Share this Job

Information Security Compliance Analyst

Apply now »

Date: Jan 24, 2019

Location: Boston, MA, US, 02110

Company: Houghton Mifflin Harcourt

Job Requisition ID: 14725

Additional Locations: 

The Organization

Houghton Mifflin Harcourt is a global learning company with the mission of changing people's lives by fostering passionate, curious learners. Among the world's largest providers of pre-K-12 education solutions, HMH combines cutting-edge research, editorial excellence and technological innovation to improve teaching and learning environments and solve complex literacy and education challenges. HMH's interactive, results-driven education solutions are utilized by 50 million students in over 150 countries, and its renowned and awarded novels, non-fiction, children's books and reference works are enjoyed by readers throughout the world. For more information, visit


The Information Technology organization is transforming to realize our mission: Become a leader in HMH’s digital transformation, and as a strategic partner, innovate and deliver highest value, competitive advantage solutions across all corporate and business functions. Our ambition is to be a digital leader through innovation and develop and deliver leading edge technology such as robotic process automation and artificial intelligence to solve some of HMH’s greatest operational business challenges.  Our professionals will have business relevant skills to connect our HMH partners to technologies that propel the businesses to deliver the greatest value for HMH and our customers.  We are building a team of IT professionals with an insatiable appetite to learn, a relentless focus on customer service, a technological curiosity toward future possibilities, and a creativity in solving business challenges with leading technologies.  Our team will find ways to work together, create a sense of community where it’s safe to take risks and learn together, develop our careers, and all have an opportunity to work on new technologies.  We will work together, learn together and have fun together. As a team, we will lead HMH’s digital transformation.


External Job Title – Information Security Compliance Analyst

Our security team works to provide continuous improvements through prevention, detection, processes, and policies for customer and company information to maintain privacy and security. The will report to HMH’s Data Privacy and Security Specialist or Information Security Compliance Specialist and will work closely with the other leads from Security, IT, legal and other business units to implement practices that meet defined policies and standards for information security.  The ideal candidate will have a strong background and technical knowledge of information security and the capability to understand complex business and technical processes.


Duties & Responsibilities include:


Establish and execute compliance monitoring programs around information technology Participate in internal security assessments, internal audits, customer audits, compliance certifications, third-party risk management and customer security questionnaire responses.

Provide accurate and consistent responses to customer security and compliance enquiries.

Manage information security risk activities including conducting annual and project risk & control assessments and third-party assessments including managing remediation activities.

Evaluate security controls to ensure effectiveness and compliance, including managing the security control remediation efforts.

Experience in an information security, IT audit or IT risk management related role.

Prefer experience with one or more of the following: conducting security control assessments, risk assessments or audits.

Prefer experience with any of the following: PCI, Sarbanes Oxley (SOX), NIST cybersecurity framework, ISO 27000 security standards, and data protection regulations and requirements.


Required Education and Experience

BA or BS in technology or related field, or equivalent work experience

Experience managing one or more technology-centric audits including PCI, ISO 27001, SSAE16, and/or SOC is a plus


Additional Technical Requirements


Use and improvement of process and controls via internal tools including Jira, Confluence, etc.

Knowledge of information security standards preferred

Knowledge of technical aspects of data security preferred


Physical Requirements:

Might be in a stationary position for a considerable time (sitting and/or standing).

The person in this position needs to move about inside the office to access file cabinets, office machinery, etc.

Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine, and computer printer.

Must be able to collaborate with colleagues via face to face, conference calls, and online meetings.




Houghton Mifflin Harcourt is committed to a comprehensive policy of Equal Opportunities and we aim to create a workplace which provides for equal opportunities for all employees and potential employee



Houghton Mifflin Harcourt (NASDAQ:HMHC) is a global learning company dedicated to changing people’s lives by fostering passionate, curious learners. As a leading provider of pre-K–12 education content, services, and cutting-edge technology solutions across a variety of media, HMH enables learning in a changing landscape. HMH is uniquely positioned to create engaging and effective educational content and experiences from early childhood to beyond the classroom.  HMH serves more than 50 million students in over 150 countries worldwide, while its award-winning children's books, novels, non-fiction, and reference titles are enjoyed by readers throughout the world.

For more information, visit  

Houghton Mifflin Harcourt is an equal employment opportunity employer and participates in E-Verify. All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of gender, race/ethnicity, gender identity, sexual orientation, protected veteran status, disability, or other protected group status.

Nearest Major Market: Boston

Job Segment: Publishing, Education