Enterprise Security and Audit Analyst
Ball State University
Muncie, IN
ID: 7299412 (Ref.No. BSU46398)
Posted: Newly posted
Application Deadline: Open Until Filled
Job Description
Provide technical support in all areas of Information Security Services for the Office of Information Technology; administer and coordinate enterprise security controls. Develop and maintain policies and procedures for Information Security Services as well as Information Technology in general.
Ball State University is seeking a dynamic person interested in working with our information security team. If you are excited about the challenge of working with the enterprise security of a large university, you may be the candidate we’re looking for. This role will focus on information security operations including monitoring, investigation, and forensics as well as audit and documentation. This position reports to the Executive Director of Information Security Services and works collaboratively with the campus community to enhance security to fit the needs of the university and support their daily operations. If you are ready for a new challenge, we’d like to talk with you.
Job Function:
Provide technical support in all areas of Information Security Services for the Office of Information Technology; administer and coordinate enterprise security controls. Develop and maintain policies and procedures for Information Security Services as well as Information Technology in general.
Minimum Education:
Bachelor’s degree from an accredited college or university by date of appointment
Or, in lieu of Bachelor’s degree:
Associate’s degree plus an additional combination of education or work experience in IT equivalent to two years; or
High school diploma or GED plus an additional combination of education or work experience in IT equivalent to four years.
Preferred Education:
Master’s degree in computer science, applied technology, ICS, MIS, or related technology field.
Minimum Experience:
At least two years of experience in a technology related field; must be highly available and be willing to participate in information security operations and incidents for the entire university; may require responding to or insuring the response of others on a 24-hour-a-day, 365-day-a-year basis.
Preferred Experience:
Over five years of experience in a technology related field; relevant background in enterprise level systems architecture; relevant background in information security services.
Duties and Responsibilities:
- Work with the Director to develop implementation plans; coordinate operationalization of implemented solutions.
- Maintain appropriate security controls, including procedures, systems, and technology infrastructure; work collaboratively with the security team and other university units to adopt effective security practices into business processes.
- Perform research and technical analysis of technology options and provide concise and unbiased assessment of competing technical strategies, including hardware, software, and services; perform ongoing research and skills development as necessary to maintain technical expertise.
- Supervise the administration of security controls across the enterprise, including all intrusion detection systems (IDS/IPS), security scanning tools, and multi-layered firewalls and security policy controls; coordinate scheduled and ad hoc security audits of cross-platform systems, interpret results, and work across all university units as necessary to insure that the information security of the university is maintained.
- Provide technical support to the Information Security Incident Response process; coordinate response activities per established procedures; provide the Information Security Incident Response Team leadership with clear, concise, and timely reports of ongoing response activities.
- Coordinate with external consulting companies for various projects, including arranging conference calls, verifying consultant abilities, working with the consultants once on site and communicating with consultants once the engagement is complete.
- Perform ad hoc and/or formal security and enterprise technology training for individuals or groups.
- Interact with support organizations to resolve any problems that are not covered by existing online documentation, including renewing support contracts and managing open incidents.
- Act as a secondary security officer for HIPAA/HITECH in the absence of the primary security officer.
- Coordinate special projects as assigned.
- Perform other related duties as assigned.
At Ball State University, we recognize inclusive excellence as an integral endeavor to fulfill our University’s mission and our strategic plan. We recruit, support, and retain a diverse population of students, faculty, and staff. We encourage and reward diversity of thought. We promote a work environment that encourages and rewards innovation and creativity. We pledge to keep Inclusive Excellence at the highest level of institutional importance and as a foundation in all that we strive to do. Our over-arching goal for Inclusive Excellence is to adopt a university-wide Inclusive Excellence approach to academic, administrative support, and service functions of the university. We believe Inclusive Excellence must be infused in every step we take.