Third Party Risk Manager
170 - 210 PLN/ godz.B2B
SeniorFull-time·B2B
#397240·Dodano 6 dni temu·11
Źródło: nofluffjobs.comTech Stack / Keywords
Third Party Risk ManagementCybersecurity RiskCybersecuritySupplier RiskTechnology riskNIST CSFISO 270001ISO 27036DORANIS2ProcurementLegalStakeholder managementKPIAnalytical skillsProblem-SolvingCommunication skills
Wymagania
- Professional experience in Third Party Risk Management, cybersecurity risk, supplier risk, GRC, technology risk, or a related area.
- Good understanding of third party cybersecurity risks and their potential impact on business operations, data protection, resilience, and regulatory compliance.
- Knowledge of relevant cybersecurity frameworks, standards, and regulations, such as NIST CSF, ISO 27001, ISO 27036, DORA, NIS2, or equivalent.
- Experience coordinating risk assessments, remediation activities, issue tracking, or third party monitoring processes.
- Ability to work effectively with Procurement, Legal, Cybersecurity, IT, business stakeholders, and external partners.
- Strong stakeholder management and influencing skills in complex, international, or matrix-based environments.
- Experience with operational program coordination and cross-functional collaboration.
- Ability to work with KPIs, dashboards, service indicators, and management reporting.
- Strong analytical and problem-solving skills, with a focus on continuous process improvement.
- Ability to translate risk and governance requirements into clear, practical guidance.
- Structured, proactive, and independent working style.
- Strong written and verbal English communication skills.
Obowiązki
- Support the implementation and ongoing development of third party cybersecurity risk management processes.
- Coordinate third party risk assessments, classification activities, risk reviews, and remediation follow-up.
- Work with internal stakeholders to ensure consistent application of risk management requirements and security standards.
- Build effective relationships with Cybersecurity, Procurement, Legal, IT, business teams, and external partners.
- Support operational activities related to third party onboarding, assessment, monitoring, and risk treatment.
- Track identified risks, findings, remediation plans, exceptions, and outstanding actions.
- Monitor program effectiveness using KPIs, dashboards, progress reports, and management updates.
- Ensure that high-risk third parties and services receive appropriate attention and oversight.
- Identify process gaps, operational bottlenecks, and opportunities to improve efficiency, scalability, and risk visibility.
- Develop and maintain procedures, guidance materials, reporting standards, and governance documentation.
- Support risk escalation and decision-making related to third party cybersecurity exposure.
- Coordinate activities delivered by internal teams and external service providers.
- Translate governance requirements into practical actions that can be understood and applied by different stakeholder groups.
- Promote a consistent, risk-based approach to third party cybersecurity management.
linkgroup
430 aktywnych ofert