Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cyber Risk and Compliance, Senior Analyst image - Rise Careers
Job details

Cyber Risk and Compliance, Senior Analyst

The Cyber Risk & Compliance Sr Analyst will report to the Sr Manager, Cybersecurity. As a member of the compliance team, you will contribute to compliance and governance activities related to multiple frameworks including SOC 2, PCI-DSS and NIST 800-53. The ideal candidate brings a strong understanding of security controls, control design and operating effectiveness testing to the team to facilitate gap assessments, assist with security controls implementation activities, and contribute to enhance the overall compliance and cybersecurity program. The right candidate has a proactive mindset and exhibits accountability for projects and tasks while driving actions across multiple teams. Strong written and verbal communication abilities and exceptional interpersonal skills to promote compliance across teams to achieve results is a must to be successful in this role. The ideal candidate possesses a blend of general technology, security, and audit competencies with an emphasis on critical thinking, data analytics, and a natural desire to drive efforts to their conclusion.Primary Responsibilities:• Provide governance over internal assessments and external audits of compliance programs.• Collaborate with cross-functional teams to ensure they are properly implementing and managing security controls, understand their operations, and ensure compliance with standards.• Develop and maintain remediation plans alongside remediation owners, then track the remediation plans through completion.• Monitor and enhance the controls needed to achieve and maintain SOC 2, PCI DSS, HIPAA, NIST 800-53, ISO 27001 or other compliance requirements. Perform controls testing for operating effectiveness.• Manage changes to control frameworks that support our security compliance objectives.• Maintain the tools and processes that keep our compliance monitoring going strong.• Effectively communicate compliance project status, timelines, risk, remediation efforts to stakeholders and leadership.• Help with the development of key reporting metrics and executive presentations to make sure there is always awareness and support of our compliance programs.Qualifications and Experience:Minimum• Bachelor's degree in a related discipline and 6 years' experience in a related field. The right candidate could also have a different combination, such as a master's degree and 4 years' experience; a Ph.D. and 1 year of experience; or 18 years' experience in a related field• 4+ years of experience working in information security controls, information technology audit, or security risk management.• Ability to communicate with a variety of different stakeholders, from peer team members all the way up to the executive level.• Strong understanding and experience with information security technologies.• Ability to adjust to multiple demands, changing priorities, and rapid change, while keeping a good attitude and multitasking effectively.Preferred• At least one relevant industry certification such as CISSP, CISM, CRISC, CISA.• Subject Matter Expertise in a minimum of security frameworks such as SOC 2, PCI-DSS, HITRUST, HIPAA, ISO 27001, NIST 800-53, NIST Cybersecurity Framework.• Understanding of security engineering principles.• Professional services audit or consulting background a plus.• Telecom/Cable industry experience a plusUSD 88,300.00 - 147,100.00 per yearCompensation:Compensation includes a base salary of $88,300.00 - $147,100.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.Benefits:The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, parental leave, and COVID-19 vaccination leave.Applicants must currently be authorized to work in the United States for any employer without current or future sponsorship.About Cox CommunicationsCox Communications is the largest private telecom company in America, serving six million homes and businesses. That's a lot, but we also proudly serve our employees. Our benefits and our award-winning culture are just two of the things that make Cox a coveted place to work. If you're interested in bringing people closer through broadband, smart home tech and more, join Cox Communications today!About CoxCox empowers employees to build a better future and has been doing so for over 120 years. With exciting investments and innovations across transportation, communications, cleantech and healthcare, our family of businesses - which includes Cox Automotive and Cox Communications - is forging a better future for us all. Ready to make your mark? Join us today!Benefits of working at Cox may include health care insurance (medical, dental, vision), retirement planning (401(k)), and paid days off (sick leave, parental leave, flexible vacation/wellness days, and/or PTO). For more details on what benefits you may be offered, visit our benefits page .Cox is an Equal Employment Opportunity employer - All qualified applicants/employees will receive consideration for employment without regard to that individual's age, race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender, gender identity, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law.Statement to ALL Third-Party Agencies and Similar Organizations: Cox accepts resumes only from agencies with which we formally engage their services. Please do not forward resumes to our applicant tracking system, Cox employees, Cox hiring manager, or send to any Cox facility. Cox is not responsible for any fees or charges associated with unsolicited resumes.
Cox Communications Glassdoor Company Review
4.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Cox Communications DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Cox Communications
Cox Communications CEO photo
Mark Greatrex
Approve of CEO

Average salary estimate

$117700 / YEARLY (est.)
min
max
$88300K
$147100K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cyber Risk and Compliance, Senior Analyst, Cox Communications

Join the Cox Communications team as a Cyber Risk and Compliance, Senior Analyst, based in beautiful Peachtree Corners, GA! In this exciting position, you will play a vital role in our compliance team, reporting directly to the Sr Manager of Cybersecurity. Your day-to-day will include engaging with various compliance frameworks like SOC 2, PCI-DSS, and NIST 800-53. We’re looking for someone who possesses a strong understanding of security controls and can lead gap assessments while assisting with the implementation of security measures. A proactive mindset is key, as you’ll drive initiatives across diverse teams. You’ll have the opportunity to communicate and collaborate with stakeholders at all levels as you help maintain compliance and enhance our cybersecurity programs. The Cyber Risk and Compliance, Senior Analyst position requires a unique blend of technology prowess and audit competence, plus those critical soft skills that will help foster teamwork and achieve outstanding results. We believe in celebrating and championing our employees, and are excited to see how your creativity and analytical skills can elevate our organization. If you have a track record of accountability and a passion for cybersecurity, we want to hear from you!

Frequently Asked Questions (FAQs) for Cyber Risk and Compliance, Senior Analyst Role at Cox Communications
What are the primary responsibilities of a Cyber Risk and Compliance, Senior Analyst at Cox Communications?

As a Cyber Risk and Compliance, Senior Analyst at Cox Communications, your main responsibilities will include managing internal assessments and external audits of compliance programs, collaborating with various teams for effective security control implementation, and tracking remediation plans. You'll also monitor compliance with standards like SOC 2 and PCI-DSS, manage control framework changes, and communicate project status to stakeholders, ensuring that the company's compliance efforts are always on track.

Join Rise to see the full answer
What qualifications do I need to become a Cyber Risk and Compliance, Senior Analyst at Cox Communications?

To qualify for the Cyber Risk and Compliance, Senior Analyst position at Cox Communications, you typically need a bachelor’s degree in a related field and a minimum of six years of relevant experience. Alternatively, a master’s degree with four years of experience, a Ph.D. with one year of experience, or 18 years of relevant experience might also suffice. Additionally, at least four years in information security controls and an understanding of various security technologies are essential for success in this role.

Join Rise to see the full answer
What skills are essential for a Cyber Risk and Compliance, Senior Analyst at Cox Communications?

The Cyber Risk and Compliance, Senior Analyst position at Cox Communications requires strong analytical skills, critical thinking, and the ability to communicate effectively with a range of stakeholders. You should also have expertise in security frameworks such as SOC 2, PCI-DSS, and experience with audits. Proficiency in managing multiple demands, adapting to changing priorities, and driving compliance projects to their conclusion are also crucial skills for effective performance in this role.

Join Rise to see the full answer
What does the work environment look like for a Cyber Risk and Compliance, Senior Analyst at Cox Communications?

Working as a Cyber Risk and Compliance, Senior Analyst at Cox Communications means being part of a collaborative and innovative work environment. You will engage with various teams and stakeholders, and you'll often work on cross-functional projects. The culture at Cox is one of support, continuous improvement, and accountability, ensuring that everyone is equipped to be successful in their responsibilities while contributing positively to the company's cybersecurity goals.

Join Rise to see the full answer
What career growth opportunities are available for a Cyber Risk and Compliance, Senior Analyst at Cox Communications?

As a Cyber Risk and Compliance, Senior Analyst at Cox Communications, you will find ample opportunities for career advancement. With Cox's commitment to employee development, you can pursue further certifications, training, and leadership roles. Given the broad spectrum of compliance and cybersecurity projects, you'll gain invaluable experience that can pave the way for higher positions within the compliance and cybersecurity teams. Coupled with the company’s ongoing investments in its employees, your career path can be as dynamic as you choose to make it.

Join Rise to see the full answer
Common Interview Questions for Cyber Risk and Compliance, Senior Analyst
Can you describe your experience with compliance frameworks like SOC 2 and PCI-DSS as a Cyber Risk and Compliance, Senior Analyst?

When answering this question, highlight your hands-on experience with various compliance frameworks. Discuss specific projects where you contributed to assessments, implemented controls, or worked on remediation efforts. Be sure to demonstrate your understanding of the frameworks and how they apply to real-world situations, showcasing your ability to drive compliance initiatives effectively.

Join Rise to see the full answer
How do you prioritize your tasks when managing multiple compliance projects as a Cyber Risk and Compliance, Senior Analyst?

Showcase your organizational skills by explaining your prioritization strategies, such as assessing risk levels, project deadlines, and stakeholder impact. Talk about tools and methodologies you use—like project management software or checklists—to ensure efficiency. Illustrate your adaptability to changing priorities and how you communicate with your teams to keep everyone aligned.

Join Rise to see the full answer
What strategies do you use to communicate compliance project updates to stakeholders at different levels?

Discuss your communication style and the different formats you use based on the audience. For technical teams, you might prefer detailed reports and data analytics, while for executive stakeholders, concise summaries with key metrics might work better. Explain how you adapt your message to ensure clarity and maintain engagement across all levels of the organization.

Join Rise to see the full answer
Can you provide an example of a challenging compliance issue you faced and how you addressed it?

Select a specific compliance challenge you've encountered, detailing the situation, your actions, and the outcome. Highlight problem-solving skills, the use of data analytics, and any collaboration with other teams. This will demonstrate your critical thinking ability and show that you're capable of handling complex situations effectively.

Join Rise to see the full answer
What tools and technologies have you used for compliance monitoring and reporting in your previous roles?

Mention familiarity with various compliance monitoring tools, such as GRC (Governance, Risk, and Compliance) software, vulnerability management tools, or data analytics platforms. Talk about how these tools enhanced your compliance efforts and improved reporting accuracy, showing that you're well-equipped to handle the technical aspects of the Cyber Risk and Compliance, Senior Analyst position.

Join Rise to see the full answer
How do you approach the development of remediation plans?

Explain your methodology for developing remediation plans, emphasizing your collaborative approach with stakeholders, setting realistic timelines, and ensuring accountability. Share examples of successful remediation efforts you've led and how you tracked progress to completion, highlighting your organizational skills and attention to detail.

Join Rise to see the full answer
What role do you think critical thinking plays in a Cyber Risk and Compliance, Senior Analyst position?

Articulate the significance of critical thinking in evaluating security controls, assessing risks, and interpreting compliance requirements. Provide examples of how your critical thinking skills have led to better decision-making and proactive compliance measures in your previous roles.

Join Rise to see the full answer
How do you stay current with changes in cybersecurity regulations and compliance standards?

Discuss your commitment to continuous learning through following industry news, attending webinars and training programs, and being part of professional networks. Share specific resources or organizations that you find valuable for staying updated, demonstrating your proactive approach to professional development.

Join Rise to see the full answer
Describe how you handle stressful situations during audits or compliance assessments.

Emphasize your ability to remain calm under pressure by sharing strategies you employ, such as proactive preparation, maintaining open communication, and building strong relationships with auditing teams. Share an example illustrating your composure during a previous audit or assessment, showcasing your professionalism and dedication.

Join Rise to see the full answer
What do you believe is the biggest challenge facing compliance professionals today?

Provide a thoughtful perspective on the evolving landscape of compliance, mentioning challenges like changing regulations, technology advancements, or the need for increased data security. Demonstrate your understanding of the field and your readiness to tackle these challenges head-on as a Cyber Risk and Compliance, Senior Analyst.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 12 days ago
Photo of the Rise User
Boyd Gaming Hybrid 301 Bell St, Dubuque, IA 52001, USA
Posted 2 days ago
Photo of the Rise User
Posted 13 days ago
Photo of the Rise User
Uni Systems Remote No location specified
Posted 8 days ago
Avint Hybrid No location specified
Posted 12 days ago
Vista Group Remote No location specified
Posted 13 days ago
Photo of the Rise User
Upwork Remote Manila, Metro Manila, Philippines
Posted 3 days ago

At Cox Communications, we believe life gets better when we have more moments of real human connection. And we help make it happen. We not only have the technology to bring people closer, but we also have a culture that puts people first. We’re...

69 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
November 30, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!