Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
MP
Marathon Petroleum
Senior Cybersecurity Engineer, GRC Automation and Continuous Control Monitoring
Career Insights for Cyber Security Engineer
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Texas data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Engineer designs systems that protect the security of large databases, including databases with customer information and patient files. Examines client computer systems, identifies weak points in security, develops and implements new systems, monitors and responds to security issues.
$114,038 / year median in Texas
+10% projected growth
Job Description
Senior Cybersecurity Engineer, GRC Automation and Continuous Control Monitoring Date Posted:
12 August 2026Closing Date:
September 11, 2026Recruiter:
Marathon Petroleum Location:
Mc Camey, Texas Salary:
On Application Job Type & Industry:
Cyber Security, Corporate Governance & GRC Contract Type:
Permanent Work Hours:
Full Time Job Reference:
2922661527-2 Apply for this job now Job Description An exciting career awaits you At MPC, we're committed to being a great place to work- one that welcomes new ideas, encourages diverse perspectives, develops our people, and fosters a collaborative team environment.
OWASP LLM
Top 10, or comparable AI risk frameworks preferred. Skills Adaptability- Maintaining effectiveness when experiencing major changes in work responsibilities or environment (eg, people, processes, structure, or culture); adjusting effectively to change by exploring the benefits, trying new approaches, and collaborating with others to make the change successful. AI Fundamentals
- Understanding of core AI concepts and methods, ability to apply AI to job-relevant use cases and capacity to contribute to organizational AI reimagination. Change Management
- Change Management refers to a systematic approach for defining and implementing procedures and/or technologies to deal with changes in the environment. It can mean adapting to change, controlling change and/or effecting change. Authentic Communicator
- Expresses ideas and information, both verbally and in writing, clearly and credibly. Listens to understand and fosters constructive dialogue. Cybersecurity Risk Management
- The process of developing cyber risk assessment and treatment techniques that can effectively pre-empt and identify significant security loopholes and weaknesses, demonstrating the business risks associated with these loopholes and providing risk treatment and prioritization strategies to effectively address the cyber-related risks, threats and vulnerabilities, ensuring appropriate levels of protection, confidentiality, integrity and privacy in alignment with the security framework.
- Applies a computer language to communicate with computers using a set of instructions and to automate the execution of tasks. Intrusion Detection
- The use of security analytics, including the outputs from intelligence analysis, predictive research and root cause analysis in order to search for and detect potential breaches or identify recognized indicators and warnings.
- The practice of testing a computer system, network or web application to find security vulnerabilities that an attacker could exploit. Penetration testing can be automated with software applications or performed manually. Relationship Management
- Relationship Management is the conscious aim to develop and manage long-term and/or trusting relationships with internal or external customers, distributors, suppliers, or other parties in an environment which can include marketing, selling, servicing and other areas where a relationship is crucial to on-going success.
- Manages and maintains an information system that focuses on the management of risk and the management of information systems security. Security Governance
- The process of developing and disseminating corporate security policies, frameworks and guidelines to ensure that day-to-day business operations are guarded and well protected against risks, threats and vulnerabilities. Security Information & Event Management (SIEM)
- A set of tools and services offering Real Time visibility across an organization's information security systems, and event log management that consolidates data from numerous sources. Security Policy Management
- The process of identifying, implementing, and managing the rules and procedures that all individuals must follow when accessing and using an organization's IT assets and resources. Threat Analysis
- Monitor intelligence-gathering and anticipate potential threats to an IT/OT systems proactively. This involves the pre-emptive analysis of potential perpetrators, anomalous activities and evidence-based knowledge and inferences on perpetrators' motivations and tactics. Threat Hunting
- Searches through networks, endpoints, and datasets to detect and isolate cyber threats that evade existing security solutions. Vulnerability Management
- The process of defining, identifying, classifying and prioritizing vulnerabilities in computer systems, applications and network infrastructures and providing the organization with the necessary knowledge, awareness and risk background to understand the threats to its business