Security Operations Manager

Aurora, Colorado

University of Colorado Anschutz Medical Campus
Apply for this Job
University Staff Description University of Colorado Anschutz Medical Campus

Department: Information Security and IT Compliance (ISIC)

Job Title: Security Operations Manager

Position : - Requisition :36114

Job Summary:

Does this describe you? Are you passionate about cybersecurity and ready to lead a team of highly skilled dedicated cyber defenders? Do you thrive in a fast-paced environment, outsmarting cyber threat actors and safeguarding systems to protect data and infrastructure? We are searching for a Security Operations Manager to lead our security operations team and safeguard our university assets.

Information Strategy and Services is committed to maintaining the highest standards of security and data protection. Successful candidates are highly skilled and experienced in overseeing security operations and protecting information systems. The ideal candidate will have a strong background in security management, incident response, team leadership, and developing partnerships. Here are some of the exciting opportunities you will have in this role:
  • Oversees the day-to-day operations of the SecOps team which include incident analysis and response, vulnerability management, firewall and network security, security architecture, SIEM, monitoring and alerting, endpoint security, security education and awareness for technical professionals
  • Collaborates with university IT units and provides visibility, communication, status, remediation, and reporting of security vulnerabilities
  • Collaborates with stakeholders, including directors, faculty, data owners, data stewards and data custodians, to better understand business requirements, data flow, architecture and risks associated with campus IT systems
  • Reports on status and ensures timely collaboration and implementation of initiatives, engagements, and projects
  • Develops and enforce security based on university policies, standards, and guidelines, and ensures compliance with industry best practices, security frameworks, and regulatory requirements
  • Collaborates with technical teams and stakeholders on projects to implement or update System Security Plans
  • Provides guidance on how to secure systems administered by campus departments, central, and distributed IT
  • Coordinates and develops security architecture plans
  • Identifies and promptly reports security issues, threats, and risks to security leadership, and collaborates to develop plans for remediation
  • Continually updates job knowledge by tracking and understanding emerging security practices, standards and threats
Work Location:

Hybrid - This position is eligible for a hybrid work environment. ISIC strives for a high-flex work environment, meaning although this role can predominately be executed effectively with a remote schedule, there may be instances where in-person meetings and/or activities are needed. There is no minimum or prescribed in-person requirement. The work schedule will be based around core working hours in Colorado Mountain Time.

Why Join Us:

Information Strategy and Service (ISS) is a large department that encompasses

the Office of Information Technology (OIT), Information Security and IT

Compliance (ISIC), Enterprise Architecture (EA), and Information, Data

Empowerment and Analytics (IDEA). In Information Strategy and Services (ISS) we

emphasize six key principles that connect our teams and ensure our success:
  • Curiosity- Explore beyond one's own experience and environment.
  • Compassion- Demonstrates empathy, understanding, and respect for all people.
  • Collaboration- Partner well beyond our space and build partnerships to achieve organizational results.
  • Commitment- Dedication and engagement one has to their job, team, organization and university.
  • Competence- Know our craft and be committed to continuous improvement and learning.
  • Confidence- Be empowered and assured to represent our customers and their needs.
The mission of ISS is we improve lives by enabling our University mission of education, research, healthcare, and community engagement through information technology services. We facilitate collaboration, improve data integrity, increase secure access to information and technology, and provide exceptional customer-centric service using our skills, talents, and passions.

The mission of the Information Security and IT Compliance division (ISIC) is to deliver information security and IT compliance programs that support the academic, administrative, clinical, research, and strategic goals of CU Anschutz Medical Campus and CU Denver. ISIC is in a unique position to be able to support the missions of two of Colorado's most innovative campuses. The CU Anschutz Medical Campus strives to improve humanity by preventing illness, saving lives, educating health professionals and scientists, advancing science, and serving the community. The CU Denver Campus has a vision to build a radically inclusive model for higher education based on the simple idea that everyone deserves access to an excellent education and a fulfilled life of their design.

In ISIC we value our team members and strive to achieve work life balance, inclusivity, and a FUN working environment. We believe diverse teams are more innovative and make better decisions. In ISIC, we strive to create a workplace where team members feel heard, valued, and have a sense of belonging. We encourage applications from women, ethnic minorities, persons with disabilities and veterans. We are committed to diversity and equity in education and employment.

Core competencies of the Information Security and IT Compliance (ISIC) team:
  • Improve Self: the ability to promote self-development
  • Results Driven: the ability to meet organizational goals and customer expectations
  • Lead Change: the ability to bring about change to meet organizational goals
  • Lead People: leading people toward meeting organizational mission, goals and objectives
  • Build coalitions: the ability to build coalitions internally and with other organizations to achieve common goals
Click here to find out more about ISS's Culture and click HERE to view testimonials from ISS Employees about why they enjoy working for ISS.

Why work for the University?

We have AMAZING benefits and offerexceptional amounts of holiday, vacation and sick leave. The University of Colorado offers an excellent benefits package including:
  • Medical: Multiple plan options
  • Dental: Multiple plan options
  • Additional Insurance: Disability, Life, Vision
  • Retirement 401(a) Plan: Employer contributes 10% of your gross pay
  • Paid Time Off: Accruals over the year
  • Vacation Days: 22/year (maximum accrual 352 hours)
  • Sick Days: 15/year (unlimited maximum accrual)
  • Holiday Days: 10/year
  • Tuition Benefit: Employees have access to this benefit on all CU campuses
  • ECO Pass: Reduced rate RTD Bus and light rail service
There are many additional perks & programs with the CU Advantage.

Equal Opportunity Employer Statement:

The University of Colorado (CU) is an Equal Opportunity Employer and complies with all applicable federal, state, and local laws governing non-discrimination in employment. We are committed to creating a workplace where all individuals are treated with respect and dignity, and we encourage individuals from all backgrounds to apply.

Qualifications:

Minimum Qualifications:
  • Bachelor's degree in Information Security, Information Systems, Computer Science, Engineering, Business, Education, or a closely related field
    • Substitution: 4 years of professional or high-level technical work experience may be substituted for the bachelor's degree. An associate's degree with two years of relevant work experience may be substituted for the bachelor's degree
  • 5 years of progressive experience in information security including 2 or more years of leading or supervising an information technology team.
  • 2 or more years of experience with operating/administering two or more SecOps technologies such as SIEM, firewalls, intrusion prevention, vulnerability management, and endpoint security.
Applicants must meet minimum qualifications at the time of hire.

Preferred Qualifications:
  • Demonstrated interest in management and leadership: training, certification, and/or direct experience
  • Experience managing a Security Operations Center or SecOps team
  • Graduate degree in Computer Science, Information Security or related field
  • CISSP, GIAC (GSEC, GCIH, GCIA, GPEN) or other security professional certifications
  • Experience working with HIPAA, FERPA and PCI compliance in an enterprise environment
  • Experience working in a higher education environment
Knowledge, Skills and Abilities:
  • Strong leadership, customer service and communication skills
  • Excellent organization and time management skills
  • Knowledge and application of information security standards and frameworks
  • Familiarity with desktop, server, application, database, network, and cloud technologies
How to Apply:

For full consideration, please submit the following document(s):

1 . click apply for full job details
Date Posted: 14 May 2025
Apply for this Job