Cybersecurity Governance and Compliance Senior Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

Elsevier · 3 hours ago

Cybersecurity Governance and Compliance Senior Analyst

Elsevier is a renowned global information analytics company focusing on scientific, technical, and medical research content, tools, and services. The Cybersecurity Governance and Compliance Senior Analyst role is responsible for developing and maturing the company's governance function, leading policy-driven governance programs, and ensuring cybersecurity compliance across the organization.

ContentContent DiscoveryDeliveryHealth CareInformation ServicesInformation TechnologyPublishing
check
Work & Life Balance
check
H1B Sponsor Likelynote
Hiring Manager
ALAN KRULL
linkedin

Responsibilities

Leading the design and implementation of a policy- and standards-driven cybersecurity governance program supported by GRC tooling
Establishing and maturing a data governance and protection program across the full data lifecycle
Defining and enforcing data classification, labeling, and handling requirements, including controls to prevent inappropriate data sharing
Establishing and maintaining enterprise security governance structures, roles, and accountability
Serving as a trusted advisor to business and technology stakeholders on governance, risk, and compliance matters
Driving identification, escalation, and resolution of cybersecurity GRC risks and issues
Supporting and maintaining cybersecurity compliance certifications and initiatives (e.g., ISO, PCI, HIPAA)
Producing metrics, KPIs, and executive-level reporting to support risk-based decision making

Qualification

Cybersecurity governanceRisk managementCompliance programsSecurity policiesData governanceGRC platformsISO frameworksPCI DSSNIST standardsAnalytical skillsProject managementProblem-solving skills

Required

Possess extensive experience in cybersecurity governance, risk, and compliance programs
Proven experience developing and managing security policies, standards, and controls
Experience building or maturing enterprise data governance and data protection programs
Working knowledge of security and compliance frameworks such as ISO 27001/27701, ISO 27017/27018, ISO 42001, HIPAA, PCI DSS, NIST 800-53/800-171, FedRAMP, and/or TX-RAMP
Experience implementing and operating GRC platforms and security programs
Possess project management, analytical, and problem-solving skills

Preferred

CISSP
CISM
CISA
CHP
CHSS

Company

Elsevier

company-logo
Elsevier is a world-leading provider of information solutions that enhance the performance of science, health, and technology. It is a sub-organization of RELX.

H1B Sponsorship

Elsevier has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (32)
2024 (17)
2023 (28)
2022 (46)
2021 (28)
2020 (19)

Funding

Current Stage
Late Stage
Total Funding
unknown
2003-09-01Private Equity

Leadership Team

leader-logo
Dan Olley
EVP & CTO - Elsevier
linkedin
C
Catherine Thrift
CFO
linkedin
Company data provided by crunchbase