Security Analyst II – Third Party Risk Management
Há 21 horas
MindbodyExplore the fitness, wellness, and beauty experiences that move you and see why businesses rely on Mindbody software to grow their brands.
View all jobs at Mindbody
We're revolutionizing the fitness & wellness industry, and we’re looking for talented people to help us do it. Mindbody + ClassPass bring together the best of both sides of the market: Mindbody is the industry’s most trusted all-in-one technology platform; ClassPass is one of the most popular apps for fitness & self-care enthusiasts. Together we’re partnering with more than 70,000 fitness studios, gyms, salons, and spas around the world. We’re not just another tech company—we’re far and away the leader of our industry. So join the team, work with mission-led people, and enjoy amazing benefits. Let’s see what we can accomplish together
Who we are
We are a dedicated team of security and information technology professionals focused on evolving Mindbody’s security posture. Our collective goal is to protect the future, fostering increased opportunities for wellness businesses worldwide to empower their customers in leading secure and healthy lives. Committed to a higher purpose, we continuously challenge ourselves and our organization to excel, understanding the strength derived from collaborative efforts towards a common objective. We are advocates for a diverse workplace, fostering an environment where individuals can bring their authentic selves to contribute to our shared success. At the heart of our achievements lies the belief in the value of our people. If you share our passion and vision, consider joining our team, and let's explore the remarkable feats we can achieve together
Your role
The Third-Party Security Risk Analyst will serve as trusted advisor for Mindbody + Classpass’ business stakeholders. This role is part of the Governance, Risk and Compliance team which is responsible for managing risks across the organization. You will be responsible for identifying, assessing, and mitigating risks related to third-party relationships and services. The role requires an organized, action-oriented team player with the ability to prioritize daily work and support multiple initiatives simultaneously; strong communication and customer focus is required. This role also works closely with internal business customers to ensure existing and potential customers are provided accurate security posture information through timely questionnaire responses and content provided in our customer trust center.
You will:
- Manage third party risk management queues to include onboarding, periodic assessments, offboarding and due diligence requests to ensure appropriate actions are taken to engage or disengage third parties.
- Perform periodic security risk assessments and monitor the security posture of our existing third-party vendors.
- Implement enhancements to the TPRM Program, including recommendations on process, automation, and tools used for the TPRM Program’s processes, policies, standards, procedures, and tooling.
- Assign risk rankings of vendor and customer relationships by analyzing due diligence questionnaire responses and documentation.
- Partners with Procurement and Legal departments during contractual negotiations to provide consultation on security and privacy clauses included in third party agreements.
- Collaborates with our BISOs to advise Business Partners on the appropriate implementation of cyber security, procurement and legal controls for new third-party services, leveraging a combination of these controls and the Third Party's security and privacy programs to maintain our information security and privacy posture.
- Prepare security risk reports, dashboards, and operational review metrics (KRIs) or other metrics for continuous improvement and monitoring.
- Maintain the integrity of Mindbody + Classpass’ Customer Trust Center documentation and customer security requests.
- Manages any internal and external audit requests related to TPRM activities and other compliance requests as needed.
About the right team member
- Self-starter with the desire to ramp up quickly, collaborate, execute and propose alternative or creative solutions when necessary.
- Excellent time management, critical thinking, analytical and communication skills.
- Strong interpersonal skills, capable of interacting at all levels of the organization and with vendors.
- The ability to multitask and complete assignments within deadlines that may have short lead times.
- Detail-oriented, deadline driven, self-directed and organized.
- Resourceful and can work well independently.
You’ll thrive in this role with experience in:
- 3-4 years of professional work experience in third party risk, enterprise risk, cyber security governance and/or related functions (such as IT Risk Management and IT Audit).
- Demonstrate leadership skills, excellent interpersonal skills, and proven problem-solving ability.
- Strong knowledge of industry best practices for third party risk management.
- Relevant industry certifications (e.g. CISSP, CISM, CRISC, CISA).
- Ability to provide excellent customer service to internal customers.
Sound like the role for you? We’d love to hear from you Even if you’re not 100% sure about potential fit, we still encourage you to apply. We’re looking for the right person, not the perfect series of checkboxes.
Mindbody is an Equal Opportunity Employer. We highly value diversity at our company and encourage people of all different backgrounds, experiences, abilities and perspectives to apply. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability status, or other protected characteristics.
By entering your email and phone number and submitting your application, you consent to receive emails, calls and SMS about your application and other roles at Mindbody, including by auto-dialer. Message and data rates may apply. Opt-out or text STOP to cancel at any time. If you are a California resident or reside outside the United States then by submitting your application you confirm that you have read, understood, agree and - where applicable - grant your prior, free, informed and express consent for the processing of your personal information, including sensitive personal information, as described in ourCalifornia Applicant Privacy Notice or International Applicant Privacy Notice (as applicable).
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
#J-18808-Ljbffr-
Security Analyst III
2 meses atrás
Região Geográfica Intermediária de Manaus, Brasil Mindbody Tempo inteiroWe're revolutionizing the fitness & wellness industry, and we’re looking for talented people to help us do it. Mindbody + ClassPass bring together the best of both sides of the market: Mindbody is the industry’s most trusted all-in-one technology platform; ClassPass is one of the most popular apps for fitness & self-care enthusiasts. Together we’re...
-
Cyber Security Specialist
2 semanas atrás
Rio de Janeiro, Rio de Janeiro, Brasil Tenchi Security Tempo inteiroTenchi Security is a cutting-edge company that specializes in Third-Party Cyber Risk Management solutions for businesses.About UsFounded by visionary entrepreneurs and backed by esteemed institutional investors, we are dedicated to disrupting the rapidly growing cyber security industry. Our innovative products are designed to address the unique needs of our...
-
Security Compliance Specialist
Há 1 mês
Região Geográfica Intermediária de Castanhal, Brasil Aprende Institute Tempo inteiroAprende Institute is seeking an experienced Security Compliance Specialist with strong project management skills to lead our efforts in analyzing, auditing, and implementing security protocol protections to ensure compliance with industry standards such as SOC 2. This role is pivotal in managing security compliance initiatives, working closely with...
-
Software Engineer
Há 1 mês
Rio De Janeiro, Brasil Tenchi Security Tempo inteiroTenchi is a Cyber Security company that is building innovative technology focused on Third-Party Cyber Risk Management for businesses. Founded by serial entrepreneurs and backed by a solid group of Institutional Investors, we seek to disrupt this rapidly growing industry. Our company is 100% remote and our team is spread across the globe, including Brazil,...
-
Site Security Operations Director
Há 1 mês
Região Geográfica Intermediária de Cascavel, Brasil Iqtalent Tempo inteiroAbout the RoleThe Site Security Manager is responsible for leading a team of static security guards to ensure the safety and security of client personnel and operations at their designated site.Key Responsibilities:Develop and implement a comprehensive security plan to mitigate risks and ensure compliance with client requirements.Train and develop a team of...
-
Região Geográfica Intermediária de Tefé, Brasil BDC Tempo inteiroCyber Security And Information Technology Risk SpecialistBDC We are BDC, the Business Development Bank of Canada and the financial institution devoted to Canadian entrepreneurs. We help create and develop strong Canadian businesses through financing, advisory services and capital, with a focus on small businesses. Choosing BDC as your employer means working...
-
Product Security Engineer
Há 1 mês
Região Geográfica Intermediária de Manaus, Brasil Mindbody Tempo inteiroMindbodyExplore the fitness, wellness, and beauty experiences that move you and see why businesses rely on Mindbody software to grow their brands. We're revolutionizing the fitness & wellness industry, and we’re looking for talented people to help us do it. Mindbody + ClassPass bring together the best of both sides of the market: Mindbody is the...
-
Site Security Manager
4 meses atrás
Região Geográfica Intermediária de Cascavel, Brasil Iqtalent Tempo inteiroWHY CONSTELLIS? In an ever-changing and complex world, security concerns are paramount. Enhanced security requires education, training, and specialized skills. Constellis provides end-to-end risk management and comprehensive security solutions to safeguard people and infrastructure globally. Our team of strategic problem solvers has a steadfast moral compass...
-
Senior Networking Security Specialist
3 semanas atrás
Região Geográfica Intermediária de Santarém, Brasil Bosch Group Tempo inteiroJob DescriptionThe role of Senior Networking Security Analyst at Bosch Group involves designing, implementing, and maintaining network security infrastructure using FortiGate firewall solutions. Key responsibilities include configuring, managing, and troubleshooting FortiGate firewalls, monitoring network traffic, and developing security protocols to protect...
-
Security Consultant | Infrastructure Security
Há 21 horas
Região Geográfica Intermediária de Cruzeiro do Sul, Brasil IBM Tempo inteiroSecurity Consultant | Infrastructure SecurityIBM For more than a century, IBM has been a global technology innovator, leading advances in AI, automation and hybrid cloud solutions that help businesses grow. IntroductionIn this role, you’ll work in one of our IBM Consulting Client Innovation Centers (Delivery Centers), where we deliver deep technical and...
-
Chief Information Security Officer
Há 1 mês
Região Geográfica Intermediária de Pelotas, Brasil Social Discovery Group Tempo inteiroSocial Discovery Group is the world's leading social discovery company, offering a range of premium international dating services and social discovery apps with a focus on video streaming, AI technologies, entertainment, and game mechanics. Our product portfolio includes Dating.com, Cupid Media, Dil Mil, and many others. With over 500 million users in 150...
-
Onsite Support Analyst
5 meses atrás
Rio De Janeiro, Brasil Schlumberger Tempo inteiroThe Onsite Support Analyst is responsible for serving as a desktop support expert responsible for computer hardware, software (location specific or global) and peripherals. The Onsite Support Analyst acts as the second point of escalation for the resolution of desktop or laptop related incidents, service requests and connectivity issues. - **In Junior Level...
-
Credit Risk Analyst
6 meses atrás
Rio de Janeiro, Brasil Peridot Financing Solutions Tempo inteiroSearching for: **C **redit **Risk **Analyst **About Us Peridot is a leading fintech company in the working capital finance space, serving some of the largest tech manufacturers globally. By funding, structuring and servicing accounts receivables portfolios for our customers, we help companies get the most out of their working capital. We help our customers...
-
Software Engineer
4 semanas atrás
Região Geográfica Intermediária de Juiz de Fora, Brasil Tenchi Security Tempo inteiroTenchi is a Cyber Security company that is building innovative technology focused on Third-Party Cyber Risk Management for businesses. Founded by serial entrepreneurs and backed by a solid group of Institutional Investors, we seek to disrupt this rapidly growing industry. Our company is 100% remote and our team is spread across the globe, including Brazil,...
-
It Security Engineer
Há 1 mês
Região Geográfica Intermediária de Manaus, Brasil SICPA Tempo inteiroSICPASICPA is a long-trusted partner to governments, central banks, high security printers and the industry: a market leader in security inks for banknotes. We are looking for a highly motivated, outstanding Software Security Engineer to join our small but very dynamic team. SOFTWARE SECURITY ENGINEER ROLE: Collaborate with cross-functional teams to...
-
Compliance Analyst
2 meses atrás
Região Geográfica Intermediária de Pelotas, Brasil Paymentology Tempo inteiroPaymentology is the first truly global issuer-processor, giving banks and fintechs the technology, team and experience to rapidly issue and process Mastercard, Visa and UnionPay cards across more than 50 countries, at scale. Our advanced, multi-cloud platform, offering both shared and dedicated processing instances, vast global presence and richer, real-time...
-
Product Security Engineer III
2 meses atrás
Região Geográfica Intermediária de Manaus, Brasil Mindbody Tempo inteiroWe're revolutionizing the fitness & wellness industry, and we’re looking for talented people to help us do it. Mindbody + ClassPass bring together the best of both sides of the market: Mindbody is the industry’s most trusted all-in-one technology platform; ClassPass is one of the most popular apps for fitness & self-care enthusiasts. Together we’re...
-
Pentest Operations Lead
Há 1 mês
Região Geográfica Intermediária de Manaus, Brasil JPMorgan Chase & Co. Tempo inteiroAligned to the Operations in Cybersecurity Assessments, you will be part of a team accountable for the successful execution of our testing portfolio, delivering enhancements and implementing changes that increase our productivity, drive adherence to control and cybersecurity best practice, improve customer satisfaction, oversee risk reduction and tooling...
-
Senior Network and Security Analyst
2 meses atrás
Região Geográfica Intermediária de Cruzeiro do Sul, Brasil Exadel Tempo inteiroExadelAdvance your business through technology and pave the way to becoming a digital leader with Exadel, an enterprise software development and consulting company. We seek a Senior Network and Security Analyst to plan and carry out our information security strategy and security measures to monitor and protect the client's sensitive data and systems from...
-
Região Geográfica Intermediária de São Luís, Brasil Wibit Consulting & Services Tempo inteiroJob Title: Danish Gaming AnalystCompany: Wibit Consulting & ServicesWe are seeking a skilled Danish Gaming Analyst to join our team and contribute to the responsible gaming operations of our online casino gaming company. The successful candidate will be responsible for analyzing risk-scoring reports, identifying potential addictive behavior, and providing...