Talent.com
Sr. Information Security Compliance Analyst

Sr. Information Security Compliance Analyst

Warner Media, LLCAtlanta, GA, United States
3 days ago
Job type
  • Full-time
Job description

Welcome to Warner Bros. Discovery… the stuff dreams are made of.

Who We Are…

When we say, “the stuff dreams are made of,” we’re not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD’s vast portfolio of iconic content and beloved brands, are the storytellers bringing our characters to life, the creators bringing them to your living rooms and the dreamers creating what’s next…

From brilliant creatives, to technology trailblazers, across the globe, WBD offers career defining opportunities, thoughtfully curated benefits, and the tools to explore and grow into your best selves. Here you are supported, here you are celebrated, here you can thrive.

  • Must work a hybrid model (3 days onsite) out of our Atlanta office.

The Job

Warner Bros. is looking for a skilled Senior Analyst, Information Security Compliance who will join the Global Information and Content Security team that supports the organization globally across all US and international brands and divisions. As part of the GICS team, you will lead and support PCI audits globally and will collaborate with key business units and stakeholders to ensure security and compliance with Payment Card Industry (PCI) requirements and other cybersecurity regulatory and policy requirements. The ideal candidate will have experience as a PCI Qualified Security Assessor (QSA) with experience across multiple compliance domains in audit process / procedure, risk analysis and mitigation, control testing, and continuous improvement initiatives. The candidate will have experience completing PCI 4.0 assessment types including but not limited to SAQ-A, ROC, SAQ-D, SAQ B-IP, and SAQ P2PE, as well as experience remediating vulnerabilities related to PCI ASV scanning processes. We support critical brands such as DC Universe, Harry Potter, Warner Bros Studio Hollywood Tours, Adult Swim, Cartoon Network, Discovery+, Max, TNT Sports, Golf Digest, Food Network, NCAA, etc. The WBD PCI program is inclusive of different types of environments collecting payments such as ecommerce systems including retail, ticketing, DTC Subscriptions, PPV Sports, donations & partner payments, mobile in app purchases, and vendor invoicing, and physical locations such as call centers, museums, retail physical stores, physical tours, pop up shops, and virtual reality experiences.

We cultivate a security culture across all teams and disciplines, providing policy, standards, guidance, and awareness training to everyone. We work closely with departments across the company to understand their workflows and help ensure they are following the best security practices. We partner with technology stakeholders to assess our posture, build controls, and mitigate security risks.

This team concentrates on validating that critical processes and controls are functioning end-to-end, identifying risk areas and control mitigation, as well as participating in projects to understand and determine potential impact to regulatory compliance components. You will identify areas of improvement and non-compliance which may lead to process changes and / or new controls. The Information Security Compliance Senior Analyst will drive various initiatives to completion and assist in managing and developing an effective Compliance Program. You will be accountable for a variety of functions centered on effective implementation of all the elements of a compliance program (project) : compliance with applicable laws, rules, and regulations, internal policies, and procedures, and accepted business practices.

Cybersecurity Compliance and Assessments

  • Lead and support PCI assessments.
  • Communicate status of security compliance efforts to executive leadership and management across technology disciplines.
  • Keep current with the latest security technology advances and evolving compliance requirements and propose innovations that may benefit the business.
  • Maintain detailed project plans and tasks lists to ensure you meet major milestone and critical due dates.
  • Assist in information security assessments, audits, risk mitigation, and remediation.
  • Track status of implementing remediation plans for control deficiencies, regulatory and policy gaps and make recommendations for process efficiencies.
  • Drive process improvements and control implementation across business functions, including resolution of assessment findings and independent initiatives.
  • Effectively communicate and build rapport with various partners and teams globally.
  • Lead targeted compliance assessments, audits, and reviews, communicating results and recommendations in clear and concise written reports; and collaborate with management to ensure corrective actions are implemented effectively.
  • Validate system requirements, flows, and written procedures through testing and observations, and to ensure regulatory compliance operating procedures and controls are working as intended.
  • Participate in cross-functional teams to support various regulatory compliance subject matters ensuring that user activities continue to support systematic processes in place and drive positive compliant behaviors or that proposed new system changes fully meet Regulatory, Security and Legal requirements.
  • Perform analysis based on the testing results through observations and reports to identify system and process gaps reducing risk for WBD.
  • Document all work, and findings resulting from testing and communicate to relevant stakeholders within defined standard processes.
  • Conduct related ongoing security compliance monitoring activities in coordination with the organization’s other compliance and operational assessment functions.
  • Lead compliance assessments including testing to demonstrate the effectiveness of controls, and supporting team members to ensure reviews are critical, comprehensive, and thorough.
  • Collaboration

  • Accountable for organizing and leading meetings with various stakeholders across the company, and across the globe.
  • Technical and process experienced professional who will ensure data and evidence meets audit expectations and regulatory requirements.
  • Responsible for establishing and tracking goals, project plans, and assessment status, and is able to effectively communicate risks and overall status to your management on a timely basis.
  • Stay abreast of existing and upcoming projects to effectively plan your work.
  • Make updates to the centralized issues log, audit calendar, and other key team documents, ensuring accuracy, attention to detail, and overall status.
  • Assist in the implementation of the Company GRC system, policies, standards, and processes.
  • Assist in creation of comprehensive and meaningful metrics and status update for your Manager.
  • Ability to partner with other team members, contribute to building a positive team culture, learn internal processes, and contribute to building effective deliverables.
  • Reporting

  • Identify and measure key metrics reflecting the status of audits and assessments.
  • Monitor the effectiveness of the compliance assessment process in accordance with agreed team metrics and performance measures to drive continuous improvements.
  • Actively participate in stakeholder meetings with the goal of understanding all major projects and initiatives planned.
  • Actively drive and report on status of audit completion, as well as remediation of regulatory and policy issues.
  • The Essentials

  • Bachelor’s degree in computer science, business administration or related technical field.
  • 4+ or more years working in audit or compliance environments in a corporate or consulting capacity, with experience in a highly technical setting.
  • 3+ years working in PCI regulatory assessments / requirements; previous PCI Qualified Security Assessor “QSA” certification required.
  • The ability to be precise and display superb attention to detail is essential.
  • Ability to effectively apply training and feedback.
  • Experience testing cloud controls across AWS, Azure, and GCP.
  • Experience defining certification / action plan roadmaps balancing compliance deliverables, business requirements, and resource allocation.
  • Relevant certification (CISA, PCIP, CISM, CISSP, etc.).
  • Experience with cross-functional risk, compliance and / or information security disciplines.
  • Subject matter expertise in the areas of PCI, Data Privacy, SSAE 18, Swift, SOX, etc.
  • Superior analytical and problem-solving skills.
  • Superb relationship building skills.
  • Ability to effectively prioritize and execute tasks in a high-pressure environment.
  • Ability to assess customer / client needs, creatively approach solutions, decide and influence appropriate courses of action.
  • Ability to work with changing priorities and with multiple projects.
  • You possess the highest integrity commensurate with a compliance & ethics position.
  • You have excellent communication and project management skills.
  • You produce clear & polished work product, in narrative and visual form.
  • You can work independently, are flexible and adaptive, and demonstrate a passion to operate in a dynamic and fast-growing environment.
  • Strong quantitative, qualitative, and analytical skills with ability to use sound business judgment and to exercise skepticism as needed.
  • The Nice to Haves

  • 3+ years of Big 4 experience in a related field.
  • 3+ years of prior experience in a related field (media, tech, entertainment, business development or streaming services industry experience).
  • Knowledge of and passion for media, entertainment, and technology industries (including key players, growth trends and drivers, new media models, industry structure, etc.).
  • Familiarity with streaming and similar products / services.
  • Experience working in a national or global company.
  • Some visualization tool knowledge would be helpful (i.e., Tableau, Power BI).
  • Comfortable in working in a highly iterative environment.
  • Creative problem solver who possesses sound business discernment and is highly detail oriented.
  • A passion for accuracy and translating insights into a compelling narrative; able to maintain a balance between the details and the larger picture.
  • How We Get Things Done…

    This last bit is probably the most important! Here at WBD, our guiding principles are the core values by which we operate and are central to how we get things done. You can find them at www.wbd.com / guiding-principles / along with some insights from the team on what they mean and how they show up in their day to day. We hope they resonate with you and look forward to discussing them during your interview.

    Championing Inclusion at WBD

    Warner Bros. Discovery embraces the opportunity to build a workforce that reflects a wide array of perspectives, backgrounds and experiences. Being an equal opportunity employer means that we take seriously our responsibility to consider qualified candidates on the basis of merit, without regard to race, color, religion, national origin, gender, sexual orientation, gender identity or expression, age, mental or physical disability, and genetic information, marital status, citizenship status, military status, protected veteran status or any other category protected by law.

    If you’re a qualified candidate with a disability and you require adjustments or accommodations during the job application and / or recruitment process, please visit our accessibility page for instructions to submit your request.

    Create a job alert for this search

    Information Security Analyst • Atlanta, GA, United States

    Related jobs
    • Promoted
    Security Analyst 3 / System Engineer

    Security Analyst 3 / System Engineer

    r2 Technologies, Inc.Atlanta, GA, United States
    Full-time
    Job Title : Information Security Analyst 3 / System Engineer (712525).Location : Atlanta GA ( Hybrid).Reporting to the IT Infrastructure Manager, IT Systems Engineer (IT SE) is a member of the IT Infra...Show moreLast updated: 3 days ago
    • Promoted
    Security Analyst

    Security Analyst

    Cityview Helicopter ToursAtlanta, GA, United States
    Full-time
    Work from remotely or from home.We're a perfect fit for top account managers and existing entrepreneurs.Be your own boss, but have the power of a thriving startup. We're a next-generation platform.W...Show moreLast updated: 3 days ago
    • Promoted
    United States Customs and Border Protection Officer

    United States Customs and Border Protection Officer

    US Customs and Border ProtectionHampton, GA, United States
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show moreLast updated: 23 hours ago
    • Promoted
    Customs and Border Protection Officer

    Customs and Border Protection Officer

    US Customs and Border ProtectionLocust Grove, GA, United States
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show moreLast updated: 30+ days ago
    • Promoted
    Information Technology Professional

    Information Technology Professional

    U.S. NavyMarietta, GA, United States
    Full-time +1
    To be eligible to enlist in the U.Navy, candidates must be between the ages of 18-34.At any given moment, hundreds of complex networked computer systems are operating in tandem to keep ships and su...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Manager, Information Security - Architecture and Engineering

    Senior Manager, Information Security - Architecture and Engineering

    Deluxe CorporationAtlanta, GA, United States
    Full-time
    Now is your chance to join an organization that drives change.We're a company that's consistently on top employer lists.There is a reason we boast numerous awards like "Great Place to Work Certifie...Show moreLast updated: 3 days ago
    • Promoted
    Sr. Manager, Cyber Security

    Sr. Manager, Cyber Security

    The Weather CompanyAtlanta, GA, United States
    Full-time
    The Weather Company is the world's leading weather provider, helping people and businesses make more informed decisions and take action in the face of weather. Together with advanced technology and ...Show moreLast updated: 3 days ago
    • Promoted
    Information Security Compliance Consultant

    Information Security Compliance Consultant

    Global PaymentsAtlanta, GA, United States
    Full-time
    Every day, Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit, debit, prepaid and merchant services.Our worldw...Show moreLast updated: 3 days ago
    • Promoted
    Information Security Compliance Analyst - Principal

    Information Security Compliance Analyst - Principal

    Deluxe CorporationAtlanta, GA, United States
    Full-time
    As a Principal Information Security Compliance Analyst at Deluxe, you will play a crucial role in ensuring our organization meets and maintains the highest standards of security and compliance.We a...Show moreLast updated: 3 days ago
    • Promoted
    Information Security Engineer

    Information Security Engineer

    TTECAtlanta, GA, US
    Full-time
    Description - External Information Security Engineer Your potential has a place here with TTEC’s award-winning employment experience. As a Information Security Engineer working remote in US, you’ll ...Show moreLast updated: 30+ days ago
    • Promoted
    Sr. Operations Manager

    Sr. Operations Manager

    Medline Industries - Transportation & OperationsMcDonough, GA, US
    Full-time
    Job Summary Oversee and manage resources and efficient processes for a large-complex distribution center operation.Job Description Responsible for the day-to-day operation to include, but not limit...Show moreLast updated: 17 days ago
    • Promoted
    Customs and Border Protection Officer - Experienced (GS9)

    Customs and Border Protection Officer - Experienced (GS9)

    US Customs and Border ProtectionBrooks, GA, United States
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show moreLast updated: 30+ days ago
    • Promoted
    Security Analyst

    Security Analyst

    The Ceres GroupLawrenceville, GA, United States
    Full-time
    The Security Analyst will be responsible for providing a combination of Operational (30%) and Project (70%) support.The consultant must have great business acumen, strong communication skills and t...Show moreLast updated: 30+ days ago
    • Promoted
    Security Analyst

    Security Analyst

    AtlanticusAtlanta, GA, United States
    Full-time
    Full-Time | On-site | 5 days per week.We are seeking a motivated and detail-oriented.This role is ideal for someone eager to learn and contribute across multiple domains including threat intelligen...Show moreLast updated: 3 days ago
    • Promoted
    Sr Fraud Prevention Analyst (Hybrid)

    Sr Fraud Prevention Analyst (Hybrid)

    Georgia United Credit UnionDuluth, GA, United States
    Full-time
    Develops and deliver fraud awareness training programs to educate employees on fraud prevention best practices and procedures. Build effective relationships with internal / external stakeholders.Monit...Show moreLast updated: 30+ days ago
    • Promoted
    Principal Federal Compliance Analyst

    Principal Federal Compliance Analyst

    Clearance JobsAtlanta, GA, US
    Full-time
    Principal Federal Compliance Analyst.At Workday, it all began with a conversation over breakfast.When our founders met at a sunny California diner, they came up with an idea to revolutionize the en...Show moreLast updated: 9 days ago
    • Promoted
    Project Lead - Energy Reliability & Security (Remote) Share LinkedIn

    Project Lead - Energy Reliability & Security (Remote) Share LinkedIn

    GDS Associates IncMarietta, GA, United States
    Remote
    Permanent
    Transmission Services - Energy Reliability & Security Department.This position is fully remote and based out of the Marietta (Atlanta), GA office. As related to the North American Electric Reliabili...Show moreLast updated: 30+ days ago
    • Promoted
    Principal Federal Compliance Analyst

    Principal Federal Compliance Analyst

    WorkdayAtlanta, GA, US
    Full-time
    Principal Federal Compliance Analyst.Your work days are brighter here.At Workday, it all began with a conversation over breakfast. When our founders met at a sunny California diner, they came up wit...Show moreLast updated: 9 days ago