703,114open jobs
41,507companies
99,646added this week
Browse all
Salary
$70k – $125k per year
Location
In office (United States, State College)
Seniority
Staff · 4+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
The University System of New Hampshire is the public university system of New Hampshire, governed by a single board of trustees from its system office in Concord and serving about 27,000 students a year. Established by the state legislature in 1963, it comprises the University of New Hampshire with its Durham campus, UNH Manchester and the Franklin Pierce School of Law, together with Plymouth State University and Keene State College. Its openings include adjunct and tenure-track faculty, postdoctoral researchers, athletics coaches, program support and administrative staff, fundraising and facilities roles.

Team lead for the Cybersecurity Governance, Risk, and Compliance (GRC) functions for the University System of New Hampshire. Coordinate the use of risk management frameworks such as NIST CSF to assess the security posture of USNH services and operations and support compliance with regulatory standards like CMMC, FERPA, GLBA, HIPAA, and PCI DSS. Prepare quantitative measures of risk and compliance to support the CISO and CIO. Oversee cybersecurity policy and standards drafting and review processes to maintain currency and cohesiveness across the various security domains, preparing updates to policies and standards for review and approval by IT governance groups. Perform specific risk assessments of third-party products and services for the university system. Support cybersecurity awareness and education for the USNH student, faculty, and staff community members.

Job Duties/Responsibilities:

Cybersecurity Policies & Standards 30%

Assist with the development and publication of cybersecurity policies and standards aligned with the NIST Cybersecurity Framework and leveraging the NIST 800-53 and 800-171 control sets. Coordination of ongoing review sessions with key stakeholders and overall program monitoring to ensure all Policies & Standards are maintained appropriately. Draft new and updated policies and standards to maintain currency and applicability to evolving threats, compliance requirements, and business needs. Maintain and oversee an annual cycle and schedule for review of all existing policy and standards.

Coordinate cybersecurity policy & standard exception process. Communicate with stakeholders during the process of exception request and review as well as expiration and/or renewal. Maintain all records of exceptions, their associated risks, risk mitigations, and approved durations.

Compliance & Risk Management 30%

Oversee third-party vendor security assessment & review (SAR) programs and processes. Assist in design, development, and updates of SAR processes. Maintain all records of vendor security reviews and communicate to stakeholders on required updates and renewals.

Coordinate contracted risk assessments from outside contractors including scheduling, communication, and recordkeeping involving administrative, academic, and business units and related IT departments and teams.

Participate in performing internal risk assessments and risk analysis of USNH systems and services. Assist in management of the risk register including providing periodic reporting of metrics on the scope and potential impact of risks to the organization.

Assist with the development of information handling standards and procedures for all regulated information in use across USNH. Build relationships with regulated data subject matter experts at each institution. Assist with other tasks related to safeguarding regulated data across USNH as needed.

Assist with development and implementation of disaster recovery and business continuity plans. Assist with setup, coordination, and execution of periodic tests of the plans and processes.

Awareness & Training 15%

Work with other IT teams as well as administrative, academic, and other business units to develop and deliver cybersecurity training programs, both generic and role-specific, computer-based and in-person.

Administer phishing awareness and similar activities including designing and proposing phishing simulations, deploying, and measuring simulated phishing attacks, and tracking and reporting on program metrics.

Incident Response 15%

Oversee the processes used for record keeping roles during cybersecurity incident response. Contributed to the overall incident response plan, especially related to incident tracking, reporting, and after-action reviews. Assist in the development of incident response training and periodic incident response drills and testing activities

Perform incident recording activities during cybersecurity incidents and maintain records needed for compliance, audit, and after-action review.

Other duties. 10%

Support other information security and information technology projects and initiatives as assigned.

Requirements:

Minimum Qualifications

  • Bachelor’s degree and four years of experience in information technology/cybersecurity field or equivalent combination of education and experience.

  • Experienced in or knowledgeable about a broad range of cybersecurity subject areas

  • Specific knowledge about IT contingency planning (disaster recovery/business continuity, and incident response)

  • Demonstrated experience working in managed project teams

  • Strong organizational skills and attention to detail

  • Effective oral and written communication skills with demonstrated ability to compose and present material to communicate difficult concepts

  • Able to develop and present information, ideas and instructions with minimal oversight

  • Able to exercise sound judgment within generally defined practices and processes with guidance in selecting methods, techniques, and evaluation criteria for obtaining results.

  • Demonstrated ability to effectively coordinate multiple priorities in a dynamic environment

  • Effective time management skills demonstrated by successful and timely completion of daily operational tasks

  • Ability to work both independently and in a team-oriented, collaborative environment

Preferred Qualifications

  • Experience in higher education.

  • Certifications related to cybersecurity such as GSEC, SSCP, or Security+

  • Experience creating policies or standards within an enterprise IT organization

Applicant Instructions:

Applicants should be prepared to upload the following documents when applying online within the My Experience: Resume/CV section of the application: (Maximum of 5 Documents)

  • Resume/CV

  • Cover Letter

  • Writing Sample (Discipline Specific)

Applications that are missing any of the required items may not move forward for consideration. Additional uploaded documents not requested in the position announcement will not be reviewed.

The University of New Hampshire is an R1 Carnegie classification research institution providing comprehensive, high-quality undergraduate and graduate programs of distinction. UNH is located in Durham on a 188-acre campus, 60 miles north of Boston and 8 miles from the Atlantic coast and is convenient to New Hampshire’s lakes and mountains. There is a student enrollment of 13,000 students, with a full-time faculty of over 600, offering 90 undergraduate and more than 70 graduate programs. The University actively promotes a dynamic learning environment in which qualified individuals of differing perspectives, life experiences, and cultural backgrounds pursue academic goals with mutual respect and shared inquiry.

EEO Statement

The University System of New Hampshire is an Equal Opportunity/Equal Access employer. The University System is committed to creating an environment that values and supports diversity and inclusiveness across our campus communities and encourages applications from qualified individuals who will help us achieve this mission. The University System prohibits discrimination on the basis of race, color, religion, sex, age, national origin, sexual orientation, gender identity or expression, disability, genetic information, veteran status, or marital status.

Compensation Pay Range:

$69,560.00 - $124,580.00

The pay range for this position is listed above. Actual offer will be based on skills, qualifications, experience, and internal equity, in addition to relevant business considerations. More information on benefits can be found here: USNH Employee Benefits | Human Resources

Location:

Durham
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
703,114 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
State College
Remote/Hybrid
DevOps
Kubernetes
DNS
VPN
Cybersecurity
PCI DSS
Least Privilege
Active Directory
Management
Draw.io
Apply
$11k – $19k per year (Estimated) • Remote
Cybersecurity
HIPAA
Apply
$106k – $169k per year • In office • Full-Time • 3+ years exp • Irvine
DevOps
AWS
Windows
Cybersecurity
HIPAA
Management
Agile
Apply
$106k – $169k per year • In office • Full-Time • 3+ years exp • Irvine
DevOps
AWS
Windows
Cybersecurity
HIPAA
Management
Agile
Apply
$92k – $175k per year • Remote/Hybrid • Top Secret • Full-Time • 3+ years exp • Bachelor's Degree • United States
DevOps
Splunk
VMWare
Hyper-V
Linux
Windows
Unix
TCP/IP
Cybersecurity
NIST 800-53
NIST 800-171
Apply
$36k – $40k per year • In office • Part-Time • 2+ years exp • High School Diploma • United States
Apply
Electrician 11 hours ago
$24k – $57k per year (Estimated) • In office • Full-Time • Master's Degree • State College
Apply
$60k – $108k per year • In office • Full-Time • 7+ years exp • High School Diploma • United States
Apply
$26k – $62k per year (Estimated) • In office • Contractor • High School Diploma • United States
Apply
$45k – $118k per year (Estimated) • In office • Part-Time • Bachelor's Degree • United States
Apply
$100k – $208k per year (Estimated) • Remote • 2+ years exp • Bachelor's Degree • State College
Game Dev
Unreal Engine
Apply
$45k – $90k per year (Estimated) • In office • Full-Time • 3+ years exp • State College
Management
Outlook
Microsoft Teams
Apply
$28k – $75k per year (Estimated) • In office • Part-Time • Bachelor's Degree • State College
Design
SolidWorks
Apply
$102k – $153k per year • Remote/Hybrid • Full-Time • 2+ years exp • Bachelor's Degree • State College • Jersey City
Cybersecurity
MITRE ATT&CK
NIST CSF
MITRE D3FEND
SIEM
Apply
$57k – $119k per year (Estimated) • Remote/Hybrid • 2+ years exp • Bachelor's Degree • State College
Apply
See all jobs
This is one of many
703,114 more open roles from verified company boards, updated every day.