Company

Princeton UniversitySee more

addressAddressPrinceton, NJ
type Form of workFull-Time
CategoryInformation Technology

Job description

The Lead Information Technology Risk Analyst is the lead analyst for risk assessment and focuses their efforts on risk, mitigation, reporting and campus support of the IT risk strategy and mission of the Information Security Office (ISO).  

As a member of the ISO team, this role provides leadership in supporting the mitigation of risk to Princeton University by significantly contributing to the development of processes, providing expert guidance to University staff, identifying and utilizing technology that assess, track, and mitigate deviations from best practices in IT risk.  

As the Lead Information Technology Risk Analyst, you will be responsible for conducting and maintaining campus-wide risk assessments, creating and monitoring risk mitigation and compliance tasks, and providing written, remote, or in-person support. This position will focus on monitoring risk levels of the campus and individual departments as well as assisting to educate the campus community on continuous risk assessment. To fulfill this role, the individual will use modules in the ServiceNow platform for collecting and analyzing assessment survey results. This position also plays a role in identifying training and awareness needs and will assist in preparing supporting documentation.


  • Oversee the day-to-day operations of the IT risk assessment team 
  • Lead the identification and design of ServiceNow dashboards that enable leadership and the campus community to highlight and mitigate risks 
  • Identify operations and business functions that may require risk mitigation assistance, and plan and deliver solutions to reduce identified risk(s) 
  • With a comprehensive understanding of University policies, and information security standards and best practices, provide leadership to the team and campus partners in utilizing the tools, technologies, services, and processes required to protect the University’s information assets 
  • Consult with the campus community to ensure adherence to University standardson risk assessment and compliance 
  • Build relationships with colleagues across campus to identify and align best practices 
  • Research and socialize best practices in higher ed for risk reduction and compliance successes 
  • Contribute to identifying, developing, and participating in necessary IT risk training 
  • Develop a deep understanding of administrative, technical, and operational controls needed for compliance requirements 
  • Develop a comprehensive and broad understanding of risk management concepts and their proper application 
  • Develop a wide-ranging understanding of information security concepts and salient applications 
  • Actively monitor and assist in risk-related service requests 
  • Ensure that the University IT risk assessment module is fully maintained and up to date 
  • Develop a deep understanding of the NIST Cyber Security Framework (CSF) guidelines and proactively work with stakeholders to determine applicability and mitigation strategies 
  • Other duties as assigned in support of the ISO mission
  • Proactively assess documentation to ensure that it is comprehensive and up to date to meet the ISO and campus risk assessment needs 
  • Design, develop, evaluate, and implement risk assessment reports and metrics
  • Collaborate with the Service Management Office staff to proactively improve the Integrated Risk Management (IRM) module in ServiceNow 
  • Provide a deep level of support to the ServiceNow ecosystem, represent the ISO in ServiceNow integration initiatives, and actively work to stay up to date on emerging ServiceNow best practices 

Essential Qualifications

  • 7 years of relevant cyber security experience in IT risk, information security, incident response, network security or other area(s) of IT  
  • Demonstrated ability to collaborate with colleagues and customers from different levels of the organization and with varied levels of technical understanding 
  • Excellent and proven oral and written communications skills 
  • Strong time management and multitasking skills as well and attention to detail 
  • Experience in supporting, analyzing, managing, communicating, and acting as a primary resource for risk reviews, both new and ongoing 
  • Knowledge of Governance, Risk, and Compliance (GRC) and vendor risk management tools 
  • Flexible, proactive, and possessing a can-do attitude, with a willingness and enthusiasm for learning new technologies and techniques that support evolving needs 
  • Education: Bachelor’s degree or equivalent work experience

Preferred Qualifications

  • Experience in higher education  
  • Experience with ServiceNow, especially the modules of Security Incident Response and Integrated Risk Management, is highly preferred 
  • High-level knowledge of the NIST Cyber Security Framework is a plus 
  • Experience converting risk assessments and risk data into actionable mitigation plans and recommendations 
  • Comfortable with impromptu tasking and loosely defined requirements 
  • Strong collaborative skills and proven ability to work in a diverse team of security professionals 
  • Possessing a blend of intellectual curiosity, creativity, persistence, commitment, passion, and optimism, with a continual desire for self-improvement and learning 
  • Bachelor’s degree desired, preferably in a technical field such as Computer Science, Information Security, Information Technology, Computer Engineering, Information Systems, etc. 
  • Relevant security and risk certifications desired: Security+, CRISC, or similar 

 

Princeton University is an Equal Opportunity/Affirmative Action Employer and all qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity or expression, national origin, disability status, protected veteran status, or any other characteristic protected by law. KNOW YOUR RIGHTS


36.25
No
Yes
No
No
No
Director
Refer code: 7756200. Princeton University - The previous day - 2024-01-07 13:12

Princeton University

Princeton, NJ
Popular It Risk Analyst jobs in top cities
Jobs feed

Payroll Accountant

Technoserve Inc.

Arlington, VA

$63.4K - $80.3K a year

Event Coordinator (Full-Time)

Larkin Community Hospital

Miami, FL

$39.3K - $49.8K a year

Event Coordinator

Penn State University

Erie, PA

Contract Opportunity: Estate Planning Attorney

United Placement Group

Sheboygan, WI

$15,000 - $60,000 a year

Event Coordinator

Capital Nyc

Miami, FL

$48,000 - $60,000 a year

Trade Show Event Manager

Cribl

Chicago, IL

$100,000 - $130,000 a year

Roof Deck Bartender

The Vanderbilt

Newport, RI

$29.8K - $37.7K a year

Event Manager

Evolus

Newport Beach, CA

$112,600 - $146,000 a year

Event Coordinator

City Of Columbus, Oh

Columbus, OH

$24.58 - $27.64 an hour

Event Coordinator

Curemed Health

Dallas, TX

$25 - $32 an hour

Share jobs with friends

Related jobs

Lead It Risk Analyst

Sr. Analyst, IT Operational Risk Mgmt

Valley National Bancorp

Morristown, NJ

2 months ago - seen

Sr. Analyst, IT Operational Risk Mgmt

Valley National Bank

Morristown, NJ

4 months ago - seen

Business Analyst, Risk IT

Jefferies

Jersey City, NJ

4 months ago - seen

Sr. Analyst, IT Operational Risk Mgmt

Valley Bank

Morristown, NJ

5 months ago - seen

IT Risk Analyst

Princeton University

Princeton, NJ

5 months ago - seen

Senior Associate, IT Risk Analyst

BAYADA Home Health Care

Pennsauken, NJ

5 months ago - seen

Senior Associate, IT Risk Analyst

BAYADA Home Health Care

Merchantville, NJ

5 months ago - seen