Generac Power Systems - Waukesha, WI

posted 3 months ago

Full-time - Senior
Waukesha, WI
Electrical Equipment, Appliance, and Component Manufacturing

About the position

The Senior Cyber Security Analyst at Generac plays a pivotal role in the company's enterprise Data Privacy and Data Security programs. This position requires close collaboration with teams in IT and the Legal Department to ensure the protection and integrity of digital information assets within the organization. The primary responsibility of the role is to coordinate with legal teams on global data privacy matters, taking into account regional privacy requirements, and ensuring compliance with relevant laws and regulations. This involves taking inventory of data assets across the enterprise, implementing data classification and retention policies, and collaborating with IT and data custodians to identify, label, and secure digital information assets appropriately. Additionally, the analyst will address other cybersecurity tasks to safeguard sensitive information from unauthorized access, breaches, or data loss. The role encompasses several essential duties and responsibilities. The Senior Cyber Security Analyst will work closely with Cyber Security leadership, Legal, and key business stakeholders to coordinate on mapping data privacy and data security governance frameworks and controls. They will contribute to the creation and maintenance of policies and standards that support data privacy and security requirements. Furthermore, the analyst will coordinate with stakeholders on the implementation of data security controls for normal business procedures as well as for potential data compromise or breach situations, ensuring the confidentiality, integrity, and availability of sensitive data. Conducting data privacy and security assessments is another critical aspect of this role, which includes tracking findings and making recommendations to address identified risks. The analyst will also coordinate activities to enforce data security policies to drive compliance with data privacy requirements and data classification and retention requirements. Training and awareness opportunities will be coordinated to educate employees about risks and best practices related to data privacy and security. Moreover, the analyst will integrate privacy by design principles into both customer-facing product development and internal project work, as well as assess and manage risks related to document and data sharing agreements and practices.

Responsibilities

  • Coordinate on mapping data privacy and data security governance frameworks and controls.
  • Contribute to the creation and maintenance of policies and standards supporting data privacy and security requirements.
  • Coordinate with stakeholders on the implementation of data security controls for normal business procedures and potential data compromise/breach situations.
  • Conduct data privacy and security assessments, tracking findings, and making recommendations to address identified risks.
  • Enforce data security policies to drive compliance with data privacy requirements and data classification and retention requirements.
  • Coordinate training and awareness opportunities to educate employees about risks and best practices related to data privacy and security.
  • Integrate privacy by design principles into customer-facing product development and internal project work.
  • Assess and manage risks related to document and data sharing agreements and practices.

Requirements

  • Bachelor's Degree with Information Technology focus, or equivalent experience.
  • 8+ years working within Information Technology with experience in security tools and technology. Experience can be reduced to 6 years if work experience includes a role within an industry leading consulting or auditing firm.

Nice-to-haves

  • Experience with Privacy Impact Assessments and the development of remediation plans.
  • Experience with data privacy frameworks such as European Union's GDPR, Canada's PIPEDA, California's CCPA, etc.
  • Experience with tools and methodologies for enterprise data management, including performing inventories, coordinating with data owners on data classification and retention requirements, and securing data based on classification and sensitivity.
  • CISA/CISM/CISSP or equivalent certification.
  • Combination of IT and Legal background.

Benefits

  • Health insurance
  • Dental insurance
  • Vision insurance
  • 401k
  • Onsite gym
  • Walking trails
  • Café
  • Free parking
  • Employee activities
  • Summer hours eligibility
  • Product loan and discount programs
  • Scheduled events for employees and their families
  • Fun Days and team-building events
  • Every day is Jeans Day.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service