×
Register Here to Apply for Jobs or Post Jobs. X

IT Specialist - Compliance (Hybrid Work Environment

Job in New York City, Richmond County, New York, USA
Listing for: Phenom People
Full Time, Part Time position
Listed on 2026-08-18
Job specializations:
  • IT/Tech
    Information Security & Data Protection, Cybersecurity, IT Consultant
Job Description & How to Apply Below
Position: IT Specialist - Compliance (Hybrid Work Environment)

Security And Compliance Specialist

At Nespresso we place people and specialty coffee at the heart of what we do. As part of our team, you'll be empowered to inspire, care, act, and innovate to reach your full potential and reimagine what coffee can be. We're committed to delivering an exceptional coffee experience that elevates our community, suppliers, farmers, and each other, channeling our growth-minded spirit to set new standards in global coffee culture.

Quality, sustainability, diversity and inclusion are core to who we are and critical to our vision of driving positive change. Throughout our factories, boutiques, and office locations, Nespresso careers are brimming with first-rate opportunities to push the boundaries of coffee exploration.

Position Overview:

The Security And Compliance Specialist will support the Functional Relationship Manager to monitor, identify and mitigate potential security risks in the organization and ensure compliance with the Nespresso and Nestle Information Security policies and regulatory standards. The Security And Compliance Specialist will also assist in addressing audit requests, and requirements for the data privacy regulations. This role involves active knowledge of industry trends and best practices, transparent communications, facilitation of issue resolution, triggering escalation processes when required, and an understanding of the IT risk assessments and governance.

This is a Hybrid Work Environment opportunity with expectations of being in the office 2-3 days per week.

Responsibilities:

Security & Risk Management

  • Supports the management of the Nespresso Information Security Management System (ISMS) performance
  • Reports security incidents and non-compliant issues to Functional Relationship Manager and IT leadership
  • Builds awareness for employees around cyber security, ethics and compliance
  • Identifies potential security risks in the organization and assists in risk mitigation
  • Supports new security initiatives/ projects within the organization

Application Business and Privacy Impact Assessments

  • Assists business functions with the undertaking of business and privacy impact assessments for all new systems, digital assets or projects involving the processing of Nespresso data
  • Supports the business in managing the mitigation of identified risks and ensure remediation activities are prioritized in accordance with the impact analysis
  • Supports periodic risk-assessments of the applications

Data Privacy

  • Assists with monitoring, tracking and addressing customer data privacy requests for data deletions, access and corrections
  • Supports data discovery and data mapping exercises

Compliance

  • Assists in enforcing adherence to global Nestle standards/guidelines and to global and local regulatory compliance requirements
  • Identifies IT compliance control gaps and oversees remediation process
  • Ensures all Compliance and Information Security related matters are properly represented and acted upon by responsible parties
  • Maintains requirements for market's PCI compliance. Supports Attestation of Compliance (AOC) process to ensure compliance with PCI DSS standards
  • Assists in documenting and maintaining Standard Operating Procedures (SOPs) for compliance processes
  • Supports global and local IT compliance audits, assessments and reviews. Ensures that market follows on the findings to comply with Nestle compliance standards
Requirements:
  • Bachelor's degree in computer science or field related to IT Security and Compliance is required
  • Demonstrated experience in a product based IT organization
  • 2-4 years experience in IT Security and Compliance
  • Proven track record of taking ownership and successfully delivering results in a fast-paced, dynamic environment
  • Experience with effective communication at different levels in the organization
  • Experience working in a global environment and with virtual teams
  • Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA) or Certified Information Systems Manager (CISM) certification preferred
  • Working knowledge and strong understanding of security best practices for the IT technologies including:
    Windows Active Directory, network…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary