{"id":1173506,"url":"https://alion.io/job/micron-technology-staff-it-risk-analyst","title":"Staff IT Risk Analyst","company":{"id":37,"name":"Micron Technology","domain":"micron.com","url":"https://alion.io/company/micron-technology","size_band":"5000+","is_staffing_agency":false,"is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":{"grade":"B","score":79,"open_postings":767,"ghost_share":0,"stale_share":0.832,"repost_share":0,"time_to_fill_p50_days":25,"computed_at":"2026-09-24T05:45:00Z"}},"role":"Finance","role_family":"Finance","seniority":"staff","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Hyderabad, India"],"countries":["IN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":22000,"max_usd":65000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":360},"experience_years_min":7,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"GDPR","optional":false},{"name":"HIPAA","optional":false},{"name":"ISO 27001","optional":false},{"name":"PCI DSS","optional":false},{"name":"ServiceNow","optional":false},{"name":"SharePoint","optional":true}],"status":"live","first_seen_at":"2026-09-24T09:32:23Z","employer_posted_date":"2026-09-24","last_verified_at":"2026-09-24T23:50:41Z","board_verified":true,"closed_at":null,"days_open":0,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":0},"description":"Our vision is to transform how the world uses information to enrich life for all.\nMicron Technology is a world leader in innovating memory and storage solutions that accelerate the transformation of information into intelligence, inspiring the world to learn, communicate and advance faster than ever.\nThe Third-Party Cybersecurity Risk Management (TPCRM) Staff Analyst is a senior individual contributor responsible for shaping, governing, and continuously improving information risk management related to external suppliers. The analyst leads complex and ambiguous third-party cybersecurity risk issues, advises senior business and security stakeholders, drives program maturity, and supports enterprise-level decision-making across Information Security, Privacy, Regulatory Compliance, Procurement, Legal, and Governance.\nResponsibilities\nServe as a staff-level subject matter expert for third-party cybersecurity risk management, including enterprise supplier risk governance, regulatory alignment, and assessment quality.\nLead highly complex third-party risk assessments involving critical suppliers, high-risk services, sensitive data, manufacturing dependencies, or material business impact.\nShape assessment methodology, risk criteria, evidence expectations, and control evaluation practices to improve consistency, scalability, and defensibility of TPCRM outcomes.\nPerform advanced gap analysis against frameworks and standards such as ISO 27001, NIST, SOX, TISAX, and GDPR, and advise stakeholders on enterprise-level remediation priorities.\nLead risk treatment strategy for material supplier findings, including mitigation planning, risk acceptance recommendations, supplier escalations, evidence validation, and closure decisions.\nDevelop, revise, and mature third-party risk management policies, standards, processes, guidelines, and runbooks through formal governance and change management.\nLead third-party governance activities, including onsite supplier audits, executive risk reporting, cross-functional working groups, and escalation of material supplier risks.\nTranslate cybersecurity, regulatory, supplier, and threat intelligence insights into actionable risk themes, program enhancements, and supplier risk mitigation strategies.\nInterpret risk tolerance, contractual obligations, control tradeoffs, supplier criticality, and business impact to support informed risk acceptance, mitigation, avoidance, or transfer decisions.\nPartner with procurement, legal, information security, business, privacy, resilience, and vendor management teams to embed TPCRM expectations throughout the supplier lifecycle.\nAdvise business-led initiatives on third-party cyber risk, due diligence requirements, standards compliance, supplier engagement, and governance escalation paths.\nMentor senior and junior analysts, lead process improvement initiatives, advance automation and reporting maturity, and help establish consistent TPCRM execution across teams and regions.\nEducation\nBachelor’s Degree in Computer Science/Management Information Systems/Business Administration. Master’s degree is preferred.\nRelated field of study or equivalent combination of education and experience.\nExperience:\nAnalyzing and applying Information Security, Cyber Risk Management, Third-Party Risk Management, and Privacy practices for a minimum of seven years of experience, with demonstrated ability to lead complex supplier risk issues, influence cross-functional stakeholders, and improve risk management practices in the following areas:\nAdvanced third-party / vendor risk management, supplier assessments, external assurance programs, cybersecurity governance, or enterprise risk functions.\nStrong IT business process knowledge, supplier lifecycle understanding, business acumen, and ability to connect supplier risk to operational and enterprise impact.\nExperience influencing procurement, legal, vendor management, privacy, information security, business, and executive stakeholders on risk decisions and remediation priorities.\nExperience working with and improving third-party risk management tools such as ServiceNow, Optro, Archer, AuditBoard, SecurityScorecard, BitSight, or equivalent platforms.\nExperience developing risk analytics, dashboards, scorecards, executive reporting, metrics, and narratives that communicate third-party risk posture and program maturity.\nAdvanced understanding of threat, vulnerability, business continuity, supplier security, incident response, and third-party risk assessment methodologies.\nKnowledge of national and international regulatory and security frameworks including NIST Cybersecurity Framework, ISO standards, SOX, GDPR, HIPAA, PCI DSS, TISAX, and related supplier security expectations.\nExperience leading risk treatment decisions, remediation governance, supplier escalations, executive briefings, onsite supplier assessments, or high-risk supplier reviews.\nCRISC, CISA, CISSP, ISO 27001 Lead Auditor, CISM, or equivalent certifications are preferred.\nPreferred skills in SharePoint, Teams, reporting tools, workflow platforms, AI-enabled automation, and other collaboration or knowledge management platforms.\nDemonstrated ability to mature cybersecurity risk practices, establish reusable processes, and improve outcomes across third-party ecosystems and high-risk supplier relationships.\nSoft skills requirements\nAbility to define, communicate, and influence enterprise third-party cybersecurity risk decisions in business-relevant language.\nExcellent verbal and written communication skills, including the ability to craft and deliver concise executive-level communications, risk narratives, and decision briefs.\nAbility to lead confidently through ambiguity, competing priorities, sensitive supplier issues, and rapidly changing risk conditions.\nAbility to communicate cybersecurity and third-party risk concepts clearly to technical, non-technical, supplier, and executive audiences.\nStrong problem-solving, analytical, facilitation, negotiation, and risk-based decision-making skills.\nAbility to mentor analysts, build stakeholder trust, influence without direct authority, and drive consistent execution across cross-functional and regional teams.\nAbout Micron Technology, Inc.\nWe are an industry leader in innovative memory and storage solutions transforming how the world uses information to enrich lifefor all. With a relentless focus on our customers, technology leadership, and manufacturing and operational excellence, Micron delivers a rich portfolio of high-performance DRAM, NAND, and NOR memory and storage products through our Micron® and Crucial® brands. Every day, the innovations that our people create fuel the data economy, enabling advances in artificial intelligence and 5G applications that unleash opportunities - from the data center to the intelligent edge and across the client and mobile user experience.\nTo learn more, please visit micron.com/careers\nAll qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.\nTo request assistance with the application process and/or for reasonable accommodations,please \nMicron Prohibits the use of child labor and complies with all applicable laws, rules, regulations, and other international and industry labor standards.\nMicron does not charge candidates any recruitment fees or unlawfully collect any other payment from candidates as consideration for their employment with Micron.\nAI alert : Candidates are encouraged to use AI tools to enhance their resume and/or application materials. However, all information provided must be accurate and reflect the candidate's true skills and experiences. Misuse of AI to fabricate or misrepresent qualifications will result in immediate disqualification.\nFraud alert: Micron advises job seekers to be cautious of unsolicited job offers and to verify the authenticity of any communication claiming to be from Micron by checking the official Micron careers website in the About Micron Technology, Inc.","description_format":"text","description_chars":8128,"description_truncated":false,"requirements":{"experience_years_min":7,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Consumer Electronics","Manufacturing","AI Infrastructure","Security Compliance"],"lifecycle":[{"event":"open","at":"2026-09-24T09:32:23Z"}],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":0,"expected_fill_days":25,"reasons":["conf:3","win:early","comp:brand"],"computed_at":"2026-09-25T03:27:28Z"},"pay":null,"html_url":"https://alion.io/job/micron-technology-staff-it-risk-analyst","json_url":"https://alion.io/job/micron-technology-staff-it-risk-analyst.json","meta":{"generated_at":"2026-09-25T03:27:28Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":3806,"day_limit":5000,"remaining_today":1194,"minute_limit":60,"resets_at":"2026-09-26T00:00:00Z"}}}