Lead Security Monitoring and Response Analyst,, Cloud Resilience
O'Fallon, Missouri (Main Campus)
Mastercard
Wir verbinden und fördern eine integrative, digitale Wirtschaft, von der Menschen, Unternehmen und Regierungen weltweit profitieren, indem wir Transaktionen sicher, einfach und zugänglich machen.Our Purpose
We work to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments and businesses realize their greatest potential. Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. We cultivate a culture of inclusion for all employees that respects their individual strengths, views, and experiences. We believe that our differences enable us to be a better team – one that makes better decisions, drives innovation and delivers better business results.
Title and Summary
Lead Security Monitoring and Response Analyst,, Cloud ResilienceOverview:The Lead Analyst for Enterprise Resilience within the Corporate Security Organization is primarily responsible for supporting the resiliency of the organization to enable business acceleration by ensuring the business’s current cloud strategy is resilient and makes recommendations as new technologies become available to ensure increased resilience.
Role:
• Make recommendations to management for improvements to the policy governing Cloud Computing to improve resilience across Mastercard’s cloud computing platforms.
• Advocate for the use of automation whenever possible to reduce human error.
• Work with application teams to identify and document resiliency risks and remediation plans.
• Implement a Cloud Security Structure to align with relevant certification standards such as the Center for Internet Security (CIS) Cloud Security Benchmarks, the Cloud Security Alliance (CSA) Controls Matrix and the Cloud Architecture.
• Have a high-level understanding and comprehension of regional regulations and guidelines.
• Partner with Resilience Planning (RP) to support regulatory compliance when necessary. Partner with all appropriate Risk functions to ensure required attestations to regulators and other bodies are made in line with program framework and regulatory expectations.
• Partner with the team’s technology recovery contact to ensure system impact analysis, recovery plans and exercises are performed as designated by policy.
• Participate in Risk Reviews when appropriate.
All About You:
• Certified Cloud Security Professional (CCSP), AWS Certified Solutions Architect – Professional, Microsoft Azure Cloud Architect, Certified Business Continuity Planner (CBCP) / comparable certificate or education.
• Strong analytical background with the ability to identify deficiencies in recovery strategies, plans, and internal processes.
• Knowledge of existing, emerging, and long-range issues related to cloud security, policy, and organization.
• Ability to adapt to known and unknown crises, threats, adversities, and challenges.
• Experience conducting comprehensive risk assessments of information systems, applications, and processes to identify potential vulnerabilities, threats, and impacts.
• Experience monitoring and analyzing emerging cloud threats and trends to proactively identify potential risks.
• Understanding of best cloud organizational practices, operations risk management processes, architectural requirements, and vulnerability risk.
• Fusion Risk Management Business Continuity software experience advantageous.Mastercard is an inclusive equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact reasonable_accommodation@mastercard.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
Abide by Mastercard’s security policies and practices;
Ensure the confidentiality and integrity of the information being accessed;
Report any suspected information security violation or breach, and
Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation AWS Azure CCSP Cloud Compliance Monitoring Risk assessment Risk management Strategy Vulnerabilities
Perks/benefits: 401(k) matching Competitive pay Fitness / gym Flex hours Flexible spending account Flex vacation Health care Insurance Medical leave Salary bonus
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Product Security Engineer jobs
- Open Cybersecurity Analyst jobs
- Open Security Operations Engineer jobs
- Open Information Security Officer jobs
- Open Principal Security Engineer jobs
- Open Senior Cyber Security Engineer jobs
- Open Information Security Specialist jobs
- Open Senior Product Security Engineer jobs
- Open Chief Information Security Officer jobs
- Open IT Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Senior Penetration Tester jobs
- Open Staff Security Engineer jobs
- Open Cyber Security Specialist jobs
- Open Security Specialist jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Senior Network Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Security Consultant jobs
- Open Senior Information Security Analyst jobs
- Open IT Security Analyst jobs
- Open Security Operations Analyst jobs
- Open Manager Pentest H/F jobs
- Open Information System Security Officer jobs
- Open Information Security Architect jobs
- Open Agile-related jobs
- Open Risk assessment-related jobs
- Open Network security-related jobs
- Open Analytics-related jobs
- Open SOC-related jobs
- Open CISA-related jobs
- Open ISO 27001-related jobs
- Open GCP-related jobs
- Open IAM-related jobs
- Open Application security-related jobs
- Open Pentesting-related jobs
- Open Threat intelligence-related jobs
- Open Vulnerability management-related jobs
- Open DevOps-related jobs
- Open DoD-related jobs
- Open Security Clearance-related jobs
- Open APIs-related jobs
- Open CEH-related jobs
- Open Security assessment-related jobs
- Open SaaS-related jobs
- Open Malware-related jobs
- Open Kubernetes-related jobs
- Open Java-related jobs
- Open EDR-related jobs
- Open PowerShell-related jobs