R1054567 Senior Analyst, IT Compliance & Risk - Data Protection

CVS Health•Woonsocket, RI
•$79,310 - $173,040•Hybrid

About The Position

The Corporate Functions & PCW IT Compliance Team is looking for a resource to become our Data Protection Domain SME, focusing on information classification, data obfuscation, encryption, and data security controls and governance. This person will help our team build-out, maintain, and continuously improve upon the support framework for Data Protection. He or she will serve as a key player in our day-to-day operations, navigate the Compliance workload and emerging priorities, and provide front-line support for our application teams, ensuring compliance with data privacy and protection policies, industry regulations, and any contractual obligations.

Requirements

  • Strong knowledge of data protection techniques and best practices, including data obfuscation / masking, sensitive information classifications, encryption at rest and in transit, data retention and destruction.
  • 3+ years of experience with implementing data security and privacy engineering solutions and frameworks.
  • Knowledge of IT security-related regulations and frameworks such as PCI, HIPAA, SOX, SOC1, SOC2, HiTrust, GDPR, CCPA, NIST, and ISO 27001.
  • Strong problem-solving, analytical, critical thinking, and organizational skills with demonstrated versatility to handle concurrent high priority tasks.
  • Strong oral and written and communication skills with ability to clearly articulate and communicate complex problems and solutions in a simple, logical, and impactful manner to both technical and non-technical stakeholders.
  • Self-motivated with ability to work independently with minimal supervision or without direction, and ability to prioritize work effectively.
  • Demonstrated ability to handle concurrent high priority tasks and work in dynamic environment on a daily basis.
  • Comfortable operating within areas of ambiguity with ability to iterate and make progress in a consistent manner.
  • Experience working on technical projects involving multiple teams, providing management with status on potential issues as well as driving those issues to closure.
  • Intermediate to advanced proficiency in MS Excel (pivot tables, lookups, conditional formatting, Power Query, etc.).

Nice To Haves

  • Security certifications such as CISSP, CRISC, CISA, CISM, CCSP, etc.
  • Product Management and Program Management experience.
  • Process improvement exposure / Lean / Six Sigma.
  • Ongoing education in cybersecurity, data privacy and protection, or related domains is a plus.

Responsibilities

  • Develop and implement data security governance framework that aligns with industry best practices, regulatory requirements, and company policies.
  • Guide and assist application teams with identifying data protection gaps and developing remedial action plans for non-conformance to policy requirements.
  • Assess and interpret IT policies and control standards for system and operational compliance.
  • Maintain key files and relevant data sources for compliance governance and reporting, including operational metrics. This includes maintaining data quality, consistency, and integrity.
  • Assist with compilation and maintenance of process documentation, job-aids, FAQs, and other support-related materials for our application teams
  • Promote industry best practices for Data Privacy and Protection, ensuring compliance with relevant regulations and standards such as PCI, SOX, HIPAA, HiTrust, NIST, and others.
  • Stay updated on industry trends, emerging data security and privacy engineering technologies, and security threats to continuously improve and evolve data protection strategy and solutions.

Benefits

  • medical
  • dental
  • vision coverage
  • paid time off
  • retirement savings options
  • wellness programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service