Position Details
Position Details
| Job Title |
Chief Information Security Officer |
| Position Number |
8100528 |
| Work Modality |
Hybrid - 4 In-Person |
| Is this request for the creation of a new Position (or the modification of an existing Position) to temporarily support the WorkDay ERP? |
No |
| Job Category |
University Staff |
| Job Type |
Full-Time |
| FLSA Status |
Exempt |
| Campus |
Rogers Park-Lake Shore Campus |
| Department Name |
TECHNOLOGY SERVICES |
| Location Code |
Information Security and Compliance |
| Is this split and/or fully grant funded? |
No |
| Duties and Responsibilities |
Position Overview:
The Chief Information Security Officer (
CISO) will be responsible for overseeing the development, implementation, and use of information security and cybersecurity resources and practices throughout the organization. This position will play a crucial role in guiding the university's strategic IT initiatives to enhance productivity, efficiency, and security.
General Responsibilities:
- Strategic Oversight: Develop and implement an IT strategy that aligns with the organization's business goals and objectives, ensuring the efficient and secure operation of all IT systems and processes.
- Leadership and Management: Lead and manage the IT department and/or unit, including hiring, training, and developing IT staff. Foster a culture of innovation, collaboration, and continuous improvement.
- Innovation and Emerging Technologies: Stay current with industry trends and emerging technologies, evaluating their potential impact on the organization and recommending strategic investments.
- Budgeting and Cost Control: Develop and manage the UISO's budget, ensuring cost-effective use of resources and adherence to financial goals.
- Compliance and Risk Management: Ensure the organization's IT systems comply with relevant regulations and standards, managing risks associated with technology use.
- Relationship Management: Establish and maintain relationships with IT vendors and service providers, negotiating contracts and ensuring the delivery of quality services.
Position Specific Responsibilities:
- Provide strategic and operational leadership of all functions for University Information Security Office (UISO).
- Demonstrate a commitment to Loyola's mission and strategy by supporting the ITS core values of service excellence for university strategic initiatives and continuous development/improvement.
- Develop and implement plans to ensure institutional compliance with applicable laws, regulations and requirements related to information security.
- Create and manage the university's information security program and establish relevant security metrics.
- Acts as an independent reviewer to ensure that technology compliance issues and concerns within Loyola University Chicago are being appropriately evaluated, investigated and resolved.
- Coordinates the creation, testing and execution of business continuity and disaster recovery plans across the Loyola University Chicago departments and schools.
- Regularly communicate in writing and in-person to end users and resource contributors about the state of information security, security expectations and on-going information risk status.
- Identify staff development/training plans, as well as succession planning, for the UISO staff.
- Participate in relevant professional activities, including involvement in university-wide and participation in external professional organizations.
- Perform other duties as required.
|
| Minimum Education and/or Work Experience |
*Master's degree in Management Information Systems, Computer Science or Engineering or equivalent experience. Relevant industry experience, aptitude, and the ability to learn while applying knowledge and skill-sets is important.
* At least 10 years of experience in information security and/or network/security management.
* At least 7 years of experience in managing information security, technology risk or compliance personnel.
* Proven experience with technology risk assessment and regulatory compliance, such as
FERPA,
GLBA,
HIPAA,
PCI
DSS,
DMCA,
GDPR, Illinois Personal Information Protection Act, and similar regulations.
* Familiarity with security concepts such as defense-in-depth, the principle of least privilege, access controls, risk management, and mitigating controls required.
* Demonstrated skills related to business continuity and disaster recover planning.
* Experience in Higher Education is a plus, but not required.
* Experience with IT frameworks such as
NIST or the
ISO 27000 series is a plus, but not required. |
| Qualifications |
Language Ability:
* Excellent communication (oral, written, presentation), interpersonal and consultative skills to work effectively with vendors, clients, peers, and
ITS management and staff.
* Core consulting skills such as business writing, presenting, and analytic comparisons.
* Ability to communicate technical concepts and solutions to both technical and non-technical audiences.
Computation Ability:
* Strong analytical and problem solving skills.
Reasoning Ability:
* Must be detail oriented, results focused, and be able to support change management initiatives.
* Synthesizes complex or diverse information; Generates creative solutions; Identifies and resolves problems in a timely manner; Gathers and analyzes information skillfully; Develops alternative solutions; Works well in both group and individual problem solving situations. Looks for ways to improve and promote quality; Responds promptly to customer needs; Solicits customer feedback to improve service; Responds to requests for service and assistance.
Interpersonal:
* Great attitude and strong work ethic; Ability to work independently and in team settings; Focuses on solving conflict, not blaming; Maintains confidentiality and follows
ITS and other university policies regarding data security and protection; Balances team and individual responsibilities; Contributes to building a positive team spirit; Effectively influences actions and opinions of others; Strives to continuously build knowledge and skills; Shares expertise with others.
* Collaborates information security concepts with both technical and non-technical individuals; Possesses the ability to explain and gain concurrence on information security concepts.
* Diversity - Shows respect and sensitivity for cultural differences; educates others on the value of diversity.
* Ethics - Treats people with respect; Works with integrity and ethically; handles sensitive and confidential issues and materials appropriately.
Organizational Skills:
* Supports organization's goals and values; Develops strategies to achieve organizational goals; Adapts strategy to changing conditions; Includes appropriate people in decision-making process; Strong administrative and organizational skills.
|
| Certificates/Credentials/Licenses |
CISSP or
CISM certification required
GIAC certifications are a plus, but not required
|
| Computer Skills |
Demonstrated competence related to network and web application firewalls, intrusion prevention, security monitoring, multi-factor authentication, data loss prevention, data encryption/transfer, email and end-user security, log management and security incident and event management technologies.
Proficient in Microsoft applications. |
| Supervisory Responsibilities |
Yes |
| Required operation of university owned vehicles |
No |
| Does this position require direct animal or patient contact? |
No |
| Physical Demands |
None |
| Working Conditions |
Irregular Hours |
| Open Date |
04/15/2026 |
| Close Date |
|
| Position Maximum Salary or Hourly Rate |
$174,305.25/ann |
| Position Minimum Salary or Hourly Rate |
$174,305.25/ann |
| Special Instructions to Applicants |
As a Jesuit, Catholic institution of higher education, we seek candidates who will contribute to our strategic plan to deliver a Transformative Education in the Jesuit tradition. To learn more about Loyola University Chicago's mission, candidates should consult our website at
www.luc.edu/mission/. For information about the university's focus on transformative education, they should consult our website at
www.luc.edu/transformativeed.
|
| About Loyola University Chicago |
Founded in 1870, Loyola University Chicago is one of the nation's largest Jesuit, Catholic universities, recognized for its academic excellence, commitment to community engagement, and leadership in sustainability. A Carnegie R1 research institution, Loyola leverages its status as one of an elite group of universities with the highest level of research activity to advance knowledge that serves communities and creates global impact. With
15 schools, colleges, and institutes-including Business, Law, Medicine, Nursing, and Health Sciences-Loyola operates three primary campuses in the greater Chicago area and one in Rome, Italy, that provide students a transformative, globally connected learning experience. Consistently ranked among the nation's top universities by U.S. News & World Report, Loyola is a
STARS Gold-rated institution that is ranked as one of the country's most sustainable campuses by The Princeton Review and has earned distinctions from AmeriCorps and the Carnegie Foundation for its longstanding record of service and community engagement. Guided by its Jesuit mission and commitment to caring for the whole person, Loyola educates ethical leaders who think critically, act with purpose, and strive to create a more just and sustainable world.
Loyola University Chicago strives to be an employer of choice by offering its staff and faculty a wide array of affordable, comprehensive, and competitive benefits. To view our benefits in detail,
click here.
Loyola adheres to all applicable federal, state, and/or local civil rights laws and regulations prohibiting discrimination in private institutions of higher education. Please see the University's
Nondiscrimination Policy. |
| Quick Link for Posting |
https://www.careers.luc.edu/postings/35033 |
|