Cybersecurity Controls Analyst responsible for evaluating and implementing cybersecurity controls. Ensures university compliance with internal policies and external regulations while working on various systems and infrastructure.
Responsibilities
Develops, assesses and monitors cybersecurity controls across systems, applications, vendors and infrastructure
Conducts risk assessments, controls walkthroughs, and control gap analyses to identify vulnerabilities and recommend mitigation controls-based strategies
Collaborates with IT and business units to implement and validate security controls
Maintains documentation of control effectiveness and remediation efforts
Supports internal and external audits, including evidence collection and control walkthroughs
Ensures compliance with industry standards and regulations (e.g., NIST, CIS Controls, PCI-DSS, HIPAA, FERPA, GLBA)
Develops and maintains cybersecurity policies, procedures, and standards
Monitors regulatory changes and emerging threats to adjust control strategies accordingly
Assists in the development of security awareness and training programs
Performs other duties as assigned
Requirements
Bachelor’s degree in cybersecurity, information technology management, computer science, or a related discipline
Three years of experience in information technology, cybersecurity, IT audit, or risk management, preferably in an academic or research setting
Experience with controls development and control testing methodologies
Strong customer service orientation with the ability to communicate technical concepts to non-technical users
Proficiency with cybersecurity frameworks (e.g., NIST CSF, ISO 27001, COBIT) and compliance standards (e.g., HIPAA, PCI-DSS, GDPR)
Understanding of cybersecurity principles, particularly in regulated environments
Excellent documentation skills
Attention to detail
Strong analytical skills
Strong problem-solving skills
Strong organizational and time management skills
Ability to prioritize multiple tasks
Ability to work independently and collaboratively in a team-oriented environment
IT Security Specialist focusing on cyber defense within a family - owned company. Responsibilities include managing firewalls, monitoring threats, and implementing security solutions.
Junior Information Systems Security Engineer at AMERICAN SYSTEMS managing DoD cyber security. Collaborating on technical issues and supporting risk management framework compliance.
Information Systems Security Engineer assisting in cyber security requirements for DoD systems. Collaborating closely with customers and ensuring compliance with the DoD Risk Management Framework.
Staff Product Security Engineer driving security innovation while ensuring compliance with federal standards at DataRobot. Leading security engineering, automation, and customer engagement for federal customers.
Auszubildende(n) zur Fachkraft für Schutz und Sicherheit in Hamburg bei proSicherheit GmbH. Modernes Sicherheitsunternehmen mit Fokus auf Sicherheit und Vertrauensaufbau.
Security staff for proSicherheit performing access controls and ensuring compliance with safety standards. Involves reporting, patrolling, and handling emergencies in Hamburg area.
Cloud Security Architect responsible for strategic growth and development of Cloud Security solutions. Work with national clients on architecture and security concepts in Switzerland.
Cyber Security Engineer responsible for DevSecOps and security automation at a leading Swiss IT consulting firm. Engaging in security measures across industries with a focus on collaboration and technology.
Information Security Manager coordinates ISMS development and security measures for Megamaris GmbH. Responsible for risk analysis and security training across 12 subsidiaries.
Security GRC Manager managing audits and compliance programs at Salesforce. Overseeing cloud security compliance and collaborating across departments for risk management.