Deluxe-posted 3 months ago
Full-time • Senior
Minneapolis, MN
1,001-5,000 employees
Credit Intermediation and Related Activities

As a Principal Information Security Compliance Analyst at Deluxe, you will play a crucial role in ensuring our organization meets and maintains the highest standards of security and compliance. We are seeking a detail-oriented and proactive individual to assist in internal and external risk and compliance audits, including PCI DSS, SOC 1/ 2, Sarbanes-Oxley, NIST CSF. Who will have significant experience and will be responsible for managing larger projects and mentoring junior staff.

  • Ensure framework alignment with industry standards and regulatory requirements (NIST, ISO 27001, PCI-DSS, SOC 1/2, SOX). Lead strategic initiatives to enhance security and compliance. Develop and implement long-term risk and compliance strategies.
  • Design and implement a comprehensive and tailored audit or assessment framework. Develop and maintain audit methodologies, tools, and processes. Engage stakeholders to integrate audit findings into the organization's strategic planning.
  • Provide strategic compliance guidance to senior management. Lead the development and execution of comprehensive compliance training programs, policies and procedures.
  • Review compliance assessments and validate mitigation strategies. Present findings and recommendations to senior management and stakeholders. Ensure evidence complies with security standards, controls, and regulations. Continuously monitor and report on the progress of mitigation efforts.
  • Ensure ongoing compliance by staying current with regulations and industry best practices. Support the development of security and compliance policies. Assist with special projects in a dynamic, fast-paced environment.
  • Bachelor's Degree in Information Security, Computer Science, Business or similar field
  • 8 years of experience in Compliance frameworks and regulations
  • Professional certifications such as PCI ISA, CISSP, CISA, CRISC
  • 9 years of experience in Compliance frameworks and regulations
  • Professional certifications such as CISM, CIPP, CDSPE, CCSP, CGEIT.
  • Proven capacity to lead large, cross-functional teams to drive organizational change.
  • Proven capacity to execute long-term strategies aligned with organizational goals, while adapting to global market trends and challenges.
  • Ability to effectively communicate complex ideas to senior management and stakeholders in high-stakes situations, and influence stakeholders at all levels, including board members and external partners.
  • Demonstrated expertise in delivering measurable outcomes, drive performance improvements and lead large-scale transformation initiatives.
  • Demonstrated ability to identify and mitigate complex risks that could impact the organization's strategic objectives and ensure success in a rapidly changing environment.
  • Healthcare (Medical, Dental, Vision)
  • Paid Time Off, Volunteer Time Off, and Holidays
  • Employer-Matched Retirement Plan
  • Employee Stock Purchase Plan
  • Short-Term and Long-Term Disability
  • Infertility Treatment, Adoption and Surrogacy Assistance
  • Tuition Reimbursement
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service