Text

Principal IT Compliance Analyst, Technical Access and Data Privacy

Product

Principal IT Compliance Analyst, Technical Access and Data Privacy

  • R9511
  • Dublin, County Dublin, Ireland

The Technical Governance, Risk and Compliance (Technical GRC) team enables the growth of Toast as we build secure products and enter new markets, while meeting industry and regulatory requirements. We are seeking a seasoned professional to lead our Data Privacy and Identity and Access Management (IAM) oversight programs, as part of our 2nd line of defense. This role will partner closely with many leaders across the organization, especially within the Compliance, Security, Legal, IT and Engineering Leadership.

The successful candidate will report directly to the Vice President of Technical GRC, who is responsible for maintaining Toast’s Governance, Risk and Compliance programs across the privacy and IT security domains. These programs span the entire organization and result in the successful completion of the following audits and certifications, SOC 1 Type 1 & 2, SOC 2 Type 1 & 2, Payment Card Industry (PCI) Data Security Standard, and SOX IT compliance. This role is responsible for ensuring that Toast has strong governance over access to our systems, and the data that they contain.

About this roll* (Responsibilities) 

  • Be a Privacy and IT Security GRC domain expert in partnership with Compliance, Security, Legal, IT and Engineering Leadership, with a main focus on our data privacy and IAM oversight programs
  • Play a leading role in our Identity and Access Management Governance program, ensuring that Toast consistently adheres to the principle of least privilege without causing unnecessary friction to the business
  • Establish and maintain a governance structure over our IAM processes to ensure effectiveness and efficiency in meeting our internal policy and regulatory compliance, including SOX 404 IT requirements
  • Lead the 2nd line Technical Data Privacy program, owning the related policies, working closely with legal and the 1st line teams as part of the broader Data Governance program
  • Help Toast automate governance and compliance functions to scale visibility into policy compliance and drive technical solutions that enable Toast teams to be compliant in a highly competitive industry
  • Participate in technical design discussions, evaluate security properties of systems and services, drive risk decisions, and influence technical architecture
  • Develop, implement and promote security standards and frameworks
  • Interpret and communicate security and compliance constraints to key stakeholders
  • Monitor changes to applicable security and privacy related laws, regulations and industry standards

Do you have the right ingredients*? (Requirements)

  • 3+ years in a security and or privacy leadership role
  • 7+ years in a security and or privacy focused role in a technology heavy industry
  • Experience maintaining and maturing a data governance program
  • A proven track record of impactful involvement in Identity and Access Management programs
  • A strong understanding of cloud computing architectures and security patterns
  • Ability to drive change in a complex environment with minimal supervision
  • High levels of curiosity, persistence, and a grounded approach to getting things done
  • Experience designing controls and stewarding implementation/maintenance with IT and business owners in alignment with industry privacy and security standards (e.g. NIST 800-53, ISO 27001, GDPR, CCPA/CPRA)
  • Working knowledge of one or more relevant compliance regulations such as PCI DSS, SOX, SSAE18
  • Experience in using automation and data analytics to enable effectiveness and efficiencies in GRC programs

Ideal candidates will have familiarity with some of the technologies we use in our environment

  • AWS and GCP or Azure IAM
  • Terraform, Docker, Java, Kotlin, Python
  • HTTP, JSON, gRPC, and Protocol Buffers
  • PostgreSQL, DynamoDB
  • Event-driven architecture
  • Hex, Looker, Snowflake, Jupyter notebooks
  • Salesforce, ServiceNow
  • Agile software development and change management tools such as GitHub
  • IAM tools such as Okta, Sailpoint

Our Spread* of Total Rewards
We strive to provide competitive compensation and benefits programs that help to attract, retain, and motivate the best and brightest people in our industry. Our total rewards package goes beyond great earnings potential and provides the means to a healthy lifestyle with the flexibility to meet Toasters’ changing needs. Learn more about our benefits at https://careers.toasttab.com/toast-benefits.

*Bread puns encouraged but not required



 

We are Toasters

Diversity, Equity, and Inclusion is Baked into our Recipe for Success.

At Toast our employees are our secret ingredient. When they are powered to succeed, Toast succeeds.

The restaurant industry is one of the most diverse industries. We embrace and are excited by this diversity, believing that only through authenticity, inclusivity, high standards of respect and trust, and leading with humility will we be able to achieve our goals.

Baking inclusive principles into our company and diversity into our design provides equitable opportunities for all and enhances our ability to be first in class in all aspects of our industry.

Bready* to make a change? Apply today!

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com.

Bready* for a change?

Apply now

Other recommended rolls* 

Manager, IT Systems

Chennai, Tamil Nadu, India R9619 Chennai Tamil Nadu India Chennai, Tamil Nadu, India Enterprise Tech G & A : IT Operations
Toast is driven by building the restaurant platform that helps restaurants adapt, take control, and get back to what they do best: building the businesses they love. Now, more than ever, the Toast team is committed to our customers. We’re taking ...

Principal Product Manager for Customer Identity & Security

Dublin, Ireland R9591 Dublin County Dublin Ireland Dublin, County Dublin, Ireland Product R & D : Product : Platform
Toast is driven by building the restaurant platform that helps restaurants adapt, take control, and get back to what they do best: building the businesses they love. Toast’s Foundation Product Team is looking for an experienced Technical Product ...

Payments Compliance Lead, International

G & A London, England, United Kingdom R9126 Dublin County Dublin Ireland Dublin, County Dublin, Ireland Finance G & A : International
Toast is driven by building the all-in-one restaurant platform that helps restaurants operate their business, increase sales, engage guests, and keep employees happy. The Toast Enterprise Risk and Compliance Management Program provides a coordina...

Apply now

Not You?

Thank you

Notice on fraudulent jobs

We have been made aware of instances of fraudulent job postings and/or fraudulent recruiting activity by bad actors, purporting to represent Toast.  These fraudulent schemes often seek monetary contributions or payments from job seekers (such as for "start up costs" or "equipment"), or seek to collect sensitive personal or banking information from job seekers.  These job postings and offers are not authorized by Toast, and Toast is not responsible for fraudulent offers or requests for personal information or payments.  Toast will never ask for any financial commitment or contribution from a candidate at any stage of the recruitment process.  Candidates who have questions about the validity of Toast job postings or offers should consult the job postings on our careers.toasttab.com career site. If you think you've been scammed, reference this site for more info.

Check out other rolls*