Senior Associate, Cybersecurity Compliance
USA, GA, Atlanta
WorkdayWorkday Enterprise Management Cloud gives organizations of all sizes the power to adapt through finance, HR, planning, spend management, and analytics applications. Move beyond ERP and deliver extraordinary results in a changing world. Learn...
Your work days are brighter here.
At Workday, it all began with a conversation over breakfast. When our founders met at a sunny California diner, they came up with an idea to revolutionize the enterprise software market. And when we began to rise, one thing that really set us apart was our culture. A culture which was driven by our value of putting our people first. And ever since, the happiness, development, and contribution of every Workmate is central to who we are. Our Workmates believe a healthy employee-centric, collaborative culture is the essential mix of ingredients for success in business. That’s why we look after our people, communities and the planet while still being profitable. Feel encouraged to shine, however that manifests: you don’t need to hide who you are. You can feel the energy and the passion, it's what makes us unique. Inspired to make a brighter work day for all and transform with us to the next stage of our growth journey? Bring your brightest version of you and have a brighter work day here.
About the TeamCybersecurity GRC (cGRC) is dedicated to maintaining, enhancing and protecting trust in Workday. Every cGRC workmate contributes by building and managing programs designed to protect the confidentiality, integrity and availability (CIA) of our customers’ most sensitive data and representing those programs externally via external audits and certifications. The cGRC team serves as a trusted advisor across Workday to help maintain and enhance trust for our customers.
Within cGRC, the Cybersecurity Compliance team focuses on leading Workday’s various compliance programs, control frameworks, third party audits, and overall certification strategy. The Cybersecurity Compliance team works closely with the other cGRC teams supporting governance and risk, and engagement with business partners.
About the Role
The Cybersecurity Compliance Senior Associate is an important part of Workday’s compliance function. This position is responsible for ensuring that company practices, policies and processes are performed in accordance with contractual and compliance requirements. In this role you will demonstrate your technology compliance and relationship management experience to help Workday’s continual growth in security and privacy compliance certifications and programs.
Support compliance projects across multiple teams, including operations, security and development
Implements processes to automate and continuously monitor controls, exceptions and testing.
Develops reporting metrics and dashboards
Assist in preparation and management of external compliance audit activities (ISO27001, SOC1, SOC2, PCI, customer audits)
Review new product features to determine impact to compliance programs
Complete formal risk assessments of projects, initiatives, technologies and processes
Clearly explain compliance program to third parties, including customers and vendors
Collaborate regularly with leadership to address emerging compliance requirements
2+ years of experience in an equivalent technology risk and compliance related role
2+ years of experience with industry compliance standards as they relate to Software as a Service, such as ISO27001, SOC1 (SSAE18), SOC2, and PCI
Strong communications skills, both written and oral
Familiarity with Cloud Computing and Software as a Service
Keen attention to detail and accuracy is vital in order to analyze and finalize documents
Organized, adaptable, and able to gain support and consensus with multiple partners
CISA, CISSP, CIPP, PMP or other relevant certifications a plus
Workday Pay Transparency Statement
The annualized base salary ranges for the primary location and any additional locations are listed below. Workday pay ranges vary based on work location. As a part of the total compensation package, this role may be eligible for the Workday Bonus Plan or a role-specific commission/bonus, as well as annual refresh stock grants. Recruiters can share more detail during the hiring process. Each candidate’s compensation offer will be based on multiple factors including, but not limited to, geography, experience, skills, job duties, and business need, among other things. For more information regarding Workday’s comprehensive benefits, please click here.Primary Location: USA.GA.Atlanta
Primary Location Base Pay Range: $86,800 USD - $130,400 USD
Additional US Location(s) Base Pay Range: $82,500 USD - $144,000 USD
Our Approach to Flexible Work
With Flex Work, we’re combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. We know that flexibility can take shape in many ways, so rather than a number of required days in-office each week, we simply spend at least half (50%) of our time each quarter in the office or in the field with our customers, prospects, and partners (depending on role). This means you'll have the freedom to create a flexible schedule that caters to your business, team, and personal needs, while being intentional to make the most of time spent together. Those in our remote "home office" roles also have the opportunity to come together in our offices for important moments that matter.
Pursuant to applicable Fair Chance law, Workday will consider for employment qualified applicants with arrest and conviction records.
Workday is an Equal Opportunity Employer including individuals with disabilities and protected veterans.
Are you being referred to one of our roles? If so, ask your connection at Workday about our Employee Referral process!
More jobs like this
Toronto, Ontario, Canada Toronto, Ontario, Canada Full TimeSenior Senior-levelUSD 58K - 107K USD 58K+
DevSec Ops, Cyber Risk, Consultant/Senior ConsultantAgile Ansible Application security Automation AWS Azure +24
Career development Competitive pay Equity Flexible spending account Flex vacation +4
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Specialist jobs
- Open Senior Information Security Analyst jobs
- Open Senior Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Staff Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Security Operations Engineer jobs
- Open Cyber Security Specialist jobs
- Open Cybersecurity Analyst jobs
- Open Consultant SOC / CERT H/F jobs
- Open Product Security Engineer jobs
- Open Principal Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Senior Information Security Engineer jobs
- Open IT Security Analyst jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Cyber Security Engineer jobs
- Open Cybersecurity Specialist jobs
- Open Chief Information Security Officer jobs
- Open Senior Security Architect jobs
- Open Security Specialist jobs
- Open Senior Penetration Tester jobs
- Open Ingénieur DevSecops H/F jobs
- Open Security Researcher jobs
- Open Information System Security Officer (ISSO) jobs
- Open C-related jobs
- Open Network security-related jobs
- Open Agile-related jobs
- Open ISO 27001-related jobs
- Open CISM-related jobs
- Open Pentesting-related jobs
- Open Application security-related jobs
- Open Analytics-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open IAM-related jobs
- Open CISA-related jobs
- Open DevOps-related jobs
- Open SaaS-related jobs
- Open Threat intelligence-related jobs
- Open Security Clearance-related jobs
- Open Security assessment-related jobs
- Open Java-related jobs
- Open Malware-related jobs
- Open Kubernetes-related jobs
- Open CI/CD-related jobs
- Open Splunk-related jobs
- Open EDR-related jobs
- Open APIs-related jobs
- Open DevSecOps-related jobs