1

Privacy Analyst Jobs in Tennessee (NOW HIRING)

Senior IT Analyst - Security The Senior IT Analyst - Security is a key member of the Information ... Maintain a privacy regulatory register documenting applicability, key compliance obligations ...

Senior IT Analyst - Security The Senior IT Analyst - Security is a key member of the Information ... Data Protection & Privacy Compliance -- Americas * Monitor, interpret, and implement data ...

Title: ServiceNow HRSD Analyst Location: Remote or onsite in Memphis, TN Contract HRSD System ... Privacy Policy and INSPYR Solutions' AI and Automated Employment Decision Tool Policy: . By ...

Sr Analyst I

Nashville, TN

$85K - $112K/yr

Job Title Sr Analyst I Employment Type Full time Work Authorization Requirements Authorized to work ... Privacy Your personal data will be handled in accordance with applicable data protection laws. We ...

Sr Analyst I

Nashville, TN

$85K - $112K/yr

Job Title Sr Analyst I Employment Type Full time Work Authorization Requirements Authorized to work ... Privacy Your personal data will be handled in accordance with applicable data protection laws. We ...

Sr Analyst I

Nashville, TN · On-site

$85K - $112K/yr

Job Title Sr Analyst I Employment Type Full time Work Authorization Requirements Authorized to work ... Privacy Your personal data will be handled in accordance with applicable data protection laws. We ...

Apply cybersecurity and privacy principles to organizational requirements (relevant to ... Analyze organization's cyber defense policies and configurations and evaluate compliance with ...

Showing results 41-60

Privacy Analyst information

See Tennessee salary details

$73.5K

$88.8K

$118K

How much do privacy analyst jobs pay per year?

As of Aug 10, 2026, the average yearly pay for privacy analyst in Tennessee is $88,805.00, according to ZipRecruiter salary data. Most workers in this role earn between $75,300.00 and $89,400.00 per year, depending on experience, location, and employer.

What is the difference between Privacy Analyst vs Data Privacy Specialist?

AspectPrivacy AnalystData Privacy Specialist
CertificationsCertifications like CIPP, CIPM often preferredSame certifications commonly required
Work EnvironmentCorporate, government, or consulting settingsCorporate and compliance-focused environments
Employer & IndustryTech, finance, healthcare, governmentPrimarily in regulated industries like finance and healthcare
Search & Comparison IntentUnderstanding roles, responsibilities, and qualificationsClarifying job scope and career path differences

Both Privacy Analysts and Data Privacy Specialists work to ensure organizations comply with privacy laws and protect data. Privacy Analysts often focus on monitoring compliance, conducting audits, and analyzing privacy risks. Data Privacy Specialists typically handle policy development, training, and implementing privacy programs. While their roles overlap, Privacy Analysts tend to focus more on assessment and monitoring, whereas Data Privacy Specialists are more involved in policy and strategy development.

What degree do you need for a privacy analyst?

A privacy analyst typically needs at least a bachelor's degree in fields such as information technology, cybersecurity, computer science, or a related discipline. Relevant certifications like CIPP or CIPM can enhance qualifications, and strong knowledge of data protection laws and privacy tools is also important.

What are the key skills and qualifications needed to thrive as a privacy analyst, and why are they important?

To thrive as a Privacy Analyst, you need a strong understanding of data protection laws, risk assessment, and privacy frameworks, often backed by a degree in information security, law, or a related field. Familiarity with tools like data mapping software, compliance management systems, and certifications such as CIPP or CIPM is highly beneficial. Strong analytical thinking, attention to detail, and effective communication skills help navigate complex privacy issues and liaise with stakeholders. These skills are essential to ensure organizations comply with privacy regulations and effectively safeguard sensitive information.

How much do privacy analysts make?

Privacy analysts in general earn a median annual salary of around $75,000 to $100,000, depending on experience, certifications, and the industry. Salaries tend to be higher in large organizations and in regions with a high cost of living, with some senior roles exceeding $120,000. The role often requires knowledge of data protection laws, privacy frameworks, and tools like privacy management software.

What is a privacy analyst?

Privacy Analysts are professionals responsible for ensuring that an organization complies with privacy laws and regulations. They assess how personal data is collected, stored, used, and shared, and work to identify and mitigate privacy risks. Privacy Analysts also develop and implement privacy policies, conduct privacy impact assessments, and provide training to staff on data protection best practices. Their work helps organizations safeguard sensitive information and maintain the trust of customers and stakeholders.

Are privacy analysts in demand?

Privacy analysts are in high demand due to increasing data protection regulations and growing concerns over data security. Organizations across various industries seek professionals skilled in privacy compliance, risk assessment, and data governance, often requiring knowledge of tools like GDPR and CCPA, as well as relevant certifications such as CIPP or CIPM.

What does a privacy analyst do?

As a privacy analyst, you assess business policies, procedures, and operations to ensure your company or organization meets privacy requirements and government regulations for the protection of critical information. Your duties in this career not only include analysis but also creating strategies for improvement. Your responsibilities may involve providing training or educational materials for employees so they can better manage privacy protection and mitigate risks related to the unauthorized access of sensitive information. You may focus on general operations of a business or organization, or you could focus on privacy as it relates to specific projects.

How does a privacy analyst typically collaborate with other departments to ensure compliance with data protection regulations?

Privacy Analysts regularly work with teams such as IT, Legal, HR, and Compliance to identify, assess, and mitigate data privacy risks across the organization. They often lead or participate in cross-functional meetings to review data handling practices, update privacy policies, and conduct impact assessments for new projects. Effective communication and relationship-building skills are essential, as Privacy Analysts must translate complex regulatory requirements into practical guidance for non-technical staff. This collaborative approach helps ensure that data protection measures are consistently applied and that the organization remains compliant with relevant laws.
What are the most commonly searched types of Privacy Analyst jobs in Tennessee? The most popular types of Privacy Analyst jobs in Tennessee are:
What are popular job titles related to Privacy Analyst jobs in Tennessee? For Privacy Analyst jobs in Tennessee, the most frequently searched job titles are:
What job categories do people searching Privacy Analyst jobs in Tennessee look for? The top searched job categories for Privacy Analyst jobs in Tennessee are:
What cities in Tennessee are hiring for Privacy Analyst jobs? Cities in Tennessee with the most Privacy Analyst job openings:
Infographic showing various Privacy Analyst job openings in Tennessee as of August 2026, with employment types broken down into 67% Full Time, 11% Part Time, and 22% Contract. Highlights an 78% In-person, and 22% Remote job distribution, with an average salary of $88,805 per year, or $42.7 per hour.

Sr IT Analyst - Security

GEODIS

Brentwood, TN • On-site

Full-time

Medical, Dental, Vision, Retirement

Re-posted yesterday


GEODIS rating

6.6

Company rating: 6.6 out of 10

Based on 122 frontline employees who took The Breakroom Quiz

270th of 360 rated logistics


Job description

Senior IT Analyst - Security
The Senior IT Analyst - Security is a key member of the Information Security team, responsible for maintaining and advancing the organization's compliance posture across a broad portfolio of regulatory frameworks. Reporting to the Head of Security, this role leads audit readiness and evidence management for SOC 1, SOC 2, and HIPAA engagements; operationalizes controls aligned to ISO 27001 and NIST frameworks; and serves as the internal subject-matter expert for data protection regulations across North and South America. Requires a practitioner who can translate technical security controls into audit-ready artifacts and communicate risk clearly to both technical teams and executive stakeholders. Drives security governance, compliance, and risk management initiatives.
Who We Are:
GEODIS specializes in unlocking business value in a complex world, ensuring seamless movement of goods worldwide. As a global third-party logistics provider (3PL), we power A Better Way to Deliver for the world's top brands and manufacturers. Fuel your career with GEODIS and discover endless growth opportunities.
Your role on the team:
  • IT Compliance & Audit Management
  • Direct the planning, execution, and successful completion of annual SOC 1 Type 2 (SSAE 18 /AT-C 320) and SOC 2 Type 2 audits, including audit scoping, control readiness assessments, evidence management, stakeholder coordination, and primary engagement with external auditors.
  • Lead company HIPAA Security Rule compliance initiatives by overseeing risk assessments, risk mitigation strategies, and the design, implementation, and documentation of administrative, physical, and technical safeguards to ensure ongoing regulatory compliance and operational
    effectiveness.
  • Provide guidance to control owners regarding compliance obligations, documentation expectations, evidence collection, remediation activities, and audit readiness.
  • Coordinate cross-functional teams (IT, Engineering, HR, Legal) to gather and validate audit evidence in a timely manner.
  • Manage findings and observations through to closure, including root-cause analysis, remediation planning, and evidence of corrective action./
  • Develop and maintain compliance metrics, dashboards, and reporting to support visibility into governance and compliance activities.
  • ISO 27001 & NIST Control Framework
  • Serve as a trusted internal subject-matter expert (SME) for the ISO 27001 Information Security Management System (ISMS), providing strategic guidance on governance, policy development, risk management, control implementation, and management review processes.
  • Lead the alignment and mapping of organizational security policies, standards, and procedures to ISO 27001 Annex A controls, ensuring continued compliance and proactive adaptation to evolving regulatory and industry requirements.
  • Apply the NIST Cybersecurity Framework (CSF) and NIST SP 800-53 control catalog to evaluate the design and operating effectiveness of security controls, identify compliance gaps, and strengthen the organization's cybersecurity posture.
  • Plan and execute periodic control assessments, internal audits, and maturity evaluations against ISO 27001 and NIST control frameworks, documenting findings, assessing risk impacts, and delivering prioritized remediation roadmaps to stakeholders.
  • Partner with business, technology, and compliance teams to drive corrective action plans, monitor remediation efforts, and validate control improvements through ongoing governance and assurance activities.
  • Support external audits, customer due diligence reviews, and third-party security assessments by providing control documentation, evidence packages, and framework mappings that demonstrate compliance with ISO 27001 and NIST requirements.
  • Maintain awareness of emerging cybersecurity standards, regulatory developments, and industry best practices to continuously enhance the organization's security governance and control environment.
  • Data Protection & Privacy Compliance - Americas
  • Monitor, interpret, and implement data protection and privacy requirements across the Americas, including U.S. state privacy laws (CCPA/CPRA, VCDPA, CPA, TDPSA), GLBA, COPPA, Canada's PIPEDA and provincial privacy laws, Brazil's LGPD, Mexico's LFPDPPP, Argentina's Ley 25.326, Colombia's Ley 1581, Chile's Ley 19.628, and emerging regulatory frameworks.
  • Maintain a privacy regulatory register documenting applicability, key compliance obligations, implementation status, and regulatory developments across relevant jurisdictions.
  • Partner with Legal, Product, Engineering, and Security teams to conduct Data Protection Impact Assessments (DPIAs), privacy risk assessments, data mapping exercises, and Records of Processing Activities (RoPAs), ensuring privacy-by-design principles are embedded in business processes and technology solutions.
  • Advise stakeholders on cross-border data transfers, data residency requirements, third-party processing arrangements, and jurisdiction-specific privacy obligations.
  • Develop, maintain, and enhance privacy policies, standards, procedures, and governance controls to support regulatory compliance and organizational risk management.
  • Support regulatory inquiries, customer assessments, and compliance audits by providing privacy documentation, evidence, and control artifacts.
  • Deliver privacy awareness training and guidance to promote compliance, accountability, and responsible data handling practices across the organization.
  • Policy, Risk & General Security Operations
  • Develop, maintain, and periodically review information security policies, standards, and procedures to ensure alignment with ISO 27001, regulatory requirements, and industry best practices.
  • Support enterprise risk management activities by conducting security risk assessments and evaluating threats, vulnerabilities, and control effectiveness using established methodologies such as NIST RMF and FAIR.
  • Perform third-party risk assessments, including security questionnaire reviews, due diligence evaluations, and vendor risk analysis to support procurement and ongoing oversight activities.
  • Participate in security incident response and post-incident review activities, documenting lessons learned and recommending control improvements to reduce future risk
  • Monitor emerging cybersecurity threats, regulatory developments, and industry trends, providing timely analysis and actionable recommendations to leadership and key stakeholders.
  • As required and assigned
  • Supports GEODIS' programs for Safety, Health, Environment, Quality , Ethics, Compliance, CSR and Sustainability

What you need: (requirements)
  • Bachelor's degree in Information Security, Computer Science, Information Systems, or a closely related field. Equivalent combination of education and directly relevant experience will be considered.
  • Minimum 6 years of progressive experience in information security, IT audit, or IT compliance roles.
  • Demonstrated hands-on experience managing SOC 1 and/or SOC 2 audit engagements as an auditee-side lead.
  • Direct experience with HIPAA Security Rule compliance programs, including risk analysis and safeguard documentation.
  • Practical working knowledge of ISO 27001 control domains and NIST SP 800-53 or CSF control families.
  • Familiarity with data protection regulations in two or more Americas jurisdictions (e.g., CCPA/CPRA, LGPD, PIPEDA).
  • Experience writing and maintaining information security policies, standards, and procedures.
  • Proficiency with GRC platforms (e.g., OneTrust, Vanta, Drata, ServiceNow GRC, or equivalent).
  • Certifications - One or More Required
  • Certified Information Systems Security Professional (CISSP) - ISC²
  • Certified Information Systems Auditor (CISA) - ISACA
  • Certified Information Security Manager (CISM) - ISACA
  • ISO 27001 Lead Auditor or Lead Implementer
  • Certified in Risk and Information Systems Control (CRISC) - ISACA
  • Preferred Qualifications
  • Experience with SaaS or cloud-native environments (AWS, Azure, GCP) and relevant compliance considerations (e.g., shared responsibility model, cloud security controls).
  • Familiarity with SOC 2 criteria extensions (Availability, Confidentiality, Processing Integrity, Privacy) beyond Security.
  • Working knowledge of LGPD or other South American data protection frameworks in an operational compliance capacity.
  • Experience supporting customer security reviews, RFP security questionnaires, or enterprise sales security due diligence.
  • Familiarity with vulnerability management programs and how vulnerability data feeds compliance risk registers.
  • Spanish or Portuguese language proficiency is a plus given regional privacy compliance responsibilities.
  • Strong written and verbal communication skills, with the ability to translate complex regulatory, risk, and technical security concepts into clear, actionable guidance for diverse, non-technical stakeholders.
  • Highly organized with strong attention to detail and the ability to manage multiple concurrent audits, assessments, and compliance initiatives within tight deadlines.
  • Analytical and risk-focused mindset with demonstrated ability to identify control gaps, assess impact, and develop pragmatic, risk-based remediation strategies.
  • Proven ability to collaborate effectively across cross-functional teams, including Engineering, Legal, HR, Finance, and Business stakeholders, to drive compliance and risk reduction outcomes.
  • High level of professional integrity, judgment, and discretion in handling confidential, regulated, and sensitive information.

What you gain from joining our team:
  • Free telemedical access to doctors and therapists through First Stop Health is available on the first day of employment!
  • Access wages early with the Rain financial wellness app
  • Health, dental, and vision insurance after 30 days of employment
  • 401k match
  • Paid maternity and parental leave
  • Access to career development, employee resource groups, and mentorship programs
  • Employee discounts
  • Access to employee perks like fitness class discounts and free access to a relaxation and meditation app
  • Free financial wellness programs
  • Daycare discount program
  • Opportunities to volunteer and give back to your community.
  • + more!

Join our Team!
  • Visit our website at workatGEODIS.com and chat with our virtual recruiter, Sophie, to fast-track your way to an interview.

OR
Text DELIVER to 88300 to Apply!
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights notice from the Department of Labor.

What GEODIS employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom