Third-Party Security Analyst

Posted 8 Days Ago
Be an Early Applicant
Bangalore, Bengaluru Urban, Karnataka, IND
In-Office
Senior level
eCommerce
The Role
Leads third-party cybersecurity risk assessments, reviews vendor security documentation and questionnaires, assigns risk ratings, tracks remediation, monitors vendor incidents, and advises internal stakeholders. Partners with Procurement, Legal, Risk, Compliance, Technology, and business teams on vendor onboarding, contracts, audits, regulatory exams, reporting, and continuous improvement of cyber risk processes.
Summary Generated by Built In

Functional Title: Third-Party Security Analyst
Experience: 7+ years

Company Description

Tradeweb Markets is a world leader in the evolution of electronic trading. A fintech company serving approximately 2,500 clients—including the world’s largest banks, asset managers, hedge funds, insurance companies, wealth managers, and retail clients—in more than 65 countries across the globe. Since our first trade in 1998, we have helped transform and electronify the fixed income markets.

Tradeweb is a culture built on innovation, creativity, and collaboration. Through a combination of incredibly talented and driven people, innovative products and solutions, cutting-edge technology, market data, and a vast client network, we continue to work together to improve the way financial markets trade.

Mission: Move first and never stop. Collaborate with clients to create and build solutions that drive efficiency, connectivity, and transparency in electronic trading.

Tradeweb Markets LLC (“Tradeweb”) is proud to be an EEO Minorities/Females/Protected Veterans/Disabled/Affirmative Action Employer.
https://www.dol.gov/ofccp/regs/compliance/posters/pdf/eeopost.pdf

Group Details

Tradeweb’s Cyber Security team plays a critical role in protecting the firm, its clients, and its employees from an evolving third-party threat landscape. The Vendor Cyber Risk Analyst will be responsible for assessing, monitoring, and managing cybersecurity risks introduced by third-party vendors and service providers.

This role works closely with Procurement, Legal, Compliance, Technology, and Business teams to ensure vendor risks are identified, assessed, and mitigated in alignment with Tradeweb’s risk appetite and regulatory obligations. The ideal candidate brings strong cyber risk fundamentals, excellent communication skills, and experience operating in regulated financial environments.

Job Responsibilities

  • Lead and perform cybersecurity risk assessments for third-party vendors, suppliers, and service providers
  • Review and analyze vendor security artifacts, including SOC 1/SOC 2 reports and ISO 27001 certifications
  • Review penetration testing summaries, architecture diagrams, technical documents, and security policies
  • Evaluate vendor responses to cybersecurity questionnaires and due diligence requests
  • Define vendor risk ratings and document identified risks, gaps, and remediation plans
  • Partner with Risk, Procurement, and Legal teams to support vendor onboarding and contract reviews
  • Track vendor remediation efforts and follow up on outstanding risk items
  • Monitor vendor-related security incidents and escalate issues in accordance with incident response procedures
  • Act as a subject matter expert and advisor to internal stakeholders on vendor cyber risk matters
  • Maintain vendor risk records, metrics, and reporting within GRC or vendor risk management platforms
  • Drive continuous improvement of third-party cyber risk management processes, standards, and controls
  • Support regulatory exams, audits, and internal reviews related to third-party cyber risk

Required Qualifications

  • 7+ years of experience in cybersecurity, IT risk management, third-party risk management, or information security
  • Strong understanding of cybersecurity principles, including access control, data protection, network security, and incident response
  • Hands-on experience reviewing vendor security documentation (SOC reports, ISO certifications, risk assessments)
  • Solid knowledge of security frameworks and standards such as NIST, ISO 27001, SOC, and CIS
  • Experience using GRC or third-party risk management tools
  • Ability to assess and communicate risk clearly to both technical and non-technical stakeholders
  • Strong analytical, documentation, and organizational skills
  • Proven ability to manage multiple vendor assessments simultaneously and meet deadlines with minimal supervision
  • Basic awareness of AI-enabled features within cybersecurity or vendor risk platforms (e.g., automated risk scoring, workflow automation)
  • Ability to interpret AI-assisted insights and apply human judgment to validate findings

Preferred Qualifications

  • Experience in financial services or other highly regulated industries
  • Professional certifications such as CISA, CRISC, CISSP, or Security+
  • Familiarity with security rating services (e.g., BitSight, SecurityScorecard)
  • Experience producing KPIs and risk reporting for senior management

Skills Required

  • 7+ years of experience in cybersecurity, IT risk management, third-party risk management, or information security
  • Strong understanding of access control, data protection, network security, and incident response
  • Hands-on experience reviewing vendor security documentation, including SOC reports, ISO certifications, and risk assessments
  • Knowledge of NIST, ISO 27001, SOC, and CIS security frameworks and standards
  • Experience using GRC or third-party risk management tools
  • Ability to communicate risk clearly to technical and non-technical stakeholders
  • Strong analytical, documentation, and organizational skills
  • Ability to manage multiple vendor assessments and meet deadlines with minimal supervision
  • Basic awareness of AI-enabled features in cybersecurity or vendor risk platforms
  • Ability to interpret AI-assisted insights and validate findings using human judgment
  • Experience in financial services or another highly regulated industry
  • CISA, CRISC, CISSP, or Security+ certification
  • Familiarity with BitSight, SecurityScorecard, or similar security rating services
  • Experience producing KPIs and risk reporting for senior management

Tradeweb Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Tradeweb and has not been reviewed or approved by Tradeweb.

  • Fair & Transparent Compensation Feedback suggests pay is generally considered above average for role and market, particularly in specialized finance/tech positions. Employer-posted US salary bands for certain roles indicate healthy total compensation potential.
  • Leave & Time Off Breadth Generous vacation/PTO is frequently highlighted as a standout element. Flexibility in some roles and regions further supports time-off usability.
  • Parental & Family Support Paid parental leave and financial assistance for fertility, adoption and surrogacy are emphasized in company materials. These family-building supports are described as robust for the sector.

Tradeweb Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
1,061 Employees
Year Founded: 1996

What We Do

Tradeweb Markets Inc. (Nasdaq: TW) is a leading, global operator of electronic marketplaces for rates, credit, equities and money markets. Founded in 1996, Tradeweb provides access to markets, data and analytics, electronic trading, straight-through-processing and reporting for more than 40 products to clients in the institutional, wholesale and retail markets. Advanced technologies developed by Tradeweb enhance price discovery, order execution and trade workflows while allowing for greater scale and helping to reduce risks in client trading operations. Tradeweb serves approximately 2,500 clients in more than 65 countries. On average, Tradeweb facilitated more than $1 trillion in notional value traded per day over the past four quarters.

Similar Jobs

DigitalOcean Logo DigitalOcean

Senior Software Engineer

Artificial Intelligence • Cloud • Software • Infrastructure as a Service (IaaS)
Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
1400 Employees

Clearwater Analytics (CWAN) Logo Clearwater Analytics (CWAN)

Operations Intern

Fintech • Software • Financial Services
Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
1100 Employees

Optum Logo Optum

Manager Software Engineering- Cloud

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
160000 Employees

Optum Logo Optum

Technical Product Manager

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
160000 Employees

Similar Companies Hiring

Munchkin, Inc. Thumbnail
Consumer Web • eCommerce • Food • Kids + Family • Design • Manufacturing
Milton, Ontario
325 Employees
Scotch Thumbnail
Artificial Intelligence • eCommerce • Fintech • Payments • Retail • Software • Analytics
US
35 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account