Senior Compliance Analyst - Sun Life U.S. Compliance

Sun LifeWellesley, ME
Hybrid

About The Position

Sun Life embraces a hybrid work model that balances in-office collaboration with the flexibility of virtual work. Our team members and leaders are expected to foster connection and teamwork by being present in the office at least 2 days per week. In this role, you will be responsible for supporting compliance risk management programs across multiple U.S. Business Units by ensuring adherence to legislative and regulatory requirements and investigating and resolving matters of non-compliance to maintain ethical standards across the organization. This role is considered a seasoned professional with deep and thorough knowledge of privacy risk capable of performing complex assignments based on broad objectives and managing privacy-related processes and cross-functional tasks within the Sun Life U.S. Compliance Department. You will be responsible for both direct support of compliance program activities and day-to-day oversight and monitoring activities of the Privacy Program operating within the Regulatory Compliance Management Program under the supervision of a Director and/or AVP. The primary focus of this position is to perform Privacy control activities (e.g. privacy impact assessment review, privacy incident analysis, horizon scanning evaluation) among other tasks. These activities directly impact the health of the Privacy Program, and internal and external reporting. Support for regulatory examinations, Internal Audits or other regulatory matters may be required as appropriate. Position may require modest travel to other Sun Life Offices in the U.S. and Canada. This is a hybrid position requiring weekly in-office attendance at a hub office location.

Requirements

  • Bachelor’s Degree with over 7 years of experience, professional certificate, or equivalent business experience in regulatory risk and controls roles or functions within a financial services regulated industry (HIPAA, GLBA, NAIC, CCPA, NY DFS, etc.)
  • Adaptability to multiple demands, effectively shifting priorities in response to changing business conditions with minimal input from superiors
  • Identification, development, and application of innovative solutions to increase operational efficiencies and meet strategic objectives
  • Clear ethical judgement based on careful critical, analytical, and interpretative thinking
  • Demonstrated ability to work both independently and within a team-oriented setting
  • Effective and influential communication (written and oral), research, and presentation skills responsive to changing audiences
  • Professional curiosity to maintain privacy expertise through business reading, professional development, and participation in industry forums
  • Strong computer skills (e.g., Microsoft office suite) and demonstrated ability to apply AI tools, visual analytics and business intelligence

Responsibilities

  • Review, analyze, and assess privacy/cyber/AI risks arising from vendor relationships and business initiatives (Privacy Impact Assessments)
  • Investigate and document privacy events/incidents to ensure required escalation and notification
  • Perform research for the assessment of new or amended privacy/cyber/AI laws and regulations affecting the Company’s business, monitoring necessary actions for cross-functional implementation, and tracking implementation and compliance with such actions
  • Interpret internal/external business issues and recommend privacy best practices to mitigate risk
  • Provide expertise for RFPs and due diligence questionnaire responses for new and existing relationships
  • Disseminate required privacy notices to Business Units for timely distribution and ensure accurate recordkeeping to support second line oversight
  • Support the development of privacy policies and procedures to maintain effective compliance with legal and regulatory standards as well as Sun Life policies
  • Participate in annual risk-based compliance testing to ensure effectiveness in meeting the needs of the business and regulatory requirements
  • Draft compliance bulletins, review and edit marketing materials and forms, correspondence, and other communications in line with regulatory requirements
  • Maintain metrics/KPIs and prepare internal and external reports for varying audiences
  • Encourage, promote and enhance a culture that supports the Code of Conduct, encourages ethical behavior and a commitment to compliance with applicable laws and regulations
  • Adhere to Sun Life policies and procedures to maintain effective compliance with legal and regulatory standards

Benefits

  • generous vacation and sick time
  • market-leading paid family, parental and adoption leave
  • medical coverage
  • company paid life and AD&D insurance
  • disability programs
  • partially paid sabbatical program
  • 401(k) employer match
  • stock purchase options
  • employer-funded retirement account
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service