Regulatory Compliance Consultant ensuring information protection and security standards for Aflac. Collaborating with teams on compliance with legal, regulatory, and industry practices.
Responsibilities
Evaluate the impact of security and information protection legal and regulatory requirements affecting Aflac and maintain documented assessments/remediation tracking
Assist with operationalizing security and information protection legal and regulatory requirements affecting Aflac by providing guidance on the creation and revision of security practices that include cybersecurity best practices and compliance with all applicable regulations and other frameworks, such as: NYDFS, GLBA, HIPAA, PCI, SEC, CCPA, GDPR, FSA, SOX, NIST, etc.
Remain current with security and information protection legislation, standards, best practices, and industry trends affecting Aflac business practices and customer expectations
Proactively collaborate with the business, technology, and functional teams to communicate new or changing regulations that affect cybersecurity requirements
Support Global Security leadership with changes to security and information protection legal and regulatory requirements by documenting feedback during comment periods
Assist with the maintenance of processes, KRIs and metric reporting, tools, and systems leveraged to identify, assess, measure, and monitor technology regulatory compliance and cybersecurity risk across Aflac
Maintain and improve the Governance and Compliance team’s metrics showing compliance effectiveness, exception remediation progress, risk trends, and audit findings
Provide guidance to key stakeholders as needed regarding documentation, evidence, and other supporting material that should be maintained to demonstrate that processes are designed and operating effectively
Produce presentations, reporting, and other content that will be used to communicate with leadership and other key stakeholders (e.g., employees, producers) about legal/regulatory updates, annual attestation results, and other changes affecting the organization's Information security posture
Performs other duties as required
Requirements
Excellent verbal and written communication skills with the ability to understand and communicate complex information security, risk management, and legal/regulatory compliance concepts
Experience applying and assessing industry-recognized security standards and regulatory frameworks for areas such as Information Security, Physical Security, Business Continuity, Disaster Recovery, Crisis Management, and IT (e.g., Asset Management, Configuration Management, Vulnerability Patching)
Technology Risk Management concepts and control
Managing to legal/regulatory requirements for protecting information assets
Global technology organizational concepts
Principles and methods of all information security disciplines
Knowledge of and in-depth experience in the ability to apply state, federal, and international information security and information protection laws and regulations such as, but not limited to: NYDFS, GLBA, HIPAA, SEC, GDPR, CCPA, FSA, and financial integrity under Sarbanes-Oxley, etc.
Knowledge of and in-depth experience in the ability to apply industry-recognized security standards such as NIST, PCI, etc.
Knowledge of cloud computing technologies and security best practices
Encompasses professional maturity to work independently and work collaboratively in teams
Strong multi-tasking and time management capability
Detail oriented, structured and organized
Benefits
medical, dental, and vision coverage
prescription drug coverage
health care flexible spending
dependent care flexible spending
Aflac supplemental policies (Accident, Cancer, Critical Illness and Hospital Indemnity offered at no costs to employee)
401(k) plans
annual bonuses
opportunity to purchase company stock
11 paid holidays
up to 20 days PTO to be used for any reason
state-mandated sick leave (Washington employees accrue 1-hour sick leave for every 40 hours worked)
Compliance Engineer leading vehicle emissions certification and collaborating with cross - functional teams at General Motors. Delivering presentations and project management with engineering methods.
Senior Compliance Technologist coordinating compliance across food safety and quality standards at Premier Foods. Leading the HACCP team and improving practices for food safety compliance.
Senior Regulatory Specialist managing CMC renewals for Pharma and Vaccines. Collaborating across global teams to ensure compliance with regulatory requirements in pharmaceutical industry.
Senior HSE Management System & Compliance Specialist role at TechnipFMC, implementing and improving HSE management systems, ensuring compliance with industry standards and regulations.
Senior Manager of Compliance and Privacy responsible for compliance program and policies at Aeroflow Health. Leading efforts in regulatory compliance and enhancement of privacy practices.
Regulatory Consultant managing the review of applications and issuance of licenses for alcoholic beverages and tobacco in Florida. Ensuring compliance and assisting businesses with licensing laws.
OPS Regulatory Specialist reviewing applications for licenses and permits at Florida Division of Alcoholic Beverages and Tobacco. Ensuring compliance and providing guidance regarding licensure requirements.
Compliance Manager at Mesh responsible for global licensing strategy in fintech regulations. Leading compliance infrastructure to support growth and regulatory relationships in multiple jurisdictions.
Compliance Analyst responsible for Digital Privacy and Compliance activities at HARMAN. Collaborating on internal and external audits while managing policies and procedures related to security and compliance.