Technology Risk Analyst II
What you'll need to apply
Fields this application requires
Company-specific questions
- Have you entered into any restrictive covenant, non-compete agreement, or non-disclosure agreement which could restrict you from performing any duties of any of the position(s) for which you intend to apply?
- Gender
- Have you ever worked for Mastercard?
About this role
Employer-provided description, formatted for easier reading.
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible.
Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Technology Risk Analyst II
Overview
Mastercard powers economies and empowers people in more than 200 countries and territories worldwide. Together with our customers, we are helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart, and accessible.
The Technology Risk Management team plays a critical role in helping Mastercard identify, assess, monitor, and manage technology risks across the organization. As technology continues to evolve and regulatory expectations grow, the team provides independent risk oversight and analytical support to strengthen operational resilience, support business objectives, and enable informed risk-based decision making.
The Technology Risk Analyst supports the execution of technology risk management activities across critical technology services and processes. This role contributes to risk assessments, risk and issue management, key risk indicator analysis, control evaluation, and cross-functional risk initiatives.
The position is suited for a developing risk professional with practical experience in technology, cybersecurity, operational risk, or related disciplines who is looking to expand their impact in a global technology environment.
Role
- Support the execution of technology risk management activities across critical technology services, platforms, and processes.
- Assist in identifying, assessing, documenting, and monitoring technology risks, control gaps, and remediation activities.
- Perform risk and issue analysis to support ongoing risk oversight and reporting activities.
- Contribute to technology risk assessments, including data gathering, analysis, documentation, and stakeholder engagement.
- Assist in the development, maintenance, and enhancement of risk management methodologies, procedures, standards, and operating practices.
- Analyze risk information and key risk indicators to identify emerging trends, areas of concern, and opportunities for improved risk management.
- Support preparation of risk reports, dashboards, presentations, and management materials for leadership and governance forums.
- Partner with technology, security, operational, and business stakeholders to collect information and support risk-based decision making.
- Contribute to cross-functional analyses and initiatives that improve technology risk visibility, consistency, and effectiveness across the organization.
- Maintain high-quality documentation and evidence to support risk assessments, issue management activities, and governance requirements.
- Participate in continuous improvement efforts focused on technology risk processes, reporting capabilities, and operational effectiveness.
- Ensure assigned work is completed accurately, on time, and in accordance with established policies, standards, and procedures.
All About You
- Experience in technology risk management, operational risk, cybersecurity, information security, technology governance, audit, compliance, or a related field.
- Working knowledge of technology environments, infrastructure, applications, cloud technologies, cybersecurity concepts, and risk management principles.
- Strong analytical and problem-solving skills with the ability to evaluate information, identify risk implications, and develop practical recommendations.
- Ability to analyze data and synthesize findings into clear, concise insights for technical and non-technical audiences.
- Effective written and verbal communication skills with the ability to develop documentation and engage stakeholders across different functions.
- Strong attention to detail and commitment to producing high-quality work products.
- Experience supporting risk assessments, issue management, control evaluations, reporting, or governance activities is preferred.
- Ability to manage multiple priorities and work effectively in a fast-paced, collaborative environment.
- Demonstrated stakeholder management skills and ability to build productive working relationships.
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Risk Management, Business, or a related discipline, or equivalent practical experience.
- Relevant industry certifications such as CRISC, CISA, CISSP, Security+, ITIL, or similar are beneficial but not required.
- Proficiency in English and the ability to communicate effectively with global stakeholders.
- Curious, collaborative, and eager to learn, with a desire to grow expertise in technology risk management and operational resilience.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
- Abide by Mastercard’s security policies and practices;
- Ensure the confidentiality and integrity of the information being accessed;
- Report any suspected information security violation or breach, and
- Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.