Conduct cybersecurity assessments & evaluate in alignment with the supplier security control framework
Ensure effectiveness of approved controls and drive risk remediations or changes from the previous audit for existing certified suppliers
Demonstrate strong knowledge in IT controls, risk assessments, and assessment of security measures
Ability to work collaboratively across the diverse team in a matrix type organization
Identify opportunities to continuously innovate and improve the program and value delivered to the organization
Ensure successful completion of the annual supplier cybersecurity assessments
Inform and advise business leaders on supplier’s information security risks
Independently and proactively plans and performs assigned audit engagements related to security, confidentiality, integrity, information protection, and availability of data
multi-task and manage multiple global projects at the same time.
Automate security assessment processes & tools to review the security controls for cloud-based applications
Proactively research and work in enhancing improvements to our existing process related to documentation and security assessments.
Provide subject matter expertise in third-party risk management.
Candidate should have :
Strong verbal, written, and presentations skills
In-depth knowledge of security assessment / audit principles
Ability to identify problems, analyze data, and present conclusions
Knowledge of information security frameworks such as ISO 27001 / NIST CSF is preferred
CISA, CISSP, CISM, certifications are preferred
Able to work as part of a virtual global team with cultural, language, and time zone differences.
Able to deal with ambiguity and work independently with minimal supervision / guidance.
Bachelor’s degree in Science & Engineering or technical discipline is required.
Excellent communication skills.
Understanding of networking principles and data protection
7 years of information security & assessment experience with increased responsibilities