FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Tech Stack
Tools & technologiesCyber Security
About the role
Key responsibilities & impact- Conduct risk assessments of vendors and third-party partners.
- Evaluate security controls implemented by third parties and identify potential vulnerabilities.
- Ensure adherence to corporate information security and risk management policies.
- Identify, document and track mitigation plans for identified risks.
- Collaborate with the GRC team in managing information security risks.
- Review evidence, certifications and compliance attestations from vendors.
- Assess alignment with industry frameworks and best practices, including NIST.
- Support the implementation and monitoring of security controls.
- Participate in contract reviews between the company and vendors, ensuring information security requirements are included and followed.
- Work closely with Legal and Procurement teams to mitigate contractual risks related to security.
- Prepare executive reports and technical opinions on identified risks.
- Present assessment results to business areas, managers and stakeholders.
- Support risk-based decision making by providing mitigation recommendations.
- Assist with concurrent investigations of security incidents.
- Contribute to threat and vulnerability monitoring activities.
- Produce incident reports and support senior teams in the analysis and remediation of occurrences.
Requirements
What you’ll need- Experience in Information Security, Governance, Risk or Compliance.
- Knowledge of Third-Party Risk Management (TPRM).
- Experience conducting risk assessments and analyzing security controls.
- Knowledge of security frameworks, especially: NIST Cybersecurity Framework, NIST SP 800-53, ISO 27001 (desired).
- Knowledge of Governance, Risk and Compliance (GRC) processes.
- Experience preparing risk reports and documentation.
- Ability to communicate with both technical and non-technical stakeholders.
- Knowledge of vulnerability management and security incident concepts.
Benefits
Comp & perks- Remote work 📊 Check your resume score for this job Improve your chances of getting an interview by checking your resume score before you apply. Check Resume Score
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
risk assessmentssecurity controlsvulnerability managementNIST Cybersecurity FrameworkNIST SP 800-53ISO 27001Governance, Risk and Compliance (GRC)risk reportssecurity incident analysismitigation recommendations
Soft Skills
communicationcollaborationpresentationdecision makingdocumentation
