Skip to main content
Tallo logoTallo logo

Find Jobs

Find Jobs Near You – Available Work in Your Location

Skip to job details

Back to Results

Apply for this opportunity

To apply for this job, you'll continue to an external website or email application.

GM Financial

Bilingual Cybersecurity Policy & Regulatory Analyst

Career Insights for Policy Analyst

See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.

Scorecard

Based on Texas data

Review key factors to help you decide if this role fits your goals. How is this calculated?

Were these scores useful?

What they do

A Policy Analyst provides expertise on government policy in a particular area. Gathers background information on issues and tracks legislative initiatives. Works with or advises elected officials, non-profit organizations on interest groups involved with the legislative process.

$128,546 / year median in Texas

+18% projected growth

Explore Career

Job Description

Why GM Financial Cybersecurity? Innovation isn't just a talking point at GM Financial, it's how we operate. By joining our team, you'll work in a mission-focused environment with specialized teams, including Engineering, Threat Intelligence, Vulnerability Management, Incident Response, Firewall, Governance, Risk, Architecture and Offensive Security. These teams collaborate to identify, manage and respond to threats, all while driving innovation across the environment. Cybersecurity is central to our strategic vision, so you'll benefit from exceptional leadership visibility, with direct reporting lines to the CEO. This structure ensures your work is recognized and supported at the highest levels, while also enabling bold innovation and the adoption of cutting-edge technologies. Shape the future of Cybersecurity at GM Financial, with the freedom to explore, the tools to build and the support to thrive. About the role The Bilingual Cybersecurity Policy and Regulatory Analyst is responsible for monitoring, analyzing, and supporting cybersecurity regulatory requirements across multiple international jurisdictions. This position will help ensure alignment with applicable laws, regulations, industry standards, organizational governance objectives, and policies. This role requires fluency in English and Spanish to support global compliance initiatives, communicate regulatory impacts, manage cross-functional projects, and collaborate with stakeholders across regions. The position combines regulatory analysis, cybersecurity knowledge, policy governance, technical acumen, and project management expertise to assess the impact of evolving requirements on security controls, technologies, and operational processes. The analyst leads and coordinates regulatory and policy initiatives, manages implementation activities and deliverables, facilitates stakeholder engagement, and supports compliance readiness, audit preparedness, and continuous process improvement across multiple jurisdictions.
In this role you will:
Regulatory Monitoring and Analysis Research, monitor, analyze, and interpret cybersecurity regulations, regulatory guidance, compliance requirements, and industry standards, translating requirements into actionable policies, standards, procedures, controls, and implementation recommendations. Manage and coordinate regulatory impact assessments, gap analyses, and remediation activities to evaluate compliance obligations and implementation requirements across multiple jurisdictions. Lead and support regulatory compliance initiatives by coordinating implementation activities, stakeholder engagement, deliverables and evidence collection. Interpret and communicate business, operational, and compliance impacts of new, proposed, and evolving cybersecurity regulations. Track regulatory implementation risks, issues, dependencies, and corrective actions to support successful execution of compliance initiatives. Prepare regulatory readiness reports, executive briefings, implementation updates, and compliance metrics for leadership and key stakeholders. Collaborate with Legal, Compliance, Risk Management, Privacy, Technology, and business stakeholders to support the interpretation and implementation of regulatory requirements. Identify opportunities to improve regulatory compliance processes and implementation efficiencies through standardization, automation, and continuous improvement . Cybersecurity Policy Governance Lead and coordinate cybersecurity policy governance initiatives to ensure alignment with regulatory requirements, legal obligations, organizational objectives, and industry frameworks. Manage the cybersecurity policy lifecycle, including policy development, review, approval, publication, communication, implementation, and periodic recertification. Coordinate policy reviews and governance activities with cybersecurity, legal, compliance, privacy, risk management, technology, and business stakeholders. Develop and maintain governance documentation, implementation plans, milestones, and action items supporting policy lifecycle management. Facilitate governance meetings, stakeholder reviews, and policy working sessions; document decisions, action items, and implementation outcomes. Monitor policy governance activities and remediation efforts to support timely resolution of policy-related gaps and issues. Prepare policy governance metrics, compliance findings, executive summaries, and management reports to support decision-making. Maintain policy records, documentation, and evidence repositories to support regulatory compliance, audit readiness, and examination activities. Provide policy interpretation and implementation guidance to promote consistent adoption and adherence across the organization. Support internal and external audits, regulatory examinations, and assessments by coordinating policy-related documentation and evidence. Identify opportunities to strengthen policy governance processes, stakeholder engagement, and operational effectiveness through continuous improvement initiatives. What makes you an ideal candidate? Experience working with one or more of the following
Regulatory or Frameworks:
NIST Cybersecurity Framework (CSF), NIST
SP 800-53, NIST SP 800-171, ISO 27001/27002, CIS
Critical Security Controls, NYDFS Cybersecurity Regulation, SEC Cybersecurity Disclosure Rules, GDPR, Brazil LGPD, Chile Privacy Requirements, Colombia Cybersecurity and Data Protection Regulations, Mexico Cybersecurity and Privacy Requirements Regulatory analysis experience Cybersecurity governance experience Policy development and administration experience Risk assessment experience Project coordination experience Written and verbal communication Cross-functional collaboration Process improvement experience Attention to detail Bilingual communication (English/Spanish) Professional certifications such as: (a plus, but not required)
CISSP CISM CRISC CISA CGRC
(formerly CAP) Experience and Education Minimum of 1-5 years experience in large and complex business environment with a successful track record working directly with senior level management Pref At least 1 year of experience in one or more of the following domains: Access Control, Telecom and Network Security, Cybersecurity Governance, Risk Management, Software Development Security, Cryptography, Security Architecture and Design, Operational Security, Business Continuity & Disaster Recovery, Legal Regulations, Investigations and Compliance, Physical (Environmental) Security, IT or Security Audit, IT or Security Compliance Pref Experience with UML Design Tools preferred Experience with alternate management methods using SSH, serial connections, and the command-line interface TMSH preferred Experience in documentation tools such as Visio and Microsoft Office products Pref Experience with Network and VLAN segmentation preferred Experience with technical writing preferred High School Diploma Associate degree Bachelor's Degree in related field or equivalent work experience strongly preferred
What We Offer :
Generous benefits package available on day one to include: 401K matching, bonding leave for new parents (12 weeks, 100% paid), tuition assistance, training, GM employee auto discount, community service pay and nine company holidays.
Our Culture :
Our team members define and shape our culture — an environment that welcomes innovative ideas, fosters integrity, and creates a sense of community and belonging. Here we do more than work — we thrive.
Compensation :
Competitive pay and bonus eligibility.
Work Life Balance :
Hybrid work environment, 4 days a week in office in Arlington, Texas.