Information Security Associate

Nissan Motor CorporationFranklin, TN
Hybrid

About The Position

This role supports Nissan's Third-Party Risk Management (TPRM) and Information Security Governance programs by assessing vendor security risks, reviewing cybersecurity documentation, and helping ensure third-party relationships align with Nissan's security, privacy, and compliance requirements. Working closely with Procurement, Legal, Privacy, Information Security, and business stakeholders, this position plays an important role in protecting Nissan's operations while supporting practical, risk-based decision making.

Requirements

  • 0-2 years of experience in cybersecurity, risk management, compliance, audit, third-party risk management, or related fields.
  • Basic understanding of cybersecurity frameworks and standards such as NIST CSF, NIST SP 800-53, ISO 27001, SOC 2, GLBA, J-SOX, NYDFS CRR-500, LGPD, and privacy regulations.
  • Ability to evaluate and communicate risk in a clear, factual, and business-oriented manner.
  • Strong analytical, organizational, and problem-solving skills.
  • Ability to review contracts and identify information security, privacy, and compliance requirements.
  • Strong written and verbal communication skills with the ability to collaborate across technical and non-technical teams.
  • Ability to prioritize work effectively and manage multiple assessments simultaneously.

Nice To Haves

  • Analytical and detail-oriented professional interested in cybersecurity, risk management, and vendor security assessments.
  • Comfortable reviewing documentation, evaluating risk, collaborating with stakeholders, and communicating findings in a clear and business-focused manner.
  • Curious, organized, and eager to grow knowledge of cybersecurity governance, regulatory compliance, and third-party risk management within a large enterprise environment.

Responsibilities

  • Conduct Security Risk Assessment Questionnaires (SRAQs) for new and existing vendors and service providers.
  • Review cybersecurity attestations, certifications, and assurance reports, including SOC reports, ISO certifications, SIG questionnaires, and NIST-based attestations.
  • Assess vendor security controls against Nissan security requirements and industry-recognized frameworks.
  • Identify information security, privacy, regulatory, operational, and third-party risks.
  • Develop risk-based recommendations, compensating controls, remediation plans, and residual risk determinations.
  • Perform security reviews of contracts, Statements of Work (SOWs), Data Processing Agreements (DPAs), and other vendor-related agreements.
  • Partner with Legal, Procurement, Privacy, and business stakeholders to address security-related contractual concerns.
  • Track remediation activities and risk treatment plans through completion.
  • Maintain assessment documentation and support internal and external audits.
  • Assist with continuous improvement of third-party risk management processes and methodologies.
  • Build effective relationships with stakeholders involved in supplier, technology, operational, and cybersecurity risk management activities.

Benefits

  • Career Growth and Continuous Learning Opportunities
  • Diverse career paths
  • Cross-departmental moves
  • Innovative learning platforms
  • Seminars
  • Leadership training
  • Tuition reimbursement programs
  • Comprehensive Benefits Package
  • Medical
  • Mental health
  • Parental leave
  • Retirement savings
  • Discounts on lease vehicles
  • Vehicle Purchase Program (VPP)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service