Third Party Cyber Risk Lead
Third Party Cyber Risk LeadPlease read carefully and contact Lorenz Pasch at Hays on (phone number removed) or if you are from the Insurance or Financial Services sector only, and are interested in the position.London Hybrid 90,000 + BenefitsWe are seeking a Third Party Cyber Risk Lead to take ownership of cybersecurity risk across its supplier and vendor ecosystem.This is a key role within the Business Information Security Office, responsible for ensuring third-party cyber risks are identified, assessed, managed and reported effectively across a complex and regulated insurance environment.Working closely with Cyber Security, Procurement, Legal and Technology teams, you will lead the evolution of the vendor cyber risk programme, helping ensure compliance with regulatory requirements including DORA, NIS2, PRA and FCA expectations.Key ResponsibilitiesOwn and mature the third-party cyber risk management framework across the business.Lead cybersecurity due diligence activities for new and existing suppliers.Establish and maintain supplier criticality and risk assessment processes.Drive ongoing monitoring and assurance activities for critical vendors.Review vendor security controls, certifications and risk posture.Partner with Procurement and Legal teams on contract reviews and risk mitigation.Develop meaningful risk reporting, dashboards and management information for senior stakeholders.Ensure alignment with regulatory and industry frameworks including DORA, NIS2, NIST and ISO ..... full job details .....
Perform a fresh search...
-
Create your ideal job search criteria by
completing our quick and simple form and
receive daily job alerts tailored to you!