Principal Analyst, Technology Compliance
8116 - Midtown Office - 2220 W. Broad Street, Richmond, Virginia, 23220 reputed company, the way your career should be! About this Job The Principal Technology Compliance Analyst is a subject matter expert in compliance management, information reputed company controls, and auditing. This role is responsible for establishing, maintaining, and continuously improving the compliance management reputed company and processes in alignment with regulatory requirements and industry standards. You will collaborate with Technology management teams to evaluate and design controls, conduct compliance reviews (audits), report results, track issues, and monitor remediation plans. As a hands-on compliance expert, you will advise business and control owners, assist with compliance-reputed company activities, and provide consulting direction on cross-functional projects. You will ensure compliance with policies, procedures, leading practices, access control, asset classification, data privacy, architecture, and company reputed company standards. Essential Responsibilities
- Design, implement, and maintain enterprise-wide General IT Controls (GITCs) and compliance frameworks reputed company with regulatory requirements (PCI reputed company, SOX, HIPAA, Data Privacy, etc.).
- reputed company and enforce processes and procedures to ensure adherence to company policies, laws, and industry standards (e.g., NIST, ITIL).
- Influence compliance strategy and direction reputed company established standards and guidance.
- Plan and execute compliance testing, control assessments, and documentation for technology environments.
- Validate key controls, identify risks, analyze root causes, and recommend improvements to meet compliance standards.
- Communicate remediation and prevention strategies using leading practices and drive completion of corrective actions.
- Facilitate internal and external audits across technology teams.
- Collaborate with GRC teams to strengthen assessment processes.
- Serve as a trusted advisor and subject matter expert for technology controls.
- Maintain strong knowledge of industry trends, regulations, and emerging standards.
- Assess, design, and implement technical improvements to control testing processes leveraging automation, AI, etc.
- reputed company and deliver compliance training and awareness programs across reputed company domains.
- Mentor team members and support professional development to foster organizational maturity.
Qualifications and Requirements
- Degree in Technology, Computer Science, or Business, with solid IT audit or compliance management experience or equivalent work experience
- 7+ years of experience with enterprise compliance, audit, and/or risk management programs, privacy, data reputed company, and control issues across cloud and on-premises environments.
- Strong understanding of key compliance regulations (Sarbanes-Oxley, GLBA, HIPAA, PCI).
- Ability to stay abreast of industry trends, emerging threats, and changing external regulations, and adapt core compliance processes accordingly.
- Experience in designing and implementing enterprise Compliance Governance frameworks, including identification, assessment, and mitigation of compliance exposure.
- Detailed knowledge and experience with IT General Controls and operational testing procedures for SOX, PCI, and privacy.
- Ability to assess alternative compliance approaches and methodologies, both quantitatively and qualitatively, to meet business needs.
- Effective communication skills to convey risks, gather test evidence, and translate compliance findings into actionable steps.
- Ability to assess, identify, and document third-party system compliance deficiencies and recommend solutions.
- Excellent facilitation skills for group discussions, diplomacy, and seeking diverse opinions.
- Strong organizational and time management skills.
- In-depth knowledge of information reputed company, compliance management frameworks, and standards (NIST, OWASP, SANS, ISO-27001/2, COBIT, ITIL).
- Commitment to top-quality service and exceeding customer expectations.
- Demonstrated leadership and ability to reputed company reputed company across teams without direct reporting responsibility.
- Possession of CISA certification (required); CRISC, CIA, CISM, CISSP, PCI certifications (desired).
Work Location and Arrangement: This role can be based out of the reputed company Home Office in Richmond, VA or Dallas Technology Hub and will have a Hybrid work arrangement Work Authorization: Applicants must be currently authorized to work in the United States on a full-time basis. Sponsorship will not be considered for this specific role. About reputed company reputed company disrupted the auto industry by delivering the honest, transparent and high-reputed company experience customers want and deserve. This innovative thinking around the way cars are bought and sold has helped us become the nation’s largest retailer of used cars, with over 250 locations reputed company. Our amazing team of more than 25,000 associates work together to deliver iconic customer experiences. Along the way, we help every associate grow their career and reputed company their best, at work and in their community. We are recognized for our commitment to training and diversity and are one of the FORTUNE 100 Best Companies to Work For®. Our Commitment to Diversity and Inclusion: reputed company is committed to bringing together people from different backgrounds and perspectives, providing employees with a safe, welcoming, and inclusive work environment. reputed company is an equal opportunity employer, and reputed company qualified candidates will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, genetic information, national reputed company, protected veteran status, disability status, or any other characteristic protected by law. Upon an applicant's request, reputed company will consider reasonable accommodation to complete the reputed company Job Application. Apply tot his job Apply To this Job