United Airlines - Chicago, IL

posted 5 months ago

Full-time - Mid Level
Chicago, IL
Air Transportation

About the position

Connecting People. Uniting the World. There's never been a more exciting time to join United Airlines! As a global company that operates in hundreds of locations around the world - with millions of customers and tens of thousands of employees - we have a unique responsibility to uplift and provide opportunities in the places where we work, live and fly. We're on a path toward becoming the best airline in the history of aviation. Join our Cybersecurity and Digital Risk (CDR) team to help us also become the leading cyber-safe airline in the industry. United's CDR team is tasked with keeping our customers' and employees' information safe and secure. Our primary mission is to embed cybersecurity into the DNA of United Airlines by reducing business risk through implementation of strong cybersecurity best practices. The Data Protection & Privacy Senior Analyst is responsible for building and contributing to the Data Protection & Privacy programs. The senior analyst leads and provides ongoing support of this program by ensuring business strategies, plans and initiatives are driven/delivered in compliance with governing regulations, internal policies, and procedures. The Data Protection & Privacy Sr. Analyst works closely with Legal, HR, Business, Digital Technology, and other Cybersecurity associates and is part of a strategic and comprehensive cybersecurity team that is accountable for ensuring compliance in accordance with regulatory expectations, risk appetite, organizational risk practices and evolving business practices. In this role, you will lead the implementation of the Data Protection & Privacy strategy & programs, understand, communicate, and implement end-to-end capabilities such as Data Governance, Data Protection, Data Privacy, Data Rights Management, Data Encryption & Tokenization, Data Classification, and Data Security in the cloud. You will work closely with internal stakeholders to evaluate potential compliance areas to identify gaps and ensure full compliance with data protection & privacy regulations. Additionally, you will interpret and apply relevant laws, regulations, policies, and related guidance to enhance processes, policies, standards, or programs, in support of cybersecurity responsibilities. Facilitating discussions with business teams to educate them about applicable privacy/data protection requirements, including those relevant to cybersecurity controls, will also be a key part of your responsibilities. Coaching team members will be an essential aspect of your role as well.

Responsibilities

  • Lead the implementation of the Data Protection & Privacy strategy & programs
  • Understand, communicate, and implement end-to-end capabilities such as Data Governance, Data Protection, Data Privacy, Data Rights Management, Data Encryption & Tokenization, Data Classification, and Data Security in the cloud
  • Work closely with internal stakeholders to evaluate potential compliance areas to identify gaps and ensure full compliance with data protection & privacy regulations
  • Interpret and apply relevant laws, regulations, policies, and related guidance to enhance processes, policies, standards, or programs, in support of cybersecurity responsibilities
  • Facilitate discussions with business teams to educate them about applicable privacy/data protection requirements, including those relevant to cybersecurity controls
  • Coach team members

Requirements

  • Bachelor's degree in Cybersecurity, Information Technology, or Computer Science
  • 4+ years in a STEM-related field
  • Solid understanding of Data Protection & Privacy standards and regulations local, domestic, and global
  • Ability to interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program
  • Skill in communicating with all levels of management, including interpersonal skills, approachability, effective listening skills, and proper use of style and language for the audience
  • Ability to perform in a dynamic environment to strict deadlines, with the ability to address multiple activities concurrently
  • Hands-on experience with Data Protection & Privacy vendors, tools, and products capabilities
  • Must be legally authorized to work in the United States for any employer without sponsorship
  • Reliable, punctual attendance is an essential function of the position

Nice-to-haves

  • Master's degree
  • CISSP certification
  • CISA certification
  • CIPP certification
  • CIPT certification
  • CISM certification
  • Knowledge of computer networking concepts and protocols, and network security
  • Knowledge of security engineering and architecture concepts
  • Knowledge of cryptography and cryptographic key management concepts

Benefits

  • Parental leave
  • 401k
  • Space available travel privileges
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service