Information Security Analyst IV

University of Utah

Salt Lake City (UT)

On-site

USD 102,000 - 117,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

University of Utah, located in Salt Lake City, seeks an Information Security Analyst IV to monitor, analyze, and safeguard information systems, networks, databases, and web security. The role includes vulnerability assessments, incident response, and compliance with HIPAA/HITECH, GDPR, PCI-DSS, and FERPA.

The position is Full Time within UIT Systems & Security, offering opportunities to develop security programs and collaborate across university divisions.

Qualifications

  • Requires bachelor's degree or higher in information technology, computer science, or related field.
  • Experience with information security risk assessments and governance is preferred.
  • Familiarity with HIPAA/HITECH, GDPR, PCI-DSS, FERPA, and NIST/CIS controls.

Responsibilities

  • Conduct formal cyber security risk assessments for applications, devices, systems and networks.
  • Review and provide analysis for risk questionnaires and policy compliance.
  • Develop and communicate security requirements and improvement plans to stakeholders.
  • Collaborate with ISO divisions to remediate risks and strengthen risk posture.
  • Assist in security training and awareness program development.

Education

Bachelor's degree or higher (Information Security, Computer Science, or related)

Job description

Information Security Analyst IV
Job Summary

Monitor, analyze, and maintain systems and procedures to safeguardinternal information systems, network, databases, and Web-basedsecurity. Conduct vulnerability assessments and monitor systems,network, databases, and Web for potential system breaches /intrusions. Install security measures and operate software toprotect systems and information infrastructure, including firewallsand data encryption programs. Respond to alerts from informationsecurity tools. Report, investigate, and resolve securityincidents. Educate and communicate security requirements andprocedures to all users and new employees. Recommend and implementchanges to enhance systems security and prevent unauthorizedaccess. Research security trends, new methods, and techniques usedin unauthorized access of data in order to preemptively eliminatethe possibility of system breach. Ensure compliance withregulations and privacy laws. May oversee internal or externalsystems security (i.e. cloud services).

About UIT:

University Information Technology(UIT), the central IT service provider for the University of Utah, reports to the U's Chief Information Officer and is responsible for many of the U's shared IT services including the wired and wireless network; Campus Information Services (CIS) portal; UMail, telephone, and online collaboration; digital learning technologies; information security; software licensing; and a host of other IT systems and services.

About the University of Utah:

Located in Salt LakeCity, the U is the flagship institution of the State of Utah'ssystem of higher education, home to arts and museumvenues and a member of the BIG-12 Conference. Skiing andsnowboarding opportunities are a short distance fromcampus, and opportunities to pursue activities from biking to hiking to fishing abound. Salt Lake City ishome to the Utah Symphony andOpera, Ballet West,professional sports teams, and a wide range ofother cultural and recreational activities.

Responsibilities
  • Conduct formal cyber security risk assessments to identify andmeasure information security risks for applications, devices,systems and networks.
  • Have a working knowledge of policies, rules, procedures andguidelines from the University of Utah's regulations website.
  • Review and provide analysis for completed inherent risk questionnaires.
  • Have an in-depth knowledge of the University Information Security Policy
  • Familiarity with HIPAA/HITECH, GDPR, PCI-DSS, and FERPAcompliance requirements.
  • Have an in-depth knowledge of NIST and CIS controls.
  • Prepare and present risk assessment reports.
  • Collaborate closely with and strengthen partnerships with otherdivisions within ISO
  • Identify opportunities to improve risk posture, proposingsolutions for remediating or mitigating risk and assessing theresidual risk.
  • Manage relationships with security, technology, and business stakeholders to identify and communicate security risks and mitigation approaches.
  • Assist in the continuous development, implementation, and ongoing maintenance of the information security training and awareness program.
  • Assist with the development and implementation of solutions and processes to remediate policy gaps.
  • Development of guidelines and best practice documents which provide direction to university students, staff and faculty on implementing appropriate controls.
  • Participate in compliance assessments.
  • Review and provide analysis for Exception to Policy requests.

This job description is not designed to contain or be interpretedas a comprehensive inventory of all duties, responsibilities andqualifications required of employees assigned to the job.

Job Code: P34214Grade: P21

Minimum Qualifications

EQUIVALENCY STATEMENT: 1 year of higher educationcan be substituted for 1 year of directly related work experience(Example: bachelor's degree = 4 years of directly related workexperience).

Information Security Analyst, IV: Requires abachelor's (or equivalency) + 8 years or a master's (orequivalency) + 6 years of directly related work experience.

Preferences
  • A bachelor's degree in information technology or systems, computer science, or equivalent experience in related fields.
  • One or more information security or technology risk assessment certifications (Security+, CIPT, CRISC, CISA, etc.)
  • Experience developing and implementing information security policy and procedures.
  • Experience with information security in a higher-education or healthcare environment.
  • Experience assessing and documenting the design of technology controls to effectively mitigate risk.
Special Instructions

A writing sample (cover letter) is required. The writing sample should demonstrate the applicant's ability to explain a technical, cybersecurity, risk, or compliance topic to a professional audience.

Requisition Number: PRN46223B

Full Time or Part Time? Full Time

Work Schedule Summary: Monday through Friday, 8:00 a.m. to5:00 p.m., with flexibility to work additional hours as needed to meet business or operational requirements.

Department: 00954 - UIT Systems & Security

Location: Campus

Pay Rate Range: $102,000.00 - 117,000.00

Close Date: 12/15/2026

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Analyst IV
Information Security Analyst IV

Utah • Salt Lake City (UT), Northern (KY)

Hybrid
USD 102,000 - 117,000
Information Security Analysts
Information Security Analysts

University of Utah • Campus (IL)

On-site
USD 73,000 - 93,000
UR retirement plan information not in
Cybersecurity Analyst Tier 2
Cybersecurity Analyst Tier 2

Utah • Salt Lake City (UT), Northern (KY)

Hybrid
USD 73,000 - 93,000
Cybersecurity Analyst Tier 2
Cybersecurity Analyst Tier 2

University of Utah • Salt Lake City (UT)

On-site
USD 73,000 - 93,000
Information Systems Engineer III
Information Systems Engineer III

University of Utah • Salt Lake City (UT)

On-site
USD 60,000 - 103,000
Information Systems Auditors
Information Systems Auditors

Details This • Campus (IL)

On-site
USD 105,000 - 130,000
Benefits program
Senior Information Security Analyst IV
Senior Information Security Analyst IV

Utah • Salt Lake City (UT), Northern (KY)

Hybrid
USD 102,000 - 117,000
Senior Information Security Analyst
Senior Information Security Analyst

UMass Amherst • Amherst (MA)

Hybrid
USD 120,000 - 150,000
Physical Security Systems Specialist
Physical Security Systems Specialist

University of Utah Health • Salt Lake City (UT)

On-site
USD 56,000 - 65,000
Benefited Staff
Information Systems Auditors
Information Systems Auditors

University of Utah • Salt Lake City (UT)

On-site
USD 105,000 - 130,000