Staff IT Risk Analyst
Core
Staff-level subject matter expert shaping and governing third-party cybersecurity risk management for external suppliers, leading complex assessments and advising senior stakeholders.
Role type
Staff individual contributor (third-party risk management)
Builds
Enterprise supplier risk governance programs, risk assessment methodologies, and executive risk reporting.
Domain
Information Security / Third-Party Risk Management / Regulatory Compliance
Required skills
Third-party risk management, supplier assessments, cybersecurity governance, risk analytics, regulatory frameworks (NIST, ISO, GDPR, SOX), risk treatment strategy, stakeholder influence, process improvement, automation tools
Preferred skills
Master's degree, CRISC/CISA/CISSP/CISM certifications, SharePoint/Teams, AI-enabled automation
Technologies
ServiceNow, Optro, Archer, AuditBoard, SecurityScorecard, BitSight
Responsibilities
Lead complex third-party risk assessments for critical suppliers; shape assessment methodology and risk criteria; perform gap analysis against frameworks; lead risk treatment strategy for material findings; develop and mature risk management policies; lead governance activities including onsite audits and executive reporting; mentor analysts and drive process improvement. (via careerplan.io/jobs/44636644-staff-it-risk-analyst-at-micron)
Seniority
Staff, hands-on IC with mentorship responsibilities
