Cyber Security Policy/Standards Document Management Sr. Analyst

Full Time
Plano, TX
Areas of Interest: Strategic Planning and Policy Development
report a problem

Explore the infinite possibilities...
Discover your career at PepsiCo

The Policy & Standards Document Management Associate Specialist is an additional role within Information Security and PepsiCo. PepsiCo is globalizing their Information Security standards process and then aligning it with the NIST Cybersecurity Framework, along with increasing Security Awareness Training and Articles. The Global Policy and Standards team will help identify, analyze, develop, review, and manage policies and standards within PepsiCo to ensure they are enabling the business and helping to reduce risk. In addition, the team is responsible for submitting the documents into the eGRC tool that supports the policy development and approval process. This role will report directly to the Senior Manager of the GRC team.

  • Develop, edit and review written documentation produced by the GRC team including Policy, Standards, and awareness materials
  • Understanding of alignment of policies and standards with the NIST Cybersecurity Framework
  • Understanding of standard document management practices
  • Understanding of the Policy Management module within the eGRC tool, RSA Archer or similar tool


  • Identify and steer Security Standards that need to be reviewed and updated through an annual process.
  • Work with Exceptions team to identify exception patterns and recommend adjustments to standards as needed to create efficiencies within process
  • Gain alignment with stakeholder teams to determine risk and overall impact to the organization (i.e. ISG Security Engineering, Enterprise Architecture, GTS)
  • Develop procedures and alternatives for those unable to comply with policies and standards
  • Provide suggestions on ways to enforce and monitor policies and standards
  • Own editing and style of:
  • Security Policy
  • Security Standards
  • Security Awareness Training Materials
  • Security Awareness Articles
  • GRC Process Documentation


  • Bachelor's degree in IT related topics
  • Ability to standardize content across media
  • Work with more technical staff to take content and transform written materials for broad audience
  • Familiarity with RSA Archer eGRC Policy Management or similar tool
  • Experience with policy lifecycle
  • Experience developing policy and standards aligned to the NIST Cybersecurity Framework
  • Excellent written communication skills, including proofreading and application of a style guide
  • Organized, prompt and detail oriented
  • Ability to understand and remember large amounts of written content and apply knowledge to ad-hoc consultations
  • Willing/"can do" attitude and consensus builder
  • Ability to manage multiple priorities and work across multiple organizations, sectors and teams
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status.

PepsiCo is an equal opportunity employer Minorities/Females/People with Disabilities/Protected Veterans/Sexual Orientation/Gender Identity.

If you'd like more information about your EEO rights as an applicant under the law, please download the available EEO is the Law ( & EEO is the Law Supplement ( documents by copying and pasting the appropriate URL in the address bar of your web browser.

To view our Pay Transparency Statement, please click here: Pay Transparency Statement

Share this job:


PepsiCo is a global food and beverage leader with net revenues of more than $65 billion and a product portfolio that includes 22 brands that generate more than $1 billion each in annual retail sales. Our main businesses – Quaker, Tropicana, Gatorade, Frito-Lay and Pepsi-Cola – make hundreds of enjoyable foods and beverages that are loved throughout the world. PepsiCo's people are united by our unique commitment to sustainable growth by investing in a healthier future for people and our planet, which we believe also means a more successful future for PepsiCo. We call this commitment Performance with Purpose: PepsiCo's promise to provide a wide range of foods and beverages from treats to healthy eats; to find innovative ways to minimize our impact on the environment by conserving energy and water and reducing packaging volume; to provide a great workplace for our associates; and to respect, support and invest in the local communities where we operate. 

In recognition of its continued sustainability efforts, PepsiCo was named for the sixth time to the Dow Jones Sustainability World Index (DJSI World) and for the seventh time to the Dow Jones Sustainability North America Index (DJSI North America) in 2012.
manufacturing, sales, marketing, brand management, gatorade, tropicana, quaker oats, frito-lay, pepsi, mtn dew, doritos, mirinda, pepsi max, tostitos, aquafina, sierra mist, fritos, lipton, cheetos, 7up
Visit Pepsico's Social Media pages:
Company Industry: Food & Beverages
Company Type: Public Company
Company Size: 10,001+