Job Details
Lead, Governance and Compliance Analyst, Technology - Information Security
Watch this video to learn more about Thomson Reuters
Are you passionate about enabling responsible AI innovation while strengthening cyber risk and compliance practices at scale? Do you thrive at the intersection of technology, governance, and global risk management? Join Thomson Reuters and help shape secure, compliant AI platforms used by professionals around the world.
As a Lead, ISRM Compliance Analyst, you will play a critical role in advancing our Information Security Risk Management (ISRM) and compliance capabilities for technology platforms, with a particular focus on AI-driven solutions. You will act as a trusted advisor to engineering, product, and governance stakeholders, helping embed security, risk, and regulatory requirements into the design and delivery of our products.
About the Role
In this opportunity as Lead, Governance and Compliance Analyst, you will:
- Lead ISRM & Compliance Activities: Drive the execution of information security risk management and compliance activities across assigned technology platforms, with emphasis on AI development and emerging technologies.
- Automation & Agentic AI: Contribute to the implementation of automated compliance controls by working with the Automation & AI team, including evidence collection, validation, and reporting capabilities, to optimize workflows.
- Ensure Regulatory Alignment: Interpret and apply relevant regulatory, legal, and contractual security requirements (e.g., ISO 27001, SOC 2, privacy and data protection obligations) to cloud and AI solutions.
- Support AI Risk & Governance: Partner with enterprise and product teams to assess, document, and remediate security, privacy, and regulatory risks associated with AI models, data usage, and ML platforms.
- Manage Compliance Evidence: Coordinate and review compliance artifacts, control testing results, and remediation plans to support internal assurance activities and external audits.
- Ensure awareness about security risks, best practices and policy/standard requirements are essential to ensure compliance.
- Work independently, act decisively and ensure personal deadlines and team requirements are met.
- Willingness and drive to learn continuously and approach change with openness.
About You
You’re a fit for the role of Lead, ISRM Compliance Analyst if you have the following required qualifications:
- Proven experience in information security risk management, cybersecurity compliance, or technology risk, preferably within a large, global organization.
- Strong understanding of security and risk frameworks such as ISO/IEC 27001, NIST, SOC 2, or similar control environments.
- Experience assessing and advising on cloud-based and modern technology platforms, including AI/ML or data-intensive solutions.
- Ability to translate complex technical and regulatory requirements into clear, actionable guidance for engineering and product teams.
- Demonstrated leadership skills, including the ability to lead initiatives, influence stakeholders, and work independently with minimal supervision.
- Strong written and verbal communication skills, with experience producing risk assessments, governance documentation, and executive-ready materials.
Additional preferred qualifications include:
- Experience supporting AI governance, model risk, or responsible AI initiatives.
- Knowledge of privacy, data protection, or emerging technology regulations across multiple jurisdictions.
- Professional certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Auditor, or similar.
#LI-AC1
What’s in it For You?
Hybrid Work Model: We’ve adopted a flexible hybrid working environment (2-3 days a week in the office depending on the role) for our office-based roles while delivering a seamless experience that is digitally and physically connected.
Flexibility & Work-Life Balance: Flex My Way is a set of supportive workplace policies designed to help manage personal and professional responsibilities, whether caring for family, giving back to the community, or finding time to refresh and reset. This builds upon our flexible work arrangements, including work from anywhere for up to 8 weeks per year, empowering employees to achieve a better work-life balance.
Career Development and Growth: By fostering a culture of continuous learning and skill development, we prepare our talent to tackle tomorrow’s challenges and deliver real-world solutions. Our Grow My Way programming and skills-first approach ensures you have the tools and knowledge to grow, lead, and thrive in an AI-enabled future.
Industry Competitive Benefits: We offer comprehensive benefit plans to include flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing.
Culture: Globally recognized, award-winning reputation for inclusion and belonging, flexibility, work-life balance, and more. We live by our values: Obsess over our Customers, Compete to Win, Challenge (Y)our Thinking, Act Fast / Learn Fast, and Stronger Together.
Social Impact: Make an impact in your community with our Social Impact Institute. We offer employees two paid volunteer days off annually and opportunities to get involved with pro-bono consulting projects and Environmental, Social, and Governance (ESG) initiatives.
Making a Real-World Impact: We are one of the few companies globally that helps its customers pursue justice, truth, and transparency. Together, with the professionals and institutions we serve, we help uphold the rule of law, turn the wheels of commerce, catch bad actors, report the facts, and provide trusted, unbiased information to people all over the world.
About Us
Thomson Reuters informs the way forward by bringing together the trusted content and technology that people and organizations need to make the right decisions. We serve professionals across legal, tax, accounting, compliance, government, and media. Our products combine highly specialized software and insights to empower professionals with the data, intelligence, and solutions needed to make informed decisions, and to help institutions in their pursuit of justice, truth, and transparency. Reuters, part of Thomson Reuters, is a world leading provider of trusted journalism and news.
We are powered by the talents of 26,000 employees across more than 70 countries, where everyone has a chance to contribute and grow professionally in flexible work environments. At a time when objectivity, accuracy, fairness, and transparency are under attack, we consider it our duty to pursue them. Sound exciting? Join us and help shape the industries that move society forward.
As a global business, we rely on the unique backgrounds, perspectives, and experiences of all employees to deliver on our business goals. To ensure we can do that, we seek talented, qualified employees in all our operations around the world regardless of race, color, sex/gender, including pregnancy, gender identity and expression, national origin, religion, sexual orientation, disability, age, marital status, citizen status, veteran status, or any other protected classification under applicable law. Thomson Reuters is proud to be an Equal Employment Opportunity Employer providing a drug-free workplace.
We also make reasonable accommodations for qualified individuals with disabilities and for sincerely held religious beliefs in accordance with applicable law. More information on requesting an accommodation here.
Learn more on how to protect yourself from fraudulent job postings here.
More information about Thomson Reuters can be found on thomsonreuters.com
Who we are Thomson Reuters informs the way forward by delivering trusted content and technology that people and organizations need to make the... Read more