Talent.com
IT Security Analyst
IT Security AnalystUniversity of California - San Francisco Campus and Health • San Francisco, CA, United States
IT Security Analyst

IT Security Analyst

University of California - San Francisco Campus and Health • San Francisco, CA, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

IT Security Analyst

IT Security and Policy

Full Time

87824BR

Job Summary

This role will require regular onsite work, 3 days per week.

This position supports UCSF IT Security, which develops, communicates, and supports University-wide information security policies and programs that ensure the confidentiality, integrity, and availability of UCSF Electronic Information Resources (EIRs).

This role reports directly to the Information Security Incident Response Manager. The primary responsibility is to perform and monitor standard electronic discovery (eDiscovery) processing and litigation functions, including data import / ingestion, export, job quality control, and case database administration. The role involves tracking eDiscovery data and electronically stored information (ESI) workflows and quality control according to standard operating procedures. The position also requires consultation with UCSF Legal Affairs and UC Legal to evaluate and recommend standardized procedures relating to the Electronic Discovery Reference Model (EDRM) : identifying, preserving, collecting, processing, analyzing, reviewing, producing, and presenting ESI and paper documents.

Additionally, the role includes incident response activities such as event and incident monitoring, threat detection and data correlation, and incident response actions using a wide range of security monitoring tools. Responsibilities include collecting potential breach evidence, participating in network and host forensic analysis, and following up with incident remediation activities.

Strong written and verbal communication skills are required. The senior analyst must be able to maintain eDiscovery processes and templates, coordinate with other process owners across the organization, and create or update documentation, and provide training.

This position requires a detail-oriented individual with strong analytical and critical-thinking skills. The candidate must be comfortable with working with client law firms and their clients to obtain data for ingestion, including through the use of SFTP, Box, Dropbox, etc., that can be ingested and processed while maintaining chain of custody. Perform or coordinate electronic and forensic collections and internal investigations. Track data acquisition from internal and external resources and verify data

integrity. Track and manage eDiscovery requests by outside counsel law firms to completion. Create productions and exports for delivery to clients. Candidate must be familiar with identifying abnormal network traffic and system activities. Candidate must be accustomed to correlating data across multiple systems and tools in order to identify the likelihood of compromise.

This position will interact with faculty, staff, and senior leaders across the organization. They will be responsible for presenting to non-IT UCSF departments including Privacy, Legal, and Risk. The Senior Security Analyst will author incident summaries, provide remediation recommendations, and have the ability to state a probability of compromise risk level to these non-IT teams.

This position acts as a Senior Information Security Analyst in order to monitor, detect, report, and remediate threats to the UCSF infrastructure, its assets, and its data. Responsible for detailed analysis of alerts and potential threats as well as data correlation and corroboration across a variety of network and host monitoring and threat detection tools. Responsible for clearly documenting the event, threat, and IR actions taken and / or recommended. Responsible for leading security incident investigations requiring task delegation and follow-up with junior team members.

The final salary and offer components are subject to additional approvals based on UC policy.

Your placement within the salary range is dependent on a number of factors including your work experience and internal equity within this position classification at UCSF. For positions that are represented by a labor union, placement within the salary range will be guided by the rules in the collective bargaining agreement.

The salary range for this position is $70.35 - $87.47 (Step Hourly Rate).

To learn more about the benefits of working at UCSF, including total compensation, please visit : https : / / ucnet.universityofcalifornia.edu / compensation-and-benefits / index.html

Department Description

The UCSF IT Security group's responsibilities include, but are not limited to :

  • E-Discovery service
  • Incident response and forensic analysis
  • Threat hunting and event analysis
  • Establishing policies and standards for information security
  • Proving guidance and conducting risk assessments of systems and solutions
  • Governance, risk, and compliance
  • Architecting secure business solutions
  • Architecting threat detection, security monitoring and forensic solutions
  • Outreach and security awareness training and education
  • Endpoint security, such as encryption, anti-malware, endpoint detection and response

Required Qualifications

  • Bachelor's degree in a related area and / or equivalent experience / training.
  • 5+ years of relevant progressive experience
  • 1 or more years of experience in a dedicated eDiscovery role where the candidate is searching, collecting, and producing data for eDiscovery and investigation purposes or similar / related experience.
  • Enterprise IT : Distributed system technologies, load balancers, storage systems, enterprise email systems, web applications, cloud services, virtualization technologies, enterprise networking systems, enterprise firewalls
  • Substantial experience with eDiscovery data collections, searching, exporting, tracking, quality assurance, and presentation
  • Substantial experience in creating productions and exports for delivery to clients
  • Substantial experience with performing or coordinating electronic and forensic collections and internal investigations.
  • Substantial experience with tracking and maintaining legal preservation, including the custodians, physical / electronic preservation collections, legal holds, and associated processes.
  • Skilled at reading and interpreting security logs as well as analyzing and correlating logs for evidence of security breaches.
  • Knowledge of the Cyber Kill Chain and the ability to recognize mitigations and containment steps at each stage of an attack
  • Experience using IT security systems and tools such as SIEM, syslog, network threat detection, and malware analysis.
  • Demonstrated skills applying security controls to computer software and hardware.
  • Demonstrated skill at administering complex security controls and configurations to computer hardware, software and networks.
  • Knowledge of computer enterprise hardware, software, cloud, and network security issues, architectures, and approaches.
  • Ability to clearly and completely summarize a security event, directed investigation steps, and potential risk to the organization
  • Ability to follow department processes and procedures.
  • Interpersonal skills sufficient to work effectively with both technical and non-technical personnel at various levels in the organization.
  • Detail-oriented recording of investigation notes, correlation logic, and determination of compromise
  • Knowledge of other areas of IT, department processes, and procedures.
  • Understanding of privacy and legal issues in a regulated higher-education healthcare environment
  • Understanding of industry trends and threats
  • Strong interpersonal communication to work with colleagues and customers who have a wide range of technical skills and knowledge
  • OS : Windows, Unix, OSX, VMWare
  • Office : MS Suite
  • Preferred Qualifications

  • Security Tools : enterprise scale signature based host security suites, network vulnerability scanning, web application vulnerability scanning, host intrusion detection systems, system monitoring, system information and event management logging, network based malware sandbox threat detection, IDS / IPS, enterprise firewalling
  • Forensic Tools : Forensic Case Management, eDiscovery Tools, Disk Forensic Tools, Memory Forensic Tools, Forensic Image Mounting, Forensic Imaging Tools
  • Certifications :
  • CEDS - Certified eDiscovery Specialist

  • EnCE - EnCase Certified Examiner
  • Relevant security certifications (GCIH, GCIA, GCED, CISSP, OSCP, CCSP, CCSK, or other GIAC)
  • About UCSF

    The University of California, San Francisco (UCSF) is a leading university dedicated to promoting health worldwide through advanced biomedical research, graduate-level education in the life sciences and health professions, and excellence in patient care. It is the only campus in the 10-campus UC system dedicated exclusively to the health sciences. We bring together the world's leading experts in nearly every area of health. We are home to five Nobel laureates who have advanced the understanding of cancer, neurodegenerative diseases, aging and stem cells.

    Pride Values

    UCSF is a diverse community made of people with many skills and talents. We seek candidates whose work experience or community service has prepared them to contribute to our commitment to professionalism, respect, integrity, diversity and excellence - also known as our PRIDE values.

    In addition to our PRIDE values, UCSF is committed to equity - both in how we deliver care as well as our workforce. We are committed to building a broadly diverse community, nurturing a culture that is welcoming and supportive, and engaging diverse ideas for the provision of culturally competent education, discovery, and patient care. Additional information about UCSF is available at diversity.ucsf.edu

    Join us to find a rewarding career contributing to improving healthcare worldwide.

    Equal Employment Opportunity

    The University of California is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age, protected veteran status, or other protected status under state or federal law.

    Organization

    Campus

    Job Code and Payroll Title

    006365 IT SCRTY ANL 4 TX

    Job Category

    Clinical Systems / IT Professionals

    Bargaining Unit

    University Professional Technical Employees - Technical Unit (UPTE-TX)

    Employee Class

    Career

    Percentage

    100%

    Location

    San Francisco, CA

    Campus

    Mission Center Building (SF)

    Work Style

    Flexible

    Shift

    Days

    Shift Length

    8 Hours

    Additional Shift Details

    Mon-Fri 8-5 plus On Call as required

    [job_alerts.create_a_job]

    IT Security Analyst • San Francisco, CA, United States

    [internal_linking.similar_jobs]
    IT Security Analyst

    IT Security Analyst

    University of California - San Francisco • San Francisco, CA, United States
    [job_card.full_time]
    This role will require regular onsite work, 3 days per week.This position supports UCSF IT Security, which develops, communicates, and supports University-wide information security policies and pro...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Sr. IT Security Engineer

    Sr. IT Security Engineer

    e.l.f. Beauty • Oakland, CA, US
    [job_card.full_time]
    Our deep commitment to clean, cruelty free beauty at an incredible value has fueled the success of our flagship brand e.Cosmetics since 2004 and driven our portfolio expansion.Today, our multi-bran...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Online Threat Intelligence Analyst - Hybrid & Client-Facing

    Online Threat Intelligence Analyst - Hybrid & Client-Facing

    Control Risks • San Francisco, CA, United States
    [job_card.full_time]
    A leading security consultancy in San Francisco seeks an Analyst for their Online Threat Intelligence team.The role involves leading complex investigations, producing insightful analysis, and enhan...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior IT Infrastructure Architect – Cloud & Security

    Senior IT Infrastructure Architect – Cloud & Security

    Astro Mechanica • San Francisco, CA, United States
    [job_card.full_time]
    A leading aerospace technology company in San Francisco is seeking a Senior IT Leader to own IT architecture and technology stack. The ideal candidate has 8–12 years of experience in IT infrastructu...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Analyst

    Security Analyst

    Forage • San Francisco, California, USA
    [job_card.full_time]
    Forage is building the modern payments stack that powers inclusive commerce.Our technology enables grocers delivery platforms and point-of-sale systems to seamlessly accept EBT payments both online...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Communications Specialist (7477U) - Center for Long-Term Cybersecurity

    Communications Specialist (7477U) - Center for Long-Term Cybersecurity

    University of California-Berkeley • Berkeley, CA, United States
    [job_card.full_time] +1
    At the University of California, Berkeley, we are dedicated to fostering a community where everyone feels welcome and can thrive. Our culture of openness, freedom and belonging make it a special pla...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Security Operations Center (SOC) Analyst L1

    Security Operations Center (SOC) Analyst L1

    RingCentral, Inc • Belmont, CA, United States
    [job_card.full_time]
    It's not everyday that you consider starting a new career.We're RingCentral, and we're happy that someone as talented as you is considering this role. First, a little about us, we're a $2 Billion an...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Workday HCM & Security Analyst

    Senior Workday HCM & Security Analyst

    CloudFlare • San Francisco, CA, United States
    [job_card.full_time]
    A cutting-edge technology company is seeking a Workday Functional Analyst to manage and configure the Workday application. Responsibilities include leading optimization projects and creating documen...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Head of DevOps, Security & IT

    Head of DevOps, Security & IT

    Color Health • South San Francisco, CA, United States
    [job_card.full_time]
    Color Health is revolutionizing cancer care with the nation's first Virtual Cancer Clinic, delivering high-quality, physician-led multidisciplinary care across all 50 states.Our innovative, guideli...[show_more]
    [last_updated.last_updated_30] • [promoted]
    IP Conflicts Analyst

    IP Conflicts Analyst

    Cooley LLP • San Francisco, CA, United States
    [job_card.full_time]
    Cooley is seeking an IP Conflicts Analyst to join the Business Intake and Conflicts team.The IP Conflicts Analyst is responsible for the identification, analysis, and resolution of all IP conflicts...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Information Security Analyst

    Information Security Analyst

    TradeJobsWorkForce • 94132 San Francisco, CA, US
    [job_card.full_time]
    Monitor their organization’s networks for security breaches and investigate a violation when one occurs Install and use software, such as firewalls and data encryption programs, to protect sensitiv...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Security Operations Analyst

    Security Operations Analyst

    The Voleon Group • Berkeley, CA, US
    [job_card.full_time]
    Voleon is a technology company that applies state-of-the-art AI and machine learning techniques to real-world problems in finance. For nearly two decades, we have led our industry and worked at the ...[show_more]
    [last_updated.last_updated_30] • [promoted]
    IT Analyst, Onsite

    IT Analyst, Onsite

    Zūm • Redwood City, CA, US
    [job_card.full_time]
    Zum is a rapidly expanding Series E startup backed by industry leaders Sequoia Capital, SoftBank, Spark Capital, and GIC, with a bold mission to transform the stagnant school transportation industr...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior IT Security & Infrastructure Engineer (Temporary)

    Senior IT Security & Infrastructure Engineer (Temporary)

    Vir Biotechnology, Inc. • San Francisco, CA, United States
    [job_card.full_time]
    Senior Infrastructure & Security Engineer (Temporary).Senior Infrastructure & Security Engineer (Temporary).Senior Infrastructure & Security Engineer (Temporary). Be among the first 25 applicants.Se...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Security Operations Center Analyst

    Security Operations Center Analyst

    TechBiz Global GmbH • San Francisco, CA, US
    [job_card.full_time]
    At TechBiz Global, we are providing recruitment service to our TOP clients from our portfolio.Security Operations Center Analyst. If you're looking for an exciting opportunity to grow in a innovativ...[show_more]
    [last_updated.last_updated_30]
    Lead Technical Support Analyst

    Lead Technical Support Analyst

    Public Health Institute • Berkeley, CA, United States
    [job_card.full_time] +1
    If you are a current and active PHI employee, do not use this site to apply for positions.Berkeley, CA;Work From Home - USA. The Public Health Institute (PHI) is an independent, nonprofit organizati...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Founding IT Operations & Security Lead

    Founding IT Operations & Security Lead

    Speak • San Francisco, CA, United States
    [job_card.full_time]
    A leading language learning company in San Francisco is seeking a founding IT Operations Manager.This role involves building and enhancing the company's IT infrastructure while ensuring security an...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior IT Security Specialist

    Senior IT Security Specialist

    Taskrabbit • San Francisco, CA, US
    [job_card.part_time]
    Taskrabbit is a marketplace platform that conveniently connects people with Taskers to handle everyday home to-do's, such as furniture assembly, handyman work, moving help, and much more.At Tas...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]