About this role
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
###
Lead Security Metrics Analyst
###
Who is Mastercard?
Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships, and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Mission First, People Always
Corporate Security is responsible for keeping Mastercard safe and secure from cyber and physical threats. We are a highly effective team protecting a major component of global payments infrastructure. Our new Security Risk and Control Operations team is at the forefront of this effort in the “1st Line of Defense,” coordinating efforts across Corporate Security, enterprise risk management, and market-facing product teams to assess risks, implement controls to mitigate them, and provide assurance to regulators and stakeholders of Mastercard’s best-in-class performance in information security.
We are seeking a Lead Security Metrics Analyst to drive the development, collection, analysis, and reporting of metrics related to cybersecurity, to enable risk management and meet regulatory requirements. Working directly with owners of security controls, you will coordinate the flow of metric data and maintain collection and visualization tools to inform actions by the security team.
In this role you will:
• Lead the development, implementation, and governance of security metrics, Key Risk Indicators (KRIs), and Key Performance Indicators (KPIs) across Corporate Security domains.
• Develop and maintain Power BI dashboards, scorecards, and executive reporting products that provide actionable insights into security risk, control effectiveness, issue management, and operational performance.
• Build and support Dataverse solutions, including Power Apps and Power Automate, that streamline metric collection, governance processes, and reporting.
• Partner with security, risk, compliance, and operational teams to identify new reporting requirements and translate business needs into scalable data solutions and automated processes.
• Develop and maintain metric methodologies, centralized metric repositories, and supporting governance documentation to ensure consistency, transparency, and traceability of reporting.
• Analyze security, risk, and operational data to identify trends, emerging risks, control effectiveness insights, and opportunities for process improvement.
• Drive automation initiatives that improve data quality, reduce manual effort, and enhance reporting efficiency across security and risk management functions.
• Support regulatory remediation, audit activities, and risk governance forums through development of reporting solutions, evidence gathering, and performance measurement capabilities.
• Present metric methodologies, reporting outputs, and risk insights to governance forums and executive stakeholders to support risk-informed decision making.
• Provide technical leadership and subject matter expertise on data visualization, business intelligence, reporting architecture, Power Platform solutions, and metric governance practices.
The ideal candidate for this position should be:
• Experienced with developing enterprise metrics, KRIs, KPIs, risk scorecards, and executive reporting solutions.
• Experienced with Power BI, including data modeling, DAX development, dashboard design, and executive-level visualization development.
• Experienced designing and administering Power Apps, Dataverse solutions, and Power Automate workflows.
• Knowledgeable in information security, technology risk management, governance, compliance, and regulatory reporting.
• Experienced working with large datasets and integrating information from multiple enterprise platforms and data sources.
• Strong written and verbal communication skills with the ability to communicate effectively with both technical teams and executive leadership.
• Professionally certified in information security, risk management, analytics, or related disciplines (e.g., CISSP, CISA, Security+, CRISC, or equivalent).
Mastercard Corporate Security Roles have been aligned with the NICE framework (National Initiative for Cybersecurity Education). For this role the NICE Work Roles most closely aligned are:
• Systems Security Management (OG-WRL-014)
• Security Control Assessment (OG-WRL-012)
• Cybersecurity Policy and Planning (OG-WRL-002)
• Data Analysis (IO-WRL-001)
Corporate Security Responsibility
Every person working for, or on behalf of, Mastercard is responsible for information security. All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and therefore, it is expected that the successful candidate for this position must:
• Abide by Mastercard’s security policies and practices;
• Ensure the confidentiality and integrity of the information being accessed;
• Report any suspected information security violation or breach; and
• Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
###
Mastercard is a merit-based, inclusive, equal opportunity employer that considers applicants without regard to gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law. We hire the most qualified candidate for the role. In the US or Canada, if you require accommodations or assistance to complete the online application process or during the recruitment process, please contact [email protected] and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. The Reasonable Accommodations team will respond to your email promptly.
###
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
- Abide by Mastercard’s security policies and practices;
- Ensure the confidentiality and integrity of the information being accessed;
- Report any suspected information security violation or breach, and
- Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
###
In line with Mastercard’s total compensation philosophy and assuming that the job will be performed in the US, the successful candidate will be offered a competitive base salary and may be eligible for an annual bonus or commissions depending on the role. The base salary offered may vary depending on multiple factors, including but not limited to location, job-related knowledge, skills, and experience. Mastercard benefits for full time (and certain part time) employees generally include: insurance (including medical, prescription drug, dental, vision, disability, life insurance); flexible spending account and health savings account; paid leaves (including 16 weeks of new parent leave and up to 20 days of bereavement leave); 80 hours of Paid Sick and Safe Time, 25 days of vacation time and 5 personal days, pro-rated based on date of hire; 10 annual paid U.S. observed holidays; 401k with a best-in-class company match; deferred compensation for eligible roles; fitness reimbursement or on-site fitness facilities; eligibility for tuition reimbursement; and many more. Mastercard benefits for interns generally include: 56 hours of Paid Sick and Safe Time; jury duty leave; and on-site fitness facilities in some locations.

THIS POSTING RELECTS ONE OR MORE CURRENT VACANCIES ON OUR TEAM, AND MASTERCARD INTENDS TO FILL THIS POSITION BY 01/05/2027. If the fill date has passed, Mastercard intends to fill this position as soon as possible.


Pay Ranges
O'Fallon, Missouri: $109,000 - $180,000 USD
###
###
###
###