Jobs and Careers
PE

Cyber Information Assurance Analyst

Penn State University
University Park, United StatesRemotefull_timeVerifiedPosted 20 Dec 2024
💰 $129,500/yr($86,300/yr$129,500/yr)

About the role

APPLICATION INSTRUCTIONS:

  • CURRENT PENN STATE STUDENT (not employed previously at the university) and seeking employment with Penn State, please login to Workday to complete the student application process. Please do not apply here, apply internally through Workday.

JOB DESCRIPTION AND POSITION REQUIREMENTS:

Penn State Information Technology is seeking a Governance Risk and Compliance (GRC) Analyst. The GRC analyst will play a pivotal role in assessing and prioritizing information, security, and cybersecurity risk across the organization. The GRC Analysts' technical skills, combined with their ability to manage risks and ensure compliance, make them a key player in Penn States cybersecurity strategy. GRC Analysts ensure that an organization’s operations and procedures meet government and industry compliance standards. They research regulations and policies on behalf of the enterprise, communicate the necessary requirements, and serve as a subject matter expert on all risk-related matters. This position will act as a LionSHIELD specialist, they will focus on the controlled unclassified information (CUI) environment at Penn State.

  • Managing risks related to the use of Information Technology, Information Security, Regulatory Compliance, and Governance.
  • Lead the enforcement of compliance programs that address internal and external requirements, ensuring individuals understand and adhere to relevant policies and regulations.
  • Collaborate with internal stakeholders to ensure compliance requirements are integrated into systems, processes, and data management practices.
  • Conducting gap analysis and implementing frameworks and standards such as NIST, FERPA, CMMC, HIPAA, GDPR, PCI, etc.
  • Developing and revising policies, standards, processes, and guidelines for the organization.
  • Conducting vendor risk assessments against organizational security requirements.
  • Continually assessing and monitoring the effectiveness of security controls.
  • Conducting research to aid threat assessment or risk mitigation activities.
  • Developing mechanisms to align with the adoption and usage of current and emerging technologies.

Education and Experience

This position minimally requires a bachelor's degree and 6+ years of experience or an equivalent combination of education and experience.   Preferred field of study: Information Security, Risk Management, Legal Studies or related field or discipline.  Applicants with an Associate degree and additional experience and competencies are encouraged to apply. Candidates must be US citizens to apply.

Preferred experience and knowledge:

  • Azure Gov Cloud
  • CUI
  • NIST SP 800-171 compliance

Location

This position is flexible and can operate fully remote, the office location for the position is at the University Park campus, in State College, PA., and will require occasional work on campus.  C

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Penn State University

View company profile →