This job is about being a Senior Associate in the Cyber Assurance Team, focusing on Third Party Security Risk Management. The work is crucial for helping clients strengthen their resilience against cyber risks, ensuring public trust in government digital services. The team values collaboration, continuous learning, and innovation, creating a supportive environment where everyone can thrive.
You'll be responsible for
🔍
Delivering third-party risk assessments
Supporting clients in identifying, assessing, and managing security risks associated with vendors, suppliers, and other third parties across the full lifecycle of third-party engagements.📋
Advising on frameworks and standards
Applying knowledge of cyber and risk frameworks to evaluate third-party risk management programs and recommend practical improvements.🔧
Collaborating on transformation initiatives
Contributing to the design and implementation of third-party risk management operating models, governance structures, and enabling technologies.Skills you'll need
🔒
Cyber security experience
2+ years’ experience in cyber security, technology risk, or third-party risk management, ideally gained through consulting, assurance, or a second line of defence role.📊
Knowledge of risk frameworks
A working understanding of cybersecurity and IT risk frameworks (e.g. NIST CSF, ISO27k, ISM/PSPF, COBIT) and how they apply to vendor environments.🧠
Analytical skills
Strong analytical and problem-solving skills, with the ability to work autonomously and deliver high-quality outcomes under time pressure.View more