Talent.com
Cybersecurity Analyst, Third Party Risk

Cybersecurity Analyst, Third Party Risk

Marathon Petroleum CorporationSan Antonio, TX, US
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

An exciting career awaits you

At MPC, we're committed to being a great place to work – one that welcomes new ideas, encourages diverse perspectives, develops our people, and fosters a collaborative team environment.

Position Summary

We are seeking a detail-oriented and analytical Cybersecurity Analyst – Third Party Risk to join our cybersecurity team. In this role, you will be responsible for assessing, monitoring, and managing cybersecurity risks associated with third-party vendors, partners, and service providers. You will play a critical role in protecting our organization's data and systems by ensuring our external relationships meet our security standards and compliance requirements.

Key Responsibilities

  • Perform third-party cybersecurity risk assessments and due diligence for vendors by evaluating security controls through questionnaires, documentation reviews, and ratings tools; collaborate with procurement, legal, and business units to embed cybersecurity requirements into contracts and vendor selection processes.
  • Drive risk remediation and continuous improvement by tracking mitigation efforts, staying informed on emerging threats and regulatory changes, and applying insights to strengthen third-party risk management practices.
  • Conduct controls analysis of business process and systems and report impact of changes and additions to security systems.
  • Assist with the resolution of routine multi-functional technical issues. Prepare, perform, and present cybersecurity assessments and associated risks.
  • Evaluate the efficiency and effectiveness of Security processes and controls in place ensuring confidentiality, integrity, and availability of data / information, under guidance of more senior colleagues.
  • Recommend and / or execute remediation and develop cost information for such mitigation measures. Monitor networks, systems, and applications for signs of potential cybersecurity incidents. Investigate and analyze the nature and scope of cyber incidents.
  • Analyze security protocols, compliance reviews, administer and maintain security audits and reports of server access and activity; participate in disaster recovery planning per corporate guidelines.
  • Deliver and implement global security initiatives, policies, and compliance requirements. Work with IT and security engineers to produce metrics related to cybersecurity.
  • Take action through collaboration to improve metric results. Execute cyber security-related consulting, guidance, and support to customers and stakeholders.
  • Effectively communicate emerging Information Technology / Operations Technology and cybersecurity technology trends as well as their impact on the security landscape.

Education and Experience

  • Bachelor's Degree in Information Technology, related field or equivalent experience.
  • Professional certification, e.g. CISA, CRISC, CISSP, or CTPRP preferred.
  • 2+ years of relevant experience required
  • Experience in cybersecurity, risk management, or vendor risk assessment required.
  • Experience with third-party risk management platforms and tools (e.g., CyberGRX, BitSight) preferred.
  • Experience with cybersecurity risk frameworks (NIST CSF, NIST 800-53, and COBIT) preferred.
  • Experience reviewing and interpreting SOC 2 Type II reports, with the ability to assess control effectiveness, identify relevant findings, and evaluate vendor risk posture preferred.
  • Skills

  • Authentic Communicator - Expresses ideas and information, both verbally and in writing, clearly and credibly. Listens to understand and fosters constructive dialogue.
  • Cybersecurity Risk Management - The process of developing cyber risk assessment and treatment techniques that can effectively pre-empt and identify significant security loopholes and weaknesses, demonstrating the business risks associated with these loopholes and providing risk treatment and prioritization strategies to effectively address the cyber-related risks, threats and vulnerabilities, ensuring appropriate levels of protection, confidentiality, integrity and privacy in alignment with the security framework.
  • General Programming - Applies a computer language to communicate with computers using a set of instructions and to automate the execution of tasks.
  • Intrusion Detection - The use of security analytics, including the outputs from intelligence analysis, predictive research and root cause analysis in order to search for and detect potential breaches or identify recognized indicators and warnings. Also, monitoring and collating external vulnerability reports for organizational relevance, ensuring that relevant vulnerabilities are rectified through formal change processes.
  • Penetration Testing - The practice of testing a computer system, network or web application to find security vulnerabilities that an attacker could exploit. Penetration testing can be automated with software applications or performed manually.
  • Security Controls - Manages and maintains an information system that focuses on the management of risk and the management of information systems security.
  • Security Governance - The process of developing and disseminating corporate security policies, frameworks and guidelines to ensure that day-to-day business operations are guarded and well protected against risks, threats and vulnerabilities.
  • Security Information & Event Management (SIEM) - A set of tools and services offering real-time visibility across an organization's information security systems, and event log management that consolidates data from numerous sources.
  • Security Policy Management - The process of identifying, implementing, and managing the rules and procedures that all individuals must follow when accessing and using an organization's IT assets and resources.
  • Threat Analysis - Monitor intelligence-gathering and anticipate potential threats to an IT / OT systems proactively. This involves the pre-emptive analysis of potential perpetrators, anomalous activities and evidence-based knowledge and inferences on perpetrators' motivations and tactics.
  • Threat Hunting - Searches through networks, endpoints, and datasets to detect and isolate cyber threats that evade existing security solutions.
  • Vulnerability Management - The process of defining, identifying, classifying and prioritizing vulnerabilities in computer systems, applications and network infrastructures and providing the organization with the necessary knowledge, awareness and risk background to understand the threats to its business.
  • Marathon Petroleum Company LP is an Equal Opportunity Employer and gives consideration for employment to qualified applicants without discrimination on the basis of race, color, religion, creed, sex, gender (including pregnancy, childbirth, breastfeeding or related medical conditions), sexual orientation, gender identity, gender expression, reproductive health decision-making, age, mental or physical disability, medical condition or AIDS / HIV status, ancestry, national origin, genetic information, military, veteran status, marital status, citizenship or any other status protected by applicable federal, state, or local laws.

    We will consider all qualified Applicants for employment, including those with arrest or conviction records, in a manner consistent with the requirements of applicable state and local laws.

    J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Third Party Risk Analyst • San Antonio, TX, US

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Sr. Analyst, AVP - Consumer Compliance - Independent Assessment

    Sr. Analyst, AVP - Consumer Compliance - Independent Assessment

    CitigroupSan Antonio, TX, US
    serp_jobs.job_card.full_time
    Analyst, AVP - Consumer Compliance - Independent Assessment.Working at Citi is far more than just a job.A career with us means joining a team of more than 230,000 dedicated people from around the g...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Call Center Representative

    Call Center Representative

    Conduent State & Local Solutions, IncLa Vernia, TX, US
    serp_jobs.job_card.full_time
    Through our dedicated associates, Conduent delivers mission-critical services and solutions on behalf of Fortune 100 companies and over 500 governments - creating exceptional outcomes for our clien...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    KYC Operations Lead Analyst

    KYC Operations Lead Analyst

    CitigroupSan Antonio, TX, US
    serp_jobs.job_card.full_time
    Working at Citi is far more than just a job.A career with us means joining a team of more than 230,000 dedicated people from around the globe. At Citi, you'll have the opportunity to grow your caree...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    PayPal Risk Operations Associate

    PayPal Risk Operations Associate

    TradeJobsWorkforce78254 San Antonio, TX, US
    serp_jobs.job_card.full_time
    Bring your energy to the role of PayPal Risk Operations Associate to perform responsibilities as a Risk Operations Associate. Deliver outstanding service to customers and colleagues.Deliver outstand...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Side Hustle Project Lead

    Side Hustle Project Lead

    Finance BuzzBoerne, Texas, US
    serp_jobs.job_card.full_time +1
    We’re offering a role for someone who wants to lead their own side-income project in their spare time.You’ll explore various proven side hustles, select the ones that fit your lifestyle, and run th...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Credit Risk Analyst Senior

    Credit Risk Analyst Senior

    USAASan Antonio, TX, US
    serp_jobs.job_card.full_time
    At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Bank Credit Risk Analyst - Retail Banking (mid-level position)

    Bank Credit Risk Analyst - Retail Banking (mid-level position)

    USAA CareersSan Antonio, TX, United States
    serp_jobs.job_card.full_time
    At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Analyst

    Analyst

    TradeJobsWorkforce78210 San Antonio, TX, US
    serp_jobs.job_card.full_time
    ESSENTIAL JOB FUNCTIONS Analyzes global markets for IT Services, servers, storage, backup, IT security, productivity software, remote monitoring services, hyperconvergence and IoT.Studies SMB and m...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Information Security Analyst

    Information Security Analyst

    TradeJobsWorkForce78257 San Antonio, TX, US
    serp_jobs.job_card.full_time
    Monitor their organization’s networks for security breaches and investigate a violation when one occurs Install and use software, such as firewalls and data encryption programs, to protect sensitiv...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Remote Side Hustle Developer

    Remote Side Hustle Developer

    Finance BuzzPleasanton, Texas, US
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    This position is for individuals who want to develop a side income stream while still working full time.You will test different small-scale remote opportunities, learn what works, and grow what pro...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Part-Time Side Work - Earn on Top of Your Day Job

    Part-Time Side Work - Earn on Top of Your Day Job

    Finance BuzzStockdale, Texas, US
    serp_jobs.job_card.part_time +1
    We’re looking for people interested in a part-time remote opportunity to supplement their main income.This position is ideal for professionals, freelancers, and anyone who wants to improve their fi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Cybersecurity Specialist - NSTP 3

    Cybersecurity Specialist - NSTP 3

    NukuDoSan Antonio, TX, US
    serp_jobs.job_card.full_time +1
    Cybersecurity Specialist - NSTP 3.This is not a training program; it's a full-time job.The nuKudo Specialist Training Program (NSTP) is a. From day one, you are hired as a paid employee of nuKud...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Consumer Credit Portfolio Risk Analyst (SAN ANTONIO)

    Consumer Credit Portfolio Risk Analyst (SAN ANTONIO)

    UsaaSan Antonio, TX, United States
    serp_jobs.job_card.full_time
    Ensure all your application information is up to date and in order before applying for this opportunity.At USAA, our mission is to empower our members to achieve financial security through highly c...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Bank Credit Risk Analyst - Retail Banking (mid-level position)

    Bank Credit Risk Analyst - Retail Banking (mid-level position)

    USAASan Antonio, TX, US
    serp_jobs.job_card.full_time
    At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Remote Finance Director - AI Trainer

    Remote Finance Director - AI Trainer

    Data AnnotationNew Braunfels, Texas
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the q...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Credit Risk Analyst

    Credit Risk Analyst

    RIT SolutionsSan Antonio, TX, US
    serp_jobs.job_card.full_time
    San Antonio, TX (MUST BE LOCAL) 6+ Months Video Must have bank or banking SAS coding SQL coding Banking concepts Clear communication Automation software.serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Bank Credit Risk Analyst - Retail Banking (mid-level position) - Focused on Empowering Financial Sec

    Bank Credit Risk Analyst - Retail Banking (mid-level position) - Focused on Empowering Financial Sec

    UsaaSan Antonio, TX, US
    serp_jobs.job_card.full_time
    Ensure all your application information is up to date and in order before applying for this opportunity.At USAA, our mission is to empower our members to achieve financial security through highly c...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cyber Fraud Analyst II (SAN ANTONIO)

    Cyber Fraud Analyst II (SAN ANTONIO)

    UsaaSan Antonio, TX, US
    serp_jobs.job_card.full_time
    If you want to know about the requirements for this role, read on for all the relevant information.At USAA, our mission is to empower our members to achieve financial security through highly compet...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    PayPal Fraud Analyst

    PayPal Fraud Analyst

    TradeJobsWorkforce78208 San Antonio, TX, US
    serp_jobs.job_card.full_time
    Make an impact in the role of PayPal Fraud Analyst to perform daily responsibilities with dedication.Stay adaptable in a dynamic, fast-paced environment. Work with your team to maintain efficiency a...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Risk Manager

    Risk Manager

    TradeJobsWorkforce78248 San Antonio, TX, US
    serp_jobs.job_card.full_time
    Risk Manager job responsibilities : Leads the identification, communication, measurement, and management o...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30