We are seeking a Senior Engineer (Cyber, Data & Security) with 6 to 8 years of experience to join our Governance, Risk & Compliance (GRC) team. The ideal candidate will focus on Third-Party (TP) Cybersecurity & Risk Management. In this role, you will conduct cybersecurity and risk management activities focused on third-party relationships and vendor security assessments. Key Responsibilities Third-Party Cybersecurity Management •
Vendor Assessments:
Conduct cybersecurity assessments of third-party vendors. •
Risk Documentation:
Document cybersecurity risks associated with third-party relationships. •
Security Reviews:
Review and validate vendor security controls and practices. Risk Management •
Risk Analysis:
Analyze and assess third-party cybersecurity risks. •
Compliance Monitoring:
Monitor vendor compliance with security requirements. •
Remediation Support:
Support remediation of identified third-party risks. Required Technical Skills & Qualifications •
Experience:
6-8 years of experience in Cybersecurity & Risk Management. •
Third-Party Risk:
Experience in third-party risk assessment and management. •
Security Frameworks:
Knowledge of security frameworks (NIST, ISO 27001, SOC 2). •
Assessment Skills:
Vendor security assessment capabilities. Soft Skills & Team Alignment •
Collaborative:
Work effectively with vendors and internal teams. •
Detail-Oriented:
Meticulous documentation and tracking of risks. •
Strong Communicator:
Clearly communicate risk findings and requirements.