Sr Analyst, Information Security Compliance

Job Type:  Full-Time
Location Type:  Hybrid
Primary Location: 

Atlanta, Georgia, US

W3Schools.com

Job ID: 17604 

Alternate Locations:  

 

Newell Brands is a leading consumer products company with a portfolio of iconic brands like Graco®, Coleman®, Oster®, Rubbermaid®, Sharpie® and Yankee Candle® - and 24,000 talented teammates around the world. Our culture is built on values in action: Integrity, Teamwork, Passion for Winning, Ownership, and Leadership. We work together to win, grow, and make a real impact—supported by a high-performing, inclusive, and collaborative environment where you can be your best, every day.

 

Job Overview

The Information Security Compliance Senior Associate is an intermediate-level professional within the Global Information Security Risk & Resilience team at Newell Brands. Reporting to the Information Security (IS) Compliance Manager, this role executes the day-to-day operational delivery of the IS compliance program and contributes substantively to its continued maturation. The Compliance Manager retains program accountability; the Senior Associate operates with routine oversight, exercises independent judgment and discretion on moderately complex assignments, interprets regulatory requirements, and communicates compliance practices to stakeholders within the team and across the business.

Working closely with cross-functional stakeholders, the Senior Associate supports compliance with internal policies, regulatory requirements, and industry standards, supports risk management activities, and uses data analytics to deliver actionable insights that strengthen the organization's security posture. The Senior Associate also serves as a subject-matter resource and mentor to junior team members and contributes to process improvement, automation, and data-driven decision-making.

 

The role focuses primarily on Information Security compliance (70%), Artificial Intelligence (AI) governance and compliance (15%), Information Security risk management (5%), and data analysis and reporting of the compliance domain (10%).

 

Information Security Compliance (70%)

  • Support Payment Card Industry Data Security Standard (PCI-DSS) compliance across Newell Brands by coordinating control assessments, managing evidence collection, and supporting certification, audit, and remediation activities across business units and technology teams.
  • Contribute to the Network and Information Security Directive 2 (NIS2) program for Newell's European Union (EU) operations and support the cybersecurity components of California Consumer Privacy Act (CCPA) audit readiness in an advisory capacity, recognizing that data privacy accountability sits outside the Information Security remit.
  • Support the build-out and continued maturation of Newell's internal Information Security compliance program by contributing to the design and maintenance of a scalable, risk-based compliance framework.
  • Monitor, analyze, and report on compliance metrics and performance, providing insights and recommendations to senior leadership.
  • Coordinate across business and functional stakeholder teams to manage compliance projects, including data identification, collection, processing, and review.

 

Artificial Intelligence (AI) governance and compliance (15%)

  • Provide the Information Security compliance perspective into Newell's enterprise AI governance activities, supporting the establishment of foundational processes and controls that help the business adopt AI responsibly and in line with applicable regulatory requirements.
  • Assess AI tools and use cases proposed by internal stakeholders for compliance implications under PCI-DSS, NIS2, and Newell's internal security policies.
  • Contribute to the development of AI compliance controls from an Information Security standpoint as the organization's AI footprint expands, aligned with the National Institute of Standards and Technology AI Risk Management Framework (NIST AI RMF), the EU AI Act, and the Open Worldwide Application Security Project (OWASP) Top 10 for Large Language Models (LLMs).

 

Information Security risk management (5%)

  • Conduct risk assessments and control reviews to identify potential vulnerabilities and confirm adherence to security standards.
  • Support the development and implementation of risk mitigation strategies and continuous monitoring processes.
  • Collaborate with cross-functional teams to strengthen security protocols and support continuous improvement in risk management practices.

 

Data analysis and reporting of the compliance domain (10%)

  • Analyze compliance data to identify trends, patterns, and areas for improvement.
  • Develop and generate reports that provide insights and recommendations to senior leadership.
  • Use data analytics tools to improve the accuracy and efficiency of compliance processes.

 

Qualifications:

  • Bachelor's degree in Cybersecurity, Information Systems, Information Security, Risk Management, or a related field.
  • 2 to 4 years of experience in Information Security compliance, governance, risk management, information technology (IT) audit, or consulting.
  • Solid understanding of primary control frameworks, including the Center for Internet Security (CIS) Critical Security Controls (CSC) Top 18 and the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF) 2.0, with awareness of PCI-DSS requirements given the organization's retail operations.
  • Working knowledge of AI governance frameworks and regulatory requirements, including the NIST AI RMF, EU AI Act, and OWASP Top 10 for LLMs.
  • Demonstrated experience using AI tools, including major LLMs such as ChatGPT, Microsoft Copilot, and Claude, to produce high-quality work outputs, increase efficiency, and drive process improvements.
  • Professional certification such as CompTIA Security+, Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or Certified Information Security Manager (CISM) is preferred.
  • Experience with Governance, Risk, and Compliance (GRC) tooling; working knowledge of Optro (formerly AuditBoard) is preferred, and experience with comparable platforms such as ServiceNow GRC or OneTrust is equally valued.
  • Strong written, verbal, and presentation skills, with the ability to communicate effectively with technical and non-technical stakeholders.
  • Proven ability to manage multiple priorities and deliver results in a fast-paced, global environment.
  • Experience collaborating across business, technology, and security teams to support compliance and governance initiatives.

 

*Please note this position will not be able to sponsor H1B visa or support OPT status

 

 

Newell Brands (NASDAQ: NWL) is a leading global consumer goods company with a strong portfolio of well-known brands, including Rubbermaid, Sharpie, Graco, Coleman, Rubbermaid Commercial Products, Yankee Candle, Paper Mate, FoodSaver, Dymo, EXPO, Elmer’s, Oster, NUK, Spontex and Campingaz. We are focused on delighting consumers by lighting up everyday moments. Newell Brands and its subsidiaries are Equal Opportunity Employers and comply with applicable employment laws. EOE/M/F/Vet/Disabled are encouraged to apply. 

Date Posted:  Sep 11, 2026