Cummins Logo

Cummins

Supply Chain Cyber Risk Analyst

Posted 2 Hours Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in United States
Mid level
In-Office or Remote
Hiring Remotely in United States
Mid level
Leads cybersecurity risk and compliance activities, including third-party vendor risk assessments, due diligence reviews, compliance monitoring, risk inventory maintenance, and mitigation planning. Partners with IT, Legal, Compliance, Privacy, and business teams to assess technology changes and embed risk awareness. Applies NIST, ISO, FAIR, and related frameworks, prepares executive reporting, provides technical risk guidance, and supports security awareness initiatives.
The summary above was generated by AI

Job Summary:

Leads the support of the organization's cybersecurity framework, including policy, standards and baselines. Understands and applies appropriate handling of risk and compliance from internal and external perspectives to assure that existing and new technology solutions meet the organization's cybersecurity risk requirements.

Key Responsibilities:

Understands and applies Cummins cybersecurity policies and industry data privacy principles. Leads cybersecurity risk identification utilizing identified Cummins risk management frameworks while providing guidance to the team to evaluate severity and mitigation plans. Coaches and develops less experienced team members. Understands and applies frameworks and standards (eg NIST, ISO, ITIL, Cobit) in a manner specific to Cummins processes and controls. Provides cybersecurity technical expertise for technology solutions. Collaborates with stakeholders on requests for new and changing technology solutions, acting as a trusted business partner and advisor. Maintain strong relationships to deliver business value using relevant Business Relationship Management practices. ResponsibilitiesCompetencies:
Action oriented - Taking on new opportunities and tough challenges with a sense of urgency, high energy, and enthusiasm.
Balances stakeholders - Anticipating and balancing the needs of multiple stakeholders.
Business insight - Applying knowledge of business and the marketplace to advance the organization’s goals.
Ensures accountability - Holding self and others accountable to meet commitments.
Manages complexity - Making sense of complex, high quantity, and sometimes contradictory information to effectively solve problems.
Organizational savvy - Maneuvering comfortably through complex policy, process, and people-related organizational dynamics.
Persuades - Using compelling arguments to gain the support and commitment of others.
Resourcefulness - Securing and deploying resources effectively and efficiently.
Tech savvy - Anticipating and adopting innovations in business-building digital and technology applications.
Training Delivery - Instructs learners in a manner that engages and adjusts to individual and group needs resulting in knowledge, skills and abilities that can be applied on the job.
Cybersecurity Risk Management - Identifies and assesses the potential impact of Cybersecurity risks against established Cybersecurity industry frameworks, regulations and organizational policies to develop and implement risk mitigation strategies in alignment with business objectives.
Regulatory Risk Compliance Management - Evaluates the design and effectiveness of controls against established industry frameworks and regulations to assess adherence with legal/regulatory requirements.
Values differences - Recognizing the value that different perspectives and cultures bring to an organization.
Education, Licenses, Certifications:
College, university, or equivalent degree in Cybersecurity, Computer Science, or Information Technology, or related subject, or relevant equivalent experience required. This position may require licensing for compliance with export controls or sanctions regulations.
Experience:
Intermediate level of relevant work experience required. 3-5 years of experience Qualifications

Key Responsibilities
Third-Party & Vendor Risk
•    Assess the cybersecurity risk profile of third-party vendors and partners through due diligence reviews and questionnaires
•    Monitor ongoing vendor compliance and escalate concerns appropriately
•    Maintain the third-party risk inventory and associated risk ratings
Cross-Functional Collaboration
•    Partner with IT, Legal, Compliance, Privacy, and business units to embed risk awareness into projects and initiatives
•    Provide risk-informed guidance during new technology adoption, system changes, and product launches
•    Support security awareness efforts related to risk management practices
________________________________________
Required Qualifications
•    Education: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Risk Management, or a related field (or equivalent experience)
•    Experience: 3–5 years of experience in cybersecurity, IT risk management, or a related discipline
•    Demonstrated knowledge of cybersecurity risk frameworks and methodologies (NIST CSF, NIST RMF, ISO 27001/27005, FAIR)
•    Familiarity with regulatory requirements such as SOC 2, PCI-DSS, or GDPR
•    Strong analytical and problem-solving skills with the ability to translate technical risks into business language
•    Excellent written and verbal communication skills, including experience preparing executive-level reports
•    Proficiency with GRC tools (e.g., Venminder, Black Kite, OneTrust, or similar)
 

About UsCummins is an equal opportunity employer. Our policy is to provide equal employment opportunities to all qualified persons without regard to race, sex, color, disability, national origin, age, religion, union affiliation, sexual orientation, veteran status, citizenship, gender identity, or other status protected by law.

Similar Jobs

An Hour Ago
Easy Apply
Remote
United States
Easy Apply
126K-214K Annually
Senior level
126K-214K Annually
Senior level
Cloud • Security • Software • Cybersecurity • Automation
Leads complex, cross-functional Enterprise Technology, AI, and Data programs from planning through delivery. Responsibilities include roadmap development, dependency and resource management, risk and issue tracking, governance, executive communications, operational transformation, enterprise application initiatives, and AI workflow adoption. The role aligns technical and business stakeholders across Finance, Legal, Sales, Marketing, Product, and other functions while improving program delivery practices in a remote, globally distributed environment.
Top Skills: AgileAICsmDataEnterprise ApplicationsEnterprise ArchitectureInfrastructurePmpSafeScrumSecurity
An Hour Ago
In-Office or Remote
47K-86K Hourly
Senior level
47K-86K Hourly
Senior level
Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
Own the full outbound sales cycle for mid-market merchants, including prospecting, pipeline generation, discovery, demos, negotiation, and closing. Develop tailored multi-product Square solutions, acquire net-new customers, collaborate with business development and cross-functional teams, manage Salesforce forecasting, and consistently exceed revenue targets.
Top Skills: Salesforce
An Hour Ago
In-Office or Remote
CA, USA
129K-175K Annually
Mid level
129K-175K Annually
Mid level
Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
Own and grow a Santa Clara sales territory through primarily in-person execution. Generate leads via door-to-door outreach, events, networking, and partnerships; conduct product demonstrations; close full-cycle deals; build relationships with local businesses; and sell Square’s software, hardware, and financial solutions. Maintain Salesforce pipeline discipline, forecast accurately, exceed quota, and support successful seller onboarding.
Top Skills: Salesforce

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account