Associate Cybersecurity Analyst - Bilingual
Job Description
The Associate Cybersecurity Analyst will help support cybersecurity policy governance and regulatory compliance activities across multiple international authorities at GM Financial. This entry-level to early-career role is based in Arlington, TX with a hybrid work arrangement and requires professional fluency in English and Spanish to support global monitoring and stakeholder collaboration.
Responsibilities
- Support cybersecurity policy governance activities to help maintain alignment with regulatory requirements, legal obligations, organizational objectives, and industry frameworks.
- Assist with the policy lifecycle, including development, review, approval, publication, communication, implementation, and periodic recertification.
- Coordinate policy reviews and stakeholder engagement across Cybersecurity, Legal, Compliance, Privacy, Risk Management, Technology, and business teams.
- Maintain policy governance documentation, repositories, implementation trackers, compliance evidence, milestones, action items, and remediation activities.
- Participate in governance meetings, working groups, and review sessions; document outcomes, track follow-up actions, and support implementation efforts.
- Prepare policy governance metrics, compliance summaries, management reports, and other governance-related communications.
- Provide guidance on policy requirements and implementation expectations to support organizational compliance.
- Research, monitor, and analyze cybersecurity regulations, regulatory guidance, compliance requirements, and industry standards.
- Assist with translating regulatory requirements into cybersecurity policies, standards, procedures, controls, and implementation plans.
- Support regulatory impact assessments, gap analyses, compliance initiatives, and remediation activities across applicable regulatory authorities.
- Coordinate stakeholder engagement, evidence collection, and implementation activities related to regulatory compliance efforts.
- Track regulatory implementation progress, including risks, dependencies, issues, corrective actions, and compliance outcomes.
- Prepare regulatory updates, executive summaries, compliance metrics, and implementation status reports for leadership and stakeholders.
- Partner with Legal, Compliance, Privacy, Risk Management, Technology, and business teams to support regulatory interpretation and implementation.
- Identify opportunities to improve regulatory monitoring, reporting, and compliance processes through standardization, automation, and operational efficiencies.
Requirements
- Professional fluency in English and Spanish (written and verbal).
- Foundational knowledge of cybersecurity governance principles, regulatory compliance, and information security frameworks.
- Sound analytical, organizational, communication, and documentation skills.
- Ability to prioritize multiple assignments and collaborate effectively with cross-functional teams.
- Proficiency with Microsoft Office applications, including Word, Excel, PowerPoint, and Teams.
- High-level understanding of the financial services industry, including security, risk, and privacy.
- Current knowledge of, and ability to stay up to date on, cybersecurity legislation, regulations, advisories, alerts, and vulnerabilities.
- Knowledge of information security and cybersecurity frameworks.
- Knowledge of security methodologies, policies, standards, and industry practices.
- Knowledge of information technology systems, infrastructure, and operations.
- Understanding of cloud technologies and concepts.
- Familiarity with DevOps and Agile development processes.
- Ability to initiate, facilitate, and promote cybersecurity within the organization and monitor adherence to cybersecurity policies, standards, and controls.
- Ability to clearly explain and articulate technical concepts using non-technical language.
- Familiarity with cybersecurity frameworks and standards, including NIST Cybersecurity Framework (CSF), NIST SP 800-53, NIST SP 800-171, and ISO 27001 (preferred).
- Exposure to policy management platforms, workflow tools, or regulatory tracking solutions (preferred).
- Ability to use AI tools (for example, Microsoft Copilot) to support daily work.
- Skills in evaluating AI outputs for accuracy, compliance, and bias.
- Experience integrating AI into workflows to improve efficiency or insights.
- Familiarity with AI-assisted research, summarization, and content generation.
- Understanding of responsible AI use, including ethics and data protection.
- High School Diploma or equivalent required.
Technologies
- English, Spanish
- Microsoft Office (Word, Excel, PowerPoint, Teams)
- NIST Cybersecurity Framework (CSF), NIST SP 800-53, NIST SP 800-171
- ISO 27001
- Microsoft Copilot and AI tools
- Cloud technologies
- DevOps, Agile
Education and Experience
- 0-2 years of experience in large and complex business environments with a successful track record working directly with senior level management.
- Working knowledge in one or more domains including: Access Control, Telecom and Network Security, Cybersecurity Governance, Risk Management, Software Development Security, Cryptography, Security Architecture and Design, Operational Security, Business Continuity & Disaster Recovery, Legal Regulations, Investigations and Compliance, Physical.
- 0-2 years of experience in the financial services industry (preferred).
- 0-2 years of demonstrable experience leading collaborative programs and projects with senior level management (required).
- Bachelor’s Degree or equivalent experience (strongly preferred).
- High School Diploma or equivalent required.
Benefits
- 401K matching
- Bonding leave for new parents (12 weeks, 100% paid)
- Tuition assistance
- Training
- GM employee auto discount
- Community service pay
- Nine company holidays
- Competitive pay and bonus eligibility
Work Location and Schedule
- Arlington, TX
- Hybrid work environment with 4 days per week in office
Additional Notes
Candidates who require visa sponsorship for this position cannot be considered.