Back to jobs
SS
Hiring companyState Street

Verified 5 days ago

Third Party Cyber Risk Analyst, Senior Manager

Bangalore,India Full-time On-site

About the role

Global Cyber Security (GCS) Third Party Cyber Risk Management (TPCRM) team protects infrastructure and client data by assessing third‑party security programs. The Senior Manager leads cyber security assessments, reviews certifications (SOC2, ISO 27001, NIST), documents findings and advises remediation. Bangalore, onsite, on‑site work model.

What you’ll do

  • Perform cyber security assessments of third‑party vendors using GCS risk framework
  • Review and analyze third‑party attestation artifacts (SOC2, ISO, NIST)
  • Document assessment results per TPCRM and enterprise risk standards
  • Provide subject‑matter expertise and timely recommendations

What you’ll bring

  • 10 years cyber/information security assessment experience
  • Knowledge of ISO 27001/27002, NIST, GDPR, DORA
  • Superior attention to detail and strong written/verbal communication
  • Expertise in technical and risk management reporting

Nice to have

  • Bachelor's or Master's in Cybersecurity, Law, Privacy or Risk Management preferred
  • CISA, CISM, CISSP, Security+ or equivalent preferred
  • Critical thinking and analytical skills

Skills

CybersecurityRisk AssessmentISO 27001NISTSOC2ReportingCommunication

Education

  • Bachelor's
  • Master's