What are the responsibilities and job description for the Cybersecurity Compliance Supervisor position at Carnival Cruise Line?
Job ID 9363 Location Miami, FL Date posted 10/29/2024
The Supervisor, Cybersecurity Compliance leverages their strong knowledge and expertise to supervise the overall Global Compliance Program. They possess a sound understanding of regulatory needs such as SOX, PCI-DSS, Data Privacy (GDPR/CCPA, etc.) and best practices from NIST CSF, ISO, SOC2, etc., with an emphasis on SOX. The supervisor will serve as a liaison between various Operating Units within the organization, internal & external audit, and IT teams, ensuring effective coordination and communication. They will do so to integrate compliance regulations and controls that will protect the company assets and data globally. The supervisor will actively participate in the day-to-day operations of the Security Compliance team within the Global Cybersecurity Services (GCS) organization and will coordinate tasks such as resource allocation, team training, project facilitation, scheduling, and organization of overall project health to complete deliverables. This position will have an active role in ensuring global compliance within the organization to all current regulatory guidelines and to GCS policies and standards. The supervisor will oversee a team of Compliance Analysts that are responsible for the execution of regulatory control testing and continuing compliance activities. This team of analysts has a deep background in Information Security and Compliance. In working with the team, the supervisor will partake in the planning and performance of annual assessments, testing, validation, and oversight of risk management. The supervisor will conduct a root cause analysis as needed, to determine root causes and lead corrective action efforts at the process level to ensure gaps are appropriately assessed, escalated & resolved. This includes oversight of implementing right process solutions to prevent recurrence. The supervisor will represent the Security Compliance team in cross-functional projects, leveraging their advanced skill set to streamline these processes. This position will be responsible for enhancing the global compliance and cybersecurity controls as it relates to shipboard and shoreside environments. The supervisor will be required to measure and report on KPIs, KRIs, audit findings, accomplishments and publish to senior management and key stakeholders. They are responsible for reporting on current regulatory compliance and internal security policy compliance to senior leadership. This position will also be responsible for continuing to modernize existing security and compliance practices, specifically automating testing processes and shifting from a periodic testing approach to a continuous compliance model.
Essential Functions:
Strong analytical and organizational skills. Ability to think critically. Knowledge in process improvement practices. Excellent communication and presentation skills (both written and verbal). Ability to communicate effectively at all levels of the organization. Ability to manage and build large/complex data sets. Ability to work independently (including remotely) and multi-task, managing multiple assignments and deadlines. Skill to meet deadlines while ensuring quality results. Ability to drive and lead conversations, coordinating work among different parties. Demonstrated ability to apply IT-related knowledge and experience in solving compliance issues. Strong ability to troubleshoot problems. Attention to detail is a must. Proficient in documentation and creating operating, assessments, and audit procedures. Ability to create high-quality technical documents. Experience with complex risk-based approach to internal and external compliance efforts. Proficient with Microsoft Office Suite. Able to achieve desired goals and objectives while maintaining the respect and support of the organization
Physical Demands: Must be able to remain in a stationary position at a desk and/or computer for extended periods of time.
Travel: Less than 25% shipboard travel likely
Work Conditions: Work primarily in a climate-controlled environment with minimal safety/health hazard potential.
This position is classified as “in-office.” As an in-office role, it requires employees to work from a designated Carnival office in South Florida Tuesday through Thursday each week. Employees may work from their homes on Mondays and Fridays. Candidates must be located in (or willing to relocate to) the Miami/Ft. Lauderdale area.
Offers to selected candidates will be made on a fair and equitable basis, taking into account specific job-related skills and experience.
At Carnival, your total rewards package is much more than your base salary. All non-sales roles participate in an annual cash bonus program, while sales roles have an incentive plan. Director and above roles may also be eligible to participate in Carnival’s discretionary equity incentive plan. Plus, Carnival provides comprehensive and innovative benefits to meet your needs, including:
Carnival Corporation & plc is the world’s largest leisure travel company, our mission to deliver unforgettable happiness to our guests through our diverse portfolio of leading cruise brands and island destinations, including Carnival Cruise Line, Holland America Line, Princess Cruises, and Seabourn in North America and Australia; P&O Cruises and Cunard Line in the United Kingdom; AIDA in Germany; Costa Cruises in Southern Europe.
Join us and embark on a career that offers not only the chance to grow professionally but also the opportunity to be part of a global community that makes a difference.
In addition to other duties/functions, this position requires full commitment and support for promoting ethical and compliant culture. More specifically, this position requires integrity, honesty, and respectful treatment of others, as well as a willingness to speak up when they see misconduct or have concerns.
Carnival Corporation & plc and Carnival Cruise Line is an equal employment opportunity/affirmative action employer. In this regard, it does not discriminate against any qualified individual on the basis of sex, race, color, national origin, religion, sexual orientation, age, marital status, mental, physical or sensory disability, or any other classification protected by applicable local, state, federal, and/or international law.
https://www.dol.gov/sites/dolgov/files/WHD/legacy/files/fmelden.pdf
https://www.dol.gov/ofccp/regs/compliance/posters/pdf/eeopost.pdf
https://www.dol.gov/sites/dolgov/files/WHD/legacy/files/eppac.pdf
https://www.dol.gov/ofccp/regs/compliance/posters/pdf/OFCCP_EEO_Supplement_Final_JRF_QA_508c.pdf
Share
Culture
We celebrate our diverse team of over 160,000 team members representing 150 countries and are committed to providing a welcoming and inclusive environment where people from different backgrounds, experiences, and walks of life can succeed. We know our team members are at the heart of inspiring unforgettable happiness, so we strive to be the world’s number-one choice for hospitality, travel and leisure careers.
I think one of the great things about Carnival is that you have a leadership team that is down to earth and truly cares about its employees. Balancing their respect for the company’s workforce (ship and shore) with their steep industry and business operations knowledge, and you’ve got a team that can take the company to new heights.
Victoria Director of Global Financial Planning and Analysis Coffee Connoisseur
Carnival Corporation invests in its people. I started my career here nearly 20 years ago as a deck cadet. Carnival has supported my professional development and provided many career growth opportunities.
Andrew Vice President of Global Maritime Technology Systems History Buff
I love working at Carnival because its ethos perfectly aligns with my own. The company’s personable leadership, cultural integrity, and sustainability initiatives creates a vibrant environment where you constantly feel motivated and find opportunities to improve.
Kaleigh HESS and Sustainability Quality Assurance Manager Paddle Board Pro
I am valued as my whole self and not just as my title.
Sandra Executive Assistant Sand and Surf Enthusiast
Follow us on social media
Get the latest job openings right in your inbox.
First Name
Last Name
Email Address
How did you hear about us? Please select Career Fair Carnival Career Site Email Employee Referral Glassdoor Google Jobs Indeed Instagram LinkedIn ZipRecruiter Other
Customize your alerts Select a job category from the list of options. Select a location from the list of options. Finally, click “Add” to create your job alert.
Job Category Select a Job Category Accounting & Financial Statement Administration & Compliance Audit & Risk Business Analysis Business Ops Business Support Casino Communication, Advertising & Media Management Compliance Corporate Cyber Security Ecommerce Entertainment Executive Offices Finance Finance & Accounting Guest Technology Health Services Hotel Human Resources Information Security CISO Information Systems Marine and Technical Maritime Medical Services Payroll Port and Shore Operations Procurement & Supply Chain Revenue Management Sales Ship New Builds Ship Operations Software Development & Architecture Sourcing & Supply_Chain
Location Select Location Davie, Florida Manila, Metro Manila Miami, Florida Miramar, Florida
Confirm Email
By submitting your information, you acknowledge that you have read our privacy policy (opens in new window) and consent to receive email communication from CARNIVAL CRUISE LINE.
The Supervisor, Cybersecurity Compliance leverages their strong knowledge and expertise to supervise the overall Global Compliance Program. They possess a sound understanding of regulatory needs such as SOX, PCI-DSS, Data Privacy (GDPR/CCPA, etc.) and best practices from NIST CSF, ISO, SOC2, etc., with an emphasis on SOX. The supervisor will serve as a liaison between various Operating Units within the organization, internal & external audit, and IT teams, ensuring effective coordination and communication. They will do so to integrate compliance regulations and controls that will protect the company assets and data globally. The supervisor will actively participate in the day-to-day operations of the Security Compliance team within the Global Cybersecurity Services (GCS) organization and will coordinate tasks such as resource allocation, team training, project facilitation, scheduling, and organization of overall project health to complete deliverables. This position will have an active role in ensuring global compliance within the organization to all current regulatory guidelines and to GCS policies and standards. The supervisor will oversee a team of Compliance Analysts that are responsible for the execution of regulatory control testing and continuing compliance activities. This team of analysts has a deep background in Information Security and Compliance. In working with the team, the supervisor will partake in the planning and performance of annual assessments, testing, validation, and oversight of risk management. The supervisor will conduct a root cause analysis as needed, to determine root causes and lead corrective action efforts at the process level to ensure gaps are appropriately assessed, escalated & resolved. This includes oversight of implementing right process solutions to prevent recurrence. The supervisor will represent the Security Compliance team in cross-functional projects, leveraging their advanced skill set to streamline these processes. This position will be responsible for enhancing the global compliance and cybersecurity controls as it relates to shipboard and shoreside environments. The supervisor will be required to measure and report on KPIs, KRIs, audit findings, accomplishments and publish to senior management and key stakeholders. They are responsible for reporting on current regulatory compliance and internal security policy compliance to senior leadership. This position will also be responsible for continuing to modernize existing security and compliance practices, specifically automating testing processes and shifting from a periodic testing approach to a continuous compliance model.
Essential Functions:
- Oversee and assist with the development and execution of GCS’s annual and on-going assessments which include the PCI-DSS continuous compliance program, SOX ITGC testing, and GDPR compliance assessment plans, among others, to ensure the integrity, effectiveness, and efficiency of the compliance framework. Raise awareness to the Business and IT stakeholders of compliance requirements, regulations, and controls
- Support the strategy to mature current Compliance practices to achieve departmental goal of shifting from “regulatory compliance” driven team to a Risk-based program and proactively work to identify potential gaps. Implement all necessary actions with relevant IT stakeholders and internal and external audit partners to achieve objectives of an effective compliance program and communicate to all key stakeholders and leadership
- Collaborate closely with GRC leadership team to develop brand IT Compliance Framework to include (but not be limited to) SOX, PCI-DSS, Data Privacy (GDPR/CCPA, etc.), IMO etc. to achieve a strong compliance maturity model. Advising on matters related to formal Compliance Governance processes which align and prioritize Data Privacy and Security Compliance initiatives. Assist in developing, preparing, and establishing executive dashboard reporting on compliance events, findings, accomplishments, and publishing these to senior management and key stakeholders
- Oversee the GCS IT Compliance program which includes conducting the annual validations and assessments including but not limited to SOX, PCI-DSS, Data Privacy Regulations (GDPR, CCPA, etc.), and external legal agreements; and determine scope, process, testing, documentation, reporting and remediation. Coordinate with IT Stakeholders, internal and external auditors, and Operating Unit Security Officers to ensure on-going IT compliance with published internal corporate policies and government regulations
- Identify opportunities for automation in current compliance activities and leverage technologies to modernize and streamline team workflows
- Foster a strong team spirit for remote and in-person team resources. Supervise staff by effectively developing, mentoring, and assessing their performance. Provide initial and ongoing training of new hires. Monitor the team’s daily performance. Act as a resource and mentor for team members, providing ongoing guidance and support in navigating complex topics, troubleshooting challenges, and promoting best practices.
- Assist with and respond to inquiries received from stakeholders across the organization pertaining to the annual validations and assessments conducted by the Security Compliance team. Maintain effective working relationships with internal and external partners. Proactively monitor and communicate changes in business processes and provide guidance and support to internal stakeholders
- Education: A Bachelor’s degree in computer science, IT compliance, audit, or related area is required. An advanced degree is highly desirable particularly and excellent verbal and written communication skills. Master’s degree a plus.
- Required Certifications: CISSP, CCEP, or CISA equivalent is desirable
- Years & or Area of Professional experience: 5 of experience in Information Technology and Information Security/Compliance with the focus on executing compliance framework and programs such as PCI-DSS, SOX, HIPAA, etc. 5 years of Information/Cybersecurity and Compliance experience. 5 years of technology project management with experience building process, controls, operating procedures, and guidelines. Previous experience performing security and compliance assessments
- Critical Professional Related Technical/Computer Skills: Knowledge in various compliance regulations such as PCI-DSS, SOX, HIPAA, GDPR, NIST, etc. Knowledge of information technologies components as networking, security, different OSs, DB environments
Strong analytical and organizational skills. Ability to think critically. Knowledge in process improvement practices. Excellent communication and presentation skills (both written and verbal). Ability to communicate effectively at all levels of the organization. Ability to manage and build large/complex data sets. Ability to work independently (including remotely) and multi-task, managing multiple assignments and deadlines. Skill to meet deadlines while ensuring quality results. Ability to drive and lead conversations, coordinating work among different parties. Demonstrated ability to apply IT-related knowledge and experience in solving compliance issues. Strong ability to troubleshoot problems. Attention to detail is a must. Proficient in documentation and creating operating, assessments, and audit procedures. Ability to create high-quality technical documents. Experience with complex risk-based approach to internal and external compliance efforts. Proficient with Microsoft Office Suite. Able to achieve desired goals and objectives while maintaining the respect and support of the organization
Physical Demands: Must be able to remain in a stationary position at a desk and/or computer for extended periods of time.
Travel: Less than 25% shipboard travel likely
Work Conditions: Work primarily in a climate-controlled environment with minimal safety/health hazard potential.
This position is classified as “in-office.” As an in-office role, it requires employees to work from a designated Carnival office in South Florida Tuesday through Thursday each week. Employees may work from their homes on Mondays and Fridays. Candidates must be located in (or willing to relocate to) the Miami/Ft. Lauderdale area.
Offers to selected candidates will be made on a fair and equitable basis, taking into account specific job-related skills and experience.
At Carnival, your total rewards package is much more than your base salary. All non-sales roles participate in an annual cash bonus program, while sales roles have an incentive plan. Director and above roles may also be eligible to participate in Carnival’s discretionary equity incentive plan. Plus, Carnival provides comprehensive and innovative benefits to meet your needs, including:
- Health Benefits:
- Cost-effective medical, dental and vision plans
- Employee Assistance Program and other mental health resources
- Additional programs include company paid term life insurance and disability coverage
- Financial Benefits:
- 401(k) plan that includes a company match
- Employee Stock Purchase plan
- Paid Time Off
- Holidays – All full-time and part-time with benefits employees receive days off for 8 company-wide holidays, plus 2 additional floating holidays to be taken at the employee’s discretion.
- Vacation Time – All full-time employees at the manager and below level start with 14 days/year; director and above level start with 19 days/year. Part-time with benefits employees receive time off based on the number of hours they work, with a minimum of 84 hours/year. All employees gain additional vacation time with further tenure.
- Sick Time – All full-time employees receive 80 hours of sick time each year. Part-time with benefits employees receive time off based on the number of hours they work, with a minimum of 60 hours each year.
- Other Benefits
- Complementary stand-by cruises, employee discounts on confirmed cruises, plus special rates for family and friends
- Personal and professional learning and development resources including tuition reimbursement
- On-site preschool program and wellness center at our Miami campus
Carnival Corporation & plc is the world’s largest leisure travel company, our mission to deliver unforgettable happiness to our guests through our diverse portfolio of leading cruise brands and island destinations, including Carnival Cruise Line, Holland America Line, Princess Cruises, and Seabourn in North America and Australia; P&O Cruises and Cunard Line in the United Kingdom; AIDA in Germany; Costa Cruises in Southern Europe.
Join us and embark on a career that offers not only the chance to grow professionally but also the opportunity to be part of a global community that makes a difference.
In addition to other duties/functions, this position requires full commitment and support for promoting ethical and compliant culture. More specifically, this position requires integrity, honesty, and respectful treatment of others, as well as a willingness to speak up when they see misconduct or have concerns.
Carnival Corporation & plc and Carnival Cruise Line is an equal employment opportunity/affirmative action employer. In this regard, it does not discriminate against any qualified individual on the basis of sex, race, color, national origin, religion, sexual orientation, age, marital status, mental, physical or sensory disability, or any other classification protected by applicable local, state, federal, and/or international law.
https://www.dol.gov/sites/dolgov/files/WHD/legacy/files/fmelden.pdf
https://www.dol.gov/ofccp/regs/compliance/posters/pdf/eeopost.pdf
https://www.dol.gov/sites/dolgov/files/WHD/legacy/files/eppac.pdf
https://www.dol.gov/ofccp/regs/compliance/posters/pdf/OFCCP_EEO_Supplement_Final_JRF_QA_508c.pdf
Share
- X
- Email
- Hybrid Work Environment Empowering work-life integration and flexible opportunities for your personal and career success
- Wellness Programs Comprehensive employer wellness programs featuring mental health support and fitness options, including an on-site gym
- Cruise Benefits An array of qualified complimentary and heavily discounted cruise options for the ultimate dream getaway
- Parental Programs Generous parental leave time and adoption assistance programs
- Retirement Plan Secure your future with our exceptional Traditional and Roth 401(k) options complemented by valuable company contributions
- Employee Stock Purchase Invest in tomorrow with the opportunity to purchase Carnival shares at a discounted rate from their fair market value
Culture
We celebrate our diverse team of over 160,000 team members representing 150 countries and are committed to providing a welcoming and inclusive environment where people from different backgrounds, experiences, and walks of life can succeed. We know our team members are at the heart of inspiring unforgettable happiness, so we strive to be the world’s number-one choice for hospitality, travel and leisure careers.
I think one of the great things about Carnival is that you have a leadership team that is down to earth and truly cares about its employees. Balancing their respect for the company’s workforce (ship and shore) with their steep industry and business operations knowledge, and you’ve got a team that can take the company to new heights.
Victoria Director of Global Financial Planning and Analysis Coffee Connoisseur
Carnival Corporation invests in its people. I started my career here nearly 20 years ago as a deck cadet. Carnival has supported my professional development and provided many career growth opportunities.
Andrew Vice President of Global Maritime Technology Systems History Buff
I love working at Carnival because its ethos perfectly aligns with my own. The company’s personable leadership, cultural integrity, and sustainability initiatives creates a vibrant environment where you constantly feel motivated and find opportunities to improve.
Kaleigh HESS and Sustainability Quality Assurance Manager Paddle Board Pro
I am valued as my whole self and not just as my title.
Sandra Executive Assistant Sand and Surf Enthusiast
Follow us on social media
- Glassdoor
- Instagram
Get the latest job openings right in your inbox.
First Name
Last Name
Email Address
How did you hear about us? Please select Career Fair Carnival Career Site Email Employee Referral Glassdoor Google Jobs Indeed Instagram LinkedIn ZipRecruiter Other
Customize your alerts Select a job category from the list of options. Select a location from the list of options. Finally, click “Add” to create your job alert.
Job Category Select a Job Category Accounting & Financial Statement Administration & Compliance Audit & Risk Business Analysis Business Ops Business Support Casino Communication, Advertising & Media Management Compliance Corporate Cyber Security Ecommerce Entertainment Executive Offices Finance Finance & Accounting Guest Technology Health Services Hotel Human Resources Information Security CISO Information Systems Marine and Technical Maritime Medical Services Payroll Port and Shore Operations Procurement & Supply Chain Revenue Management Sales Ship New Builds Ship Operations Software Development & Architecture Sourcing & Supply_Chain
Location Select Location Davie, Florida Manila, Metro Manila Miami, Florida Miramar, Florida
- Business Support, Miami, Florida, United States Remove
- Remove
Confirm Email
By submitting your information, you acknowledge that you have read our privacy policy (opens in new window) and consent to receive email communication from CARNIVAL CRUISE LINE.
- Corporate Information
- Corporate Careers
- Media Center
- Investor Relations
- Governance
- Sustainability
- Sitemap
- Cookie Management