Senior Cybersecurity Analyst 2 - Risk and Compliance Job at Publix Super Markets, Lakeland, FL

OGpNekNWcXJDNWl4ZVlJbWhBU2NqU3c4N1E9PQ==
  • Publix Super Markets
  • Lakeland, FL

Job Description

Description

Please note, this is a hybrid position requiring 8 days per month on-site in Lakeland, FL.Join Publix Technology - Where Innovation Meets Impact

Publix Super Markets, Inc., the largest employee-owned company in the U.S., is powered by a dynamic technology team of 2,100+ associates. We deliver modern, cutting-edge solutions to 1,400+ stores and over 200,000 internal team members across 8 states.

Whether you're passionate about IT security, platform engineering, architecture, software development, or infrastructure, we offer exciting career paths at every level - from internships to technical leadership.

Be part of a Fortune “100 Best Companies to Work For” and help us build more than just great subs - build the future of technology for Publix.

As a Senior Cybersecurity Analyst (Risk and Compliance) you will leverage a broad understanding of IT, regulatory, and cybersecurity domains to assess the security posture of various aspects of Publix and determine the adequacy of current controls. This opportunity will allow you to further expand and apply your skills to solve critical business and data protection related challenges as part of a team, driving identification and assessment of risks, validation of compliance to multiple regulations, and adherence to standards and security best practices.

Job Responsibilities:

  • Proactively identify potential cyber security risks across various areas of the business.
  • Analyze the likelihood and impact of identified risks to understand their potential impact.
  • Provide in-depth analysis of cyber security risks to the leadership team to make decisions that protect Publix.
  • Develop strategies, plans, and recommendations to reduce or eliminate cyber security risks and work with relevant teams to implement.
  • Continuously monitor the effectiveness of cyber risk management strategies, prioritize mitigation activities, and report risk-related issues and challenges to relevant stakeholders.
  • Assess organizational compliance with regulatory and legal requirements but strategically help teams think through the best way to manage risk in accordance with security best practices.
  • Serve as a liaison and foster strategic working relationships with technical architects, engineering teams, and businesses to inform them of IT controls or requirements as well as ensure security standards are being met.
  • Assist with regulatory related projects such as gap assessments, annual audits, and remediation tracking.
  • Provide security and compliance consultation on new projects pertaining to PCI DSS, cloud security, data privacy, HIPAA, SOX, etc.
  • Assist in third party risk management assessments to evaluate the security of vendors and hosted solutions based on approved information security standards.

Required Qualifications

  • Bachelor’s degree in management information systems, Computer Science, Information Security, or other analytical disciplines or equivalent experience,
  • 4+ years of combined experience in Information Security, Compliance, Technology Audit, or a related field,
  • 4+ years of experience in leading and conducting risk assessments.
  • 4+ years of internal auditing or internal governance support.
  • 4+ years of experience in security risk assessment, threat modeling, and risk analysis.
  • 2+ years of experience with security control frameworks such as ISO 27001, COBIT, NIST, PCI DSS, HITRUST, SOX, HIPAA, etc.

Preferred Qualifications

  • 6+ years of combined experience in Information Security, Compliance, Technology Audit, or a related field
  • Successful completion of one or more of the following certifications: CISA, CISM, CRISC, CCSP, and/or CISSP
  • Operating system and cloud security experience
  • Experience evaluating the security infrastructure for large enterprise merchants or service providers,
  • General understanding of networking and firewall concepts
  • Working knowledge of audit methodologies, security assessment tools, and monitoring methodologies

Job Tags

Similar Jobs

Seneca Resources

Database Administrator Job at Seneca Resources

JOB TITLE: Database administrator LOCATION: Remote/Raleigh, NC - Highly preferred that candidates are local incase they need to go onsite - there are many cities located around Raleigh so keep your search within a 100-mile radius Contract Position Description...

Kelly

Pharmaceutical Principal Investigator Job at Kelly

 ...Kelly Science & Clinical is seeking a Pharmaceutical Principal Investigator for a direct hire opportunity with one of our clients, a leading small molecule CDMO at their Colorado Springs, CO facility. If youre passionate about bringing the latest scientific discoveries... 

Fiserv

Senior cloud / devops engineer Job at Fiserv

 ...Calling all innovators - find your future at Fiserv. We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another... 

Pinnacle Services, Inc.

Direct Support Specialist Job at Pinnacle Services, Inc.

Description: Direct Support SpecialistChaska, MN Job Type Full Time Description Looking to elevate your Direct Care experience? Pinnacle Services is seeking dedicated, caring individuals to join our team as Direct Support Specialists ! Our Direct... 

B&D Holdings

Asset Management Associate Job at B&D Holdings

Asset Management Associate Industrial, B&D Holdings Location : 67 Mountain Boulevard, Suite 201, Warren, NJ (On-Site) Compensation : $105k to $135k base + Annual Bonus & Benefits B&D Holdings, a fast-growing national real estate investment and development firm...