Senior Information Security Risk Analyst (3rd Party Vendor Risk)
Warner Bros Discovery Inc
Welcome to Warner Bros. Discovery… the stuff dreams are made of.
Who We Are…
When we say, “the stuff dreams are made of,” we’re not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD’s vast portfolio of iconic content and beloved brands, are the storytellers bringing our characters to life, the creators bringing them to your living rooms and the dreamers creating what’s next…
From brilliant creatives, to technology trailblazers, across the globe, WBD offers career defining opportunities, thoughtfully curated benefits, and the tools to explore and grow into your best selves. Here you are supported, here you are celebrated, here you can thrive.
*Must work a hybrid schedule (3 days onsite) out of our Atlanta office.*
THE JOB:
The Senior Information Security Risk Analyst will support the assessment of information security risks across all of Warner Bros. Discovery’s (WBD’s) third party suppliers/vendors. This role requires the ability to understand and assess information security risks posed by third parties and clearly communicate those risks to the business. It will apply global IT industry best practices to ensure WBD uses third party information security risk management to foster business-enabling insights.
RISK ASSESSMENTS:
- Use WBD processes and tools to perform 3rd party vendor risk assessments, for new and existing vendors
- Work with business to understand the “what” and “how” of services provided by vendor to assess level of risk and scope of assessment
- Perform timely assessments of Vendor controls to identify, document, and communicate key deficiencies to the business and Information Security management
- Report on assessment outcomes, risk level and associated recommendations to remediate issues
- Perform 2nd-level peer reviews of assessment outputs, prior to reports being finalized, to drive consistency and completeness of findings based on risk of engagement
- Assist with follow-up on documentation requests for initial and periodic assessments
FINDINGS MANAGEMENT :
- Monitor corrective action plans against agreed upon timelines
- Review of remediation evidence for closure of findings
CONTRACT REVIEWS :
- Review contracts to ensure appropriate data security terms are included
- Provide comment and acceptable alternatives to vendor contract revisions, in alignment with defined guidance
- Escalate provision changes, as needed
OTHER :
- Assist with contract intake to ensure pipeline of assessments is managed in a timely and efficient manner
- Provide periodic status updates
- Maintain accurate and complete data within the identified system of record
- Contribute to the team’s continuous improvement efforts by identifying opportunities and helping to implement them
THE ESSENTIALS :
- BS/BA degree required
- 3-5 years’ experience in information security, with at least one (1) year experience in third party risk management
- Knowledge of IP network infrastructure (firewalls, intrusion detection/prevention), access control, data encryption and physical security; Cloud security knowledge a plus
- Excellent communication skills, including the ability to communicate effectively in English, both written and verbal
- Ability to present complex topics in clear, non-technical language
- Ability to work collaboratively within team and across business and technology functions
- Detail-oriented individual with critical thinking, analytical, and problem-solving skills
- Demonstrated ability to be proactive and take ownership of and solve problems
- Active learner - able to enhance personal, professional, and business growth through new knowledge and experiences
- Ability to handle multiple assignments concurrently within an iterative environment
THE NICE TO HAVES :
- One or more of the following certifications: CISSP, CRISC, CISA
- 2+ years of prior experience in a related field (media, entertainment, business development or streaming services industry experience a plus)
- Familiarity with streaming and similar products/services
- Experience working in a national or global company
How We Get Things Done…
This last bit is probably the most important! Here at WBD, our guiding principles are the core values by which we operate and are central to how we get things done. You can find them at along with some insights from the team on what they mean and how they show up in their day to day. We hope they resonate with you and look forward to discussing them during your interview.
Championing Inclusion at WBD
Warner Bros. Discovery embraces the opportunity to build a workforce that reflects a wide array of perspectives, backgrounds and experiences. Being an equal opportunity employer means that we take seriously our responsibility to consider qualified candidates on the basis of merit, without regard to race, color, religion, national origin, gender, sexual orientation, gender identity or expression, age, mental or physical disability, and genetic information, marital status, citizenship status, military status, protected veteran status or any other category protected by law.
If you’re a qualified candidate with a disability and you require adjustments or accommodations during the job application and/or recruitment process, please visit our accessibility page for instructions to submit your request.
- ...Summary of Purpose: The Senior IT Security Analyst serves as INPO's primary cybersecurity risk authority, providing... ...-level insights that inform prioritization,... ...actions Oversees third-party risk across SaaS, service... ...and Response (MDR) vendors to inform actions, assessments...SeniorFull timeWork experience placement
- ## Senior Information Security AnalystApplylocations: Atlanta, GAtime type: Full timeposted... ...Security. Security Senior Analyst are primarily focused on... ...**Vulnerability & risk management (20%)*** Leading... ...security technologies, tools, and vendors* Participating in proof-of-...SeniorLocal areaFlexible hours
$104.33k - $156.49k
Senior Information Security GRC Analyst We are looking for a dynamic Senior Information Security... ...various governance, risk, and compliance activities... ...privacy as part of our Third Party Risk Management (TPRM)... ...assessments for customers/vendors, data flow diagrams, architecture...SeniorWork experience placementWork at officeLocal areaFlexible hours3 days per week1 day per week$76.4k - $138.6k
...is fueled by vast amounts of information. Data is more valuable than... ...everyone in EY Information Security has a critical role to play.... ...Opportunity As an Offensive Security Analyst on the Vulnerability... ...assessment and validation of third‑party risk assessments and ensuring...SuggestedSummer holidayFlexible hours- ...GRC (3rd Party Risk) Analyst Duration: 12 – 24 Month Project Engagement The... ...risk register, and handles security exceptions and audits. Key... ...external. Assesses third-party vendors, ensures compliance with... ...~ Bachelor's degree in Information Security, Business, or a related...Suggested
- ...air conditioning, heating, security, fire protection, and... ...EMCOR Group, Inc. seeks an Information Security Analyst – Intel and Email who will... ...management framework, support vendor risk management, and monitor... ...threats identified by third parties and recommend remediation...Work at office
$76.4k - $138.6k
...fueled by vast amounts of information. Data is more valuable... ...in EY Information Security has a critical role to... ...Information Security we blend risk strategy, digital... ...an Offensive Security Analyst on the Attack Surface Management... ...validation of third-party risk assessments,...Summer holidayLocal areaFlexible hours- ...Description MUST HAVE CISSP, GIAC, or other security certifications Degree in Computer Science, Management Information Systems, or related field McAfee IPS... ...testing Application vulnerability assessments Risk analysis Compliance testing Knowledge of...
- Gilder Search Group is looking for a Sr. GRC Analyst focusing on Third-Party & Human Risk Management in Atlanta, Georgia. This role involves risk analysis, compliance assessments, vendor management, and developing security awareness training. The ideal candidate has 6-8...Senior
$1,200 per month
We are seeking a skilled Information Security Analyst to join our team in Atlanta. Responsibilities Ensure the security of our organization’s information and systems. Conduct risk assessments and develop security protocols and policies. Implement security measures to protect...Full time$110k - $135k
...trusted partnerships, we make security stronger, more effective,... ...for the public good. As a Senior Security Analyst, you'll serve as a senior technical... ...threats and uncover risks that automated tooling may... ..., security engineering, or information assurance Why nuHarbor At nuHarbor...Senior$1,500 per month
We are in search of an experienced and detail-oriented Information Security Analyst to join our growing team in Atlanta. As an Information Security... ...company’s data and systems. Responsibilities Conduct regular risk assessments to identify potential vulnerabilities Monitor...$1,300 per month
We are a fast‑growing company seeking a skilled Information Security Analyst to join our team in Atlanta. The role requires an Indian national to bring... ...will implement and maintain security systems, conduct risk assessments, and identify potential vulnerabilities. The analyst...Full timeVisa sponsorshipFree visa$76.4k - $138.6k
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and... ...As an Offensive Security Analyst on the Attack Surface Management team... ...supporting the validation of third‑party risk assessments, identifying misconfigurations...Summer holidayLocal areaFlexible hours$1,800 per month
The Information Security Analyst will be responsible for ensuring the security of our company’s information systems and networks. This includes conducting... ...principles and techniques, as well as experience with risk assessment and incident response. They must also have...Part timeVisa sponsorship$78.9k - $123.3k
...is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with... ...Action and Milestones (POA&Ms) Risk Assessments Continuous Monitoring... ...review and approval. Mid to senior Bachelor’s degree in Cybersecurity...Permanent employmentFull timePart timeWork at officeLocal areaRemote work- 0011 Checkout LLC is seeking an accomplished Risk professional in Atlanta to enhance their Enterprise Risk Management framework. The... ...role involves implementing risk management practices, supporting vendor management, and ensuring regulatory compliance. Ideal candidates...Senior
- ...at the right time and for the right cost. Qualifications Core competencies: Preferred qualification: Certified Information Systems Security Professional (CISSP) or Certified Information Systems Auditor (CISA) is a plus Demonstrate knowledge of network, operating...
- As an information security analyst, you will monitor and advise on information security issues across systems and workflows to ensure the university's internal security controls are appropriate and functioning as intended. You will manage and maintain security appliances...Monday to FridayAfternoon shift
- ...GRC Manager, the Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM) is a... ...to gather details on the security practices and compliance... ...ownership of the 3rd Party Vendor Risk Management program... ..., preferably within the Information Security or Technology fields...SeniorImmediate startFlexible hours
- ...Key Responsibilities Security Operations & Monitoring Monitor enterprise systems using... ...threats, focusing on Controlled Unclassified Information (CUI) protection. Maintain dashboards, alerts, and reports for proactive risk detection and escalation. Vulnerability...Contract work
- ...2+ years of experience in SOC analysis or incident response. Security-centric certification, such as Security+ or Certified Ethical... ...analyzes, and maintains systems and procedures to safeguard internal information systems, network, databases, and web-based security. Audits...Night shift
- ...Dallas TX The Application Security Analyst is a detail-oriented... ...Assist with internal and third-party penetration testing engagements... ...program, ensuring accurate risk ratings and timely remediation... ...· B.S. in Computer Science, Information Systems Security, Software...
$81.07k - $129.71k
...Description The IT Governance Analyst assists in the identification, assessment, monitoring, and risk mitigation associated with third-party vendors and suppliers. This role serves... ..., procurement teams, information security, legal, and compliance functions...Full timeWork at officeLocal areaRemote workFlexible hours2 days per week$80 - $86 per hour
...financial client seeks a visionary cloud security professional to champion a high‑... ...documentation skills; able to articulate technical risk and security logic to engineers and... ...architecture, core network engineering, and information security risk domains. Preferred...Hourly payTemporary workWork experience placement- ...and state regulations with impact to third party administration, record keeping services... ...and report compliance program efforts to senior leadership Qualifications: Required Bachelor... ..., while reinforcing accuracy, speed and security. Seven of the top ten US insurers are...SeniorH1b
- .... Reviews the work of third-party contractors and provides directional... ...less experienced Collateral Risk Analysts in Collateral Services... ...Conducts exit meetings with senior management of member... ...financial data and collateral information. Knowledge, Skills, Abilities...SeniorFor contractorsWork experience placementWork at officeRemote workVisa sponsorshipWork visaFlexible hoursNight shift
$57.45k - $120.27k
...Risk Management Analyst The Risk Management Analyst plays a pivotal role in... ...stakeholder interviews, including senior leaders. Create clear,... ...related to third-party risk and delegation oversight... ...31000 etc. Base Pay Information The national base pay range...Work at office$105k - $125k
...challenging payments from third-party payers, focusing on complex... ...sFTP, reporting files, notes, vendor outputs) and coordinate resolution... ...Technical Issue Resolution & Risk Management Own the end-... ...in healthcare administration, Information Systems, Business, Computer...SeniorFull time$85k - $110k
...operations of AI and Technology Risk Governance, with primary responsibility for vendor AI governance and... ...AI Systems, Cyber Security, Data Privacy (IT lens)... ...in aligning with third‑party risk requirements AI Governance... ...with your Form I‑9 information to confirm that you are...Temporary workWork at officeRemote workHome officeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Information Security Risk Analyst (3rd Party Vendor Risk). Be the first to apply!
- entry level data analyst no experience Georgia
- remote data analyst part time Georgia
- data analyst part time work from home Georgia
- security coordinator Georgia
- security consultant Georgia
- security specialist Georgia
- security advisor Georgia
- network security consultant Georgia
- senior medical science liaison Georgia
- senior accountant remote Georgia


