The Senior Associate in the Cyber Assurance Team focuses on Third Party Security Risk Management, creating value through delivering comprehensive risk assessments and advising on frameworks. This role plays a crucial part in enhancing public trust in government digital services, contributing to a more resilient and equitable society. The team thrives on collaboration, innovation, and a commitment to shared success, ensuring everyone has the opportunity to grow and make an impact.
You'll be responsible for
🔍
Delivering third-party risk assessments
Supporting clients in identifying, assessing, and managing security risks associated with vendors, suppliers, and other third parties across the full lifecycle of third-party engagements.📋
Advising on frameworks and standards
Applying knowledge of cyber and risk frameworks to evaluate third-party risk management programs and recommend practical improvements.🛠️
Supporting assurance and remediation activities
Performing vendor due diligence, control testing, and audit reviews, and working with clients to close security gaps or enhance supplier oversight processes.Skills you'll need
🔒
Cyber security experience
2+ years’ experience in cyber security, technology risk, or third-party risk management, ideally gained through consulting, assurance, or a second line of defence role.📊
Knowledge of risk frameworks
A working understanding of cybersecurity and IT risk frameworks (e.g. NIST CSF, ISO27k, ISM/PSPF, COBIT) and how they apply to vendor environments.🧠
Analytical skills
Strong analytical and problem-solving skills, with the ability to work autonomously and deliver high-quality outcomes under time pressure.View more