Deputy Chief Information Officer and Chief Information Security & Privacy Officer
University of Illinois Urbana-Champaign
Deputy Chief Information Officer and Chief Information Security & Privacy Officer
The Office of the CIO - University of Illinois Urbana-Champaign
The University of Illinois Urbana-Champaign seeks an exceptional Chief Information Security and Privacy Officer to provide campus-wide leadership for a comprehensive cybersecurity, identity and access management, and privacy program that supports the university’s academic, research, and administrative missions. The ideal candidate is a strategic, collaborative leader with deep experience in cybersecurity and risk management, proven ability to guide policy and governance in a complex environment, and a strong commitment to operational excellence. This individual will set multiyear roadmaps, lead institutional incident response, partner closely with university counsel and campus leadership, and ensure compliance with evolving regulatory requirements for a major Research 1 institution. Candidates should bring substantial management experience; demonstrated success communicating with both technical and non-technical audiences; and the judgment, integrity, and relationship-building skills required to advance a resilient, forward-looking security posture for the university. Fully remote work may be possible for this position per the University’s Workplace Flexibility policy. Travel to campus may be required. Sponsorship for work authorization is not available for this position.
Why Work at Technology Services?
Highlights of Employee Benefits
Job Summary
The Chief Information Security and Privacy Officer (CISO/PO) provides institution-wide leadership in developing and implementing comprehensive strategies for information security and privacy at the University of Illinois Urbana-Champaign. This executive role supports academic, research, and administrative functions while ensuring compliance with applicable laws, regulations, policies, and industry best practices.Duties & Responsibilities
University & Program Leadership
- Prioritize privacy and security risk management in alignment with institutional risk frameworks and institutional missions.
- Lead the development of multi-year roadmaps for information security, identity and access management, and privacy across on-premise, cloud, and third-party platforms.
- Serve as the primary institutional advocate for privacy, promoting awareness and integration of privacy principles into technology, processes, and training.
- Advise university counsel, senior leadership, and stakeholders on information security and privacy matters.
- Direct the Identity, Privacy, and Cybersecurity group, including budget oversight and personnel management.
- Collaborate with other Technology Services groups and staff to enhance risk mitigation strategies.
- Support strategic planning and ensure alignment with organizational goals.
- Partner with university leaders, governance bodies, and technologists to strengthen foundational IT capabilities through strategic investments and resource planning.
- Supervises and supports staff through regular guidance, coaching, and performance management to ensure quality service and operational excellence.
- Travel may be required.
Risk Management & Incident Response
- Oversee and mature risk management processes across the university and the University of Illinois System.
- Lead campus-wide information security and privacy incident response programs.
- Serve as the official point of contact for security incidents, including coordination with law enforcement.
- Collaborate with university counsel and System leadership on policy violations and external complaints.
- Monitor compliance with privacy laws and regulations including FERPA, HIPAA, GDPR, and institutional policies.
- Maintain awareness of emerging threats and develop strategies to mitigate their impact on university operations.
Institutional Compliance & Policy
- Lead the development and maintenance of institutional policies, standards, and procedures related to information security and privacy.
- Ensure policies reflect current legislation and regulatory requirements relevant to a Research 1 institution.
Minimum Qualifications
- Bachelors degree.
- Ten years of professional experience in IT, IT administration, or risk management, with significant responsibility in cybersecurity/information security.
- Five years of management experience in information technology.
- Demonstrated experience leading organization-wide initiatives.
- Demonstrated experience in budgetary and programmatic planning.
- Demonstrated experience managing complex, cross-organizational initiatives.
- Leadership experience in information security.
Preferred Qualifications
- Advanced degree in information technology, information security, privacy, or a related field.
- Five years of experience in one or more domains of information security or privacy.
- Leadership experience in a complex institution encompassing teaching, research, or administration.
- Professional certifications such as CISSP, CRISC, CISM, CIPP/US, or CIPM.
Knowledge, Skills and Abilities
- Demonstrated ability to maintain high security/privacy controls when dealing with sensitive information.
- Strong communication and interpersonal skills to communicate effectively with all levels of campus community, both verbally and in writing.
- Strong knowledge of institutional funding, financial management, and budgeting within a complex IT environment.
- Highly developed standards of professional conduct and customer service including, but not limited to: accountability, acceptance of new challenges and responsibilities, and a focus on customer needs and prompt, accurate resolution of issues.
- Demonstrated ability to lead and mentor staff, set priorities, and oversee cybersecurity needs across campus.
- Understanding of privacy management programs.
Appointment Information
This is a 100% full-time Academic Professional position, appointed on a 12-month basis. The expected start date is as soon as possible after the closing date. The budgeted salary range for the position is $210,000.00 to $240,000.00. Salary is commensurate with experience. Fully remote work may be possible for this position per the University’s Workplace Flexibility policy. Travel to campus may be required. Sponsorship for work authorization is not available for this position.
Application Procedures & Deadline Information
Applications must be received by 6:00 pm (Central Time) on January 12, 2026. Apply for this position using the Apply Now button at the top or bottom of this posting. Applications not submitted through https://jobs.illinois.edu will not be considered.
To complete the application process:
Step 1) Submit the Staff Vacancy Application using the “Apply for Position” button.
Step 2) Submit the Voluntary Self-Identification of Disability forms.
Step 3) Upload your cover letter, resume (months and years of employment must be included), and names/contact information for three references.
For further information about this specific position, please contact Sami Roch at sroch@illinois.edu. For questions regarding the application process, please contact 217-333-2137.
This position is intended to be eligible for benefits. This includes Health, Dental, Vision, Life Insurance, a Retirement Plan, Paid time Off, and Tuition waivers for employees and dependents.
The University of Illinois System is an equal opportunity employer, including but not limited to disability and/or veteran status, and complies with all applicable state and federal employment mandates. Please visit Required Employment Notices and Posters to view our non-discrimination statement and find additional information about required background checks, sexual harassment/misconduct disclosures, and employment eligibility review through E-Verify.
Applicants with disabilities are encouraged to apply and may request a reasonable accommodation under the Americans with Disabilities Act (2008) to complete the application and/or interview process. Accommodations may also be requested on the basis of pregnancy, childbirth, and related conditions, or religion. Requests may be submitted through the reasonable accommodations portal, or by contacting the Accessibility & Accommodations Division of the Office for Access and Equity at 217-333-0885, or by emailing accessibility@illinois.edu.
Requisition ID: 1034144
Job Category: Professional and Administrative
Apply at: https://jobs.illinois.edu
