
Summary: We are seeking a highly motivated and experienced Data Governance Analyst to join our team and play a key role in our Data Loss Prevention (DLP) initiatives. The successful candidate will be responsible for leading risk analysis efforts, including gathering requirements, documenting and optimizing operational risk processes, and collaborating closely with stakeholders to ensure successful operationalization and rollout. The ideal candidate will combine data governance expertise, risk management skills, and exceptional abilities in process documentation, tool utilization (Jira and Google Workspace), and stakeholder engagement.
Operational Documentation: Create comprehensive team-supporting documentation (e.g., Standard Operating Procedures, Playbooks) for processes to manage ongoing data scans. This includes designing workflows for risk categorization (risk rating), prioritization, remediation (determining where action or inaction is required), and reporting (trending).
Scan and Remediation Management: Actively manage scan outputs and track remediation work utilizing a Jira board. Collaborate with leadership to determine and transition responsibility to the long-term operational team.
Rollout Support: Support the next phase of data scan candidates and broader enterprise rollouts.
Stakeholder Management: Work closely with stakeholders (such as Data Owners, Application Owners, and individuals) to define, clarify, and establish their ongoing roles and responsibilities.
Organizational Change Management (OCM): Collaborate with OCM partners to draft and deploy enterprise-wide communications and change management activities surrounding data loss prevention strategies and updates.
Lead Data Governance Analysis activities and collaborate with other Data Governance Analysts, BAs, Product, Risk, and technical teams to deliver complex data protection solutions.
Gather and document remediation requirements through stakeholder interviews, workshops, and surveys.
Conduct gap analysis to assess differences between current data states and desired protection baselines, highlighting opportunities for risk mitigation.
Translate governance, business and risk requirements into detailed functional specifications, process maps, and data models.
Guide and participate in User Acceptance Testing (UAT) to validate that risk tracking, policies, and reporting match business expectations.
Risk Management Skills: Demonstrated proficiency in managing, maturing, and optimizing operational risk processes, metrics, and indicators (such as KRIs).
Data Security: Familiarity with data risk assessment processes and knowledge of Data Loss Prevention (DLP) and Data Security Posture Management (DSPM) concepts.
Tools Proficiency: Strong hands-on proficiency with Jira (for backlog management and tracking remediation work) and Google Workspace (for documentation, tracking, and collaboration).
Platform Awareness: The candidate can be solution-agnostic but must have an understanding of/experience dealing with data repositories such as or similar to SAP, BoX, DocuSign, and Google Cloud environments (GCS, Cloud SQL, BigQuery).
Core Competencies: Strong understanding of data governance approaches and frameworks, risk analysis principles, methodologies, and best practices.
Communication: Exceptional written and verbal communication skills, with a proven capability to explain complex risk and technical concepts to both technical teams and senior business leaders.
Ability to work independently and manage multiple shifting priorities and timelines in a dynamic project environment.
Background in business analysis, information security, or compliance frameworks.
Experience working in closely regulated environments (e.g., Banking, Fintech, or Insurance).
(Required for submission to Procurement)
Core Analysis: Strong requirements gathering, process mapping, and user story refinement skills within an Jira environment.
Process Optimization: Experience building operational playbooks, SOPs, and maturing metrics for Key Risk Indicators (KRIs).
Data Repository Exposure: Experience or familiarity analyzing data repositories and environments using DSPM tools.
Jira and Google Workspace Expertise: Strong hands-on proficiency using Jira for managing remediation tracking boards and Google Workspace for team documentation. (Advanced Jira administration/configuration skills are not required).
Stakeholder Engagement and Collaboration: Proven capability to work cross-functionally with OCM, Data Owners, and Application Owners to define roles and deploy communications.