UL Solutions Logo

UL Solutions

Global Cybersecurity Compliance Analyst

Posted 15 Days Ago
Hybrid
Northbrook, IL
80K-100K Annually
Junior
Hybrid
Northbrook, IL
80K-100K Annually
Junior
The Global Cybersecurity Compliance Analyst identifies and assesses cybersecurity controls, manages compliance issues, and communicates risks while collaborating with IT and legal teams to ensure compliance with relevant regulations and controls.
The summary above was generated by AI

JOB DESCRIPTION
The Global Cybersecurity Compliance Analyst candidates will be evaluated based on their ability to perform the duties listed below while demonstrating the skills and competencies necessary to be highly effective in the role. These skills and competencies include:
RESPONSIBILITIES

  • Identify, document, and conduct compliance assessments and validate the effectiveness of cybersecurity controls across the organization
  • Communicates assessment issues to team owners and custodians of information risk "business partners," or information governance teams and information security teams.
  • Proactively manage and maintain UL customers' requests (questionnaire) process by collaborating with relevant key stakeholders across the organization to complete/respond to cybersecurity related questions
  • Partner with IT teams and other key stakeholders (e.g., Legal), advising both on applicable control requirements and potential solutions to address compliance issues
  • Identify control deficiencies and maintain records of deficiency details including management response documentation and exposure check evidence
  • Stay abreast of and proactively informed on developing relevant legislative, statutory, contractual, regulatory concerns and evolving compliance control solutions
  • Assists with the evaluation of the effectiveness of the information security program by developing, monitoring, gathering, and analyzing information security and compliance metrics for management.
  • Assist with developing and maintain compliance and risk monitoring mechanisms such as Key Risk Indicators (KRI), reports on status of risk assessment, control effectiveness issues remediation and internal audit findings
  • Understands and applies relevant regulatory and legal compliance requirements


QUALIFICATIONS
A successful Global Cybersecurity Compliance Analyst candidate will have the expertise and skills described below.
Education, Training and Previous Experience
Candidates will be evaluated primarily on their ability to demonstrate the competencies required to be successful in the role, as described above. For reference, the typical work experience and educational background of candidates in this role are as follows:

  • BS or MA in Business, Computer Science, Information Security, or a related field
  • [2+] years of work experience in information security, especially in an information cybersecurity risk role
  • [2+] years of experience in managing risk and compliance issues, or similar experience managing applications, projects or systems that require identification, evaluation, and remediation if risk
  • Technical background or demonstrable understanding of a range of operational and IT risks and operations
  • Strong business background; experience gathering and interpreting risks and associated impacts in the context of financial and operational concerns
  • Strong understanding of compliance and risk-related issues through demonstrated experience managing, information security or regulatory compliance programs, and audits
  • [4+] years of experience with regulatory compliance and information security management frameworks (e.g., International Organization for Standardization [IS0] 27000, COBIT, National Institute of Standards and Technology [NIST] 800)


Desired, but not required:

  • Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), and/or Certified Information Systems Auditor (CISA)


Knowledge and Skills

  • Detailed understanding of cybersecurity controls and the ability to characterize the spirit of the control to our business partners/control owners.
  • An ability to apply original and innovative thinking to produce new ideas. Sound understanding of different factors that make up risk (e.g., assets, vulnerabilities, controls, threats, etc.) and their relationships to one another to inform risk decisions
  • Communicate control deficiencies outside the cybersecurity program in a way that consistently drives understanding, objectives, fact-based decisions that optimize the trade-off between risk mitigation and business performance.
  • An understanding of organizational mission, values, goals, and consistent application of this knowledge.
  • An ability to work on several tasks simultaneously and pay attention to sources of information from inside and outside one's network within an organization.
  • An ability to apply original and innovative thinking to produce new ideas. Sound understanding of different factors that make up risk and their relationships to one another to inform risk decisions
  • An understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business.
  • An ability to effectively influence others to modify their opinions, plans or behaviors.
  • Excellent prioritization capabilities, with an aptitude for breaking down work into manageable parts, effectively assessing the priority and time required to complete each part.
  • Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one.
  • Strong problem-solving and troubleshooting skills.


Personal Characteristics (Optional)

  • Can interface with, and gain the respect of, stakeholders at all levels and roles in the company.
  • Is a confident, energetic self-starter, with strong interpersonal skills.
  • Has good judgment and a sense of urgency, and has demonstrated commitment to high standards of ethics, regulatory compliance, customer service and business integrity.
  • Instinctive and creative.
  • Self-motivated and possessing a high sense of urgency and personal integrity.
  • Highest ethical standards and values.


Total Rewards: We understand compensation is an important factor as you consider the next step in your career. The estimated salary range for this position is $80,000 to $100,000 and is based on multiple factors, including job-related knowledge/skills, experience, geographical location, as well as other factors. This position is eligible for annual bonus compensation with a target payout of 10% of the base salary. This position also provides health benefits such as medical, dental and vision; wellness benefits such as mental and financial health; and retirement savings (401K) commensurate with the standard rewards offered in each individual location or country. We also provide full-time employees with paid time off including vacation (15 days), holiday including floating holidays (12 days) and sick time off (72 hours).
#LI-SG2
#LI-Hybrid
ABOUT US
A global leader in applied safety science, UL Solutions (NYSE: ULS) transforms safety, security and sustainability challenges into opportunities for customers in more than 110 countries. UL Solutions delivers testing, inspection and certification services, together with software products and advisory offerings, that support our customers' product innovation and business growth. The UL Mark serves as a recognized symbol of trust in our customers' products and reflects an unwavering commitment to advancing our safety mission. We help our customers innovate, launch new products and services, navigate global markets and complex supply chains, and grow sustainably and responsibly into the future. Our science is your advantage.

Top Skills

Cobit
Cybersecurity Controls
Information Security
Nist 800)
Regulatory Compliance Frameworks (Iso 27000

UL Solutions Los Angeles, California, USA Office

Los Angeles, CA, United States

Similar Jobs at UL Solutions

9 Hours Ago
Hybrid
Northbrook, IL, USA
80K-100K Annually
Mid level
80K-100K Annually
Mid level
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Assist in implementing and managing IAM solutions, ensuring security of digital assets, compliance with policies, and conducting audits and access management processes.
Top Skills: Active DirectoryAzureMulti-Factor AuthenticationOktaRole-Based Access ControlSailpointSaviyntSingle Sign-On
5 Days Ago
Hybrid
Northbrook, IL, USA
60K-80K Annually
Junior
60K-80K Annually
Junior
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
This role involves code reviews, vulnerability analysis, software penetration testing, report writing, and contributing to R&D in security tools and methods.
Top Skills: Industrial DevicesIotMedical DevicesReverse EngineeringSoftware Penetration Testing
7 Days Ago
Hybrid
Northbrook, IL, USA
100K-130K Annually
Senior level
100K-130K Annually
Senior level
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
The IAM Engineer will design, implement, and maintain identity management solutions, ensuring compliance and collaboration across teams, while focusing on security posture.
Top Skills: Active DirectoryBeyond TrustCyberarkDelineaLdapMicrosoft Azure AdOauthOktaOpenid ConnectOracleRestSailpointSAMLSaviyntScimSoap

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account