Cybersecurity Analyst – Compliance, GDPR
Job Description: • Ensures organizational compliance with GDPR and other applicable data protection regulations by assessing controls, identifying deficiencies, and coordinating remediation efforts. • Lead or support the completion of Data Protection Impact Assessments (DPIAs) and similar evaluations to identify, document, and mitigate data privacy risks across business processes and systems. • Oversee the intake, coordination, and fulfillment of Data Subject Access Requests (DSARs), ensuring timely and compliant responses in accordance with regulatory standards. • Contribute to the development, implementation, and maintenance of data protection policies, standards, and procedures. • Recommend and implement program enhancements to strengthen privacy governance and cybersecurity maturity. • Partner with Information Security, Legal, Compliance, and IT teams to align operational practices with regulatory obligations and data protection best practices. • Support the design and delivery of privacy and cybersecurity awareness initiatives to promote understanding of GDPR requirements and secure data handling practices across the organization. • Maintain documentation and reporting on compliance activities, risk findings, and mitigation progress. • Support internal and external audits or regulatory inquiries as required. • Monitor evolving data protection regulations, industry trends, and best practices to proactively identify opportunities to improve the organization’s compliance posture and maturity. • Provide support for broader cybersecurity and compliance initiatives to advance the organization’s overall security objectives. Requirements: • High School Diploma/GED • A minimum of 3 years of transportation management systems, payment management systems, and other systems that map shipping routes. • Bachelor’s Degree: A minimum of 1 year transportation management systems, payment management systems, and other systems that map shipping routes • Possessing strong critical thinking skills are essential to identify and capture relevant information during discussions with stakeholders. • Requires the ability to build and maintain strong relationships with key customers or stakeholders to support open communication and effective collaboration on impact assessments, planning, and incident response and recovery. • Engage in active listening skills to recognize and include relevant details in various continuity-related products. • Be capable of analyzing data across critical functions, plan types, and impact analysis results to map dependencies accurately. • Certified Information Privacy Professional/Europe (CIPP/E) certification is required within 12 months of position start date. • For Information Technology Division caregivers, ITIL Foundations certification is required within 6 months of position start date. Benefits: • Our outstanding, comprehensive offerings are an investment in your health, well-being and future.