CrawlJobs Logo

Cybersecurity Risk & Compliance Manager

jobs.360resourcing.co.uk Logo

360 Resourcing Solutions

Location Icon

Location:
United Kingdom , Warrington

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

55000.00 - 65000.00 GBP / Year

Job Description:

Our new Security, Governance, Risk and Compliance Manager would be responsible for ensuring effective frameworks, policies, governance, and risk management are in place to protect the integrity and confidentiality of information within our award-winning cloud-based software. The role is key to developing and maintaining internal control framework and will guide the evolution of our control mechanisms and governance processes and will help maintain a suitable security posture.

Job Responsibility:

  • Driving major change initiatives to facilitate the design and implementation of appropriate control mechanisms, security initiatives and governance processes to pragmatically reduce risk
  • Developing, managing and reviewing the risk and security metrics and governance frameworks, standard operating procedures and other quality management documents
  • Conducting and hosting internal and external audits to ensure compliance is adhered to
  • Review the Talos360 processes to ensure they add value and contribute to mitigating risks
  • Overall responsibility for the information, security and management system to maintain ISO27001 compliance and deliver improvements
  • Supporting internal teams with GDPR compliance and improvements
  • Defining internal policies and procedures and working with different internal teams to implement
  • To build effective, supportive relationships with key stakeholders to facilitate and develop the company and regulatory culture

Requirements:

  • Previous experience in the review or risk, security and governance frameworks
  • Comfortable building relationships with stakeholders across multiple teams and levels within the business, defining internal policies and procedures
  • Understanding of Infosec best practice and cybersecurity essentials and an understanding of vulnerability operations such as scanning, and remediation
  • Experience working with relevant regulations, standards, and requirements (ISO27001, GDPR, DSP Toolkit and Cyber Essentials+)
  • Ideally experienced with Microsoft Azure or similar
  • Previous experience within a similar role within a SAAS would be advantageous

Nice to have:

  • Ideally experienced with Microsoft Azure or similar
  • Previous experience within a similar role within a SAAS would be advantageous
What we offer:
  • hybrid working style (3 days from our office and 2 days from home per week)
  • many social and business events held throughout the business year

Additional Information:

Job Posted:
January 04, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cybersecurity Risk & Compliance Manager

Sr. Director, Cybersecurity Governance, Risk & Compliance

The Sr. Director of Cybersecurity Governance, Risk Management, and Compliance (G...
Location
Location
United States
Salary
Salary:
173500.00 - 419500.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or higher in Information Technology, Cybersecurity, Computer Science, or a related field
  • Minimum of 10 years of experience in cybersecurity and/or IT Risk, with at least 5 years focus on GRC
  • Proven track record in a senior leadership role within a large organization
  • Experience in developing and implementing cybersecurity strategies
  • Strong knowledge of relevant regulations and standards, such as GDPR, NIST CSF, and ISO 27001
  • Exceptional leadership and management skills
  • Strong analytical and problem-solving abilities
  • Excellent communication and interpersonal skills
  • Ability to work collaboratively across departments and build consensus
  • Proficient in cybersecurity technologies and tools.
Job Responsibility
Job Responsibility
  • Define and execute a comprehensive cybersecurity GRC strategy that aligns with business objectives and legal/regulatory requirements
  • Partner with cross-functional teams, including Legal, IT, Audit, and Business Units, to integrate security and compliance requirements into business processes
  • Recruit, mentor, and develop a high-performing team of GRC professionals
  • Develop and maintain the cybersecurity governance framework, ensuring it aligns with the organization's overall business objectives
  • Create policies, procedures, and guidelines that support the cybersecurity strategy
  • Ensure compliance with industry standards, regulations, and best practices
  • Identify, assess, and prioritize cybersecurity risks facing the organization
  • Develop risk mitigation strategies and allocate resources to address key risk areas
  • Collaborate with other departments to integrate risk management practices across the organization
  • Monitor and report on the effectiveness of risk management strategies
What we offer
What we offer
  • Comprehensive suite of benefits supporting physical, financial, and emotional wellbeing
  • Career development programs to help achieve career goals
  • Inclusive work environment valuing diverse backgrounds.
  • Fulltime
Read More
Arrow Right

Third Party Risk Management Expert

The Third Party Risk Management Expert manages the run of Third Party Risk Manag...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree (Legal, Business, Economics, Computer Science or similar)
  • 2-5 years of relevant working experience in Compliance, Vendor Management, Risk Management, Audit or Contract Management domains
  • familiarity with industry frameworks like ISO 27001, Cybersecurity Framework, SOC 2 and overall understanding of regulations such as GDPR, DORA, etc
  • knowledge of risk assessment methodologies, including inherent risk and residual risk assessments
Job Responsibility
Job Responsibility
  • Manage and oversee efficient and effective implementation of Allianz Third Party Risk Management Standard and Outsourcing Policy across Allianz Operating Entities to ensure compliance related to DORA and other regulatory requirements
  • perform vendor service classification and evaluate vendor security practice, including cloud security, data protection and incident response
  • plan and facilitate completion of all Risk and Control Assessments for vendor population
  • enable operational execution of activities related to vendor risk management and of the overall TPRM process using the internal tools and platforms
  • collaborate with relevant departments and stakeholders involved in the process
  • develop and implement a TPRM strategy that aligns with business goals
  • independently track progress of TPRM actions of operational entities and proactively communicate with stakeholders
  • prepare Third Party Vendor Management related reports/dashboards and report to senior management
  • support in remediation actions required to ensure compliance with the Digital Operational Resilience Act and other regulatory requirements
What we offer
What we offer
  • Fixed salary compensation along with fixed benefits
  • flexible benefits that can be individually customized
  • additional vacation days (work tenure, Allianz tenure, special events, paid day for child medical check-up)
  • Rewards and Recognition Program (Team Excellence Award, Anniversary Awards, Above & Beyond Awards, Thank you for your contribution!)
  • complete training curricula available (tailored courses): International Certifications (Agile, Lean Six Sigma, Prince, ITIL, IFOA, ACCA, IACCM etc.), Comprehensive Leadership Programs, LinkedIn Learning, German Language Courses
  • All you can read with Bookster
  • Share Purchase Plan
  • allowances for special events (Birth Allowance, Losing a Family Member)
  • flexible working environment (work from home, hybrid)
  • medical services, private pension, internal tourism, meal tickets and more
  • Fulltime
Read More
Arrow Right

Third Party Risk Management Expert

The Third Party Risk Management Expert manages the run of Third Party Risk Manag...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree (Legal, Business, Economics, Computer Science or similar)
  • 2-5 years of relevant working experience in Compliance, Vendor Management, Risk Management, Audit or Contract Management domains
  • Familiarity with industry frameworks like ISO 27001, Cybersecurity Framework, SOC 2 and overall understanding of regulations such as GDPR, DORA, etc
  • Knowledge of risk assessment methodologies, including inherent risk and residual risk assessments
  • Strong customer service orientation, developed social skills and cross-cultural experience and ability to operate within a global team environment / work within global virtual teams
  • Fluent English is necessary, knowledge of German or other languages is a plus and high quality of oral and written communication skills
  • Self-motivated, proactive and customer-centric working style
  • Experience in setting priorities and work to tight deadlines
  • Ability to deliver high-quality results and takes ownership of initiatives.
Job Responsibility
Job Responsibility
  • Manage and oversee efficient and effective implementation of Allianz Third Party Risk Management Standard and Outsourcing Policy across Allianz Operating Entities to ensure compliance related to DORA and other regulatory requirements
  • Perform vendor service classification and evaluate vendor security practice, including cloud security, data protection and incident response
  • Plan and facilitate completion of all Risk and Control Assessments for vendor population
  • Enable operational execution of activities related to vendor risk management and of the overall TPRM process using the internal tools and platforms (RSA Archer, ServiceNow)
  • Collaborate with relevant departments and stakeholders involved in the process
  • Develop and implement a TPRM strategy that aligns with business goals
  • Independently track progress of TPRM actions of operational entities and pro-actively communicate with stakeholders
  • Prepare Third Party Vendor Management related reports / dashboards and report to senior management
  • Support in remediation actions required to ensure compliance with the Digital Operational Resilience Act and other regulatory requirements.
What we offer
What we offer
  • Fixed salary compensation along with fixed benefits
  • Flexible benefits that can be individually customized
  • Additional vacation days (work tenure, Allianz tenure, special events, Paid day for child medical check-up)
  • Rewards and Recognition Program (Team Excellence Award, Anniversary Awards, Above & Beyond Awards, Thank you for your contribution!)
  • Complete training curricula available (tailored courses): International Certifications (Agile, Lean Six Sigma, Prince, ITIL, IFOA, ACCA, IACCM etc.), Comprehensive Leadership Programs, LinkedIn Learning, German Language Courses for any level
  • All you can read with Bookster
  • Share Purchase Plan
  • Allowances for special events (Birth Allowance, Losing a Family Member)
  • Flexible working environment (work from home, hybrid)
  • FlexiBenefits including Medical services, Private pension, Internal Tourism, Meal Tickets.
  • Fulltime
Read More
Arrow Right

Third Party Risk Management Senior Expert

The Third Party Risk Management Expert manages the run of Third Party Risk Manag...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree (Legal, Business, Economics, Computer Science or similar)
  • 2-5 years of relevant working experience in Compliance, Vendor Management, Risk Management, Audit or Contract Management domains
  • Familiarity with industry frameworks like ISO 27001, Cybersecurity Framework, SOC 2 and overall understanding of regulations such as GDPR, DORA, etc
  • Knowledge of risk assessment methodologies, including inherent risk and residual risk assessments
  • Strong customer service orientation, developed social skills and cross-cultural experience and ability to operate within a global team environment / work within global virtual teams
  • Fluent English is necessary, knowledge of German or other languages is a plus and high quality of oral and written communication skills
  • Self-motivated, proactive and customer-centric working style
  • Experience in setting priorities and work to tight deadlines
  • Ability to deliver high-quality results and takes ownership of initiatives
Job Responsibility
Job Responsibility
  • Manage and oversee efficient and effective implementation of Allianz Third Party Risk Management Standard and Outsourcing Policy across Allianz Operating Entities to ensure compliance related to DORA and other regulatory requirements
  • Perform vendor service classification and evaluate vendor security practice, including cloud security, data protection and incident response
  • Plan and facilitate completion of all Risk and Control Assessments for vendor population
  • Enable operational execution of activities related to vendor risk management and of the overall TPRM process using the internal tools and platforms (RSA Archer, ServiceNow)
  • Collaborate with relevant departments and stakeholders involved in the process
  • Develop and implement a TPRM strategy that aligns with business goals
  • Independently track progress of TPRM actions of operational entities and pro-actively communicate with stakeholders
  • Prepare Third Party Vendor Management related reports / dashboards and report to senior management
  • Support in remediation actions required to ensure compliance with the Digital Operational Resilience Act and other regulatory requirements
What we offer
What we offer
  • Fixed salary compensation along with fixed benefits
  • Flexible benefits that can be individually customized
  • Additional vacation days (work tenure, Allianz tenure, special events, Paid day for child medical check-up)
  • Rewards and Recognition Program (Team Excellence Award, Anniversary Awards, Above & Beyond Awards, Thank you for your contribution!)
  • Complete training curricula available (tailored courses): International Certifications (Agile, Lean Six Sigma, Prince, ITIL, IFOA, ACCA, IACCM etc.), Comprehensive Leadership Programs, LinkedIn Learning, German Language Courses for any level
  • All you can read with Bookster
  • Share Purchase Plan
  • Allowances for special events (Birth Allowance, Losing a Family Member)
  • Flexible working environment (work from home, hybrid)
  • Medical services, Private pension, Internal Tourism, Meal Tickets and many other benefits of your choice
  • Fulltime
Read More
Arrow Right

Third Party Risk Management Expert

The Third Party Risk Management Expert manages the run of Third Party Risk Manag...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree (Legal, Business, Economics, Computer Science or similar)
  • 2-5 years of relevant working experience in Compliance, Vendor Management, Risk Management, Audit or Contract Management domains
  • Familiarity with industry frameworks like ISO 27001, Cybersecurity Framework, SOC 2 and overall understanding of regulations such as GDPR, DORA, etc
  • Knowledge of risk assessment methodologies, including inherent risk and residual risk assessments
Job Responsibility
Job Responsibility
  • Manage and oversee efficient and effective implementation of Allianz Third Party Risk Management Standard and Outsourcing Policy across Allianz Operating Entities to ensure compliance related to DORA and other regulatory requirements
  • Perform vendor service classification and evaluate vendor security practice, including cloud security, data protection and incident response
  • Plan and facilitate completion of all Risk and Control Assessments for vendor population
  • Enable operational execution of activities related to vendor risk management and of the overall TPRM process using the internal tools and platforms
  • Collaborate with relevant departments and stakeholders involved in the process
  • Develop and implement a TPRM strategy that aligns with business goals
  • Independently track progress of TPRM actions of operational entities and pro-actively communicate with stakeholders
  • Prepare Third Party Vendor Management related reports/dashboards and report to senior management
  • Support in remediation actions required to ensure compliance with the Digital Operational Resilience Act and other regulatory requirements
What we offer
What we offer
  • Fixed salary compensation along with fixed benefits
  • Flexible benefits that can be individually customized
  • Additional vacation days (work tenure, Allianz tenure, special events, Paid day for child medical check-up)
  • Rewards and Recognition Program (Team Excellence Award, Anniversary Awards, Above & Beyond Awards, Thank you for your contribution!)
  • Complete training curricula available (tailored courses): International Certifications (Agile, Lean Six Sigma, Prince, ITIL, IFOA, ACCA, IACCM etc.), Comprehensive Leadership Programs, LinkedIn Learning, German Language Courses for any level
  • All you can read with Bookster
  • Share Purchase Plan
  • Allowances for special events (Birth Allowance, Losing a Family Member)
  • Flexible working environment (work from home, hybrid)
  • Medical services
  • Fulltime
Read More
Arrow Right

Senior Compliance Program Manager

We are seeking an experienced Senior Compliance Program Manager to lead our Fede...
Location
Location
United States , San Francisco
Salary
Salary:
116100.00 - 186500.00 USD / Year
https://www.atlassian.com Logo
Atlassian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Information Technology, Cybersecurity, or a related field
  • A Master's degree or relevant experience with certifications (e.g., CISSP, CISM, PMP) are preferred
  • A minimum of 10 years of experience in compliance program management, with a focus on FedRAMP or similar regulatory frameworks
  • In-depth knowledge of FedRAMP, IRAP, ISMAP requirements, processes, and documentation, including the authorization process and continuous monitoring
  • Demonstrated experience in managing compliance audits and assessments, preferably with experience working with 3PAOs
  • Strong understanding of cloud computing technologies and security practices, particularly in a government context
  • Excellent project management skills, with the ability to manage multiple projects and priorities effectively
  • Strong analytical and problem-solving skills, with a keen attention to detail
  • Excellent communication and interpersonal skills, with the ability to engage and influence stakeholders at all levels
Job Responsibility
Job Responsibility
  • Oversee and manage the entire FedRAMP compliance lifecycle, from initial assessment through continuous monitoring
  • Develop and implement compliance strategies to meet FedRAMP requirements and maintain authorization
  • Prepare, maintain, and update all necessary documentation, including System Security Plans (SSPs), policies, procedures, and incident response plans
  • Ensure timely and accurate reporting of compliance status, issues, and risks to senior management and stakeholders
  • Develop and manage Plans of Action and Milestones (POAMs) to address identified compliance gaps and vulnerabilities
  • Track and monitor the progress of POAMs, ensuring timely resolution and reporting of status to stakeholders
  • Coordinate and manage internal and external audits and assessments to ensure compliance with FedRAMP standards
  • Act as the primary point of contact for third-party assessment organizations (3PAOs) and facilitate the audit process
  • Identify, evaluate, and mitigate risks associated with FedRAMP compliance
  • Develop and implement risk management plans to address potential compliance gaps
What we offer
What we offer
  • health and wellbeing resources
  • paid volunteer days
  • Fulltime
Read More
Arrow Right

Cybersecurity Third-Party Risk Analyst

We are seeking a detail-oriented and security-conscious Cybersecurity Third-Part...
Location
Location
United States , Tempe
Salary
Salary:
Not provided
https://www.circlek.com Logo
Circle K
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in cybersecurity, information technology, risk management, or a related field
  • 2-4 years of experience in cybersecurity risk assessment, vendor risk management, or a similar role
  • Strong understanding of cybersecurity frameworks (e.g., NIST, ISO 27001, SOC 2, CIS, GDPR, HIPAA)
  • Familiarity with third-party risk management platforms and security assessment tools
  • Ability to analyze security reports and communicate risk findings effectively
  • Strong problem-solving skills and attention to detail
  • Excellent verbal and written communication skills.
Job Responsibility
Job Responsibility
  • Conduct comprehensive security assessments of third-party vendors to identify potential risks and vulnerabilities
  • Evaluate vendor security policies, procedures, and controls to ensure compliance with company and industry standards
  • Develop and maintain third-party cybersecurity risk management (TPCRM) frameworks, policies, and procedures
  • Work closely with procurement, legal, and cybersecurity compliance teams to integrate security requirements into vendor contracts
  • Monitor vendor security performance using automated tools, questionnaires, and periodic audits
  • Stay updated on cybersecurity threats, regulatory requirements, and best practices for third-party risk management
  • Collaborate with internal teams to address security concerns related to third-party vendors
  • Maintain foundational documentation related to the third-party process
  • Provide recommendations and remediation guidance to vendors with identified security gaps.
Read More
Arrow Right

Third Party Risk Management Expert

The Third Party Risk Management Expert manages Third Party Risk Management & Out...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree (Legal, Business, Economics, Computer Science or similar)
  • 2-5 years of relevant working experience in Compliance, Vendor Management, Risk Management, Audit or Contract Management domains
  • Familiarity with industry frameworks like ISO 27001, Cybersecurity Framework, SOC 2 and overall understanding of regulations such as GDPR, DORA, etc
  • Knowledge of risk assessment methodologies, including inherent risk and residual risk assessments
  • Strong customer service orientation, developed social skills and cross-cultural experience and ability to operate within a global team environment / work within global virtual teams)
  • Fluent English is necessary, knowledge of German or other languages is a plus and high quality of oral and written communication skills
  • Self-motivated, proactive and customer-centric working style
  • Experience in setting priorities and work to tight deadlines
  • Ability to deliver high-quality results and takes ownership of initiatives
Job Responsibility
Job Responsibility
  • Manage and oversee efficient and effective implementation of Allianz Third Party Risk Management Standard and Outsourcing Policy across Allianz Operating Entities to ensure compliance related to DORA and other regulatory requirements
  • Perform vendor service classification and evaluate vendor security practice, including cloud security, data protection and incident response
  • Plan and facilitate completion of all Risk and Control Assessments for vendor population
  • Enable operational execution of activities related to vendor risk management and of the overall TPRM process using the internal tools and platforms (RSA Archer, ServiceNow)
  • Collaborate with relevant departments and stakeholders involved in the process
  • Develop and implement a TPRM strategy that aligns with business goals
  • Independently track progress of TPRM actions of operational entities and pro-actively communicate with stakeholders
  • Prepare Third Party Vendor Management related reports / dashboards and report to senior management
  • Support in remediation actions required to ensure compliance with the Digital Operational Resilience Act and other regulatory requirements
What we offer
What we offer
  • Fixed salary compensation along with fixed benefits
  • Flexible benefits that can be individually customized
  • Additional vacation days
  • Rewards and Recognition Program
  • Complete training curricula available (tailored courses)
  • International Certifications (Agile, Lean Six Sigma, Prince, ITIL, IFOA, ACCA, IACCM etc.)
  • Comprehensive Leadership Programs
  • LinkedIn Learning
  • German Language Courses for any level
  • All you can read with Bookster
  • Fulltime
Read More
Arrow Right