drjobs Third Party Security Specialist

Third Party Security Specialist

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Bengaluru - India

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Job Description:

Dentsu is the network designed for whats next helping clients predict and plan for disruptive future opportunities and create new paths to growth in the sustainable economy. Taking a peoplecentered approach to business transformation we use insights to connect brand content commerce and experience underpinned by modern creativity.

Dentsu Security are responsible for the scope and delivery of both cyber security and business continuity activities that cover every one of our dentsu offices located across 145 countries globally.

Joining our Technology & Security Governance Risk & Compliance function you will be reporting directly to the Head of Third Party Security performing a key role within an expanding Global Third Party Security team. The successful candidate will build upon their existing information security and/or third party risk management experience supporting the Third Party Security function in establishing relationships with both internal stakeholders and suppliers across the global network to ensure that third parties are assessed onboarded monitored and offboarded with appropriate due diligence.

This role is hybrid working remotely and in the office. The role is open to candidates based in Kuala Lumpur (Malaysia) or India.

Responsibilities

  • Conduct security risk and control assessments against technology and business third parties at a global practice area and market level.

  • Develop relationships with business third party relationship owners through onboarding processes.

  • Engage directly with suppliers through onboarding processes and as required through continuous monitoring.

  • Track control remediation to ensure third parties respond and deliver within the agreed timeframes.

  • Collaborate with key third party risk management stakeholders including procurement legal and data privacy functions.

  • Maintaining risk and control assessment schedules using the enterprise strategic Vendor Risk Management platform.

  • Support internal TPSA activities and drive improvement of existing processes.

  • Develop and maintain reporting to effectively monitor and measure control effectiveness and business performance for managing third party risk.

  • Ensure processes and procedures are documented and reviewed on a continual basis.

  • Support and influence continuous improvement across third party security and the wider Security team including GRC Cyber Security Client Security Security Architecture and Security Programme teams.

Candidate Profile

  • Experience of security compliance initiatives within an enterprise technology environment such as ISO27001 NIST CIS PCI DSS Cyber Essentials.

  • Knowledge of all domains within security covering people process and technology.

  • Experience of third party security risk management and assurance within a medium or largesized organisation.

  • Experience in third party risk and control assessment for IaaS PaaS SaaS cloud service providers.

  • Ability to explain technical complex concepts to nontechnical audiences.

  • Experienced with IT assurance functions and auditing techniques.

  • Experience of Cyber Security Rating Platforms (desirable).

  • Experience in using Vendor Risk Management assessment platforms (desirable).

  • Experience in using Microsoft Excel Microsoft Forms Microsoft PowerBi.

  • Is demonstrably selfmotivated proactive action orientated to achieve deadlines.

  • Interest in their own personal development within both TPSA and other Security functions.

  • Proactive development of trending knowledge and skills within information security community.

  • Achieved or working towards an information security qualification (CISSP CRISC) (desirable but not essential).

  • Experience in developing and administering SharePoint environments (desirable but not essential).

#LIEY1

#LIHYBRID

Location:

Kuala Lumpur

Brand:

Global Technology

Time Type:

Full time

Contract Type:

Permanent

Required Experience:

Unclear Seniority

Employment Type

Full-Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.