Have a good understanding and a working knowledge of navigating, updating and reporting in a GRC tool. A risk-based mindset able to succinctly identify critical areas of concern and communicate ...
Have a good understanding and a working knowledge of navigating, updating and reporting in a GRC tool. A risk-based mindset able to succinctly identify critical areas of concern and communicate ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering ... risk and enable business operations. Recruiting for this role ends on 12/31/2026. Work you'll do As ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering ... risk and enable business operations. Recruiting for this role ends on 12/31/2026. Work you'll do As ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering ... risk and enable business operations. Recruiting for this role ends on 12/31/2026. Work you'll do As ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering ... risk and enable business operations. Recruiting for this role ends on 12/31/2026. Work you'll do As ...
Develop and execute strategies for integrated risk management (IRM), governance, risk, and compliance (GRC), and Security Operations (SecOps) leveraging the ServiceNow platform. * Design and ...
Develop and execute strategies for integrated risk management (IRM), governance, risk, and compliance (GRC), and Security Operations (SecOps) leveraging the ServiceNow platform. * Design and ...
... risk, and support regulatory compliance. Responsibilities: * Lead and execute enterprise-wide ... GRC, or related security functions * Experience developing and delivering cybersecurity training ...
... risk, and support regulatory compliance. Responsibilities: * Lead and execute enterprise-wide ... GRC, or related security functions * Experience developing and delivering cybersecurity training ...
This role is ideal for engineers who can bridge modern data engineering and software development with Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments.
This role is ideal for engineers who can bridge modern data engineering and software development with Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments.
(USA) Software Engineer III
Anderson, MO · On-site
$90K - $180K/yr
Strong knowledge of SAP GRC Access Control components, including Access Request Management (ARM), Access Risk Analysis (ARA), Business Role Management (BRM), and Emergency Access Management (EAM)
(USA) Software Engineer III
Anderson, MO · On-site
$90K - $180K/yr
Strong knowledge of SAP GRC Access Control components, including Access Request Management (ARM), Access Risk Analysis (ARA), Business Role Management (BRM), and Emergency Access Management (EAM)
(USA) Software Engineer III
Noel, MO · On-site
$90K - $180K/yr
Strong knowledge of SAP GRC Access Control components, including Access Request Management (ARM), Access Risk Analysis (ARA), Business Role Management (BRM), and Emergency Access Management (EAM)
(USA) Software Engineer III
Noel, MO · On-site
$90K - $180K/yr
Strong knowledge of SAP GRC Access Control components, including Access Request Management (ARM), Access Risk Analysis (ARA), Business Role Management (BRM), and Emergency Access Management (EAM)
(USA) Software Engineer III
Cassville, MO · On-site
$90K - $180K/yr
Strong knowledge of SAP GRC Access Control components, including Access Request Management (ARM), Access Risk Analysis (ARA), Business Role Management (BRM), and Emergency Access Management (EAM)
(USA) Software Engineer III
Cassville, MO · On-site
$90K - $180K/yr
Strong knowledge of SAP GRC Access Control components, including Access Request Management (ARM), Access Risk Analysis (ARA), Business Role Management (BRM), and Emergency Access Management (EAM)
SOC Manager
Saint Louis, MO · On-site
$120 - $160/hr
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
SOC Manager
Saint Louis, MO · On-site
$120 - $160/hr
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
Winter/Spring 2027 Consulting Services Intern - Information Technology Risk Services (ITRS)
$14 - $18.75/hr
Internal audits over ERP systems, IT security, and other IT systems * Cybersecurity and Governance, Risk and Compliance (GRC) related projects such as assessments and compliance testing The ...
Winter/Spring 2027 Consulting Services Intern - Information Technology Risk Services (ITRS)
$14 - $18.75/hr
Internal audits over ERP systems, IT security, and other IT systems * Cybersecurity and Governance, Risk and Compliance (GRC) related projects such as assessments and compliance testing The ...
SOC Manager
Saint Louis, MO · On-site
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
SOC Manager
Saint Louis, MO · On-site
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
Winter/Spring 2027 Consulting Services Intern - Information Technology Risk Services (ITRS)
Saint Louis, MO · On-site
Internal audits over ERP systems, IT security, and other IT systems * Cybersecurity and Governance, Risk and Compliance (GRC) related projects such as assessments and compliance testing The ...
Winter/Spring 2027 Consulting Services Intern - Information Technology Risk Services (ITRS)
Saint Louis, MO · On-site
Internal audits over ERP systems, IT security, and other IT systems * Cybersecurity and Governance, Risk and Compliance (GRC) related projects such as assessments and compliance testing The ...
SOC Manager
Saint Louis, MO · On-site
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
SOC Manager
Saint Louis, MO · On-site
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
... risk scoring. * Lead and implement stewardship programs (centralized, federated, or hybrid) and assign ownership roles. * Select and deploy governance and GRC platforms (e.g., Vanta, MetricStream ...
Quick apply
... risk scoring. * Lead and implement stewardship programs (centralized, federated, or hybrid) and assign ownership roles. * Select and deploy governance and GRC platforms (e.g., Vanta, MetricStream ...
Senior Analyst, IBM OpenPages
O Fallon, MO · On-site
$42 - $56.25/hr
... Risk, Compliance or SOX is required Experience working with GRC platforms, particularly IBM OpenPages, strongly preferred Relevant Professional certifications related to Internal Audit (e.g., CISA ...
Senior Analyst, IBM OpenPages
O Fallon, MO · On-site
$42 - $56.25/hr
... Risk, Compliance or SOX is required Experience working with GRC platforms, particularly IBM OpenPages, strongly preferred Relevant Professional certifications related to Internal Audit (e.g., CISA ...
Security Operations Manager
Saint Louis, MO · On-site
$28K/mo
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
Security Operations Manager
Saint Louis, MO · On-site
$28K/mo
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
Security Operations Manager
Saint Louis, MO · On-site
$28K/mo
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
Security Operations Manager
Saint Louis, MO · On-site
$28K/mo
Support audits, evidence requests, and compliance requirements (NIST 800-171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
$42 - $56.25/hr
... Risk, Compliance or SOX is required • Experience working with GRC platforms, particularly IBM OpenPages, strongly preferred • Relevant Professional certifications related to Internal Audit (e.g ...
$42 - $56.25/hr
... Risk, Compliance or SOX is required • Experience working with GRC platforms, particularly IBM OpenPages, strongly preferred • Relevant Professional certifications related to Internal Audit (e.g ...
SOC Manager
Brentwood, MO · On-site
$110 - $150/hr
Support audits, evidence requests, and compliance requirements (NIST 800‑171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
New
SOC Manager
Brentwood, MO · On-site
$110 - $150/hr
Support audits, evidence requests, and compliance requirements (NIST 800‑171, CMMC, NIST CSF) in partnership with GRC. * Develop metrics and dashboards that measure organizational risk and SOC ...
New
Grc Risk information
What is the difference between Grc Risk vs Grc Analyst?
| Aspect | Grc Risk | Grc Analyst |
|---|---|---|
| Certifications | ISO 31000, CRISC, COSO | CISA, CRISC, CISSP |
| Work Environment | Risk management teams, compliance departments | IT, audit, compliance teams |
| Industry Usage | Financial, healthcare, corporate sectors | IT, finance, consulting firms |
| Primary Focus | Identifying and managing enterprise risks | Analyzing controls, assessing risks in systems |
Grc Risk professionals focus on enterprise-wide risk management strategies, while Grc Analysts typically analyze specific controls and systems to identify vulnerabilities. Both roles require similar certifications and often work within the same industries, but Grc Risk has a broader scope in risk oversight, whereas Grc Analysts concentrate on detailed control assessments.
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 25 days ago
Job description
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build asustainableeconomy where everyone can prosper. We support a wide range of digital payments choices, making transactionssecure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Senior Analyst, Risk ManagementOverviewThe Third-Party Senior Risk Analyst is a member of the Third-Party Risk Management (TPRM) Center of Excellence team within the Global Supply Chain organization. In this role, you will be responsible for performing intake and baseline risk assessments of third parties according to the TPRM program framework in order to ensure compliance to Mastercard's standards and to help management understand, measure, and manage the risks inherent with third party relationships. The role will assess and identify key third-party risks, and work with key stakeholders to ensure third-party risk assessments adhere to the company's risk appetite.
Do you have an eye for identifying risks and control deficiencies?
Have you ever performed vendor/supplier due diligence?
If so, this role may be the one for you.
Role
In this role you will:
Perform intake functions including scoping engagements against program criteria, segment suppliers / third parties, and initiate a risk assessment.
Collaborate with business requestors, Sourcing, Legal, Subject Matter Experts, and other TPRM team members to ensure a thorough understanding of the engagement and the risks inherent within.
Conduct risk-based assessments with specific focus on data privacy, information security, and resilience identifying control gaps, documenting findings and mitigating controls.
Coordinate and align risk assessment processes and insights with third-party contractual negotiations.
Partner and escalate key risks to internal stakeholders.
Evaluate requests for new or modified third party engagements and prioritize / segment based on various risk factors.
Ensure assessments are documented according to program requirements, meet the established quality standards and are completed in a timely manner.
All About You
The ideal candidate for this position should:
Possess a bachelor's degree or equivalent work experience.
Have a good understanding and a working knowledge of navigating, updating and reporting in a GRC tool.
A risk-based mindset able to succinctly identify critical areas of concern and communicate findings to internal stakeholders.
Knowledge of and expertise in risk management frameworks and processes preferably in financial services industry and payment processing.
Understanding of complex data systems in order to identify risks including knowledge of data driven technologies.
Keen sense of urgency with a results-driven orientation, strong organizational skills and interpersonal skills with proven experience in relationship building and partnering, including first-line engagement.
Superior program management skills and capability to standardize and automate processes through existing or new company tools.
Excellent written and oral communication skills. Attention to detail is a must.
Uses critical thinking to analyze information and develop effective solutions.
Have an ability to adapt to change quickly, work comfortably with ambiguity, and manage multiple tasks successfully.
Be committed to effectively serving internal customers.
Have a strong working knowledge of current workplace productivity and collaboration tools, especially Microsoft Office 365 (including SharePoint, Excel, and Teams).Mastercard is a merit-based, inclusive, equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. We hire the most qualified candidate for the role. In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact reasonable_accommodation@mastercard.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
Abide by Mastercard's security policies and practices;
Ensure the confidentiality and integrity of the information being accessed;
Report any suspected information security violation or breach, and
Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
Pay Ranges
O'Fallon, Missouri: $88,000 - $141,000 USD