Logo
T-Mobile

Principal Analyst, Cybersecurity

T-Mobile, Bellevue, WA


At T-Mobile, we invest in YOU!  Our Total Rewards Package ensures that employees get the same big love we give our customers.  All team members receive a competitive base salary and compensation package - this is Total Rewards. Employees enjoy multiple wealth-building opportunities through our annual stock grant, employee stock purchase plan, 401(k), and access to free, year-round money coaches. That’s how we’re UNSTOPPABLE for our employees!Job Overview:Be unstoppable with us!T-Mobile is synonymous with innovation–and you could be part of the team that disrupted an entire industry! We reinvented customer service, brought real 5G to the nation, and now we’re shaping the future of technology in wireless and beyond. Our work is as exciting as it is rewarding, so consider the career opportunity below as your invitation to grow with us, make big things happen with us, above all, #BEYOU with us. Together, we won’t stopCome make a difference in the world of Wireless Security as our next Principal Analyst, Cybersecurity Policy & Compliance! As a member of the Cybersecurity Policy and Compliance team, you have the unique opportunity to have direct and measurable impact on T-Mobile’s compliance with regulatory, contractual requirements, and security cyber policies. You will leverage industry standards and best practices to establish guidelines for T-Mobile’s compliance to various regulations and audits such as: PCI-DSS, CPNI, Cybersecurity Maturity Model Certification (CMMC), NIST 800-171 and various other commercial, federal, state, and local government contractual obligations.You will partner and collaborate with other technical groups, rapidly learn their business, understand their risk appetite, control areas, complete robust analyses, and recommend meaningful changes in helping establish cybersecurity controls to mitigate the risk and demonstrate compliance. This role requires the ability to work across functionally with IT, business, risk, and compliance teams, utilizing analytical skills in dissecting moderately complex technical problems and delivering clear recommendations to take compliance to next level. Lead the development and implementation of cybersecurity operational process flows, with a focus on internal controls and compliance to different rules and regulations. Work with the senior leadership to ensure risk and compliance initiatives are implemented, reviewed, maintained, and governed. Promote and drive compliance maturity across for cybersecurity compliance. Responsible for leading and driving compliance initiatives including process improvement and automation, defining the accreditation boundary, control development, effectiveness testing, and audit management. You will identify and direct complex remediation activities, prepare reports, recommend and drive compliance strategy, and process changes. Build strong working relationships and partnerships within own organization and across technology and business teams at all levels of management; effectively communicate the status, risks, and issues associated with the compliance program to management.Job Responsibilities:Use expert knowledge of processes and systems to support project intake with estimates of impact, high level scope analysis and solution design.Proactively find opportunities for improving enterprise processes end to end, work with business leaders to prioritize business opportunities.Anticipate and champion needed communication to team, key customers and partners. Call out issues timely, objectively and with sensitivity to team dynamics. Demonstrate concise verbal and written communication that is targeted and appropriate to the needs of the audience.Provide security consultation on designs and/or implementation of security controls ensuring alignment to T-Mobile security standards, best practices and/or regulatory controls.Research, conceptualize, develop, and promote alignment to improved team and cross functional processes, standards, tools and methods.Lead security projects driven by groups both internal and external to info security.Mentor analysts, senior analysts and across teams in enterprise solution design, SDLC, facilitation and effective customer interaction.Also responsible for other Duties/Projects as assigned by business management as needed.Qualifications:Education:Bachelor's Degree, Computer Science, or Information Technology. Relevant experience might be considered in lieu of degree.Experience:Required:More than 10 years’ total experience with growing responsibility with security related software and/or business process design.4-7 years’ experience with the following: project/team lead, formal implementation SDLC, facilitation of cross functional solution design.Accounting competence a plus.Experience with high level design architecture, firewall, internet, LAN router, network, protocols, web services and understanding of encryption, obfuscation, tokenization technologies, knowledge of federal & compliance regulations.Process modeling experience preferredHighly DesiredExperience with IT governance, compliance, risk, and audit programsExperience with establishing & implementing process guidelines for compliance programs.Previous experience with CMMC, NIST 800-171, PCI, Consent decree compliance or similar compliance activities.Previous audit experience, preferably with a sophisticated Fortune 500 or Big Four firm, which includes (e.g., SOX 404 evaluation and testing, PCI) and other reviews (e.g. ISO 27001, SSAE16, SOC1/2)Direct participation and experience across common industry security policy areas, including, but not limited to ISO, NIST, COBIT, PCI etc.Strong familiarity with information security, risk management, and IT governance standards and frameworks (e.g., NIST 800-53, ISO 27000, ISO 31000, etc.)Experience managing internal and/or external regulatory related audits and assessments.IT security control development, control testing, risk remediation, and reporting experience.Experience with project management (planning, organizing, and managing resources to bring about the successful completion of specific project goals and objectives)Ability to read, identify and interpret policies, regulations, and contract security requirements.Knowledge, Skills, and Abilities:Required:Leadership skillsCommunication and Analytics skillsSecurity and Problem SolvingPreferred:Accounting, Project Management, Design, Technology and Regulatory ComplianceLicense/Certification:Certified Information Systems Auditor (CISA)Certified Information Security Manager (CISM)Certified Information Systems Security Professional (CISSP)• At least 18 years of age• Legally authorized to work in the United StatesTravel:Travel Required (Yes/No):YesDOT Regulated:DOT Regulated Position (Yes/No):NoSafety Sensitive Position (Yes/No):NoBase Pay Range: $110,800 - $200,000Corporate Bonus Target: 20%The pay range above is the general base pay range for a successful candidate in the role. The successful candidate’s actual pay will be based on various factors, such as work location, qualifications, and experience, so the actual starting pay will vary within this range.At T-Mobile, employees in regular, non-temporary roles are eligible for an annual bonus or periodic sales incentive or bonus, based on their role. Most Corporate employees are eligible for a year-end bonus based on company and/or individual performance and which is set at a percentage of the employee’s eligible earnings in the prior year. Certain positions in Customer Care are eligible for monthly bonuses based on individual and/or team performance. To find the pay range for this role based on hiring location, https://paylookup.t-mobile.com/paylookup?reqID=REQ296641¶dox=1At T-Mobile, our benefits exemplify the spirit of One Team, Together! A big part of how we care for one another is working to ensure our benefits evolve to meet the needs of our team members. Full and part-time employees have access to the same benefits when eligible. We cover all of the bases, offering medical, dental and vision insurance, a flexible spending account, 401(k), employee stock grants, employee stock purchase plan, paid time off and up to 12 paid holidays - which total about 4 weeks for new full-time employees and about 2.5 weeks for new part-time employees annually - paid parental and family leave, family building benefits, back-up care, enhanced family support, childcare subsidy, tuition assistance, college coaching, short- and long-term disability, voluntary AD&D coverage, voluntary accident coverage, voluntary life insurance, voluntary disability insurance, and voluntary long-term care insurance. We don't stop there - eligible employees can also receive mobile service & home internet discounts, pet insurance, and access to commuter and transit programs! To learn about T-Mobile’s amazing benefits, check out .Never stop growing!As part of the T-Mobile team, you know the Un-carrier doesn’t have a corporate ladder–it’s more like a jungle gym of possibilities! We love helping our employees grow in their careers, because it’s that shared drive to aim high that drives our business and our culture forward. By applying for this career opportunity, you’re living our values while investing in your career growth–and we applaud it. You’re unstoppable!T-Mobile USA, Inc. is an Equal Opportunity Employer. All decisions concerning the employment relationship will be made without regard to age, race, ethnicity, color, religion, creed, sex, sexual orientation, gender identity or expression, national origin, religious affiliation, marital status, citizenship status, veteran status, the presence of any physical or mental disability, or any other status or characteristic protected by federal, state, or local law. Discrimination, retaliation or harassment based upon any of these factors is wholly inconsistent with how we do business and will not be tolerated.Talent comes in all forms at the Un-carrier. If you are an individual with a disability and need reasonable accommodation at any point in the application or interview process, please let us know by emailing ApplicantAccommodation@t-mobile.com or calling 1-844-873-9500. Please note, this contact channel is not a means to apply for or inquire about a position and we are unable to respond to non-accommodation related requests.SummaryLocation: Bellevue, WashingtonType: Full time