We are seeking a highly skilled and experienced Third Party Cyber Risk Assessor to join our team, responsible for conducting third-party cyber risk assessments for a global client portfolio . This individual will be critical in evaluating the security posture of third-party vendors, suppliers, and partners to ensure compliance with industry standards, regulations, and internal security policies as well as contracts. The ideal candidate will have a sound understanding of cyber risk management, vendor risk assessments, and an ability to communicate complex risk issues effectively to both technical and non-technical stakeholders.
Conduct detailed cybersecurity risk assessments (audits) for third-party vendors, including reviewing their information security practices, policies, and controls.
Assess third-party vendor security risks across multiple domains, including data protection, network security, identity & access management, and incident response.
Identify, evaluate gaps and/or deficiencies in cybersecurity technical and/or policy/procedure controls.
Perform thorough due diligence on third-party suppliers and partners, identifying potential vulnerabilities and risks that could impact the organization.
Recommend solutions and alternatives to remediate gaps and/or deficiencies in cybersecurity technical and/or policy/procedure controls.
Independently lead assessment meetings with clients and third parties to evaluate the implementation of cyber controls.
Collaborate closely with global line management and regional colleagues on delivery, client management and internal and client communications.
Master client’s proprietary security and contractual standards.
Apply recognized cybersecurity frameworks and standards (e.g., NIST, ISO 27001, CIS Controls) in risk assessments and audits.
Document findings, assessment processes, and recommended actions in a clear, concise, and actionable manner.
Preferred Qualifications:
Certifications: CISSP, CISM, CRISC, CISA, SCP, CCNP, ISO 27001 Lead Auditor or other relevant security or risk management certifications.
Experience working in a global organization and understanding of the challenges involved in managing risks across multiple jurisdictions.
Project management skills to manage multiple assessments, stakeholders, and deadlines effectively.
Control Risks is committed to a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. If you require any reasonable adjustments to be made in order to participate fully in the interview process, please let us know and we will be happy to accommodate your needs.
Control Risks participates in the E-Verify program to confirm employment authorization of all newly hired employees. The E-Verify process is completed during new hire onboarding and completion of the Form I-9, Employment Eligibility Verification, at the start of employment. E-Verify is not used as a tool to pre-screen candidates. For more information on E-Verify, please visit
...Research Assistant(Phlebotomist/Medical Assistant/CNA)- Sun to Wed Nights- ICON San Antonio TX ICON plc is a world-leading healthcare intelligence and clinical research organization. Were proud to foster an inclusive environment driving innovation and excellence, and...
...repetitive production) focused on constructing large, custom industrial enclosures from sheet metal and structural components. Youll... ...from layout through final assembly, working both indoors and outdoors depending on project needs. Execute high-quality MIG welds...
...Job Overview TLC Nursing Associates, Inc. is seeking a skilled Clinic Registered Nurse (RN) to provide high-quality patient care in outpatient and ambulatory settings. This role is ideal for RNs who excel in patient assessments, treatment coordination, and health...
Primary responsibilities include ability to splice/test/repair cables/wires in both indoor and outdoor settings, read, create and maintain splicing diagrams, Improve upon the performance ,functionality, reliability, or quality of existing products or trade processes; maintain...
...Experience Bachelor's degree in Computer Science , Information Technology, or a related field and five (5) years of experience in Python based software development. Associates degree may be substituted for Bachelors degree with additional three (3)...