Security Risk and Compliance Analyst - Technology Solutions

This position is no longer accepting applications(closed Jul 24, 2026).
The Security Risk and Compliance Analyst conducts third-party security risk and compliance reviews for technology and software procurements used by faculty, staff, and researchers. This includes evaluating administrative and technical controls, identifying risks, and providing guidance on compliance requirements and risk mitigation. The analyst will support the organization's efforts to meet security standards, regulations, and institutional policies. This role assists with frameworks such as NIST and COBIT to ensure the protection of confidential data types including FERPA, PII, PHI, and CUI. The analyst also contributes to compliance efforts and supports assessment activities using tools such as SOC 2 Type II and HECVAT. Duties Responsibilities: Complete technology risk and security assessment requests from UIC faculty, staff, and researchers. Facilitate communications with UIC faculty, staff, and researchers and product vendors in order to understand the use and function of technology so that a thorough risk assessment can be completed. Research security and privacy policy and compliance-related issues and participate in team discussions to formulate new or enhance existing processes, policies, and standards. Partner with internal and external units to ensure ongoing security and privacy training activities are completed. Perform other related duties and participate in special projects as assigned.