> Markdown version of [/jobs/ext/1291648-senior-third-party-cyber-security-risk-analyst](https://www.wearedevelopers.com/jobs/ext/1291648-senior-third-party-cyber-security-risk-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Third-Party Cyber Security Risk Analyst - **Company:** Toyota Motor Sales, U.S.A., Inc. - **Location:** Plano, TX, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, PCI Data Security Standards, Information Technology - **Published:** July 16, 2026 - **Apply:** https://www.juju.com/job/00000000ggze2f ## About the Role Toyota's Cyber Risk Department is looking for a passionate and highly motivated **Senior Third Party Cybersecurity Risk Analyst.**, + A bachelor's degree in computer science, information technology, or a related field. + Experience in Information Security, Risk Management, Information Technology, or related disciplines. + Experience in the planning, designing, implementation, and execution of third-party risk management programs. + Excellent presentation skills, including verbal and written communication to differing levels of management throughout the organization. + Excellent "soft" skills including relationship building and the ability to influence others through consensus building. ## Description The primary responsibility of this role is to conduct cybersecurity risk assessments for third parties across Toyota's third-party portfolio. This role evaluates each third-party relationship to assess the associated risk profile and the effectiveness of the risk management capabilities in place, ensuring alignment with Toyota's risk appetite.This position includes reviewing assurance artifacts such as SOC reports, ISO 27001 certifications, and PCI DSS certifications to evaluate the effectiveness of third-party cybersecurity controls. The role also consolidates and communicates risk findings and metrics to operational management and executive leadership while partnering with internal stakeholders to support informed risk decisions and continuous improvement of third-party cybersecurity risk processes.This role requires strong analytical, critical thinking, and communication skills, along with a deep understanding of risk management practices and cybersecurity processes, risks, and controls, to effectively assess third-party risk and communicate findings to key stakeholders. What you'll be doing + **Conduct Cybersecurity Risk Assessments:** Conduct third-party cybersecurity risk assessments to verify alignment with Toyota's information security and risk management standards. + **Inspect Assurance Reports:** Review and analyze independent assurance artifacts, including SOC 1, SOC 2, ISO 27001 certifications, PCI DSS certifications, and related evidence, to validate control design and operating effectiveness. + **Evaluate and Communicate Risk:** Consolidate, interpret, and communicate cybersecurity risk metrics, trends, and findings to operational stakeholders and executive leadership. + **Collaborate with Risk Partners:** Partner with internal business, security, and risk teams to support informed third-party risk decisions and remediation efforts. + **Support Continuous Improvement:** Support continuous improvement of third-party risk processes, methodologies, and reporting practices. ## Related Videos - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [GitOps keeps focus on apps, not on infrastructure](https://www.wearedevelopers.com/videos/182-gitops-keeps-focus-on-apps-not-on-infrastructure) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cybersecurity for Software Defined Vehicles](https://www.wearedevelopers.com/videos/725-cybersecurity-for-software-defined-vehicles) - [It's not easy being green](https://www.wearedevelopers.com/videos/558-it-s-not-easy-being-green) ## Related Articles - [How software is steering vehicle technology](https://www.wearedevelopers.com/magazine/515-how-software-is-steering-vehicle-technology) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)