University Of Texas Southwestern Medical Center

Senior AI Governance Risk Compliance Analyst

Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in computer science, information technology, or related field
  • 8 years of progressively responsible technology governance experience, with potential for substitution of experience for education
  • Possession of industry certification (CRISC, CGRC, AIGP, CISA) preferred
  • Experience establishing Information Security frameworks and aligning security controls (CIS, NIST, HIPAA, PCI)
  • Ability to respond to audits and leverage GRC tools (Archer, Logic Manager, Optro)

Responsibilities

  • Implement established risk frameworks for the Information Security program
  • Establish and operationalize formal security risk assessment frameworks, including for third-party vendor risk
  • Track audit findings and ensure audit compliance with security controls framework and regulations
  • Develop metrics and KPIs for Information Security Program maturity and reporting
  • Assist with creation and management of program governance
  • Interface with various departments and vendors to identify risks and compliance strategies
  • Stay updated with regulatory changes and security practices
  • Perform other assigned duties as needed.

Benefits

  • PPO medical plan available at no cost for full-time employee-only coverage from day one
  • 100% coverage for preventive healthcare with no copay
  • Paid Time Off available from day one
  • Retirement Programs through the Teacher Retirement System of Texas (TRS)
  • Paid Parental Leave Benefit
  • Wellness programs
  • Tuition Reimbursement
  • Public Service Loan Forgiveness (PSLF) Qualified Employer
Full Job Description
JOB SUMMARY
This position will support AI risk management within the Department of Information Security. This role develops, implements and operationalizes the Information Security governance and risk management functions to ensure the Program is compliant with established security controls frameworks, regulatory and legal requirements, policies and standards. Ensures that Information Security risk to the institution is appropriately managed. Subject matter expert on mature security governance structures and processes, risk management processes (enterprise and third party), and contractual, regulatory compliance requirements. Leads and executes enterprise-wide security assessments and strategic projects to mature the Program. This position focuses on AI governance, risk, and compliance, leading the design and implementation of an AI framework to evaluate, validate, and monitor artificial intelligence models across all UTSW environments in accordance with state regulations and institutional standards.

BENEFITS
UT Southwestern is proud to offer a competitive and comprehensive benefits package to eligible employees. Our benefits are designed to support your overall wellbeing, and include:
  • PPO medical plan, available day one at no cost for full-time employee-only coverage
  • 100% coverage for preventive healthcare-no copay
  • Paid Time Off, available day one
  • Retirement Programs through the Teacher Retirement System of Texas (TRS)
  • Paid Parental Leave Benefit
  • Wellness programs
  • Tuition Reimbursement
  • Public Service Loan Forgiveness (PSLF) Qualified Employer
  • Learn more about these and other UTSW employee benefits!
EXPERIENCE AND EDUCATION

Required
  • Education
    Bachelor's Degree in computer science, information technology, or related field
  • Experience
    8 years of progressively responsible technology governance experience
    Additional years of directly related experience may be substituted for stated degree on a year for year basis.
Preferred
  • Experience
    Possession of an industry certification, such as CRISC, CGRC, AIGP, CISAProgressively responsible experience establishing Information Security frameworks and aligning security controls (e.g. CIS, NIST, HIPAA, PCI), framework and Control gap analysis and remediation, project management, threat and risk modeling, building and maintaining a risk register.
    Ability to respond to and audits, and leverage GRC tools (e.g. Archer, Logic Manager, Optro).
    Experience creating framework based risk assessments and consulting with technical and non technical staff to implement and advance GRC initiatives based on best practices.
JOB DUTIES
  • Risk Management: Implements established risk frameworks for the Information Security program.
  • Risk Assessments: Establishes and operationalizes formal security risk assessment frameworks to quantify and qualify risk including for third-party vendor risk, technology procurement (ISAC) and internal security controls. Leads and executes enterprise-wide security assessments and strategic projects to mature the Program.
  • Audit & Compliance: Tracks audit findings, coordinates creation of audit deliverables and ensures audit compliance. Ensures Information Security Program compliance with established security controls framework, and regulatory and legal requirements, policies and standards.
  • Metrics, KPIs and Reporting: Develops metrics and KPIs for Information Security Program maturity and operational and executive reporting.
  • Program Governance: Assists with creation and management of program governance.
  • Interfaces with departments, Information Resources, third-party vendors, and business partners to identify areas of risk and assist with development of plans to establish and maintain ongoing compliance.
  • Assists with various Information Security projects. Stays up to date with regulatory changes, modern technology & security controls and practices.
  • Performs other duties as assigned.

About University Of Texas Southwestern Medical Center

The University of Texas Southwestern Medical Center (UT Southwestern) is a public academic health science center in Dallas, Texas. With approximately 14,400 employees and an operating budget of nearly $2.8 billion, UT Southwestern is one of six medical schools in the UT System. UT Southwestern is one of the leading medical research institutions in the world, with a focus on biomedical research, clinical care, and education. The institution is home to six Nobel laureates, 22 members of the National Academy of Sciences, and 19 members of the National Academy of Medicine. UT Southwestern is also affiliated with Parkland Memorial Hospital, one of the largest public hospitals in the United States.
Learn more about University Of Texas Southwestern Medical Center
Size
24,000 employees
Industry

Similar Jobs

More Jobs at University Of Texas Southwestern Medical Center

More Information Technology Jobs

Find similar Senior AI Governance Risk Compliance Analyst jobs: