Sr Analyst, Information Security Compliance

Newell BrandsAtlanta, GA

About The Position

The Information Security Compliance Senior Associate is an intermediate-level professional within the Global Information Security Risk & Resilience team at Newell Brands. Reporting to the Information Security (IS) Compliance Manager, this role executes the day-to-day operational delivery of the IS compliance program and contributes substantively to its continued maturation. The Compliance Manager retains program accountability; the Senior Associate operates with routine oversight, exercises independent judgment and discretion on moderately complex assignments, interprets regulatory requirements, and communicates compliance practices to stakeholders within the team and across the business. Working closely with cross-functional stakeholders, the Senior Associate supports compliance with internal policies, regulatory requirements, and industry standards, supports risk management activities, and uses data analytics to deliver actionable insights that strengthen the organization's security posture. The Senior Associate also serves as a subject-matter resource and mentor to junior team members and contributes to process improvement, automation, and data-driven decision-making. The role focuses primarily on Information Security compliance (70%), Artificial Intelligence (AI) governance and compliance (15%), Information Security risk management (5%), and data analysis and reporting of the compliance domain (10%).

Requirements

  • Bachelor's degree in Cybersecurity, Information Systems, Information Security, Risk Management, or a related field.
  • 2 to 4 years of experience in Information Security compliance, governance, risk management, information technology (IT) audit, or consulting.
  • Solid understanding of primary control frameworks, including the Center for Internet Security (CIS) Critical Security Controls (CSC) Top 18 and the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF) 2.0, with awareness of PCI-DSS requirements given the organization's retail operations.
  • Working knowledge of AI governance frameworks and regulatory requirements, including the NIST AI RMF, EU AI Act, and OWASP Top 10 for LLMs.
  • Demonstrated experience using AI tools, including major LLMs such as ChatGPT, Microsoft Copilot, and Claude, to produce high-quality work outputs, increase efficiency, and drive process improvements.
  • Strong written, verbal, and presentation skills, with the ability to communicate effectively with technical and non-technical stakeholders.
  • Proven ability to manage multiple priorities and deliver results in a fast-paced, global environment.
  • Experience collaborating across business, technology, and security teams to support compliance and governance initiatives.

Nice To Haves

  • Professional certification such as CompTIA Security+, Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or Certified Information Security Manager (CISM) is preferred.
  • Experience with Governance, Risk, and Compliance (GRC) tooling; working knowledge of Optro (formerly AuditBoard) is preferred, and experience with comparable platforms such as ServiceNow GRC or OneTrust is equally valued.

Responsibilities

  • Support Payment Card Industry Data Security Standard (PCI-DSS) compliance across Newell Brands by coordinating control assessments, managing evidence collection, and supporting certification, audit, and remediation activities across business units and technology teams.
  • Contribute to the Network and Information Security Directive 2 (NIS2) program for Newell's European Union (EU) operations and support the cybersecurity components of California Consumer Privacy Act (CCPA) audit readiness in an advisory capacity, recognizing that data privacy accountability sits outside the Information Security remit.
  • Support the build-out and continued maturation of Newell's internal Information Security compliance program by contributing to the design and maintenance of a scalable, risk-based compliance framework.
  • Monitor, analyze, and report on compliance metrics and performance, providing insights and recommendations to senior leadership.
  • Coordinate across business and functional stakeholder teams to manage compliance projects, including data identification, collection, processing, and review.
  • Provide the Information Security compliance perspective into Newell's enterprise AI governance activities, supporting the establishment of foundational processes and controls that help the business adopt AI responsibly and in line with applicable regulatory requirements.
  • Assess AI tools and use cases proposed by internal stakeholders for compliance implications under PCI-DSS, NIS2, and Newell's internal security policies.
  • Contribute to the development of AI compliance controls from an Information Security standpoint as the organization's AI footprint expands, aligned with the National Institute of Standards and Technology AI Risk Management Framework (NIST AI RMF), the EU AI Act, and the Open Worldwide Application Security Project (OWASP) Top 10 for Large Language Models (LLMs).
  • Conduct risk assessments and control reviews to identify potential vulnerabilities and confirm adherence to security standards.
  • Support the development and implementation of risk mitigation strategies and continuous monitoring processes.
  • Collaborate with cross-functional teams to strengthen security protocols and support continuous improvement in risk management practices.
  • Analyze compliance data to identify trends, patterns, and areas for improvement.
  • Develop and generate reports that provide insights and recommendations to senior leadership.
  • Use data analytics tools to improve the accuracy and efficiency of compliance processes.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service