Jobs and Careers
WM

Analyst, Digital Security

WM
United Statesfull_timeVerifiedPosted 17 Apr 2025
💰 $129,800/yr($88,515/yr$129,800/yr)

About the role

WM is an equal opportunity employer.  All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, gender identity, national origin, age, disability, status as a protected veteran or any other characteristic protected under applicable federal, state, or local law.


WM, a Fortune 250 company, is the leading provider of comprehensive waste and environmental services in North America. We are strongly committed to a foundation of operating excellence, professionalism and financial strength. WM serves nearly 25 million customers in residential, commercial, industrial and municipal markets throughout North America through a network of collection operations, transfer stations, landfills, recycling facilities and waste-based energy production projects. 

I. Job Summary 
Play a key role in supporting the development, implementation, and maintenance of governance, risk, and compliance frameworks across the IT landscape. The Digital/IT Compliance Analyst will report to the Digital/IT Compliance Manager and work closely with cross-functional teams to ensure IT operations align with both internal policies and external regulatory requirements, while proactively identifying risks and implementing mitigation strategies. Play a key role in supporting the development, implementation, and maintenance of governance, risk, and compliance frameworks across the IT landscape. The Digital/IT Compliance Analyst will report to the Digital/IT Compliance Manager and work closely with cross-functional teams to ensure IT operations align with both internal policies and external regulatory requirements, while proactively identifying risks and implementing mitigation strategies.

II. Duties and Responsibilities include the following: 
To perform this job successfully, an individual must be able to perform each duty satisfactorily. Other ancillary duties may be assigned. 

Engage Across the Business: Partner with IT and business teams to identify and centrally manage emerging and existing risks associated with IT application security, identity and access management, configuration and data governance and overall enterprise policy adherence Evolve Our Capabilities: Leverage leading practice GRC Compliance tools (such as OneTrust, Sailpoint, Oracle Risk Cloud, Monday.com, AuditBoard, and SAP GRC) to enable effective and sustainable risk prevention or risk mitigation compliance strategies Lead the business adoption and maintenance of GRC Compliance tools and analytics to monitor and report on compliance with IT security policies, regulatory requirements, and industry standards. Empower Our People: Provide training and awareness programs on IT security, risk management, and compliance topics for employees across the organization and build a culture of proactive compliance maturity.  Support internal and external audits by providing necessary documentation and evidence of compliance with relevant laws and regulations (e.g., SOX,  PCI DSS, ERCOT, PII, CCPA, EPA etc.). Enable Business Strategies: Stay up-to-date on changes in regulations, best practices, and emerging technologies that could impact the organization's IT governance and compliance posture.

 

 

III. Qualifications 

Must live and work in the U.S.

A. Education and Experience 

  • Required: Bachelor's Degree in Computer Science, MIS, Business Administration or similar area of study. Three (3) years of previous experience required. An additional four (4) years of related experience may substitute for the Bachelor's degree.
  • Preferred: Bachelor's Degree and at least three (3) years of experience in network, host, data and/or application security in multiple operating system environments.

B. Certificates, Licenses, Registrations or Other Requirements 

  • None required.
  • Preferred: Other professional certifications desired include: CISSP, CISA

C. Other Knowledge, Skills or Abilities Required

Experience in IT compliance with responsibilities involving interpretation of regulatory requirements (e.g. SOX,  PCI DSS, ERCOT, PII, CCPA, EPA etc.). and demonstrated success in translating them into actionable and sustainable compliance strategies. Familiarity with common IT governance and risk management frameworks (e.g., COBIT, NIST, ISO 27001/27002, ITIL). Big 4 Consulting Experience and Professional certifications (e.g., CISSP, CCSP, CISM, CISA, CPA, CRISC, CC ISO 27001 Lead Implementer) are a plus. Technical understanding of Oracle ERP systems, Processes, Configurations, & System Functionality Familiarity with Best Practice Oracle Application Security Role Design Concepts Experience with Segregation of Duties and Sensitive Access Rulesets, and ER

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

WM

View company profile →