Technology is at the heart of Disney’s past, present, and future. Disney Entertainment and ESPN Product & Technology is a global organization of engineers, product developers, designers, technologists, data scientists, and more – all working to build and advance the technological backbone for Disney’s media business globally. The team marries technology with creativity to build world-class products, enhance storytelling, and drive velocity, innovation, and scalability for our businesses. We are Storytellers and Innovators. Creators and Builders. Entertainers and Engineers. We work with every part of The Walt Disney Company’s media portfolio to advance the technological foundation and consumer media touch points serving millions of people around the world. The Business Operations team helps guide and articulate technology strategy and research, and is responsible for driving the day-to-day operation of the Product & Technology organization, including: project and portfolio management and tracking; organization-level capital, space, and resource management and allocation; process management; technical incident management; and our administrative and workplace experience support team. P&T is supporting a multi‑year GIS initiative aligned to the NIST Cybersecurity Framework (CSF) to strengthen operational resilience, reduce enterprise risk, and demonstrate measurable security maturity to shareholders, regulators, and external customers. Achieving meaningful improvement across NIST domains requires coordinated execution across numerous security programs, engineering teams, and operational functions. To ensure success, we are establishing a dedicated NIST Security Program Lead responsible for governing and orchestrating the delivery of all NIST‑aligned initiatives across the enterprise security roadmap. This role must be filled as a project hire (employee) rather than a contractor due to the sensitivity of the work. The position will have visibility into confidential security architecture, control weaknesses, internal audit findings, risk assessments, and remediation strategies that directly impact the organization's security posture. The NIST Principal Compliance Analyst operates as the central execution authority for the NIST program, ensuring that all framework‑aligned initiatives progress with clear governance, measurable outcomes, and transparent reporting to senior leadership. The NIST program will be executed using a framework‑driven operational model focused on measurable security maturity and transparent governance. Framework Alignment – All initiatives must map clearly to NIST CSF domains: Identify, Protect, Detect, Respond, and Recover. Measurable Progress – Security improvements must be quantifiable through defined maturity targets and scorecards. Transparent Governance – Program progress must be visible to engineering teams, program leaders, and executive stakeholders. Cross‑Enterprise Collaboration – The program coordinates across security engineering, infrastructure, application development, and operations teams.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Principal
Number of Employees
5,001-10,000 employees