Cyber Risk and Compliance, Senior Analyst

Cox Communications
Lawrenceville, Georgia, US
Full-time

The Cyber Risk & Compliance Sr Analyst will report to the Sr Manager, Cybersecurity. As a member of the compliance team, you will contribute to compliance and governance activities related to multiple frameworks including SOC 2, PCI-DSS and NIST 800-53.

The ideal candidate brings a strong understanding of security controls, control design and operating effectiveness testing to facilitate gap assessments, assist with security controls implementation activities, and enhance the overall compliance and cybersecurity program.

The right candidate has a proactive mindset and exhibits accountability for projects and tasks while driving actions across multiple teams.

Strong written and verbal communication abilities and exceptional interpersonal skills to promote compliance across teams to achieve results is a must to be successful in this role.

The ideal candidate possesses a blend of general technology, security, and audit competencies with an emphasis on critical thinking, data analytics, and a natural desire to drive efforts to their conclusion.

While professional experience and qualifications are key for this role, make sure to check you have the preferable soft skills before applying if required.

Primary Responsibilities :

  • Provide governance over internal assessments and external audits of compliance programs.
  • Collaborate with cross-functional teams to ensure they are properly implementing and managing security controls, understand their operations, and ensure compliance with standards.
  • Develop and maintain remediation plans alongside remediation owners, then track the remediation plans through completion.
  • Monitor and enhance the controls needed to achieve and maintain SOC 2, PCI DSS, HIPAA, NIST 800-53, ISO 27001 or other compliance requirements.

Perform controls testing for operating effectiveness.

  • Manage changes to control frameworks that support our security compliance objectives.
  • Maintain the tools and processes that keep our compliance monitoring going strong.
  • Effectively communicate compliance project status, timelines, risk, remediation efforts to stakeholders and leadership.
  • Help with the development of key reporting metrics and executive presentations to ensure awareness and support of our compliance programs.

Qualifications and Experience :

Minimum :

Bachelor's degree in a related discipline and 6 years' experience in a related field. The right candidate could also have a different combination, such as a master's degree and 4 years' experience;

a Ph.D. and 1 year of experience; or 18 years' experience in a related field.

  • 4+ years of experience working in information security controls, information technology audit, or security risk management.
  • Ability to communicate with a variety of stakeholders, from peer team members to the executive level.
  • Strong understanding and experience with information security technologies.
  • Ability to adjust to multiple demands, changing priorities, and rapid change, while keeping a good attitude and multitasking effectively.

Preferred :

  • At least one relevant industry certification such as CISSP, CISM, CRISC, CISA.
  • Subject Matter Expertise in a minimum of security frameworks such as SOC 2, PCI-DSS, HITRUST, HIPAA, ISO 27001, NIST 800-53, NIST Cybersecurity Framework.
  • Understanding of security engineering principles.
  • Professional services audit or consulting background a plus.
  • Telecom / Cable industry experience a plus.

Compensation :

Compensation includes a base salary of $88,300.00 - $147,100.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities.

Position may be eligible for additional compensation that may include an incentive program.

Benefits :

The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations;

seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members.

Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, parental leave, and COVID-19 vaccination leave.

About Cox Communications :

Cox Communications is the largest private telecom company in America, serving six million homes and businesses. That's a lot, but we also proudly serve our employees.

Our benefits and our award-winning culture are just two of the things that make Cox a coveted place to work. If you're interested in bringing people closer through broadband, smart home tech and more, join Cox Communications today!

About Cox :

Cox empowers employees to build a better future and has been doing so for over 120 years. With exciting investments and innovations across transportation, communications, cleantech and healthcare, our family of businesses - which includes Cox Automotive and Cox Communications - is forging a better future for us all.

Ready to make your mark? Join us today!

Cox is an Equal Employment Opportunity employer - All qualified applicants / employees will receive consideration for employment without regard to that individual's age, race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender, gender identity, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law.

J-18808-Ljbffr

19 hours ago
Related jobs
Promoted
VirtualVocations
Norcross, Georgia

A company is looking for a Senior Risk Analyst to support its security strategy and compliance initiatives. ...

Cox Communications
Stone Mountain, Georgia

The ideal candidate brings a strong understanding of security controls, control design and operating effectiveness testing to the team to facilitate gap assessments, assist with security controls implementation activities, and contribute to enhance the overall compliance and cybersecurity program. C...

Promoted
VirtualVocations
Norcross, Georgia

Citizenship and ability to hold a federal security clearanceBachelor's degree in Cybersecurity, Information Security, or related field (or equivalent experience)Minimum of 10+ years of experience in cyber threat intelligence analysisProficiency in threat intelligence platforms and experience with SI...

Brown & Brown
GA, United States

The Senior Risk Analyst will support the account team and develop relationships with clients by providing risk analysis and meeting commitments on time-sensitive tasks in a professional and punctual manner. Brown & Browns Risk Solutions team, formerly known as Beecher Carlson, is looking for a Senio...

Promoted
VirtualVocations
Norcross, Georgia

A company is looking for a Cyber Security Analyst Senior specializing in Patch Management. ...

Intuitive Surgical
Suwanee, Georgia

The Senior Logistics Compliance Analyst is responsible for the import and export compliance procedures and international trade programs, which include but not limited to supply chain security (C-TPAT, AEO), international trade data integrity (country of origin, classification, ECCN, etc), duty drawb...

Glovis America
Duluth, Georgia

Oversee Ocean In/Outbound Operation and Provide Customer Services Provide exceptional customer service Monitor and update in/outbound schedules (A/W & MLB) Provide daily follow up to in/outbound accounts (tracing reports twice/day, including weekends if needed) via phone and/or e-mail Monitor cargo ...

LexisNexis Risk Solutions FL Inc. Company
Georgia
Remote

Learning and applying industry-standard analytic software tools at an Expert level, including but not limited to, Microsoft Suite of tools, ESRI ArcGIS, i2 Analysts Notebook, and proprietary LexisNexis suite of solutions. This position will be capable of large dataset analysis and well-versed in bot...

Sierra Nevada Corporation
Remote GA, GA_GAR
Remote

In addition to coordination and oversight of technical tasks during any development phase of the S2P project, the Sr Supply Chain Compliance Systems Analyst will be responsible for gathering and documenting compliance and regulatory requirements by interviewing and understanding procurement system a...

Freese And Nichols
Duluth, Georgia

The Senior GIS Analyst is primarily responsible for FEMA Flood Insurance Rate Map (FIRM) production and quality end user adoption for GIS technologies, including tasks such as data collection and development, data QA/QC, map production, and training users on GIS software. Independently lead and coor...