We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Enterprise GRC Analyst I

Texas Tech University
United States, Texas, Lubbock
Mar 11, 2025

Lubbock


Enterprise GRC Analyst I

40428BR

Enterprise IT Security

Position Description

The Enterprise Governance Risk Compliance Analyst's I scope of responsibilities includes the enterprise-wide identification and assessment of risks; validation of internal controls; and assessment and validation of compliance with applicable state and federal laws, regulations, university operating policies, and industry standards to safeguard the institution's information resources. This position may also assist with training and development of team members and manage risk, compliance, and assurance projects.

The Enterprise Governance Risk Compliance Analyst may work with other departments and areas at tactical and strategic levels and may also interface with external community, stakeholders, vendors, and other partners in providing risk, compliance, and assurance services.

Discretion and sound judgment are expected. Enterprise positions are restricted for use in central IT Division areas reporting to the institutional CIO and, as such, may interface with key IT leadership and/or other functional leadership within the institutions.

About the University

Established in 1923, Texas Tech University is a Carnegie R1 (very high research activity) Doctoral/Research-Extensive, Hispanic Serving, and state-assisted institution. Located on a beautiful 1,850-acre campus in Lubbock, a city in West Texas with a growing metropolitan-area population of over 300,000, the university enrolls over 40,000 students with 33,000 undergraduate and 7,000 graduate students. As the primary research institution in the western two-thirds of the state, Texas Tech University is home to 10 colleges, the Schools of Law and Veterinary Medicine, and the Graduate School. The flagship of the Texas Tech University System, Texas Tech is dedicated to student success by preparing learners to be ethical leaders for a diverse and globally competitive workforce. It is committed to enhancing the cultural and economic development of the state, nation, and world.
About Lubbock:Referred to as the "Hub City" because it serves as the educational, cultural, economic, and health care hub of the South Plains region, Lubbock boasts a diverse population and a strong connection to community, history, and land. With a mild climate, highly rated public schools, and a low cost of living, Lubbock is a family-friendly community that is ranked as one of the best places to live in Texas. Lubbock is home to a celebrated and ever-evolving music scene, a vibrant arts community, and is within driving distance of Dallas, Austin, Santa Fe, and other major metropolitan cities. Lubbock's Convention & Visitors Bureau provides a comprehensive overview of the Lubbock community and its resources, programs, events, and histories.

Major/Essential Functions


  • Ability to assess, document, make recommendations, and report information technology and related security risks and controls in accordance with legal requirements, standards, institutional policies and directives, and industry best practices.
  • Ability to perform follow-up activities to validate implementation of remediation plans as part of the governance, risk, and compliance life cycle.
  • Ability to work with internal and third-party assessors, auditors, and consultants as directed.
  • Assist in the creation of governance, risk, and compliance metrics, analytics, and reports.
  • Contribute to the advancement of the institution's governance, risk, and compliance program.
  • Assist in the review of IT policies, procedures, standards, strategic plans, and contracts.
  • Conduct GRC activities such as IT reviews, audits, and assessments as directed.
  • May train and will provide support to team members and other staff regarding effective governance, risk, and compliance practices.
  • Provide support to Texas Tech University's Enterprise IT Security team members.
  • Assists with other relevant activities as requested by departmental and other IT Leadership.
  • Maintains an active awareness of the evolving compliance and security threat landscapes. Maintains an active awareness of federal, state, and local regulations and policies.
  • May assist with and may lead and/or manage projects involving internal and/or external team members.
  • Interface with users, vendors, or other stakeholders. May interface with key IT leadership and/or other functional leadership from the Texas Tech University System institutions.
  • Adheres to all appropriate institutional policies (including IT Ops) and other relevant internal department policies.
REQUIRED KNOWLEDGE,SKILLS, AND ABILITIES
Ability to:
  • Develop strategies and execute effective solutions within complex systems and environments.
  • Exercise judgment based on an understanding of applicable laws, regulations, organizational policies, and activities.
  • Plan and organize effectively, prioritize goals, use time efficiently, and stay on task.
  • Communicate effectively, both orally and in writing.
  • Establish and maintain effective work relationships.
  • Apply specialized knowledge in information technology risk identification, assessment, and mitigation; controls validation; compliance verification; and policy governance.
Knowledge of:
  • Information security risks, controls, & control validation techniques.
  • Information security industry standards and frameworks (e.g., NIST, ISO, SANS, SDLC, etc.)
  • Laws & regulations impacting information security (e.g., HIPAA, TAC 202, FERPA, PCI-DSS, etc.)

Required Qualifications

Bachelor's degree with coursework in cybersecurity, computer science, MIS, IT, business, or other related area plus three years related full-time paid experience OR a combination of related education and/or experience.

Preferred Qualifications

Professional certifications are not required, but ISACA, ISC2, IIA, SANS or other relevant GRC or information security certifications may be preferred qualifications.

Experience with IT risk management frameworks, system security, and audit methodologies to effectively develop, lead, and document IT assurance engagements and risk and compliance assessments for simple and complex computer information systems.

Safety Information

Adherence to robust safety practices and compliance with all applicable health and safety regulations are responsibilities of all TTU employees.

Occasional Duties

PREFERRED KNOWLEDGE, SKILLS, AND ABILITIES
Experience in one or more of the domains of knowledge as defined by ISACA's CISA and/or ISC2's CISSP. Must have a strong customer service orientation and the ability to successfully support the Texas Tech community.

Does this position work in a research laboratory?

No

Required Attachments

Cover Letter, Professional/Personal References, Resume / CV

Optional Attachments

Professional License/Certification, Recommendation/Referral

Job Type

Full Time

Pay Basis

Monthly

Minimum Hire Rate

4186.00

Pay Statement

Compensation is commensurate upon the qualifications of the individual selected and budgetary guidelines of the hiring department, as well as the institutional pay plan. For additional information, please reference the institutional pay plan by visiting www.depts.ttu.edu/hr/payplan.

Travel Required

Up to 25%

Shift

Day

Schedule Details

M-F 8am-5pm; Exempt - Additional hours as needed

Grant Funded?

No

Job Group

Enterprise IT

EEO Statement

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, gender expression, national origin, age, disability, genetic information or status as a protected veteran.

Applied = 0

(web-b798c7cf6-z2v8z)