Unknown Company

IT Specialist - Compliance (Hybrid Work Environment)

new york, ny • Posted 2 weeks ago
Hybrid Full Time General

Security And Compliance SpecialistAt Nespresso we place people and specialty coffee at the heart of what we do. As part of our team, you'll be empowered to inspire, care, act, and innovate to reach your full potential and reimagine what coffee can be. We're committed to delivering an exceptional coffee experience that elevates our community, suppliers, farmers, and each other, channeling our growth-minded spirit to set new standards in global coffee culture. Quality, sustainability, diversity and inclusion are core to who we are and critical to our vision of driving positive change.

Throughout our factories, boutiques, and office locations, Nespresso careers are brimming with first-rate opportunities to push the boundaries of coffee exploration.Position Overview:The Security And Compliance Specialist will support the Functional Relationship Manager to monitor, identify and mitigate potential security risks in the organization and ensure compliance with the Nespresso and Nestle Information Security policies and regulatory standards. The Security And Compliance Specialist will also assist in addressing audit requests, and requirements for the data privacy regulations. This role involves active knowledge of industry trends and best practices, transparent communications, facilitation of issue resolution, triggering escalation processes when required, and an understanding of the IT risk assessments and governance. This is a Hybrid Work Environment opportunity with expectations of being in the office 2-3 days per week.Responsibilities:Security & Risk ManagementSupports the management of the Nespresso Information Security Management System (ISMS) performanceReports security incidents and non-compliant issues to Functional Relationship Manager and IT leadershipBuilds awareness for employees around cyber security, ethics and complianceIdentifies potential security risks in the organization and assists in risk mitigationSupports new security initiatives/ projects within the organizationApplication Business and Privacy Impact AssessmentsAssists business functions with the undertaking of business and privacy impact assessments for all new systems, digital assets or projects involving the processing of Nespresso dataSupports the business in managing the mitigation of identified risks and ensure remediation activities are prioritized in accordance with the impact analysisSupports periodic risk-assessments of the applicationsData PrivacyAssists with monitoring, tracking and addressing customer data privacy requests for data deletions, access and correctionsSupports data discovery and data mapping exercisesComplianceAssists in enforcing adherence to global Nestle standards/guidelines and to global and local regulatory compliance requirementsIdentifies IT compliance control gaps and oversees remediation processEnsures all Compliance and Information Security related matters are properly represented and acted upon by responsible partiesMaintains requirements for market's PCI compliance.

Supports Attestation of Compliance (AOC) process to ensure compliance with PCI DSS standardsAssists in documenting and maintaining Standard Operating Procedures (SOPs) for compliance processesSupports global and local IT compliance audits, assessments and reviews. Ensures that market follows on the findings to comply with Nestle compliance standardsRequirements:Bachelor's degree in computer science or field related to IT Security and Compliance is requiredDemonstrated experience in a product based IT organization2-4 years experience in IT Security and ComplianceProven track record of taking ownership and successfully delivering results in a fast-paced, dynamic environmentExperience with effective communication at different levels in the organizationExperience working in a global environment and with virtual teamsCertified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA) or Certified Information Systems Manager (CISM) certification preferredWorking knowledge and strong understanding of security best practices for the IT technologies including: Windows Active Directory, network routing and switching, firewalls, cloud computing and cloud-based services and MDMThe approximate pay range for this position is $99,000 to $120,000. Please note that the pay range provided is a good faith estimate for the position at the time of posting. Final compensation may vary based on factors including but not limited to knowledge, skills and abilities as well as geographic location.Nestlé offers performance-based incentives and a competitive total rewards package, which includes a 401k with company match, healthcare coverage and a broad range of other benefits.

Incentives and/or benefit packages may vary depending on the position.Nestlé Nespresso USA is an equal opportunity employer and is looking for diversity in qualified candidates for employment. Prior to the next step in the recruiting process, we welcome you to inform us confidentially if you may require any special accommodations in order to participate fully in our recruitment experience. Contact us at or please dial 711 and provide this number to the operator: .This position is not eligible for Visa Sponsorship.

IT Specialist - Compliance (Hybrid Work Environment) in new york at Unknown Company

This position is listed as full time and hybrid.

Back to Job Search