Senior compliance analyst supporting Motorola Solutions’ mission-critical communications and analytics security programs. Managing audits, risk assessments, regulatory compliance, and information security governance.
Responsibilities
Support the organization’s compliance with regulatory, statutory, contractual, and internal security requirements
Maintain information security policies, standards, and guidelines
Participate in audits and assessments to identify compliance gaps
Partner with Legal on contract updates needed to maintain compliance and risk posture
Participate in risk assessments and assist teams with remediating compliance gaps
Track and manage risk exceptions with appropriate documentation and approvals
Support internal, external, regulatory, client security, and third-party audits
Prepare and provide evidence demonstrating compliance
Monitor audit findings and corrective actions
Facilitate management updates with ISO ISPMS Leads
Stay informed about regulatory changes and industry trends
Recommend and implement compliance program improvements
Support security and compliance tools, processes, and frameworks
Contribute to risk mitigation through Threat Modeling results and Post-Security Reviews
Maintain security operations documents, including Incident Response Plans, runbooks, Incident Management, and Business Continuity/Disaster Recovery plans
Coordinate and review penetration testing results
Support the Information Security strategy and roadmap
Track and report compliance with international regulations such as the EU CRA and EU Radio Equipment Directive
Maintain and update the organizational Risk Register
Requirements
Bachelor’s degree in Information Security, Computer Science, Information Technology, or a related field; or equivalent work experience
4+ years of experience in information security, compliance, or related roles
Experience supporting compliance efforts related to regulatory requirements and industry frameworks, including GDPR, HIPAA, ISO 27001, NIST, SOC 2, and PCI DSS
Foundational understanding of risk assessment methodologies, control frameworks, and compliance requirements
Familiarity with compliance management tools and GRC platforms
Proficiency in assisting with audit preparation and remediation plans
Familiarity with cloud security and third-party risk management
Comfortable using AI tools to support compliance efforts
Relevant entry-level certifications, such as CompTIA Security+, ISACA CSX Fundamentals, CISA, CISM, or CISSP
Familiarity with EU and UK compliance regulations, laws, and frameworks
No travel required
Candidates should be able to perform daily job duties under general guidance while maintaining a high level of due diligence
Benefits
Equal Opportunity Employer
Inclusive and accessible recruiting experience
Reasonable accommodations for candidates with disabilities or other physical or mental health conditions
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.
Lead AI risk analyst securing CBC/Radio - Canada’s public - service media technology. Designing enterprise AI governance, risk assessments and adversarial testing across the AI lifecycle.
IT security analyst protecting Desjardins hardware, software, data, and access controls. Analyzing vulnerabilities, risks, and security processes while developing recommendations and action plans.