Nelnet Logo

Nelnet

CyberSecurity Senior Analyst

Reposted One Month Ago
In-Office
Centennial, CO, USA
85K-130K Annually
Senior level
In-Office
Centennial, CO, USA
85K-130K Annually
Senior level
Lead information security risk management across the enterprise: coordinate risk assessments, audit and SOC support, remediate findings, govern data and controls, support PCI DSS, use GRC tools and AI toolsets, mentor teams, and produce leadership reporting to improve security posture and compliance.
The summary above was generated by AI

Nelnet is a diversified and innovative company committed to enriching lives through the power of service as a student loan servicer, professional services company, consumer loan originator and servicer, payments processor, renewable energy solutions, and K-12 and higher education expert. For over 40 years, Nelnet has been serving its customers, associates, and communities.

The perks of working at Nelnet go beyond our benefits package. When you join the Nelnet team, you're part of a community invested in the success of each individual. That support comes through in our work, as we are united by our mission of creating opportunities for people where they live, learn, and work.

Lead information security initiatives that minimize risk and maximize compliance by facilitating risk assessments, managing audit fulfillment and remediation of risks, governing of business data and records, monitoring adherence to information security controls, leading special security initiatives, and coaching and mentoring to improve information security awareness and standards.
Plan, coordinate, perform and report on work assignments based on risk assessments and priorities established by and under the direction of the IT Risk Manager and other members of the Cybersecurity leadership team.

JOB RESPONSIBILITIES:

  • Oversee information security risk management functions by leading initiatives with Information Technology, Corporate Security, Audit Services, Compliance, Operations and Operational Risk leadership and associates.
  • Coordinate with business unit stakeholders to align cybersecurity practices and priorities across diverse shared services functions, ensuring consistent risk posture enterprise-wide.
  • Align with business technology, security, vendor and audit professionals to facilitate risk assessments, respond to audits, examinations, and RFP’s, remediate risks, and improve Nelnet’s risk management program.
  • Work with leadership and associates to resolve issues, recommend cost savings, reduce exposure and implement internal controls to reduce risk.  Identify and research improvements in order to reduce risk, improve compliance with related rules and regulations or ensure efficient utilization of company resources.
  • Recommend improvements, develop tactical plans, establish measurable goals, and achieve results.
  • Monitor and validate adherence to information security controls and promote risk awareness.
  • Maintain knowledge of regulatory standards, contracts and best practices.
  • Demonstrate a commitment to teamwork and exhibit a positive professional image.
  • Actively participate as a senior team member contributing to the growth of IT Risk Management and Nelnet.
  • Produce after action reports that provide senior leadership with actionable information.
  • Review, assess and provide feedback of technical cybersecurity requirements for new and existing contracts.
  • Provide audit support activities for SOC (Type 1 or Type 2) engagements, including the systems, applications, and underlying infrastructure within the scope of the examination.
  • Assist with maturation and execution of PCI DSS compliance and testing program.
  • Serve as a cybersecurity subject matter resource across multiple shared services functions, ensuring security considerations are integrated into broader operational, risk and compliance initiatives.
  • Support additional cybersecurity initiatives and projects as they arise, adapting to evolving priorities within Nelnet environment.

**Pay Range for this role is - $85,000 - $130,000k

EDUCATION:

Bachelor’s degree in Information Technology, or related field required.  Certification in Risk Management, CISA, CISSP, CISM, GSEC, or other information security certifications preferred.

EXPERIENCE:

Four to six years risk management or closely related field.

COMPETENCIES – SKILLS/KNOWLEDGE/ABILITIES:

  • Proficient in the NIST SP 800 53 rev 5 and NIST RMF risk management frameworks
  • Experience with Governance, Risk, and Compliance (GRC) tools (Service Now, Archer, SAP, Logic Gate, other)
  • Exposure and working knowledge of Artificial Intelligence toolsets and applying them to cybersecurity risk management use cases
  • Strong research and problem-solving skills, with the ability to independently investigate and resolve complex, time-sensitive issues
  • Excellent oral, written, negotiation and presentations skills
  • Ability to communicate complex concepts
  • Self-directed and able to work independently
  • Demonstrate aptitude for learning new technologies
  • Ability to prioritize and manage multiple concurrent projects, and work within critical timelines
  • Strong leadership, interpersonal, and organizational skills
  • Ability to work within a team environment, skilled at interacting with internal and external personnel.
  • High degree of literacy in information system processes, PC’s, end-user computing controls, website controls, systems development, infrastructure management, and information security software.
This position offers a hybrid work option. Nelnet values flexibility and understands the importance of work-life integration. Our hybrid work environment allows associates Living within 30 miles our Lincon Nebraska office location to work remotely for part of the week, while also fostering collaboration and team connection through in-office presence three days per week.

 

Please note that we are unable to provide visa sponsorship for this position. To be considered, candidates must already be authorized to work in the United States without the need for current or future sponsorship.

Our benefits package includes medical, dental, vision, HSA and FSA, generous earned time off, 401K/student loan repayment, life insurance & AD&D insurance, employee assistance program, employee stock purchase program, tuition reimbursement, performance-based incentive pay, short- and long-term disability, and a robust wellness program. Click here to learn more about our benefits: Benefits & Perks - Nelnet Inc.


Nelnet is committed to providing a welcoming and respectful workplace where all associates have the opportunity to succeed. As an Equal Opportunity Employer, we ensure that all qualified applicants are considered for employment. Employment decisions are made without regard to race, color, religion/creed, national origin, gender, sex, marital status, age, disability, use of a guide dog or service animal, sexual orientation, military/veteran status, or any other status protected by federal, state, or local law. We value the unique contributions of every team member and believe that a positive work environment benefits everyone.  


Qualified individuals with disabilities who require reasonable accommodations in order to apply or compete for positions at Nelnet may request such accommodations by contacting Corporate Recruiting at 402-486-5725 or [email protected].


Nelnet is a Drug Free and Tobacco Free Workplace.


Use of Artificial Intelligence in Hiring

We may use automated or artificial intelligence enabled tools to assist with the initial review of applications, such as identifying relevant skills or experience. These tools are used to support human review and do not make hiring decisions. A recruiter reviews applications and determines which candidates move forward in the hiring process. For more information, see our Privacy Policy and Pre-Use Notice: Automated Tools in Hiring

Nelnet Centennial, Colorado, USA Office

7150 S Fulton Street, Centennial, United States, 80112

Similar Jobs

2 Days Ago
In-Office
Aurora, CO, USA
142K-213K Annually
Senior level
142K-213K Annually
Senior level
Aerospace • Logistics • Security • Software • Cybersecurity
Manages cybersecurity programs for classified information systems, including continuous monitoring, security assessments, compliance, risk management, Assessment and Authorization, Security Test and Evaluation, and security documentation. Leads audits, control reviews, policy implementation, corrective actions, and government accreditation activities. The role is full-time onsite in Aurora, Colorado, requires an active Top Secret/SCI clearance with CI polygraph, IAM Level II certification, and eligibility for Special Programs access.
Top Skills: AcasDaagJsigNessusNistRisk Management Framework (Rmf)ScapSplunkTrellix
10 Days Ago
In-Office
Colorado Springs, CO, USA
129K-194K Annually
Senior level
129K-194K Annually
Senior level
Aerospace • Logistics • Security • Software • Cybersecurity
Leads cybersecurity programs for classified information systems, including continuous monitoring, security audits, system and network assessments, vulnerability analysis, policy implementation, Assessment and Authorization, Security Test and Evaluation, and RMF documentation. The role develops security plans, risk reports, control traceability matrices, and remediation plans while coordinating inspections, certifications, corrective actions, and government reviews. This is a full-time, on-site position in Colorado Springs requiring an active Secret clearance and up to 25% travel.
Top Skills: AcasCcisoCismCisspCompliance ScanningElkEmassLinuxNessusNistRhelRisk Management FrameworkScapSIEMSplunkTrellix
15 Days Ago
In-Office
Denver, CO, USA
107K-184K Annually
Senior level
107K-184K Annually
Senior level
Energy
Leads OT cybersecurity compliance, governance, risk management, control assessments, audit readiness, remediation, and regulatory support. Partners with Operations, Engineering, Audit, Digital, and Cybersecurity teams to evaluate controls, manage evidence, resolve issues, and improve compliance processes. Supports incident response, vulnerability scanning, penetration testing, SOX audits, security metrics, access certifications, and implementation of cybersecurity policies across industrial control systems and critical infrastructure environments.
Top Skills: Industrial Control Systems (Ics)Operational Technology (Ot)Penetration TestingProcess Control NetworksSecurity Information And Event Management (Siem)Vulnerability ScanningWeb Application Scanning

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account