This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Cyber Security Risk & Compliance Analyst is responsible for assessing and managing cybersecurity risks across the university's IT environment while ensuring adherence to regulatory requirements, industry standards, and institutional security policies. This position plays a key role in identifying vulnerabilities, conducting risk assessments, monitoring compliance controls, and providing actionable recommendations to strengthen the university's overall security and compliance posture. The role is with the Security Incident Operations Center (SIOC) team and works to optimize detection capabilities, improve response, and maintain proactive threat response protocols. The security operations engineer ensures that the university's IT assets remain resilient against evolving security threats while delivering high-quality service to stakeholders across the institution.
Job Responsibility:
Assessing and managing cybersecurity risks across the university's IT environment
Ensuring adherence to regulatory requirements, industry standards, and institutional security policies
Identifying vulnerabilities
Conducting risk assessments
Monitoring compliance controls
Providing actionable recommendations to strengthen the university's overall security and compliance posture
Optimizing detection capabilities
Improving response
Maintaining proactive threat response protocols
Ensuring the university's IT assets remain resilient against evolving security threats
Delivering high-quality service to stakeholders across the institution
Requirements:
Requires a high school diploma (or equivalent) and six years of relevant experience
Requirements may be met through a combination of work experience and education
Bachelor's degree
3-5 years of experience in compliance, audit, or risk management
Strong knowledge of regulatory frameworks and standards
Experience with GRC platforms
Understanding of risk assessment methodologies
Excellent written and verbal communication skills
Experience with audit processes and evidence collection
Knowledge of cybersecurity frameworks (NIST, ISO 27001)
Compliance or risk management certifications (CISA, CRISC, CISM)
Experience with specific industry regulations (FERPA, GLBA, PCI DSS, etc)
Knowledge of business process mapping and documentation
Experience with policy management systems
Understanding of legal and regulatory research
Candidates must be legally authorized to work in the U.S. on an ongoing basis without sponsorship
Nice to have:
Bachelor's degree
3-5 years of experience in compliance, audit, or risk management
Strong knowledge of regulatory frameworks and standards
Experience with GRC platforms
Understanding of risk assessment methodologies
Excellent written and verbal communication skills
Experience with audit processes and evidence collection
Knowledge of cybersecurity frameworks (NIST, ISO 27001)
Compliance or risk management certifications (CISA, CRISC, CISM)
Experience with specific industry regulations (FERPA, GLBA, PCI DSS, etc)
Knowledge of business process mapping and documentation