
Real job — pulled straight from UC San Francisco’s careers page · Verified August 24, 2026 · No reposts.
Job description
UC San Francisco is hiring a IT Security Analyst — a full-time, based in San Francisco, CA role. Apply directly on UC San Francisco's careers page below.
Cybersecurity Analyst
Location: San Francisco, CA, United States
Certain terms and conditions of employment for this position, including the rate of pay, benefits, etc., are currently subject to negotiation with the appropriate union.
We are seeking an experienced and versatile Cybersecurity Analyst to join our Cyber Risk Management team and help strengthen cybersecurity across a complex academic, healthcare, and research environment. This position will play a key role in our Human Risk and Cybersecurity Awareness program, developing and operating engaging security awareness initiatives, simulated phishing campaigns, communications, and outreach designed to measurably reduce human-related cyber risk. The analyst will work with diverse communities—including healthcare professionals, researchers, faculty, staff, and students—to transform emerging threats into practical, audience-appropriate guidance that improves security behavior and strengthens our overall security culture.
Beyond Human Risk, this is a well-rounded cybersecurity role with opportunities to contribute across Cyber Risk Management, governance, compliance, research security, and enterprise security initiatives. The analyst will support cybersecurity policies and standards, risk assessments, compliance and audit activities, and cross-functional security initiatives in partnership with IT, Privacy, Compliance, Research, and other stakeholders. We are looking for a security professional who can operate independently, communicate effectively with both technical and non-technical audiences, manage multiple initiatives, and translate cybersecurity risks into actionable recommendations. Experience working in regulated or complex enterprise environments is highly desirable, with familiarity in areas such as HIPAA, cybersecurity GRC, NIST frameworks, data privacy, security risk management, and security awareness technologies considered valuable.
Department Overview
UCSF Cybersecurity protects and responds to both internal and external threats. It monitors for vulnerabilities, risks, and exposures and mitigates issues prior to exploitation. If an incident does occur, IT Security investigates, determines impact, and recommends controls for reduced recurrence likelihood.
- Vulnerability Management
- Network Security
- Application Security
- E-Discovery service
- Incident response and forensic analysis
- Threat hunting and event analysis
- Establishing policies and standards for information security
- Providing guidance and conducting risk assessments of systems and solutions
- Governance, risk, and compliance
- Architecting secure business solutions
- Architecting threat detection, security monitoring and forensic solutions
- Outreach and security awareness training and education
- Endpoint security, such as encryption, anti-malware, endpoint detection and response
About Us
Get IT Security Analyst jobs like this→
New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.
Email me new jobsSimilar jobs




Senior Consultant, Applied Cryptography and Digital Trust
Frequently asked questions
What skills are required for IT Security Analyst at UC San Francisco?
The required skills for IT Security Analyst at UC San Francisco include: Cybersecurity, HIPAA.
What is the seniority level for IT Security Analyst at UC San Francisco?
IT Security Analyst at UC San Francisco is a Mid Level level position.
How do I apply for IT Security Analyst at UC San Francisco?
You can view the full description and apply for IT Security Analyst at UC San Francisco on EchoJobs: https://echojobs.io/job/uc-san-francisco-it-security-analyst-iskm9.