Sr. Information Security Compliance Analyst
Warner Bros. DiscoveryAbout the role
Welcome to Warner Bros. Discovery… the stuff dreams are made of.
Who We Are…
When we say, “the stuff dreams are made of,” we’re not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD’s vast portfolio of iconic content and beloved brands, are the storytellers bringing our characters to life, the creators bringing them to your living rooms and the dreamers creating what’s next…
From brilliant creatives, to technology trailblazers, across the globe, WBD offers career defining opportunities, thoughtfully curated benefits, and the tools to explore and grow into your best selves. Here you are supported, here you are celebrated, here you can thrive.
*Must work a hybrid model (3 days onsite) out of our Atlanta office.*
The Job
Warner Bros. is looking for a skilled Senior Analyst, Information Security Compliance who will join the Global Information and Content Security team that supports the organization globally across all US and international brands and divisions. As part of the GICS team, you will lead and support PCI audits globally and will collaborate with key business units and stakeholders to ensure security and compliance with Payment Card Industry (PCI) requirements and other cybersecurity regulatory and policy requirements. The ideal candidate will have experience as a PCI Qualified Security Assessor (QSA) with experience across multiple compliance domains in audit process/procedure, risk analysis and mitigation, control testing, and continuous improvement initiatives. The candidate will have experience completing PCI 4.0 assessment types including but not limited to SAQ-A, ROC, SAQ-D, SAQ B-IP, and SAQ P2PE, as well as experience remediating vulnerabilities related to PCI ASV scanning processes. We support critical brands such as DC Universe, Harry Potter, Warner Bros Studio Hollywood Tours, Adult Swim, Cartoon Network, Discovery+, Max, TNT Sports, Golf Digest, Food Network, NCAA, etc. The WBD PCI program is inclusive of different types of environments collecting payments such as ecommerce systems including retail, ticketing, DTC Subscriptions, PPV Sports, donations & partner payments, mobile in app purchases, and vendor invoicing, and physical locations such as call centers, museums, retail physical stores, physical tours, pop up shops, and virtual reality experiences.
We cultivate a security culture across all teams and disciplines, providing policy, standards, guidance, and awareness training to everyone. We work closely with departments across the company to understand their workflows and help ensure they are following the best security practices. We partner with technology stakeholders to assess our posture, build controls, and mitigate security risks.
This team concentrates on validating that critical processes and controls are functioning end-to-end, identifying risk areas and control mitigation, as well as participating in projects to understand and determine potential impact to regulatory compliance components. You will identify areas of improvement and non-compliance which may lead to process changes and/or new controls. The Information Security Compliance Senior Analyst will drive various initiatives to completion and assist in managing and developing an effective Compliance Program. You will be accountable for a variety of functions centered on effective implementation of all the elements of a compliance program (project): compliance with applicable laws, rules, and regulations, internal policies, and procedures, and accepted business practices.
Cybersecurity Compliance and Assessments
- Lead and support PCI assessments.
- Communicate status of security compliance efforts to executive leadership and management across technology disciplines.
- Keep current with the latest security technology advances and evolving compliance requirements and propose innovations that may benefit the business.
- Maintain detailed project plans and tasks lists to ensure you meet major milestone and critical due dates.
- Assist in information security assessments, audits, risk mitigation, and remediation.
- Track status of implementing remediation plans for control deficiencies, regulatory and policy gaps and make recommendations for process efficiencies.
- Drive process improvements and control implementation across business functions, including resolution of assessment findings and independent initiatives.
- Effectively communicate and build rapport with various partners and teams globally.
- Lead targeted compliance assessments, audits, and reviews, communicating results and recommendations in clear and concise written reports; and collaborate with management to ens
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s