Cybersecurity Controls Analyst responsible for evaluating and implementing cybersecurity controls. Ensures university compliance with internal policies and external regulations while working on various systems and infrastructure.
Responsibilities
Develops, assesses and monitors cybersecurity controls across systems, applications, vendors and infrastructure
Conducts risk assessments, controls walkthroughs, and control gap analyses to identify vulnerabilities and recommend mitigation controls-based strategies
Collaborates with IT and business units to implement and validate security controls
Maintains documentation of control effectiveness and remediation efforts
Supports internal and external audits, including evidence collection and control walkthroughs
Ensures compliance with industry standards and regulations (e.g., NIST, CIS Controls, PCI-DSS, HIPAA, FERPA, GLBA)
Develops and maintains cybersecurity policies, procedures, and standards
Monitors regulatory changes and emerging threats to adjust control strategies accordingly
Assists in the development of security awareness and training programs
Performs other duties as assigned
Requirements
Bachelor’s degree in cybersecurity, information technology management, computer science, or a related discipline
Three years of experience in information technology, cybersecurity, IT audit, or risk management, preferably in an academic or research setting
Experience with controls development and control testing methodologies
Strong customer service orientation with the ability to communicate technical concepts to non-technical users
Proficiency with cybersecurity frameworks (e.g., NIST CSF, ISO 27001, COBIT) and compliance standards (e.g., HIPAA, PCI-DSS, GDPR)
Understanding of cybersecurity principles, particularly in regulated environments
Excellent documentation skills
Attention to detail
Strong analytical skills
Strong problem-solving skills
Strong organizational and time management skills
Ability to prioritize multiple tasks
Ability to work independently and collaboratively in a team-oriented environment
Information Security Officer creating security policies and managing security teams to protect Paytient. Collaborating with internal and external teams to ensure compliance and security posture.
Supplier Manager focused on Microsoft Security products at Arrow. Develops strategies to enhance sales and market share while collaborating with Microsoft and sales teams.
IT Infrastructure and Security Administrator at B&O Bau, managing IT security and infrastructure. Collaborating on innovative projects across multiple German locations.
Associate Director of Security Awareness at Fitch Group responsible for cybersecurity training and employee engagement. Designing and executing awareness programs to promote security compliance across the organization.
Information Security Administrator assessing military clients' cyber risks and compliance with security policies. Collaborating on mitigation plans and guiding clients to secure their mission - critical systems.
Enterprise Security Architect coordinating system solutions and implementations for secure cloud technologies at Freeport - McMoRan. Assessing technology needs and leading improvements in cloud security.
Cyber Security Metrics & Automation Analyst enhancing AES's Cyber Security effectiveness through metrics and automation solutions. Collaborating with teams to develop dashboards and streamline operations across domains.
SOC Team Lead managing Security Operations Center analysts. Leading cyber threat intelligence and incident response initiatives for Florida state government.
IT - Security Administrator managing IT security components and incident response processes for healthcare IT. Collaborating on security projects and maintaining compliance with ISO 27001.
Senior Cybersecurity Engineer at GDIT responsible for developing and implementing IT security solutions. Architecting security programs and leading Cybersecurity initiatives in defense and intelligence sectors.