Cyber Security Third Party Governance and Planning Analyst

Bank of AmericaWashington, DC
Onsite

About The Position

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits. We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve. Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! Summary: This position will be a member of the Third Party Cyber Security Assurance (TPCA) organization in Global Information Security (GIS), responsible for developing, maintaining, and communicating third party information security requirements. The position will be a key player in driving strategic initiatives focused on the design of Third Party Cyber Assurance (TPCA) program requirements. Additionally, position requires interaction with technical subject matter experts, GIS Policy team, the third party cyber assessment team, and the internal and external third party management community. In addition to tactical activities, the position will be a key player in driving strategic initiatives to transform the processes by which our third party information security requirements are created and aligned to third parties, including reviewing and adopting industry best practices. g and adopting industry best practices.

Requirements

  • At least 5 years of relevant experience.
  • Previous information technology/security audit/assessment experience required.
  • Excellent verbal and written communication skills across multiple levels of the organization.
  • Self-starting, organized, and requiring minimal management oversight.
  • Ability to operate across organizational boundaries to accomplish tasks.
  • Strong analytical skills/problem solving/conceptual thinking/attention to detail.
  • Ability to work effectively with peers and various levels of management.
  • Well organized and thorough, with the ability to balance and prioritize.

Nice To Haves

  • Background in information security, data protection and risk management.
  • Familiarly or experience with information security industry frameworks (e.g., NIST, CMMC, ISO 27001, PCI, etc.).
  • Deep understanding of risk management concepts.
  • Cross functional project management and process development experience.

Responsibilities

  • Developing, maintaining, and communicating third party information security requirements.
  • Driving strategic initiatives focused on the design of Third Party Cyber Assurance (TPCA) program requirements.
  • Interacting with technical subject matter experts, GIS Policy team, the third party cyber assessment team, and the internal and external third party management community.
  • Driving strategic initiatives to transform the processes by which third party information security requirements are created and aligned to third parties.
  • Reviewing and adopting industry best practices.

Benefits

  • Access to paid time off
  • Resources and support to our employees
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service