PepsiCo

Cybersecurity Policy and Regulatory Compliance Associate Principal

PepsiCo$93K — $156K *
Plano, TX 75025In-Person
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in cybersecurity policy and regulatory compliance
  • Expertise in infrastructure technologies and cybersecurity solutions
  • Strong knowledge of NIST, CIS, ISO 27001, and industry frameworks
  • Exceptional communication skills for stakeholder engagement
  • Proficiency in ServiceNow IRM and Microsoft Office Suite
  • Strong analytical skills for assessing compliance and risk

Responsibilities

  • Manage PepsiCo Cybersecurity Policy and Standards lifecycle
  • Evaluate cybersecurity regulations for alignment with organizational policies
  • Lead regulatory assessments to ensure compliance with cybersecurity requirements
  • Collaborate with teams to communicate changes in standards and regulations
  • Develop metrics for identifying risks within cybersecurity standards
  • Consult on security solution design prioritizing global regulatory needs

Benefits

  • Comprehensive medical, dental, and vision plans
  • Paid time off including parental, vacation, and sick leave
  • Employee Assistance Program (EAP) access
  • Defined Contribution Retirement Plan
  • Annual bonus based on performance eligibility
Full Job Description
Overview

The Cybersecurity Policy and Regulatory Compliance Associate Principal will be responsible for the management of the PepsiCo Global Cybersecurity Policy and Standards, including the proactive evaluation of the standards against industry trends, regulatory requirements, and the evolving risk landscape. The role will facilitate the annual review cycle and overall change management of policy and standards. They will be responsible for facilitating the review of change requests from PepsiCo associates, gaining alignment from stakeholders, updating the standards, and managing the review workflow to publishing. They will partner with legal and other relevant teams to review new and changing regulations and perform gap analysis against the current standards, proposing and presenting recommended changes. They will manage the end-to-end policy and standards lifecycle in ServiceNow.

In addition to managing the policy and standards life cycle, the role will include cybersecurity regulatory consulting and compliance to ensure adherence to relevant cybersecurity requirements. They will partner with global cybersecurity, business, and S&T teams to advance the knowledge of security requirements and the use of cybersecurity processes and capabilities. They will lead periodic regulatory engagements to test and report on the compliance of cybersecurity controls.

Responsibilities

  • Manage end-to-end PepsiCo Cybersecurity Policies and Standards lifecycle
  • Maintain in-depth and up-to-date knowledge of industry cybersecurity trends, policy/control frameworks and regulations; especially the NIST Cybersecurity Framework, CIS, ISO 27001 and other industry frameworks
  • Maintain extensive knowledge of PepsiCo Cybersecurity Policy and Standards, including the global applicability and limitations of the standards
  • Monitor the external global regulatory landscape for emerging, new or changing cybersecurity regulations that may impact PepsiCo
  • Evaluate cybersecurity regulations against PepsICo policies, processes and controls to determine the impact of regulatory changes
  • Lead various periodic cybersecurity regulatory assessments and engagements to determine PepsiCo compliance with cybersecurity regulatory requirements.
  • Collaborate with Cybersecurity and IT Controls team to ensure updates to standards and regulatory requirements are reflected in updated controls
  • Proactively identify and recommend necessary changes to the security policy and standards
  • Coordinate with Cybersecurity teams, including Business Information Security Officers, Policy and Standards and others to establish an operating model communicating to/from local teams impacted by new and emerging regulations
  • Consult in the design of security solutions, processes, or policies to ensure global regulations are prioritized in the development of requirements
  • Develop/Maintain metrics on standards to allow for the identification of risks
  • Partner with the Security Exceptions team to identify exception patterns and recommend adjustments to standards as needed to create efficiencies within the process
  • Collaborate and align with Cybersecurity and IT teams on changes and additions to standards
  • Communicate with PepsiCo Leadership on the interpretation and application of the policies or standards
  • Manage workflow in ServiceNow for annual and out-of-cycle review and changes
  • Work with the ServiceNow development team to identify opportunities for process/tool improvement
  • Provide subject matter expertise on the application of PepsiCo Policy and Standards with IT processes

Compensation and Benefits:
  • The expected compensation range for this position is between $93,500 - $156,450.
  • Location, confirmed job-related skills, experience, and education will be considered in setting actual starting salary. Your recruiter can share more about the specific salary range during the hiring process.
  • Bonus based on performance and eligibility target payout is 10% of annual salary paid out annually.
  • Paid time off subject to eligibility, including paid parental leave, vacation, sick, and bereavement.
  • In addition to salary, PepsiCo offers a comprehensive benefits package to support our employees and their families, subject to elections and eligibility: Medical, Dental, Vision, Disability, Health, and Dependent Care Reimbursement Accounts, Employee Assistance Program (EAP), Insurance (Accident, Group Legal, Life), Defined Contribution Retirement Plan.


Qualifications

  • Technical and business expertise to drive Cybersecurity requirement
  • In-depth technical experience and knowledge of infrastructure technologies, network, web, computing, cloud services, manufacturing equipment, mobile devices, and information (cyber) security, allowing this role to provide technical leadership and coaching to other members of the organization
  • Strong understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business, allowing them to meet their strategic objectives
  • Strong verbal and written communication skills that positively impact relationships with key business and third-party stakeholders, and proactively influence the actions taken by these stakeholders
  • Comprehensive technical and functional understanding of various Cybersecurity solutions, technologies and industry-leading practices, allowing this role to provide recommendations and support key decisions.
  • Proficient in ServiceNow IRM, Microsoft Excel, Word, and PowerPoint skills to develop ad hoc reports to manage the reports and the metrics.
  • Knowledgeable of Security controls and requirements for broad IT system types (e.g., Cloud, Database, Network, etc.)
  • Independent thinker and strong self-motivator, with the ability to collaborate with virtual teams and influence decision-making
  • Strong understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business, allowing them to meet their strategic objectives.
  • Strong verbal and written communication skills that positively impact relationships with key business and third-party stakeholders, and proactively influence the actions taken by these stakeholders.
  • Excellent prioritization capabilities, with an aptitude for breaking down complex work into manageable parts, effectively assessing the priority and time required to complete each part
  • An ability to work on several tasks simultaneously
  • Strong decision-making capabilities, with a proven ability and common sense to weigh the relative costs and benefits of potential actions and identify the most appropriate one
  • Strong ability to effectively influence others and lead peers and superiors to modify their opinions, plans, or behaviors, with an emphasis on collaborating across multiple teams and ensuring program needs are satisfied through interpersonal and trusted communication
  • Effective ability to identify and assess the severity and potential impact of risks, and communicate risk assessment findings to risk owners outside Cybersecurity. Communication should consistently drive objectives, relying on fact-based decisions about risk that optimize the trade-off between risk mitigation and business performance.


>

About PepsiCo

PepsiCo Careers

Joining PepsiCo's global team offers more than just a chance to excel in your career; it's an opportunity to be part of a dynamic and diverse environment where innovation thrives. Work You’ll Do At PepsiCo, we are committed to producing great leaders and fostering a culture of innovation. Our team is dedicated to empowering professionals to master their career paths with PepsiCo. As a leader in the food and beverage industry, we offer unique job opportunities that intersect with cutting-edge technology and market leadership. Lead with Unique Opportunities PepsiCo stands at the forefront of the industry, not only in terms of product quality but also in our approach to leadership and professional growth. We offer a variety of employment paths, including full-time positions, internships, and leadership training programs that are designed to foster diversity and accelerate career development. Work with a Global Team Collaborate with over 260,000 employees worldwide who are united in delivering joy not only to our consumers but also in driving innovation and growth within the company. PepsiCo’s commitment to global diversity and inclusive culture makes it a prime environment for professional development and networking. Introducing PepsiCo’s Professional Growth and Development Programs We are committed to nurturing talent through comprehensive training programs and robust benefits that support both personal and professional growth. Our programs are tailored to help employees at every level of their career to advance and succeed. Innovate and Lead Join the largest team of food and beverage industry experts—dedicated professionals at the intersection of consumer needs, innovative technology, and sustainable practices. Deliver targeted solutions and drive industry leadership through a depth and breadth of knowledge and innovation that’s second to none. Be Part of a Great Team Engage in meaningful work that impacts millions of lives worldwide. At PepsiCo, you’ll harness the power of our global resources and the creativity of our people to improve the way the world accesses the foods and beverages it loves. Future-Proof Your Career With PepsiCo, the sky is the limit when it comes to where your ambition can take you. We offer unmatched opportunities for career advancement along with the training, internship programs, and certification support needed to thrive in your professional journey. Explore Discover how PepsiCo is leading the way in digital innovation and sustainable practices while maintaining a steadfast focus on diversity and employee well-being. Stay Connected Join Our Team Search for open positions that match your skills and interests. We look for passionate, curious, creative, and solution-driven team players ready to take their career to the next level. SEARCH PEPSICO JOBS Keep Up to Date Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here. READ CAREERS BLOG Job Alert Emails Customize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at PepsiCo.
Learn more about PepsiCo
Size
309,000 employees
Market Cap
$250.5 billion
Industry
Net Income
$7.1 billion
Founded
1965
5 Year Trend
+4.8%
Revenue
$70.3 billion
NASDAQ

Similar Jobs

More Jobs at PepsiCo

More Information Technology Jobs

Find similar Cybersecurity Policy and Regulatory Compliance Associate Principal jobs: