Verified 5 days ago
Third Party Cyber Risk Analyst, Senior Manager
About the role
Global Cyber Security (GCS) Third Party Cyber Risk Management (TPCRM) team protects infrastructure and client data by assessing third‑party security programs. The Senior Manager leads cyber security assessments, reviews certifications (SOC2, ISO 27001, NIST), documents findings and advises remediation. Bangalore, onsite, on‑site work model.
What you’ll do
- Perform cyber security assessments of third‑party vendors using GCS risk framework
- Review and analyze third‑party attestation artifacts (SOC2, ISO, NIST)
- Document assessment results per TPCRM and enterprise risk standards
- Provide subject‑matter expertise and timely recommendations
What you’ll bring
- 10 years cyber/information security assessment experience
- Knowledge of ISO 27001/27002, NIST, GDPR, DORA
- Superior attention to detail and strong written/verbal communication
- Expertise in technical and risk management reporting
Nice to have
- Bachelor's or Master's in Cybersecurity, Law, Privacy or Risk Management preferred
- CISA, CISM, CISSP, Security+ or equivalent preferred
- Critical thinking and analytical skills
Skills
Education
- Bachelor's
- Master's