Third-Party Cyber Risk Management - Engineer II
Core
Execute third-party security assessments, maintain risk inventory, and enforce secure data-sharing practices for GEICO's third-party ecosystem.
Role type
mid-level IC third-party cyber risk management engineer
Builds
third-party risk inventory, security assessment workflows, and data-sharing controls
Domain
Insurance / Cybersecurity / Third-Party Risk Management
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work
Required skills
risk assessment execution, data reconciliation, GRC platform usage, regulatory compliance knowledge, root-cause analysis, analytical problem-solving
Preferred skills
AI/automation application, cloud environment familiarity, dashboarding tools proficiency
Technologies
Archer, ServiceNow, OneTrust, SQL, Power BI, Excel, AWS, GCP, Azure
Responsibilities
Execute third-party security assessments and reassessments in industry-recognized tools; prioritize and work through the backlog of missing assessments; reconcile third-party records across systems to close data gaps; monitor remediation status against SLAs; contribute to executive-level reporting on risk metrics; conduct root-cause analysis on data-quality issues.
Seniority
Junior to Mid-level, hands-on IC