Senior Risk Tools Analyst

O'Fallon, Missouri (Main Campus)

Mastercard

Wir verbinden und fördern eine integrative, digitale Wirtschaft, von der Menschen, Unternehmen und Regierungen weltweit profitieren, indem wir Transaktionen sicher, einfach und zugänglich machen.

View all jobs at Mastercard

Apply now Apply later

Our Purpose

We work to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments and businesses realize their greatest potential. Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. We cultivate a culture of inclusion for all employees that respects their individual strengths, views, and experiences. We believe that our differences enable us to be a better team – one that makes better decisions, drives innovation and delivers better business results.

Title and Summary

Senior Risk Tools Analyst

Who is Mastercard?

Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships, and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.

Mission First, People Always

Corporate Security is responsible for keeping Mastercard safe and secure from cyber and physical threats. We are a highly effective team protecting a major component of global payments infrastructure. Our new Security Risk and Control Operations team is at the forefront of this effort in the “1st Line of Defense,” coordinating efforts across Corporate Security, enterprise risk management, and market-facing product teams to assess risks, implement controls to mitigate them, and provide assurance to regulators and stakeholders of Mastercard’s best-in-class performance in information security.

We are seeking a Senior Risk Analyst to manage a suite of tools that scan/assess Mastercard’s control environment at the domain/sub-domain level and actively drive control gaps to resolution. Working directly with owners of technology assets across the business, you will investigate, assess, filter, prioritize, and interpret security-related findings to facilitate remediation, sustaining Mastercard’s high scores among several subscription-based services widely used in third party risk management.

In this position, you will:

- Lead Mastercard’s employment of a set of “sensor” tools to enhance our information security posture
- Advise asset owners on how to most effectively address findings
- Generate and track formal issues when required to escalate remediation
- Alert senior management to any new findings presenting significant risk
- Build executive-level products / scorecards that convey trends in findings and risk scores
- Leverage your expertise on these sensor tools to advise managers of third party and supply chain risks on findings against external entities
- Draft responses to regulators, customers, and other external stakeholders on Mastercard’s security profile and specific findings reported by these types of tools
- Manage user access to these tools
- Maintain documentation of all related processes and procedures

The ideal candidate for this position should be:

- Experienced with subscription-based security assessment tools for vendor risk management (e.g. RiskRecon)
- Knowledgeable of web security controls at a fairly technical level (e.g. CIS Benchmarks)
- Professionally certified in networking or information security (e.g. CompTIA+)
- Adept at recognizing control shortfalls with the most significant risk implications for the business
- Familiar with RSA Archer or similar governance, risk, and compliance (GRC) tools
- Comfortable working with and communicating to a wide range of stakeholders across technology and business functions, including senior executives, technology standard owners, auditors, and information security engineers
- Effective at composing executive-level graphics and reports conveying trends
- Able to influence and drive results cross-functionally

This position aligns with National Initiative for Cybersecurity Education (NICE) competency proficiency levels of advanced to expert in the following areas:

• Data Management
• Legal, Government, and Jurisprudence
• Risk Management

This Mastercard role shares Knowledge, Skills, and Abilities (KSAs) with the following related NICE work roles:

• Security Control Assessor
• Security Architect
• Information Systems Security Developer

Corporate Security Responsibility

Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and therefore, it is expected that the successful candidate for this position must:

• Abide by Mastercard’s security policies and practices;
• Ensure the confidentiality and integrity of the information being accessed;
• Report any suspected information security violation or breach; and Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.

Mastercard is an inclusive equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact reasonable_accommodation@mastercard.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.

Corporate Security Responsibility


All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:

  • Abide by Mastercard’s security policies and practices;

  • Ensure the confidentiality and integrity of the information being accessed;

  • Report any suspected information security violation or breach, and

  • Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.

In line with Mastercard’s total compensation philosophy and assuming that the job will be performed in the US, the successful candidate will be offered a competitive base salary based on location, experience and other qualifications for the role and may be eligible for an annual bonus or commissions depending on the role. Mastercard benefits for full time (and certain part time) employees generally include: insurance (including medical, prescription drug, dental, vision, disability, life insurance), flexible spending account and health savings account, paid leaves (including 16 weeks new parent leave, up to 20 paid days bereavement leave), 10 annual paid sick days, 10 or more annual paid vacation days based on level, 5 personal days, 10 annual paid U.S. observed holidays, 401k with a best-in-class company match, deferred compensation for eligible roles, fitness reimbursement or on-site fitness facilities, eligibility for tuition reimbursement, gender-inclusive benefits and many more.

Pay Ranges

O'Fallon, Missouri: $82,000 - $127,000 USD

Atlanta, Georgia: $82,000 - $127,000 USD

Apply now Apply later
Job stats:  1  1  0

Tags: Compliance CompTIA Governance Risk management RSA Security assessment

Perks/benefits: 401(k) matching Competitive pay Fitness / gym Flex hours Flexible spending account Flex vacation Health care Insurance Medical leave Salary bonus Team events

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.