Job Details

Texas Tech University
  • Position Number: 7341024
  • Location: Lubbock, United States
  • Position Type: Computing - Management/Director


Senior Director of Research Information Security
Lubbock
45375BR
Rsrch Info Security and Compliance

Position Description
Manages and directs the day to day operations of a research center/institute or medium sized department. Plans, coordinates and supervises the operation and activities of the center/institute/department. Develops and implements policies and procedures, administers the budget, organizes tasks and sets priorities.

About the University
Founded in 1923, Texas Tech University began with a mission to serve the needs of West Texas, but its impact has always reached far beyond. Today, Texas Tech, located in Lubbock (pop. 300,000+), is home to a vibrant community of more than 42,000 students.Texas Tech's 1,800-acre campus showcases Spanish Renaissance architecture and is home to one of the country's largest public art collections. Its 13 colleges include a prestigious School of Law and a distinguished School of Veterinary Medicine. These programs equip students with the skills and knowledge needed to excel in their respective fields. Built on the values of West Texas - hard work, grit and authenticity - the university graduates students who are deeply engaged in service to their communities and well-positioned to succeed in the world. Texas Tech is committed to achieving research and scholarly accomplishments that compare favorably to the member institutions of the Association of American Universities (AAU). For more than 100 years, Texas Tech has been a premier destination for those seeking a world-class education and a unique, personalized experience as a member of the Red Raider family.

About the Department and/or College


Major/Essential Functions
  • Own TTU's research CUI/CMMC program charter, roadmap, and annual plan; maintain a governance framework reusable for other regulated research environments; chair a cross-functional Research CUI/CMMC Working Group with OR&I, TTU IT, and Legal/Office of General Counsel: define and maintain CUI policies/standards (identification, marking, storage, transmission, sharing, decontrol) aligned to the CUI Registry and institutional policy.
  • Establish and maintain a Responsible Accountable Consulted Informed (RACI) model across ORS, OESC, departmental IT, lab managers, and central IT and a documented escalation path for decision-making and prioritization: define hold/release criteria for onboarding projects into CUI-scoped environments and recommend stop-work/temporary suspension actions through the jointly defined governance process when material noncompliance or unacceptable risk is identified.
  • Interpret/tailor controls; map award/contract terms to TTU standards and policies; approve SSPs; control implementation statements, network diagrams, and data-flow maps; maintain POA&Ms with risk-based prioritization.
  • Lead self-assessments against NIST 800-171A/CMMC; compute/maintain SPRS DoD Assessment scores with objective evidence; coordinate third-party assessments and customer/prime audits; track remediation to closure.
  • With ORS/Contracts, review solicitations/awards for CUI/CMMC clauses; advise on flowdowns and budgeted compliance costs in coordination with TTU IT.
  • Build role-based training (initial + annual) for PIs, research staff, departmental IT, and student workers (integrating state + federal requirements); publish quick-start guides, handling checklists, and PI onboarding materials; maintain a TTU research-security web hub & FAQs.
  • Define continuous monitoring requirements and evidence expectations for CUI/CMMC-scoped research environments consistent with CIO/CISO standards; partner with TTU IT Security and designated system owners to implement and operation monitoring capabilities; coordinate periodic access recertification.
  • Maintain/exercise a research-focused IR plan aligned to CIO/CISO incident response processes, including contractual timelines (including 72-hour reporting when required by contract); during incidents affecting CUI-scoped research, serve as the research program lead to coordinate scope, contractual obligations, and sponsor communications while TTU IT Security leads technical triage/forensics and containment; lead after-action reviews for research CUI incidents; ensure corrective actions are captured in Plan of Action and Milestones (POAMs) and tracked to closure.
  • Embed CUI/CMMC checkpoints into proposal ? Just In Time (JIT) ? award setup ? onboarding ? project changes ? closeout ? retention/decontrol; support Data Management Plans/Data Use Agreements, Trade Agreement Acts/Manufacturing License Agreements (with Export Control), visiting-researcher onboarding, facility access controls.
  • Define Key Performance Indicators and report quarterly to the Office of Research & Innovation and the CIO/CISO: control coverage; open POAMs by severity/age; assessment/SPRS score trend; training completion; incident Mean Time To Repair (MTTR); enclave uptime.


Required Qualifications
Bachelor's degree required; Six years progressively responsible management experience. Additional education beyond Bachelor's may substitute for experience on a year for year basis.

Must possess the ability to obtain and maintain a security clearance from the Department of Defense. This includes having U.S. citizenship and undergoing a background check and fingerprint clearance process by a separate agency.

This position is designated as involving access to critical infrastructure systems and/or research, as defined by Texas Executive Order GA-48. As such, candidates must successfully complete a comprehensive background check prior to employment. Employees are required to comply with all applicable state and federal regulations related to the protection of critical infrastructure. Ongoing employment is dependent upon maintaining eligibility for access and successfully passing periodic security and compliance reviews.

Preferred Qualifications
  • Master's degree in cybersecurity/information assurance or related field.
  • 5+ years in information security, GRC, or research IT; 3+ years directly implementing NIST SP 800-171/CMMC in higher-ed or similarly complex environments.
  • Hands-on with M365 (GCC/GCC High), Azure/AWS security, EDR, identity platforms, SIEM, vulnerability management.
  • Familiarity with Export Controls (ITAR/EAR/OFAC), privacy (FERPA/HIPAA), and Texas research-security mandates (Texas Education Code 51.956, Executive Order GA-48, HB 127).
  • Experience building secure research enclaves and migrating projects into compliant environments.
  • CMMC CCP/CCA; CISSP/CISM/CAP; CISA; ISO 27001 Lead Implementer/Auditor; Azure Security Engineer/AWS Security Specialty.


Pay Range
$115,600 - $150,300.00 - $185,000

To apply, visit workattexastech.com

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information or status as a protected veteran.





Copyright 2025 Jobelephant.com Inc. All rights reserved.

Posted by the FREE value-added recruitment advertising agency
jeid-dc093540814f804c849492c26e710b69
Disabled in Higher Education
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.