Cybersecurity Controls Analyst responsible for evaluating and implementing cybersecurity controls. Ensures university compliance with internal policies and external regulations while working on various systems and infrastructure.
Responsibilities
Develops, assesses and monitors cybersecurity controls across systems, applications, vendors and infrastructure
Conducts risk assessments, controls walkthroughs, and control gap analyses to identify vulnerabilities and recommend mitigation controls-based strategies
Collaborates with IT and business units to implement and validate security controls
Maintains documentation of control effectiveness and remediation efforts
Supports internal and external audits, including evidence collection and control walkthroughs
Ensures compliance with industry standards and regulations (e.g., NIST, CIS Controls, PCI-DSS, HIPAA, FERPA, GLBA)
Develops and maintains cybersecurity policies, procedures, and standards
Monitors regulatory changes and emerging threats to adjust control strategies accordingly
Assists in the development of security awareness and training programs
Performs other duties as assigned
Requirements
Bachelor’s degree in cybersecurity, information technology management, computer science, or a related discipline
Three years of experience in information technology, cybersecurity, IT audit, or risk management, preferably in an academic or research setting
Experience with controls development and control testing methodologies
Strong customer service orientation with the ability to communicate technical concepts to non-technical users
Proficiency with cybersecurity frameworks (e.g., NIST CSF, ISO 27001, COBIT) and compliance standards (e.g., HIPAA, PCI-DSS, GDPR)
Understanding of cybersecurity principles, particularly in regulated environments
Excellent documentation skills
Attention to detail
Strong analytical skills
Strong problem-solving skills
Strong organizational and time management skills
Ability to prioritize multiple tasks
Ability to work independently and collaboratively in a team-oriented environment
Information Security Engineer managing incident detection and response for Safe - Guard Products. Involves vulnerability management, data protection, and security engineering activities.
Work Student, Product Security at TeamViewer supporting security initiatives for product safety. Opportunity to gain hands - on experience in an international environment with a focus on cybersecurity.
Cyber Security Detection Engineer focusing on threat detection capabilities and security telemetry within complex environments. Collaborating across Security Operations, Cloud Engineering, and Compliance disciplines.
Security Specialist managing mainframe security operations at PNC. Collaborating with teams on compliance and security risks while mentoring junior analysts.
Security Assurance Specialist coordinating security assessments within cybersecurity risk management at Vanguard. Ensuring effective risk and vulnerability management across applications and infrastructures.
Summer Intern supporting CIO PMO and Security teams at Sprinklr. Gaining hands - on experience in technology and security areas while assisting key initiatives.
Sicherheitsingenieur managing safety and integrated management systems for CRONIMET. Supporting the development of safety practices and conducting audits on various health and safety topics.
Senior Cloud Security Engineer securing public cloud platforms and services in the financial industry. Collaborating with teams to enhance security posture and ensure compliance in cloud environments.
Cybersecurity Metrics and Reporting Lead overseeing development of security metrics and dashboards. Collaborating with teams to improve cybersecurity program effectiveness and compliance tracking.
Senior Developer in Defensive Security for Clio, a leader in legal AI technology. Join a team to proactively tackle application security vulnerabilities and enhance security practices.