Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Marathon Petroleum Corporation

Senior Cybersecurity Engineer, GRC Automation, Continuous Control Monitoring

Marathon Petroleum Corporation

. Analyze changes to cybersecurity solutions and their relationships to internal and external systems to assess control effectiveness and cybersecurity risk .

Posted 9/17/2026full-timeSan Antonio • Ohio • United StatesSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in cybersecurity assessments, compliance frameworks, and risk management, with a strong focus on automation and continuous control monitoring. Proficient in integrating security-control data and developing Standard Operating Procedures to enhance security governance and incident response.

Highest-signal resume keywords
Cybersecurity AssessmentsGRC Automation SolutionsPython ProgrammingContinuous Control TestingSecurity+ Certification

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Cybersecurity Risk AnalysisControl Testing MethodologiesAutomated WorkflowsData IntegrationIncident InvestigationControl Performance EvaluationCompliance FrameworksSecurity Metrics ReportingAutomation OpportunitiesRemediation Planning
Soft Skills
Problem SolvingCollaborationCommunication
Tools & Technologies
Azure AI FoundryREST APIGRC SystemsCCM SolutionsOpen-Source Frameworks
Certifications & Qualifications
Security+Network+OSCPGIACCEH
Industry Keywords
NIST AI RMFOWASP LLM Top 10Regulated EnvironmentCyber Incident ResponseGovernance Processes

Tech Stack

Tools & technologies
AzureCyber SecurityPython

About the role

Key responsibilities & impact
  • Analyze changes to cybersecurity solutions and their relationships to internal and external systems to assess control effectiveness and cybersecurity risk
  • Resolve complex multi-functional technical issues
  • Apply cybersecurity assessments, standards, control testing methodologies, and compliance frameworks across security systems
  • Improve security solutions, governance processes, automated controls, and monitoring capabilities
  • Analyze processes and procedures and lead improvements, automation opportunities, and remediation activities
  • Develop and submit Standard Operating Procedures
  • Investigate business-impacting events and evaluate control performance, exceptions, and risk indicators through continuous monitoring
  • Investigate cyber incidents, control failures, and compliance exceptions
  • Assist with risk mitigation and remediation plans
  • Lead global security initiatives, policies, compliance requirements, and continuous control monitoring practices
  • Collect, validate, and report security metrics, control performance results, and remediation efforts
  • Provide cybersecurity consulting, guidance, and support to customers and stakeholders
  • Translate security principles into security and compliance requirements for build and configuration processes
  • Monitor emerging IT/OT, cybersecurity, automation, and artificial intelligence technologies and their impact on security, risk, and compliance

Requirements

What you’ll need
  • Bachelor’s Degree in Information Technology, related field or equivalent experience
  • 5+ years of relevant experience required
  • Experience designing, implementing, and scaling GRC, CCM, or compliance automation solutions within a regulated environment required
  • Experience in Python or comparable automation technologies, including automated workflows and REST API-based data integrations across multiple enterprise systems required
  • Hands-on experience integrating security-control data sources into a GRC / CCM evidence pipeline for continuous control testing required
  • Experience normalizing API, telemetry, configuration, vulnerability, identity, ticketing, and assessment data into control-level evidence, exception logic, ownership, frequency, and audit-ready records across at least three domains required
  • Experience building LLM-backed agentic workflows on Azure AI Foundry, GitHub, or open-source frameworks preferred
  • Familiarity with NIST AI RMF, the OWASP LLM Top 10, or comparable AI risk frameworks preferred
  • Professional certification such as Security+, Network+, OSCP, GIAC, or CEH preferred

Benefits

Comp & perks
  • Health, vision, and dental insurance
  • Paid time off
  • 401k matching program
  • Paid parental leave
  • Educational reimbursement
  • Discretionary company-sponsored annual bonus program