HiringRange: Salary Commensurate with Education and Experience
JOBSUMMARY/ESSENTIAL JOB FUNCTIONS: This position assesses informationrisks, prepares security plans of action and milestones (POAMs), and remediatesidentified vulnerabilities for IT security and IT risks across UTHSC campuses.Additional duties include assessing the adequacy of security strategy, businesscontinuity /disaster recovery plans, threats to systems, networks, data, and information.Calculates the impact of potential adverse events. Ensures audits andassessments are continual and accurate, as threat profiles constantly change.
Designs and implements an overall risk management process for UTHSC, which includes an analysis of the impact on the UTHSC when risks occur.
Performs risk assessments that includes analyzing and evaluating current risks and identifying potential risks.
Develops security policies, standards, and procedures based on regulatory compliance needs.
Provides reports, documentation, and recommendations for improvement tailored to relevant governance and stakeholders.
Designs and implements Information Security Training for UTHSC, training material for annual Information Security refresher training, new-employee onboarding training, and UTHSC Phishing training program.
Conducts and assists with policy and compliance audits, which will include liaising with internal and external auditors.
Assesses the adequacy of security strategy, business continuity /disaster recovery plans, threats to systems, networks, data and information, and determines the impact of potential adverse events.
Develops and administers outreach, communication, and training efforts pertaining to information security risks, requirements, and solutions.
Builds risk awareness among staff by providing support and training.
Assists in identifying security breaches.
Participates in the Incident Response process.
Explores new training methods for security outreach.
Performs other related duties as assigned.
Internal Number: 184168
The mission of the University of Tennessee Health Science Center is to bring the benefits of the health sciences to the achievement and maintenance of human health, with a focus on the citizens of Tennessee and the region, by pursuing an integrated program of education, research, clinical care, and public service.