What are the responsibilities and job description for the Assistant Director of Information Security - Technology Solutions position at uic?
Position Summary
The Assistant Director of Information Security will serve as a leader, partner, and advocate, ensuring smooth operations across the cybersecurity engineering, event logging, and security operations center teams. This role focuses on strengthening relationships and driving innovation throughout the university.
The Assistant Director will enhance the functions of the security teams, mentor staff, and apply their expertise to critically examine threat intelligence and security advisories to identify, protect, detect, respond to, and recover from security incidents. Pivotal to this role is successfully leveraging automation and orchestration to improve efficiency and reduce response times, evaluate and implement emerging technologies aligned with UIC's strategic IT initiatives, and lead incident response efforts. On-call support during evenings, holidays, and weekends is required to address emergencies and maintain operational continuity.
Duties & Responsibilities
- Lead and optimize daily team operations, ensuring incidents and requests are addressed promptly and within service level agreements (SLAs). Oversee service continuity and drive ongoing improvements.
- Provide security consulting and represent the team in cross-functional projects and strategic initiatives.
- Oversee the Vulnerability Management Program, assessing risk, prioritizing vulnerabilities based on asset criticality, coordinating mitigation and remediation efforts across internal and external teams, and producing actionable metrics and trend reports.
- Collaborate with IT teams – including system administrators, network engineers, and developers – to audit, monitor, and validate security controls. Conduct gap analyses and internal assessments to strengthen infrastructure and reduce risk.
- Monitor and analyze threat intelligence and security advisories, providing timely guidance to stakeholders on emerging threats and recommended actions.
- Lead and support team development, including peer coaching, mentoring, professional growth, and staffing activities such as interviewing, hiring, onboarding, and performance evaluation.
- Participate in and lead audits, tabletop exercises, and compliance initiatives to ensure alignment with HIPAA, FERPA, PIPA, NIST SP 800-171, and other regulatory requirements.
- Perform other related duties and participate in special projects as assigned.