×
Register Here to Apply for Jobs or Post Jobs. X

Cybersecurity Third Party Senior Analyst

Job in Atlanta, Fulton County, Georgia, 30309, USA
Listing for: Truist
Full Time position
Listed on 2026-06-27
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security
Job Description & How to Apply Below
** The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.*
* Need Help? ( site FAQ-.pdf)

_If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to_  Accessibility ()

_(accommodation requests only; other inquiries won't receive a response)._

** Regular or Temporary:*
* Regular

** Language Fluency:
** English (Required)

*
* Work Shift:

*
* 1st shift (United States of America)

** Please review the following job description:*
* In this role, you will be responsible for evaluating and managing risks introduced by supplier connectivity, including:

- Vendor cloud integrations

- VPN and network access

- Application-to-application connections

- API and data exchange pathways

The role focuses on technical risk assessment rather than just policy compliance, analyzing how vendors connect, what they can access, and what business risk that introduces. The analyst also drives process improvements, develops new risk attribution methods, and refines governance for vendor access and connectivity.

In addition, role will be part of the continuous monitoring team focusing on security risks introduced by third-party suppliers, SaaS platforms, and publicly exposed assets. This role will develop threat models, detection strategies, and monitoring capabilities to identify and reduce external and supply-chain related threats impacting the organization.

** This is a fully on-site position based in Atlanta, GA. Teammates are expected to be in the office five days a week*
* ** Essential Duties and Responsibilities*
* Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

** 1. Technical Risk Assessment of Vendor Connectivity*
* + Evaluate security risks for VPN access, cloud integrations, API connections, and SaaS apps.

+ Assess authentication, authorization, network segmentation, and trust boundaries.

+ Identify excessive access, weak authentication, insecure patterns, and single points of failure.

+ Maintain consistent classification of high-risk integrations and critical vendor access.

** 2. Line of Business (LOB) Request Review*
* + Review and approve/deny new vendor connection requests and modifications.

+ Partner with business and engineering teams to understand use cases, recommend safer patterns, and propose compensating controls.

+ Advise Procurement, Vendor Risk, Application, and Cloud teams on technical risks.

+ Translate technical findings into business risk statements and remediation actions.

+ Support contractual security requirements and risk acceptance documentation.

** 3. Process Improvement & Method Development*
* + Refine vendor risk processes to move beyond questionnaires and annual reviews.

+ Provide risk-based guidance rather than binary approvals.

+ Introduce architecture-based risk reviews and threat-model-informed assessments.

+ Define standard secure integration patterns, risk thresholds, and escalation criteria.

** 4. Control Validation & Monitoring Alignment*
* + Validate network, IAM, and monitoring controls for vendor connections.

+ Partner with SOC and Detection Engineering to ensure high-risk connections are monitored.

+ Coordinate with third party risk management, incident response, and infrastructure teams to validate threats, contain incidents, and recommend remediation steps.

+ Monitor external threat intelligence and vendor security events to assess potential organizational impact.

+ Identify and document abuse cases and attack paths involving external parties and publicly exposed assets.

+ Translate technical findings into business risk and remediation recommendations.

*
* Required Qualifications:

*
* The requirements listed below are representative of the knowledge, skill and/or ability required.  Reasonable accommodations…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary