Talent.com
Third-Party Information Security Risk Analyst

Third-Party Information Security Risk Analyst

StifelSt Louis, MO, United States
30+ days ago
Job type
  • Full-time
Job description

Why Stifel

Stifel strives for a culture that puts its clients and associates first : a culture where everyone belongs, everyone is welcome, and everyone contributes to the success of our clients, their careers, and the firm as a whole.

Let's talk about how you can find your place here at Stifel, where success meets success .

What You'll Be Doing

The Third-Party Cyber Risk Analyst performs comprehensive third-party risk assessments, focusing on data security, regulatory compliance and emerging AI use risks. This includes reviewing DDQs, SOC reports, AI governance disclosures, vendor security reports, and supporting documentation from vendors and service providers. The Third-Party Cyber Risk Analyst plays a critical role in safeguarding the organization data by ensuring third-party partners have implemented sufficient data protection safeguards. Ideal candidate thinks strategically and is intellectually curious. The Third-Party Cyber Risk Analyst will be expected to help refine the risk program.

What We're Looking For

  • Evaluate third-party cybersecurity posture using DDQs, SOC 2 Type II reports, ISO certifications, penetration test results, and AI usage documentation.
  • Assess AI models used by third parties for privacy, security, and compliance risks (e.g., data training, model outputs, governance).
  • Identify gaps in vendor controls and recommend mitigations or compensating controls.
  • Advise on residual risk and escalation paths for critical or high-risk vendors.
  • Assist with defining third-party security standards and playbooks.
  • Collaborate with legal, compliance, procurement, and enterprise risk management teams.
  • Maintain and update third-party risk assessment templates to include AI and emerging technology risks.
  • Track and report risk status, remediation plans, and residual risk acceptance.
  • Contribute to continuous improvement of the third-party risk management (TPRM) framework.
  • Create third-party cyber risk posture reports and metrics.
  • Must handle highly sensitive information with discretion and objectivity.
  • May be required to participate in third-party incident response after hours or on short notice.

What You'll Bring

  • Strong understanding of NIST CSF, ISO 27001, SOC 2, contractual cybersecurity clauses, and regulatory expectations (e.g., SEC, FINRA, GLBA).
  • Working knowledge of AI governance data security issues, and compliance risks (e.g., data governance, shadow AI).
  • Experience reviewing security questionnaires, due diligence documentation, and audit reports.
  • Excellent analytical, communication, and documentation skills.
  • Education & Experience

  • Minimum Required : Bachelor's degree in Cybersecurity, Information Technology, or related discipline, or equivalent experience.
  • Minimum Required : 7+ years of experience in cybersecurity, third-party risk, or IT audit.
  • Licenses & Credentials

  • Certifications : CISA, CISSP, CTPRP, or vendor risk-specific credentials preferred.
  • Systems & Technology

  • Experience with third-party risk platforms e.g. Archer, OneTrust, ProcessUnity, ServiceNow TPRM, etc.
  • Understanding of emerging AI risk frameworks e.g., NIST AI RMF, EU AI Act.
  • #LI-LL1

    About Stifel

    Stifel is more than 130 years old and still thinking like a start-up. We are a global wealth management and investment banking firm serious about innovation and fresh ideas. Built on a simple premise of safeguarding our clients' money as if it were our own, coined by our namesake, Herman Stifel, our success is intimately tied to our commitment to helping families, companies, and municipalities find their own success.

    While our headquarters is in St. Louis, we have offices in New York, San Francisco, Baltimore, London, Frankfurt, Toronto, and more than 400 other locations. Stifel is home to approximately 9,000 individuals who are currently building their careers as financial advisors, research analysts, project managers, marketing specialists, developers, bankers, operations associates, among hundreds more. Let's talk about how you can find your place here at Stifel, where success meets success.

    At Stifel we offer an entrepreneurial environment, comprehensive benefits package to include health, dental and vision care, 401k, wellness initiatives, life insurance, and paid time off.

    Stifel is an Equal Opportunity Employer.

    Create a job alert for this search

    Information Security Analyst • St Louis, MO, United States

    Related jobs
    • Promoted
    Information System Security Officer (ISSO)

    Information System Security Officer (ISSO)

    LeidosScott Air Force Base, IL, US
    Full-time
    Are you ready for your next challenge?.We empower our teams, contribute to our communities, and operate sustainably.Everything we do is built on a commitment to do the right thing for our customers...Show moreLast updated: 30+ days ago
    • Promoted
    Intern - Enterprise Risk Management

    Intern - Enterprise Risk Management

    Midland States BankO Fallon, Missouri, US
    Full-time +1
    Apply fast, check the full description by scrolling below to find out the full requirements for this role.Intern - Enterprise Risk Management. At Midland, we’re proud to be a little different.You ca...Show moreLast updated: 7 days ago
    • Promoted
    Information System Security Officer

    Information System Security Officer

    LeidosScott Air Force Base, IL, US
    Full-time
    Are you ready for your next challenge?.We empower our teams, contribute to our communities, and operate sustainably.Everything we do is built on a commitment to do the right thing for our customers...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer - IAM Analyst

    Senior Security Engineer - IAM Analyst

    Edward JonesSt Louis, MO, United States
    Full-time
    And see your ideas come to life.It's an exciting time to work in tech at Edward Jones.We are making massive investments in emerging technologies to improve how we work with our clients and with eac...Show moreLast updated: 30+ days ago
    • Promoted
    Senior IT Security Analyst

    Senior IT Security Analyst

    Busey BankCreve Coeur, MO, United States
    Full-time
    The Senior IT Security Analyst is responsible for managing activities relating to monitoring and responding to security events. The analyst is responsible for monitoring application, host, and netwo...Show moreLast updated: 26 days ago
    • Promoted
    United States Customs and Border Protection Officer

    United States Customs and Border Protection Officer

    U.S. Customs and Border ProtectionHardin, Illinois, US
    Full-time +1
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show moreLast updated: 27 days ago
    • Promoted
    Information System Security Officer (ISSO)

    Information System Security Officer (ISSO)

    Leidos IncScott Air Force Base, IL, United States
    Full-time
    Are you ready for your next challenge?.We empower our teams, contribute to our communities, and operate sustainably.Everything we do is built on a commitment to do the right thing for our customers...Show moreLast updated: 30+ days ago
    • Promoted
    Lead AI Security Engineer

    Lead AI Security Engineer

    MasterCardO'Fallon, MO, United States
    Full-time
    As an Information Security Engineer specializing in AI Security, you will be at the forefront of protecting our AI systems and data. Your role will involve deep technical expertise in designing, imp...Show moreLast updated: 30+ days ago
    • Promoted
    Lead, AI Security Engineer

    Lead, AI Security Engineer

    MasterCardO'Fallon, MO, United States
    Full-time +1
    Mastercard powers economies and empowers people in 200+ countries and territories worldwide.Together with our customers, we're helping build a sustainable economy where everyone can prosper.We supp...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer II

    Security Engineer II

    Paragon Technology GroupScott Air Force Base, IL, United States
    Full-time
    The tasks for this person will be, but not limited to, the following : .Applies systems analysis and design techniques to complex computer systems in a broad area such as financial management; engine...Show moreLast updated: 1 day ago
    • Promoted
    Marine Interdiction Agent

    Marine Interdiction Agent

    U.S. Customs and Border ProtectionNew Athens, IL, US
    Full-time
    Air and Marine Operations (AMO), a component of U.Customs and Border Protection (CBP) offers those with Merchant Mariner Credentials the exceptional opportunity of a career in law enforcement worki...Show moreLast updated: 7 days ago
    • Promoted
    U.S. Customs and Border Protection Officer

    U.S. Customs and Border Protection Officer

    U.S. Customs and Border ProtectionHigh Ridge, MO, US
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show moreLast updated: 7 days ago
    • Promoted
    Mid Cartographic Analyst

    Mid Cartographic Analyst

    LeidosRoxana, IL, US
    Full-time
    The National Security Sector at Leidos currently has an opening for a cleared cartographic analyst to support our customer in St. This is an exciting opportunity to use your experience in GIS analys...Show moreLast updated: 30+ days ago
    • Promoted
    Information System Security Manager (ISSM), Public Sector

    Information System Security Manager (ISSM), Public Sector

    Scale AI, Inc.St. Louis, MO, United States
    Full-time
    Our Security team works on operational issues at the leading edge of machine learning technology.You will join a creative and solutions-oriented team collaborating with internal teams at Scale and ...Show moreLast updated: 28 days ago
    • Promoted
    Senior Security Analyst / Security Architect - Threat Detection Team

    Senior Security Analyst / Security Architect - Threat Detection Team

    Edward JonesSt Louis, MO, United States
    Full-time
    And see your ideas come to life.It's an exciting time to work in tech at Edward Jones.We are making massive investments in emerging technologies to improve how we work with our clients and with eac...Show moreLast updated: 30+ days ago
    • Promoted
    Core Systems Specialist (Financial)

    Core Systems Specialist (Financial)

    1st Mid America Credit UnionBethalto, IL, United States
    Full-time
    MidAmerica is a trusted financial institution dedicated to providing exceptional service to our members.We pride ourselves on our commitment to the communities we serve and our focus on delivering ...Show moreLast updated: 30+ days ago
    • Promoted
    U.S. Border Patrol Agent

    U.S. Border Patrol Agent

    U.S. Customs and Border ProtectionValmeyer, IL, US
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show moreLast updated: 9 days ago
    • Promoted
    Border Patrol Agent

    Border Patrol Agent

    U.S. Customs and Border ProtectionHardin, IL, US
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show moreLast updated: 9 days ago