
Description
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Lead, Technology Risk Analyst Overview:TR&C is a business enabler and industry leader, empowering Mastercard to provide regulators, auditors, and customers with assurance of our robust practices in risk management, control best practices, data, operational resiliency, IT operations, and security. We deliver governance, tools, and frameworks to frontline programs to ensure a secure and resilient technology control environment, supported by a multi-disciplinary team of leading technology and risk professionals. Our mission is to offer best-in-class risk and control governance, methodology, and best practices.
Job Responsibilities:
This role focuses on enhancing the capabilities of risk and control owners to identify and assess their risks and evaluate their controls, and scaling that capability across the technology environment. It also provides SME support and governance/reporting to drive progress and prioritization in alignment with Mastercard's control framework and risk management practices.
• Drive the implementation of control self-attestation initiatives to enable control owners to assess control effectiveness at scale.
• Collect, consolidate, and structure control effectiveness data across the technology environment to support automation, enable self-service reporting, and streamline the monitoring process—laying the foundation for scalable, data-driven risk management
• Develop/maintain reporting and dashboards to demonstrate progress, results, and insights to inform leadership decision making and prioritization.
• Advise control owners on approaches in analyzing risk intelligence (e.g., metrics, KPIs, issues) to evaluate control effectiveness.
• Advise control owners on remediation/treatment strategies for identified control exceptions to ensure compliance with technology and security standards and associated requirements,.
• Leverage tools, templates, and processes used in the self-attestation and control effectiveness evaluation lifecycle to ensure consistency, scalability, and relevance.
• Partner across all elements of the risk management ecosystem to ensure teams understand the broader context of their work—including how their outputs are used, who their stakeholders are, and where interdependencies exist—promoting collaboration, eliminating silos, and strengthening end-to-end control execution.
All About You:
• Background in technology audit, risk management, technology operations, information systems management, information security management, etc.
• Strong understanding of IT risk and control principles, with hands-on experience in applying risk management frameworks and executing control validation activities, including self-attestations, RCSA, and risk assessments.
• Experience partnering with control owners to design sustainable controls that satisfy requirements, achieve completeness/accuracy.
• Familiarity with navigating large, complex IT environments with an understanding of system interdependencies, data flow architectures, and how control data is structured and used across enterprise ecosystems.
• Comfortable operating in fast-paced, cross-functional environments, balancing deep technical understanding with business impact to influence risk and control outcomes.
• Drive the implementation of control self-attestation initiatives to enable control owners to assess control effectiveness at scale.
• Collect, consolidate, and structure control effectiveness data across the technology environment to support automation, enable self-service reporting, and streamline the monitoring process—laying the foundation for scalable, data-driven risk management
• Develop/maintain reporting and dashboards to demonstrate progress, results, and insights to inform leadership decision making and prioritization.
• Advise control owners on approaches in analyzing risk intelligence (e.g., metrics, KPIs, issues) to evaluate control effectiveness.
• Advise control owners on remediation/treatment strategies for identified control exceptions to ensure compliance with technology and security standards and associated requirements,.
• Leverage tools, templates, and processes used in the self-attestation and control effectiveness evaluation lifecycle to ensure consistency, scalability, and relevance.
• Partner across all elements of the risk management ecosystem to ensure teams understand the broader context of their work—including how their outputs are used, who their stakeholders are, and where interdependencies exist—promoting collaboration, eliminating silos, and strengthening end-to-end control execution. Mastercard is a merit-based, inclusive, equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. We hire the most qualified candidate for the role. In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact reasonable_accommodation@mastercard.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
Abide by Mastercard's security policies and practices;
Ensure the confidentiality and integrity of the information being accessed;
Report any suspected information security violation or breach, and
Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
Pay Ranges
O'Fallon, Missouri: $102,000 - $158,000 USDApply on company website