IT Security Engineer
NORC at the University of ChicagoAbout the role
NORC's Information Technology program provides technology services to our staff and clients. Given the critical role technology plays in our day-to-day lives, we are committed to providing professional, high-quality solutions in order to further our collective goal of advancing social science research.
RESPONSIBILITIES:- Assess, gather, and evaluate client application requirements and complete security impact analysis as well as provide security requirements.
- Validate technical controls are designed and implemented to protect NORC digital assets.
- Provide consulting as it relates to IT Security such as controls, protocols, or best practices
- Implement, operate and monitor security tools in a multi-cloud, SaaS/PasS, and hybrid environment
- Monitor security advisory groups to ensure all necessary security updates, patches and preventive measures are in place.
- Monitor security protections for NORC infrastructure, systems and applications.
- Assess, gather, and evaluate client application requirements and complete security impact analysis as well as provide security requirements.
- Collaborate with implementation and development teams to ensure secure software development practices are being followed.
- Prepare reports for management on security status, incidents, and improvement recommendations.
- Stay updated on the latest security trends, threats, and technology solutions.
- Supporting the maintenance of compliant security programs.
- Collaborate with teams to solve security and IT related issues.
- 7 years professional experience in technology, IT security, risk assessment, or compliance in a hybrid, multi-tenant and multi-cloud environment.
- Understanding and interpreting of requirements in NIST 800-53, FedRAMP, NIST 800-171, ISO 27001 and other relevant frameworks.
- Requires previous experience working in a security administration role with related duties such as system hardening, development of audit reports, creating secure baseline device configurations and conducting penetration testing.
- Subject matter expertise in security and identity management.
- Certification in cloud security or information security.
- Strong verbal and written communication skills.
The pay range for this position is $110,000 -$165,000.
This position is classified as regular. Regular staff are eligible for NORC’s comprehensive benefits program. Benefits include, but are not limited to:
-
Generously subsidized health insurance, effective on the first day of employment
-
Dental and vision insurance
-
A defined contribution retirement program, along with a separate voluntary 403(b) retirement program
-
Group life insurance, long-term and short-term disability insurance
-
Benefits that promote work/life balance, including generous paid time off, holidays; paid parental leave, bereavement leave, tuition assistance, and an Employee Assistance Program (EAP).
NORC’s Approach to Equity and Transparency
Pay and benefits transparency helps to reduce wage gaps. As part of our commitment to pay equity and salary transparency, NORC includes a salary range for each job opening along with information about eligible benefit offerings. At NORC, we take a comprehensive approach to setting salary ranges and reviewing raises and promotions, which is overseen by a formal Salary Review Committee (SRC).
WHAT WE DO:NORC at the University of Chicago is an objective, non-partisan research institution that delivers reliable data and rigorous analysis to guide
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s