Mattel
toy and family entertainment
SrAnalystGRC
Neural analysis suggests this role is
optimal for mid candidates.
“Sr Analyst GRC at Mattel. Skills: GRC, IT Audit, Risk Management, Compliance, SOX, GDPR, HIPAA, PCI-DSS. managing IT general controls. conducting audits for SOC1, Sarbanes-Oxley (SOX) and PCI”
What You'll Achieve.
strengthen the organization’s security and compliance posture; accelerate Mattel’s strategy to unlock a world of tech-enhanced 360-degree play experiences
Industry & Context.
Problem-solving and analytical mindset with the ability to think broadly and identify innovative solutions
What They're Looking For.
Must Have
6-8 years experience in IT Audit, Risk management, Compliance or Consulting (i. e. Big 4 or equivalent)
Nice to Have
Certification as a CISM, CISSP, or Certified Identity and Access Manager (CIAM), or other GIAC or related security certification(s) desired., Knowledge of IT GRC platforms (e. g. , AuditBoard)., Working knowledge of data quality frameworks, validation methods, and governance best practices., Experience with SQL for data transformation and complex querying., Experience in Agile Methodologies like Scrum and Kanban., Knowledge of CI/CD practices, Git-based workflows, and infrastructure automation tools., Google Big Query used as a centralized data warehousing and analytics platform., Python for scripting, data processing, and integration logic.
What You'll Do.
managing IT general controls
conducting audits for SOC1
Sarbanes-Oxley (SOX) and PCI
establishes and promotes security and standards throughout Mattel
conducts vendor/supply chain security risk assessments
manages IT risk exceptions
support the organization’s governance
and compliance programs
ensuring adherence to regulatory requirements
and leading-edge industry standards
monitoring compliance controls
working closely with cross-functional teams to strengthen the organization’s security and compliance posture
and maintaining corporate policies
and standards for security
Support governance initiatives to align IT and business strategies with compliance frameworks (e. g.
and monitor operational
and cybersecurity risks.
Conduct risk assessments and document mitigation plans.
Maintain and track the organization’s risk register
escalating significant risks to leadership.
Support compliance audits (internal and external) and regulatory reporting requirements.
Collaborate with auditors and provide required evidence and documentation.
Monitor ongoing compliance with SOX
or other applicable regulations.
Assist in testing internal controls and developing corrective actions for identified gaps.
Track compliance with access management
and data protection requirements.
Maintain documentation of controls and compliance evidence repositories.
Perform other duties as assigned or necessary.
How You'll Work.
Team & Collaboration
working closely with cross-functional teams; Collaborate with auditors; working closely together always brings better results; Partnership is our process
Communication Scope
Excellent communication skills, both written and verbal.
Full Job Description
CREATIVITY IS OUR SUPERPOWER. It’s our heritage and it’s also our future. Because we don’t just make toys. We create innovative products and experiences that inspire fans, entertain audiences and develop children through play. Mattel is at its best when every member of our team feels respected, included, and heard—when everyone can show up as themselves and do their best work every day. We value and share an infinite range of ideas and voices that evolve and broaden our perspectives with a reach that extends into all our brands, partners, and suppliers. The Team: Be a part of an organization that is modernizing and transforming its IT platforms, processes, and skills to accelerate Mattel’s strategy to unlock a world of tech-enhanced 360-degree play experiences! Mattel’s Governance Risk & Compliance (GRC) Team is part of the Global Technology Organization (GTO). The GRC team is responsible for managing IT general controls and conducting audits for SOC1, Sarbanes-Oxley (SOX) and PCI. GRC also establishes and promotes security and standards throughout Mattel, conducts vendor/supply chain security risk assessments, and manages IT risk exceptions. The Opportunity: Mattel is establishing and developing a technology and innovation center that will contribute to a robust internal control environment. As a result, Mattel is currently seeking a Sr Analyst to join its GRC team at the new center. The GRC Sr Analyst will support the organization’s governance, risk, and compliance programs by ensuring adherence to regulatory requirements, internal policies, and leading-edge industry standards. This role involves assessing risks, monitoring compliance controls, conducting audits, and working closely with cross-functional teams to strengthen the organization’s security and compliance posture. What Your Impact Will Be: * Assist in developing, implementing, and maintaining corporate policies, procedures, and standards for security, risk, and compliance. * Support governance initiativ
Applying for this Sr Analyst GRC role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on SmartRecruiters
- SmartRecruiters often includes a video screening step — check camera and mic permissions.
- Link your GitHub or portfolio directly in the profile section for technical roles.
- Applications may be reviewed by AI scoring before reaching a recruiter — use keywords from the job description.
ANONYMOUS · UNFILTERED
What do employees actually say about Mattel?
Real rants from real employees. Read before you apply.