IT Research and Compliance Associate

Apply now Job no: 494610
Work type: Administrative Faculty Full Time
Location: Golden
Categories: Information Technology, Middle Management

Position Title: Information Technology Research and Compliance Associate 
The Opportunity:

The IT Systems Research and Compliance Associate is a member of the Office of Information Security (OIS) within the Information and Technology Solutions (ITS) Department and works collaboratively with the Cyber Infrastructure and Advanced Research Computing (CIARC) group in support of researchers, the systems administration team, ITS staff, and other university departments to further the research and compliance missions of Mines.  Responsibilities include working inter-departmentally to lead the design, configuration and implementation of a robust technology infrastructure in support of restricted data curation, management, and workflow development.  This includes consideration of storage and networking architecture and infrastructure, data and storage architectures, research computing resources, and adherence to best practices of data management and the data management lifecycle.  This position will also support researchers by determining how to incorporate their projects into the appropriately security research and compliance environment or tailor an interface to the environment that meets their needs.


System Administration

  • The IT Systems Research and Compliance Associate will act as a liaison between ITS and researchers in this effort, and will make recommendations in the acquisition of additional infrastructure resources required to facilitate and extend research, and assist in the design, architecture, and implementation of those additional resources.
  • Develop storage and networking infrastructure, information storage architectures, research computing resources, and adhere to best practices of data management and the data management lifecycle.
  • Support technical implementation and maintenance within cloud environments designed to protect restricted information.
  • Coordinate, cooperate, and interact with other ITS staff, particularly front-line user support staff (e.g. desktop support, lab support, help desk) to provide second level (tier-2) support for researchers in their use of restricted information and supported environments.
  • The employee in this position must be able to aid in a wide variety of technical, compliance and policy related tasks as the need.

Restricted Data Compliance

  • Support the Controlled Unclassified Information (CUI) Program by providing subject matter expertise in the CUI Lifecycle and NIST SP 800-171 Protecting CUI in Nonfederal systems.
  • Interprets and provides guidance derived from NIST SP 800-171, Protecting Controlled Unclassified Information (CUI).
  • Document, review and update CUI documentation, policies, guidelines and procedures for to make final determination and approval.
  • Recommend and implement policies and procedures to process and protect Department of Defense (DoD) classified information and CUI (Controlled Unclassified Information), CDI (Covered Defense Information), CTI (Controlled Technical Information), ITAR (The International Traffic in Arms Regulations), and other restricted information.
  • Develop and provide IT related training for end users.
  • Collaborate with Enterprise Cybersecurity and Privacy Offices to ensure CUI aligns with Mines direction.
  • Manage Mines Cybersecurity Maturity Model Certification (CMMC) process and ensure the institution maintains appropriate certification.

Special Projects

  • Meet with individuals or groups within the Mines community to discuss a broad-range of technical challenges and provide technical solutions.  Solutions may range from one-off localized projects to campus-wide initiatives that ensure that IT procedures remain within defined regulatory framework and standards.
  • Support the IT team in audits of internal controls over compliance such as PCI DSS, NIST, and others.
  • Support the risk assessment, scoping, execution, reporting, issue management, and process improvement related to ITS portions of audits.
  • Review documents, work practices, and completed work and identify areas where changes might be necessary for purposes of compliance.
  • Consult with management on findings and play a role in updating training practices or manuals for employees.

Tier 3 technical support

  • Coordinate, cooperate, and interact with other ITS staff, particularly front-line user support staff (e.g. desktop support, lab support, help desk) to provide second level (tier-2) support for researchers in their use of the campus cyberinfrastructure.
  • Monitor the Mines on Premise Enclave environments and the Restricted Research GovCloud Environments to detect threats with Cyber Security and compliance with all 110 NIST 800-171 controls.
Minimum Qualifications:
  • Bachelor’s degree from an accredited institution of higher education, preferably in a STEM-related discipline.  Individuals without a degree may be considered if they demonstrate possession of substantially the same knowledge level as found in a degree, but have attained the advanced knowledge through a combination of work experience and intellectual instruction.
    • Demonstrated collaborative approached to learning and sharing knowledge in STEM-related disciplines and research.
    • Demonstrated ability to diagnose/resolve technical problems independently
    • Minimum of three years of experience in support of a technical environment in one or more of the following areas: systems administration, data networking, storage architectures, cloud computing, research computing, or data management.
    • Must be eligible to work in secure computing environments including International Traffic in Arms Regulations (ITAR) and Controlled Unclassified Information (CUI).
Preferred Qualifications:
  • Master’s degree in a STEM-related field of study.
  • PCI-DSS compliance experience.
  • Experience with data confidentiality, security, and privacy requirements related to a research university including, without limitation, the Federal Information Security Act, the Family Educational Rights and Privacy Act, and NIST 800-171.
  • Working knowledge of commercial GovCloud.
  • Knowledge of current and emerging technologies, such as Software Defined Networking, Science DMZ implementation, protected networks, and data enclaves.
About Mines & Golden, CO:
Mines is consistently ranked among the top engineering colleges in the United States and ranks number one as the best public school in the state for best value colleges. Mines is located in the heart of Golden, Colorado, a western suburb of Denver.  The campus location offers a small-town ambiance with close proximity to all that the Denver metropolitan area has to offer with an abundance of cultural events, museums, theaters and sporting venues. An arid climate and an average 300 days of sunshine per year make the area an ideal place to live, work and play. We seek individuals who value a diverse and inclusive community – offering different perspectives, experiences, and cultures that enrich the educational and work experience. 
How to Apply: Applicants will be asked to complete an online application (personal information, demographic information, references, veterans status) and upload a resume and cover letter (optional). 
Total Rewards: Starting salary will be determined by the qualifications of the selected applicant balanced with departmental budget availability, internal salary equity considerations, and available market information. Mines provides an attractive benefits package including fully paid health and dental insurance. Part of Mines' mission is to create a family-friendly environment supported through our dependent tuition benefits, parental leave benefits, and dependent care assistance plan, as well as in special events, camps, and programming. For more information visit:
Background Investigation Required: Yes

Advertised: Mountain Daylight Time
Applications close: Mountain Standard Time

Back to search results Apply now Refer a friend

Share this:

| More

Update your details, view your application and progress

Work type



Job Type
Major Area

Keep informed about job opportunities at the Colorado School of Mines

© 2018 Colorado School of Mines | Equal Opportunity | Privacy Policy |