Rivian · 3 hours ago
Sr. Cybersecurity Analyst, Compliance
Rivian is on a mission to keep the world adventurous forever, focusing on emissions-free Electric Adventure Vehicles. The Senior Cybersecurity Analyst (Compliance) will assist in achieving and maintaining global certifications while developing governance documents related to cybersecurity compliance.
AutomotiveElectric VehicleManufacturingTransportation
Responsibilities
Serve as a subject matter expert for compliance initiatives with a specific focus of ISO 27001, TISAX, PCI, and HIPAA compliance as it pertains to information security. Understands the practical application of NIST CSF
Assist in performing detailed assessments with a focus on risk information, including self-assessments and working with external auditors covering Rivian’s information security system and cybersecurity program maturity
Assist Rivian in achieving and maintaining global and industry-specific certifications
Lead the development and maintenance of Rivian cyber-related governance documents (i.e., cyber/IT policies, standards, forms)
Lead the correction actions stemming from compliance audits and assessments
Assist in tracking and remediating risk-related issues
Maintain the exception process, including centralization and tracking of policy exceptions and deviations from standards
Demonstrate the appropriate level of ownership for assigned responsibilities; proactively identify, escalate, and resolve impactful risks and issues.Develop, report and track key actionable metrics, milestones, goals, and learnings for improvement
Integrate the use of approved AI platforms into responsibilities, as appropriate
Provide input into longer-term planning activities at vertical and domain level, work cross-functionally with diverse stakeholders
Execute a comprehensive compliance strategy aligned with cybersecurity objectives and industry best practices; identify gaps and ensure compliance with standards across the enterprise
Develop key risk indicators (KRIs) to drive compliance and deliver on overall program performance
Model best-in-class project management practices to manage multiple initiatives occurring simultaneously
Provide valuable delivery insights derived from multiple sources and communicate metrics which teams can use to drive continuous improvement
Communicate expectations and carefully track progress to ensure standards are met at a systematic level; follows up to keep work on track
Stay updated on industry trends and best practices in risk and controls and proactively recommend improvements to the Cybersecurity Risk Management Program
Demonstrate influence; make a compelling case for change and obtain early stakeholder buy-in
Seek to understand different perspectives to resolve conflict
Qualification
Required
5 years in cybersecurity compliance, including hands-on experience with analytics, tracking, and reporting
BA/BS degree in Information Systems, or related field, or equivalent experience required
Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Systems Controls (CRISC), or Project Management Professional (PMP)
Understanding of Information Security, Cybersecurity Operations, related technologies, and various Standards and Guidelines (NIST CSF, ISO 27001)
Strong business acumen, technical and consulting capabilities, and project/change management skills used to contribute to development of strategic plan for aligned discipline
Critical thinking and creative problem-solving skills
Excellent verbal and written communication skills and attention to detail
Able to triage multiple initiatives to address the right problems at the right time
Strong judgment in executing deliverables and working with stakeholders
Excellent interpersonal and team building skills
Able to plan, communicate, and execute planning individually and with a team
Level of comfort speaking technically and non-technically, as appropriate
Able to work effectively and successfully in a fast-paced environment
Proficiency in the Google Suite, PowerBI, or other metrics and/or database/reporting/tracking tools, and project management software and tools
Preferred
PCI-DSS and TISAX experience is desirable
Benefits
Rivian provides robust medical/Rx, dental and vision insurance packages for full-time employees, their spouse or domestic partner, and children up to age 26. Coverage is effective on the first day of employment, and Rivian covers most of the premiums.
Company
Rivian
Rivian is an automotive technology company that develops products and services to advance the shift to sustainable mobility.
H1B Sponsorship
Rivian has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (38)
2024 (70)
2023 (54)
2022 (79)
2021 (21)
Funding
Current Stage
Public CompanyTotal Funding
$21.93BKey Investors
Volkswagen GroupUS Department of EnergyIllinois Department of Commerce & Economic Opportunity
2025-06-30Post Ipo Equity· $1B
2024-11-25Post Ipo Debt· $6.6B
2024-05-02Grant· $827M
Recent News
The Motley Fool
2026-01-11
Business Insider
2026-01-08
2026-01-07
Company data provided by crunchbase