The Information Security Compliance Analyst supports the sustained compliance of the company with requirements for the protection of its systems and information assets. The scope of work extends across the corporate environment and its consumer delivery channels and it addresses legal requirements and industry standards such as PCIDSS, COBIT, ISO, HIPAA, CA1386 and GDPR. The Information Security Compliance Specialist plays a lead role in this activity. The Specialist will be responsible for providing execution support to business units in performing third party risk assessments, due diligence activities, data management, ongoing oversight, and reporting related to the engagement and management of third parties handling sensitive business information. The Specialist supports periodic updates to policies, standards and awareness materials, and is responsible for ongoing validation that key controls are implemented in a sound and sustained manner. The Specialist may also identify potential security exceptions, help to resolve business requirements, escalate matters requiring management attention, and oversee timely and effective remediation of vulnerabilities in the security of company information.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Career Level
Mid Level
Number of Employees
501-1,000 employees