A Bachelor's degree in relevant field, including Business, Computer Science, Engineering, Computer/Information Technology, or Information Security - Equivalent combination of education and/or experience may be accepted - At least six (6) years of progressive technical information security and/or IT compliance experience - Experience: - in performing information security risk and compliance assessments - working with structured management systems or regulatory frameworks (e.g., ISO, NIST) - participating in complex security initiatives in a large organization with varied teams and stakeholders - contributing to and presenting security awareness information Preferred - Higher education work experience - Technical security certifications in information security, risk compliance, or related discipline (e.g., CISSP or GIAC) - Experience: - supporting ISO 9001, ISO/IEC 20000-1, or ISO/IEC 27001 certification programs - coordinating audits and BC/DR governance Skills Required: - Strong ability in developing, documenting, implementing, and monitoring information security plans or technology control plans - Expert ability to communicate effectively with both technical and non-technical audiences at various levels within the organization - Strong and detailed analysis, decision making, problem solving and customer service skills - Keen attention to detail - A broad understanding of technology - Ability to work independently and within a team environment - Must be able to work on site for assessments Additional Information: - Purdue University will not sponsor employment authorization for this position - A background check will be required for employment in this position - FLSA: Exempt (Not Eligible for Overtime) - Retirement Eligibility: Immediate Defined Contribution by the university - Benefit Statement: Purdue University offers a substantial Benefit Package including medical, dental, and vision insurance as well as a generous paid time off package for sick and vacation days

About Purdue University

Purdue University is a public research university located in West Lafayette, Indiana. The university was founded in 1869 and is named after John Purdue, a businessman who donated land and money to establish the institution. Purdue is known for its programs in engineering, agriculture, and business, and is home to over 40,000 students and 3,000 faculty members. The university is organized into 13 schools and colleges, including the College of Agriculture, the Krannert School of Management, and the School of Engineering. Purdue is also home to a number of research centers and institutes, including the Purdue Research Foundation and the Birck Nanotechnology Center. The university has a strong athletic program and is a member of the Big Ten Conference. Purdue is governed by a board of trustees and has a president who serves as the chief executive officer.
Learn more about Purdue University
Size
18,000 employees
Industry

Similar Jobs

More Jobs at Purdue University

More Information Technology Jobs

Find similar Lead IT Security Risk Analyst jobs: