Every great story has a new beginning, and yours starts here.
Welcome to Warner Bros. Discovery... the stuff dreams are made of.
Who We Are...
When we say, "the stuff dreams are made of," we're not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD's vast portfolio of iconic content and beloved brands, are the storytellers bringing our characters to life, the creators bringing them to your living rooms and the dreamers creating what's next...
From brilliant creatives, to technology trailblazers, across the globe, WBD offers career defining opportunities, thoughtfully curated benefits, and the tools to explore and grow into your best selves. Here you are supported, here you are celebrated, here you can thrive.
Your New Role...
Warner Bros. Discovery is hiring a Senior Technical Security Analyst to support the Compliance Oversight program globally across the organization. As a member of the Compliance team, you will be member of the Cyber Security team and will work in partnership with Governance, Risk, Privacy, Financial Compliance, Internal Audit, External Audit, Security Engineering, Legal, Technology, IAM, HR, and other key partners to ensure compliance with various regulatory and policy requirements. The successful candidate will have experience across multiple compliance domains with experience in cyber security, audit process/procedure, risk analysis and mitigation, control testing, and continuous improvement initiatives.
This team focuses on validating that processes are working end-to-end, identifying risk areas and risk treatment/mitigation, as well as participating in projects to understand and determine potential impact to security and regulatory compliance components as well overall compliance to Security Policies & Standards. You will identify areas of improvement and non-compliance which may result in process changes and/or coaching requests. The Senior Technical Security Analyst will perform and oversees all our critical compliance programs as well as information security assessment/analysis, mitigation, and remediation. You will drive other various initiatives to completion and assist in managing and growing an effective Compliance Program. In addition, you will be responsible for a variety of functions centered on effective implementation of all the elements of a compliance program (project): compliance with applicable laws, rules, and regulations, internal policies, and procedures; accepted business practices, ethical standards, and contractual obligations. You will be responsible for areas encompassing both regulatory and non-regulatory compliance, such as SOX, PCI, SSAE 18, issue tracking and remediation, advisory projects, security assessments, and custom compliance assessments. You will lead the development of the compliance assurance process and lifecycle; and oversee cybersecurity controls testing across the organization to determine control effectiveness and adherence to both internal cybersecurity policies and standards and external requirements (e.g., certifications, mandates, regulations, and contracts).
Your Role Accountabilities...
OPERATIONS/PROJECT MANAGEMENT
Execute on Security & Compliance programs owned by our organizationAssist in information security assessment/analysis, mitigation, and remediation. Advise in implementing solutions and mitigation plans for control deficiencies; regulatory and compliance gaps and make recommendations for process efficienciesDrive process improvements and control implementation across business functions, including resolution of assessment findings and independent initiativesLead targeted compliance audits and reviews, communicating results and recommendations in clear and concise written reports; and collaborate with management to ensure corrective actions are implemented effectivelyInvestigate compliance issues and assist with investigation reportsMiscellaneous work as necessary to support the compliance functionValidate system requirements, flows, and written procedures through testing and observations, and to ensure regulatory compliance operating procedures and controls are working as intendedParticipate in cross-functional teams to support various regulatory compliance subject matters ensuring that user activities continue to support systematic processes in place and drive positive compliant behaviors or that proposed new system changes fully meet Regulatory, Security and Legal requirementsPerform analysis based on the testing results through observations and reports to identify system and process gaps reducing risk for WBDDocument all work, and findings resulting from testing and communicate to relevant stakeholders within defined standard processesConduct related ongoing security compliance monitoring activities in coordination with the organization's other compliance and operational assessment functionsMaintain current knowledge of applicable global, federal, and state information security laws and accreditation standardsMake updates to the Integrated Controls Framework (ICF) as agreed with other team members and relevant governance bodiesLead compliance assessments including testing to demonstrate the effectiveness of controls, supporting team members to ensure reviews are critical, comprehensive, and thorough
STRATEGY
Assist leadership in identifying, developing, implementing, and maintaining compliance across the region to protect the privacy, confidentiality, integrity, and availability of data and to reduce security risksParticipate in planning to identify new security requirements and/or initiatives required based on the threats and the growing regional needs aligning with the global security program and business requirementsStay abreast of existing and upcoming regulatory legislation to assess potential impact on the WBD compliance programsParticipate in the implementation of the Company eGRC system, policies, standards, and processesCollaborate with key stakeholders to understand team needs and dependencies to better align business processesAssist in developing and executing a methodology to evaluate, prioritize and monitor the success of the business processesAccurately and clearly articulate strategic issues and provide relevant, logical options for solving them
ANALYTICS
Monitor the effectiveness of the compliance assessment process in accordance with agreed metrics and performance measures to drive continuous improvementsDevelop comprehensive performance analysis of business processes and review ways of improvementDevelop and report upon agreed Key Performance Indicator metrics
Qualifications & Experiences...
Ability to work a hybrid work model (3 days onsite) at one of our office locations.5 - 7+ years working in security, cyber security, audit, and / or compliance environments in a corporate or consulting capacity, with experience in a highly technical setting.Experience defining certification/action plan roadmaps balancing compliance deliverables, business requirements, and resource allocation.Bachelor's degree in a technology-related field, or equivalent education-related experience.Experience with cross-functional risk, compliance and/or information security disciplines.Subject matter expertise in the areas of SOX, PCI, SSAE 18, GDPR and CCPA.Experience in project management, along with organizational and planning skills.Cloud certification and /or relevant experience assessing security and compliance in the cloud.Experience assisting with building compliance programs, including assessing and managing compliance against agreed standards at the level of individual security controls (administrative, technical / logical, physical) for multiple organizations or business units
Required Skills, Competencies & Personal Attributes
Highly proficient in both spoken and written EnglishYou possess the highest integrity commensurate with a compliance & ethics position.Demonstrate superior organization & communication skillsYou produce clear & polished work products, in narrative and visual form.You have strong quantitative and qualitative analysis skillsYou have driven change to completion across functions in an IT or comparable technical environment.You have experience with the cloud (AWS, Azure, Salesforce, etc.) and corresponding security & compliance requirements.You can work independently, are flexible and adaptive and demonstrate a passion to operate in a dynamic and fast-growing environment.You can manage and train team members (staff or consultants) as needed.Creative problem solver who possesses sound business discernment and is highly detailed oriented.Ability to identify risks associated with business processes, operations, information security programs and technology projects.Ability to develop working relationships with the business, and a broad understanding of business processes to translate technical issues into business-related decision points.Ability to drive tasks forward with limited direction.Team player; works well with others; can build trust with different stakeholders throughout the organization.
The Nice to Haves
Experience with ServiceNow or Onspring management tools is preferableRelevant certification (CISA, CISM, PCIP, CISSP, ISA, etc.) required.Having worked as a QSA or ISA in the pastTechnical system experience with SAP, Oracle, PeopleSoft, Hyperion, GitHub, Azure DevOps, AWS, and CI / CD and agile methodologies, etc.Strong leadership, project, and team-building skills, including the ability to lead teams and drive projects and initiatives in multiple departments.
#LI-Hybrid
How We Get Things Done...
This last bit is probably the most important! Here at WBD, our guiding principles are the core values by which we operate and are central to how we get things done. You can find them at www.wbd.com/guiding-principles/ along with some insights from the team on what they mean and how they show up in their day to day. We hope they resonate with you and look forward to discussing them during your interview.
The Legal Bits...
In compliance with local law, we are disclosing the compensation, or a range thereof, for roles in locations where legally required. Actual salaries will vary based on several factors, including but not limited to external market data, internal equity, location, skill set, experience, and/or performance. Base pay is just one component of Warner Bros. Discovery's total compensation package for employees. Pay Range: $1,275,804.00 - $2,369,351.00 salary per year. Other rewards may include annual bonuses, short- and long-term incentives, and program-specific awards. In addition, Warner Bros. Discovery provides a variety of benefits to employees, including health insurance coverage, an employee wellness program, life and disability insurance, a retirement savings plan, paid holidays and sick time and vacation.
Warner Bros. Discovery embraces the opportunity to build a workforce that reflects the diversity of our society and the world around us. Being an equal opportunity employer means that we take seriously our responsibility to consider qualified candidates on the basis of merit, without regard to race, color, religion, national origin, gender, sexual orientation, gender identity or expression, age, mental or physical disability, and genetic information, marital status, citizenship status, military status, protected veteran status or any other category protected by law.
If you're a qualified candidate and you require adjustments or accommodations to search for a job opening or apply for a position, please contact us at [email protected].