Lowe’s Logo

Lowe’s

Sr Analyst, Information Security (Compliance)

Posted 7 Hours Ago
Be an Early Applicant
Hybrid
Charlotte, NC
Senior level
Hybrid
Charlotte, NC
Senior level
The Senior Analyst in Information Security Compliance safeguards enterprise compliance and manages security processes, controls, and reports while mentoring junior staff.
The summary above was generated by AI
Expand your career possibilities.
Thank you for dedicating your time and talent to Lowe's. We want to give you more opportunities to learn and grow, so if you find a position you're interested in below, we encourage you to apply!
Find Your Home to More Possibilities.
Your Impact
As a Senior Analyst, Information Security Compliance, you will play a critical role in safeguarding the enterprise by driving our continuous compliance program. You'll own and elevate key SOX and security compliance processes, leading end-to-end workstreams that enable large-scale IT modernization initiatives supporting the company's most important business and technology strategies. In this role, you won't just follow processes; you'll shape and improve them, influencing the future of security compliance across all domains and platforms. You will manage everything from planning and program execution to control testing, reporting, and remediation oversight, ensuring enterprise-wide impact. You'll also be at the forefront of innovation, contributing to the long-term security strategy by helping design and implement automation for evidence collection, testing, and pre-implementation reviews. Your expertise and leadership will directly strengthen the organization's ability to deliver secure, compliant, and resilient technology solutions at scale.
What You Will Do:
  • Works closely with various groups and levels of leadership within Lowe's Tech, including the Executive Leadership Team.
  • Collaborate with technical and business teams responsible for major financial system modernization efforts, security vital assets, and PCI scoped assets to determine control design effectiveness, regularity impact, and help in the design of the relevant SOX controls.
  • Conduct IT process walkthroughs to ensure control objectives are met and sufficient coverage is maintained.
  • Develop written control workpapers and reports of varied depth on short deadlines, with minimal supervision, at a technical level of detail appropriate to the audience.
  • Identify and scope improvement opportunities, working to bring improvements to fruition while defining appropriate controls.
  • Analyze data to detect trends, make recommendations, and provide reporting
  • Provide oversight, direction, and mentoring advice to the Information Security Compliance analysts, sharing an in-depth understanding of company and industry methodologies, policies, standards, and controls.
  • Answers questions from associates about the information security processes supported; handles more complex questions/issues elevated from other analysts on the team
  • Serves as an escalation point and mentor for junior staff
  • Support management in developing robust action plans to address deficiencies and ensure remediation is promptly addressed to effectively address issues.
  • Support internal team initiatives by delivering high-quality technical assessments.
  • Provides insight and consultation to help ensure new and existing security solutions are developed with insight into industry best practices, strategies, and architectures.
  • Make recommendations for process or technology changes.
  • Develop tools or processes to operationalize/improve workflows.
  • Creates and optimizes frameworks and tools, and leads assessments of applications and business processes to help Lowe's integrate security services

Required Qualifications:
  • Bachelor's Degree in Computer Science, CIS, Engineering, Business Administration, Cybersecurity, or related field (or equivalent work or military experience in a related field).
  • 2 years of experience developing Cybersecurity or information assurance policies, standards, awareness training, or 2 years of experience conducting assessments or technical reviews to analyze risk.
  • Experience with information security programs, audits, and SOX
  • 2 years of experience in information security compliance.
  • Advanced understanding of fundamental security and network concepts (Windows and Unix security: endpoint security; logging and monitoring; application security; user access; perimeter protection principles, network communication rules; and analysis methods, etc.).
  • Self-motivated, reliable, and follows through on commitments.
  • Solutions-focused, strong work ethic, and desire to achieve excellence.
  • Highly flexible and adaptable within a rapid and changing work environment.

Preferred Qualifications:
  • Hands-on expertise in building and deploying automated solutions for evidence collection and control testing, including the use of AI to streamline compliance processes
  • IT security compliance experience in the retail industry
  • Experience in a PCI/Retail technology environment
  • Big 4 internal or external audit experience
  • Relevant information security certifications (e.g., CISA, CISSP, PCI-P, ISA, CISM, CEH, CRISC, OSCP, GPen)
  • Demonstrated understanding of internal security controls, risk assessment, and identifying opportunities for improvement
  • Intermediate knowledge of vulnerability management (OS, application, custom code, configuration, etc.) and associated risks
  • Excellent communication and interpersonal skills with success in working across organizations at all levels.

Where You'll Be
  • Associates are required to relocate to the Charlotte region to foster collaboration and facilitate improved testing and support.
  • Lowe's supports a Flex Office concept where in-person work is required two to three days per week at the Charlotte Tech Hub
  • Most business meetings are planned around the Eastern time zone.

About Lowe's
Lowe's Companies, Inc. (NYSE: LOW) is a FORTUNE® 50 home improvement company serving approximately 16 million customer transactions a week in the United States. With total fiscal year 2024 sales of more than $83 billion, Lowe's operates over 1,700 home improvement stores and employs approximately 300,000 associates. Based in Mooresville, N.C., Lowe's supports the communities it serves through programs focused on creating safe, affordable housing, improving community spaces, helping to develop the next generation of skilled trade experts, and providing disaster relief to communities in need. For more information, visit www.lowes.com
Lowe's is an equal opportunity employer and administers all personnel practices without regard to race, color, religious creed, sex, gender, age, ancestry, national origin, mental or physical disability or medical condition, sexual orientation, gender identity or expression, marital status, military or veteran status, genetic information, or any other category protected under federal, state, or local law.

Top Skills

AI
Automated Solutions
Cybersecurity
Endpoint Security
Information Security
Logging And Monitoring
Network Communication
Sox

Similar Jobs at Lowe’s

7 Hours Ago
Hybrid
Charlotte, NC, USA
Junior
Junior
Consumer Web • eCommerce • Information Technology • Retail • Software • Analytics • App development
The Product Manager will lead initiatives for Order Capture, manage cross-functional teams, and develop product roadmaps while enhancing customer experience.
Top Skills: Agile MethodologiesData AnalysisProduct Design Processes
7 Hours Ago
Hybrid
Charlotte, NC, USA
Junior
Junior
Consumer Web • eCommerce • Information Technology • Retail • Software • Analytics • App development
The Software Engineer translates business requirements into program designs and delivers stable application systems using various programming languages, collaborating with stakeholders and maintaining software solutions in agile environments.
Top Skills: Application Programming InterfacesDatabase TechnologiesDevOpsFrontend TechnologiesMicroservicesMiddleware
Yesterday
Hybrid
Charlotte, NC, USA
Senior level
Senior level
Consumer Web • eCommerce • Information Technology • Retail • Software • Analytics • App development
As a Senior Software Engineer, you will implement complex software solutions, support development processes, and manage Oracle Cloud Fusion. Responsibilities include system administration, security management, and integration work using various APIs.
Top Skills: Fusion Cloud SaasIbm Tm1LinuxOciOicOracle CloudOracle HyperionPowershellRest ApisShell ScriptingSoapSsl CertificatesVbcsWindows

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account