Senior Technology Risk Analyst
RiskRecon
Our Purpose
We work to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments and businesses realize their greatest potential. Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. We cultivate a culture of inclusion for all employees that respects their individual strengths, views, and experiences. We believe that our differences enable us to be a better team – one that makes better decisions, drives innovation and delivers better business results.
Title and Summary
Senior Technology Risk Analyst OverviewMastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships, and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Mission First, People Always
Corporate Security is responsible for keeping Mastercard safe and secure from cyber and physical threats. We are a highly effective team protecting a major component of global payments infrastructure. Our Security Risk and Control Operations team is at the forefront of this effort in the “1st Line of Defense,” coordinating efforts across Corporate Security, enterprise risk management, and market-facing technology owners to assess risks, implement controls to mitigate them, and provide assurance to regulators and stakeholders that Mastercard is best-in-class in information security.
We are seeking a Senior Security Risk Analyst to play a central role in identifying, managing, and monitoring risks. As a member of the Security Risk and Control Operations team, you will apply your practical knowledge of technical controls and leverage different risk methodologies to deliver assessments that inform high-level information security risk management decisions within the Company.
In this position, you will:
- Perform risk assessments using both qualitative and quantitative methodologies
- Assess the impact of compensating controls and mitigation actions on risk likelihood and magnitude
- Engage with technology owners, control owners, risk owners, and senior management to assist in managing risks
- Prioritize risks and identify risks requiring escalation to senior management
- Develop and deliver executive-level updates on the status of security risks
- Compose responses to regulators and auditors on queries regarding security risks
- Maintain documentation of risk management and analysis procedures for Corporate Security
The ideal candidate for this position should be:
- Literate in standard cyber security and risk management frameworks such as National Institute of Standards and Technology Cyber Security Framework (NIST CSF)
- Familiar with risk management methodologies including Factor Analysis of Information Risk (FAIR) and tools utilized to perform FAIR risk assessments (e.g. Ostrich)
- Adept at recognizing control shortfalls with the most significant risk implications for the business
- Familiar with RSA Archer or similar governance, risk, and compliance (GRC) tools
- Effective at working with and communicating to a wide range of stakeholders across technology and business functions, including senior executives, product owners, and information security engineers
- Knowledgeable of technology systems and platform functions
- Willing to learn new technical skills
- Able to influence and drive results cross-functionally
This position aligns with National Initiative for Cybersecurity Education (NICE) competency proficiency levels of advanced to expert in the following areas:
• Data Management
• Policy Management
• Legal, Government, and Jurisprudence
• Risk Management
This Mastercard role shares Knowledge, Skills, and Abilities (KSAs) with the following related NICE work roles:
• Security Control Assessor
Corporate Security Responsibility
Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and therefore, it is expected that the successful candidate for this position must:
• Abide by Mastercard’s security policies and practices;
• Ensure the confidentiality and integrity of the information being accessed;
• Report any suspected information security violation or breach, and
• Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines. Mastercard is an inclusive equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact reasonable_accommodation@mastercard.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
Abide by Mastercard’s security policies and practices;
Ensure the confidentiality and integrity of the information being accessed;
Report any suspected information security violation or breach, and
Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
Pay Ranges
O'Fallon, Missouri: $82,000 - $127,000 USD Purchase, New York: $94,000 - $146,000 USD
Success!
Successfully subscribed for similar jobs
Failure!
- Lead Risk Control Analyst
Location O Fallon, United States of America, 63368-7263 Category Cyber and Corporate Security
- Lead Security Issue Manager
Location O Fallon, United States of America, 63368-7263 Category Cyber and Corporate Security
- Lead Technology Risk Analyst
Location O Fallon, United States of America, 63368-7263 Category Cyber and Corporate Security
- Senior Technology Risk Analyst
Location O Fallon, United States of America, 63368-7263 Category Cyber and Corporate Security
-
- Principal, Technology Risk Manager
Location O Fallon, United States of America, 63368-7263 Category Cyber and Corporate Security
- Director - Operational Resilience
Location O Fallon, United States of America, 63368-7263 Category Cyber and Corporate Security
-
-