Jobs

Governance, Risk & Compliance Analyst


Job details
  • The Sherwin-Williams Company
  • 3 months ago

The Data Analyst, Global Privacy - EMEAi will be located In and primarily focused on the Europe, Middle East, Africa and India (EMEAl) region. This position is responsible for the overall analysis of business processes, system applications and reports that may impact the privacy of our employees, customers, consumers and vendors. The incumbent will work directly with the business owners to identify potential areas for improvements to the design, functionality and security of our business processes and applications that process personal information .

CORE RESPONSIBILITIES AND TASKS

Oversee, coordinate and conduct the collection of data process mapping and data element inventories. Assist in the development, adoption, implementation and enforcement of global privacy and data security policies, procedures, standards, and guidelines to ensure ongoing maintenance of privacy and data security Assist in the review of applications and/or technology environments during the development and/or acquisition process to (a) assure compliance with corporate privacy and security policies and direction and (b) to assist in the overall integration process. Assist with global privacy and data security compliance through assisting with the delivery of training and awareness programs and periodic audits Works occasionally with key business personnel across all divisions, domestically and globally. Perform special projects for Cybersecurity GRC throughout the region as needed. Exhibits personal ownership and accountability for continuous improvement. Perform translation as needed or requested. Obtain a thorough understanding of our business processes, applications, standard programs and reports as they related to privacy and data protection. Analyze complex business processes or issues and quickly understand the business issues and related privacy and data challenges. Identify process improvement opportunities; define improvement requirements; conduct detailed analysis; lead solution design; provide project coordination; act as a liaison between the businessand development resources; and support the communication/training efforts related to process changes. Support and monitor compliance efforts. Ensure compliance issues are identified, tracked, reported and resolved in a timely manner. Communicate effectively with data owners to identify needs and evaluate business solutions. Work frequently with key business personnel across all divisions, domestically and globally. Exhibit personal ownership and accountability for continuous improvement. Deliver informative, well-organized presentations. Understand how to communicate difficult/sensitive information tactfully. Identify critical issues with ease. Exhibit confidence and an extensive knowledge of emerging privacy laws and best practices when solving business problems. Push creative thinking beyond the boundaries of existing company practices and mindsets. Generate enthusiasm among team members. Challenge others to develop as leaders while serving as a role model. Facilitate effective team interaction. Acknowledges and appreciates each team member's contributions. Mentor those with less experience through informal channels. Seek and participates in development opportunities beyond training required by us. Complete special projects as requested. Perform Cybersecurity GRC administration tasks.

Additional Notes

Documentation and analysis of required information and data. Prepare requirements, specifications, business processes and recommendations Identify and document system deficiencies and recommend solutions Frequent judgments regarding the proper course of action to take to balance current business processes and requirements as compared to industry best practices. Authority to design solutions for projects approved by the Senior Director: Cybersecurity GRC Develops internal and external meeting objectives and agendas. Takes meeting notes and distributes to meeting attendees. Prioritizes multiple tasks effectively. Interpret policies and Procedures as they relate to data security, systems and maintenance Interpret policies and procedures as they relate to data security awareness and training Resolution of minor privacy and/or data security complaints. Participate with various levels of management in policy making projects and decisions Participate in decisions as they relate to privacy and data security related capital project priorities and spending.

POSITION REQUIREMENTS

FORMAL EDUCATION:

Bachelor's Degree or equivalent

KNOWLEDGE & EXPERIENCE:

Several years of work el BA or MA diploma Fluency in English Ability to Interface with top management Knowledge of data privacy and security laws Fluency in Italian, German, French or Spanish

TECHNICAL/SKILL REQUIREMENTS:

Ability to travel to US, and throughout Europe, Middle East, Africa and India {EMEAI), global travel if needed. Skill set includes leadership, problem solving, critical thinking, decision-making, organizational skills, excellent communication (oral and written), capability to work independently. Business knowledge includes a working knowledge of SW structure, business processes, operations and goals

***Please be aware that you can apply for any internal job offer after minimum one year in current role having previously informed your manager.

Please read the guidelines before handing in your application 

All internal employees when applying for a role are required to upload their updated and their last 2 appraisals (which can be retrieved from HR Cloud).

Sign up for our newsletter

The latest news, articles, and resources, sent to your inbox weekly.

Similar Jobs

Governance, Risk & Compliance Analyst

The Data Analyst, Global Privacy - EMEAi will be located In and primarily focused on the Europe, Middle East, Africa and India (EMEAl) region. This position is responsible for the overall analysis of business processes, system applications and reports that may impact the privacy of our employees, customers, consumers and...

The Sherwin-Williams Company

Immediate Start! Information Security Analyst (Governance,Risk and Compliance) - Edinburgh

Our vision is to be the universal symbol of trust,bringing consumers and businesses together through reviews. We arewell on our way — but there’s still an exciting journey ahead. Joinus at the heart of trust.We are seeking a mid-level Governance,Risk and Compliance analyst, working in our Information SecurityTeam, to enable...

Trustpilot Edinburgh

Information Security Analyst (Governance, Risk andCompliance) - London

Our vision is to be the universal symbol of trust,bringing consumers and businesses together through reviews. We arewell on our way — but there’s still an exciting journey ahead. Joinus at the heart of trust.We are seeking a mid-level Governance,Risk and Compliance analyst, working in our Information SecurityTeam, to enable...

Trustpilot London

Information Security Analyst (Governance, Risk and Compliance) - London

Our vision is to be the universal symbol of trust, bringing consumers and businesses together through reviews. We are well on our way — but there’s still an exciting journey ahead. Join us at the heart of trust.We are seeking a mid-level Governance, Risk and Compliance analyst, working in our...

Trustpilot London

Information Security Compliance Analyst

Company DescriptionEvelyn Partners is the UK’s leading integrated wealth management and professional services group, with over 186 years of experience in helping generations of people and businesses to thrive. We offer an extensive range of financial and professional services to individuals, family trusts, professional intermediaries, charities and businesses.We provide an...

Evelyn Partners Liverpool

Security Analyst

Job for GRC AnalystJob Overview:The Our Client Technology and Cyber Security Risk Analyst will be working closely with Our Client business stakeholders, customers, and suppliers to identify and understand risk so it can be effectively managed through ServiceNow’s IRM module. You will have previous experience in transforming a GRC department...

HAYS Cambridge