
Principal Analyst – Digital Compliance
Posted Sep 18

Posted Sep 18
This is a fully remote position, open to applicants in Illinois.
• Develop, implement, and refine the Digital Risk and Compliance strategy and programs.
• Offer continuous guidance and support to achieve compliance objectives and business strategies that align with compliance and regulatory standards, risk appetite, organizational risk practices, and changing business dynamics.
• Foster relationships with Digital Technology, Cybersecurity, and business teams for effective information sharing.
• Identify, assess, and implement solutions to fulfill cybersecurity and compliance goals.
• Interpret and apply pertinent laws, regulations, policies, and guidance.
• Detect noncompliance and assess its effects on risk and the efficiency of the enterprise cybersecurity program.
• Analyze information for reliability, validity, and relevance in cybersecurity reporting.
• Conduct regulatory compliance and risk assessments to identify and mitigate compliance and cyber risks.
• Provide insights on regulatory expectations, industry standards, and suitable controls.
• Execute internal and external audits and assessments, including GDPR, DFARS, PCI, and SOX.
• Review external security and compliance evaluations.
• Assist in the development of cybersecurity policies, standards, and processes.
• Create and lead training opportunities for the global workforce to minimize cyber risks.
• Facilitate tabletop exercises, lunch-and-learns, email and survey micro-learnings, media-based communications, incentivized training, cyber certifications, and reward programs.
• Ensure that programs fulfill their intended objectives and metrics.
• A Bachelor's degree is required, preferably in Cybersecurity, Information Technology, or a related field.
• A minimum of 5 years of relevant experience is required.
• In-depth knowledge of regulatory/compliance frameworks such as SOX, NIST 800-53, and PCI-DSS.
• Proficiency in assessing security and privacy controls based on frameworks, cybersecurity principles, and the Software Development Lifecycle.
• Experience in compliance and audit processes.
• Competence in providing remediation guidance to cross-functional teams.
• Strong understanding of cybersecurity and privacy principles for managing risks associated with the use, processing, storage, and transmission of information or data.
• Experience in identifying and evaluating information for compliance with required controls.
• Ability to manage relationships with business and external partners.
• Capability to work independently and remain self-motivated.
• Exceptional problem-solving, critical thinking, interpersonal, collaboration, written, and verbal communication skills.
• Must be legally authorized to work in the United States for any employer without sponsorship.
• Successful completion of an interview is required to meet job qualifications.
• Reliable and punctual attendance is an essential function of this role.
• A Master's degree is preferred.
• Certifications such as CISA, CRISC, CISSP, or CISM are preferred.
• At least 12 years of related experience is preferred.
• IAM compliance experience is preferred.
• Experience with AI related to audit and/or compliance is preferred.
• Working knowledge of computer networking concepts and protocols, network security, cryptography, and security architecture concepts is preferred.
• Health and wellness benefits.
• Parental leave.
• 401(k) plan.
• Space-available travel and flight privileges.
• Medical insurance.
• Dental insurance.
• Vision insurance.
• Life insurance.
• Accident and disability coverage.
• Employee assistance program.
• Commuter benefits.
• Paid holidays.
• Paid time off.
• Bonus and/or long-term incentive compensation awards.
• Business Resource Group communities.
• Reasonable accommodations for applicants and employees with disabilities.
LabConnect
Ripple Effect
Binance
biBerk Business Insurance
Get handpicked remote jobs straight to your inbox weekly.