CrawlJobs Logo

Cybersecurity Risk Manager

https://www.randstad.com Logo

Randstad

Location Icon

Location:
India, Bengaluru

Category Icon
Category:
IT - Administration

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Requirements:

  • Information Security Governance, Privacy and Compliance and Security Assessment experience with a focus on IT and IS Risk Assessments and program reviews / establishment
  • Understanding on ISO 27001/ NIST 800-53/ PCI-DSS
  • Interacting with onshore engagements and clients directly performing Vendor or Third-party security assessments
  • Business Continuity planning and Disaster Recovery implementation and review experience
  • Perform remote and gap assessments against regulatory requirements and providing recommendations to remediate the gaps
  • Independently write reports of the assessments based on the discussions during remote reviews
  • Perform second level quality review of the reports written by peers/junior resources
  • 2+ years Information Security Governance, Privacy and Compliance and Security Assessment, experience, with a focus on IT and IS Risk Assessments and program reviews / establishment
  • Familiarity with and demonstrated experience assessing against the BS ISO/IEC/SIG 27002:2005 BS 7799 standard domains, BS 25999 including Risk Assessment
  • Security policy
  • Organization of Information Security
  • Asset Management
  • HR Security
  • Physical and Environmental Security
  • Communications and Operations Management
  • Access Control
  • IS Acquisition, Development and Maintenance
  • IS Incident Management
  • Business Continuity Management
  • and Compliance
  • Broad understanding of Information Security trends, services and disciplines and experience applying them in dynamic environments

Additional Information:

Job Posted:
December 17, 2025

Expiration:
December 19, 2025

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cybersecurity Risk Manager

Cybersecurity Manager's Control Assessment (MCA) Business Risk Officer

This role is focused on transformation efforts related to Citi’s Manager’s Contr...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of relevant experience
  • experience in Manager’s Control Assessment (MCA), Operational Risk, Information Security, Cybersecurity, Risk Management, and Governance, Risk and Control (GRC)
  • risk management, cybersecurity, and project management certifications are a plus (e.g. CRISC, CISA, CISM, CISSP, PMP)
  • ability to influence decisions with senior leadership and business partners
  • proficiency in Microsoft Office, advanced Excel skills (macros, pivots, complex formulas)
  • knowledge of data visualization/analytics business applications like Tableau, QlikView, and Microsoft Power BI
  • familiarity with Machine Learning and Artificial Intelligence (AI) is a plus
  • fluent in English
Job Responsibility
Job Responsibility
  • Manage the planning, coordination, and execution of MCA Transformation program for CISO
  • lead efforts in Global Process MCA Profiles (GPMPs) and Continuous Risk Management (CRM) for CISO
  • gain expert-level knowledge of MCA Standard, Procedure, and tools to support future-state MCA
  • support CISO Business Processes, Control Owners, and Global Assessment Unit (GAU) Owners in their responsibilities related to MCA execution
  • identify and document key controls necessary for mitigation of cybersecurity risk
  • drive problem solving and perform root cause analyses
  • simplify complex messages and summarize key points
  • partner with CISO’s Enterprise Architecture Methodology (EAM) Lead team to establish processes for decision-making and simplification
  • foster constructive dialogue and facilitate open discussions
  • actively manage relationships with CISO business partners and risk management teams
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance
  • Paid Parental Leave Program
  • Private Medical Care Program
  • onsite medical rooms
  • Pension Plan Contribution
  • Group Life Insurance
  • Employee Assistance Program
  • access to learning and development programs, online course libraries, and upskilling platforms
  • flexible work arrangements
  • Fulltime
Read More
Arrow Right

Cybersecurity Third-Party Risk Analyst

We are seeking a detail-oriented and security-conscious Cybersecurity Third-Part...
Location
Location
United States , Tempe
Salary
Salary:
Not provided
https://www.circlek.com Logo
Circle K
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in cybersecurity, information technology, risk management, or a related field
  • 2-4 years of experience in cybersecurity risk assessment, vendor risk management, or a similar role
  • Strong understanding of cybersecurity frameworks (e.g., NIST, ISO 27001, SOC 2, CIS, GDPR, HIPAA)
  • Familiarity with third-party risk management platforms and security assessment tools
  • Ability to analyze security reports and communicate risk findings effectively
  • Strong problem-solving skills and attention to detail
  • Excellent verbal and written communication skills.
Job Responsibility
Job Responsibility
  • Conduct comprehensive security assessments of third-party vendors to identify potential risks and vulnerabilities
  • Evaluate vendor security policies, procedures, and controls to ensure compliance with company and industry standards
  • Develop and maintain third-party cybersecurity risk management (TPCRM) frameworks, policies, and procedures
  • Work closely with procurement, legal, and cybersecurity compliance teams to integrate security requirements into vendor contracts
  • Monitor vendor security performance using automated tools, questionnaires, and periodic audits
  • Stay updated on cybersecurity threats, regulatory requirements, and best practices for third-party risk management
  • Collaborate with internal teams to address security concerns related to third-party vendors
  • Maintain foundational documentation related to the third-party process
  • Provide recommendations and remediation guidance to vendors with identified security gaps.
Read More
Arrow Right

Cybersecurity Controls Oversight Manager

Cybersecurity Controls Oversight Manager will play a key role in the monitoring ...
Location
Location
Poland , Krakow
Salary
Salary:
Not provided
https://www.hsbc.com Logo
HSBC
Expiration Date
February 07, 2026
Flip Icon
Requirements
Requirements
  • Risk and Controls Background: subject matter expertise in Control Monitoring and Assessment, ability to translate difficult IT concepts into business-friendly language, experience with Technology risks and controls
  • Technical background: knowledge of Cybersecurity – at least a generalist with specialist area expertise welcome, possession of recognized certificates will be an advantage, understanding of metrics and measures in managing risks and controls (KCIs, KRIs, KPIs) is a must, technical writing skills and highly proficient use of written English is required to ensure quality output for Control, Policies, Procedure and Standards design and maintenance
  • Strong stakeholder management and communications skills: experience of working at an operational level in international environments which drive a true international perspective
  • managing stakeholders including the Group CISO, Cybersecurity Leadership and staff, Chief Controls Office and Resilience Risk teams
  • Team-oriented mentality combined with ability to complete tasks independently to a high-quality standard: experience within fast-moving, complex and demanding corporate environments where Cybersecurity controls issues must be handled on a large scale and multi-task
  • Interpersonal Skills: influential, credible and persuasive, active listener embraces HSBC Values, shows good judgement and demonstrates high communication skills to achieve effective stakeholder management
Job Responsibility
Job Responsibility
  • Represent Cybersecurity Controls in senior management forums
  • Work with the Control Owners and other stakeholders to ensure timely execution of self-assessments
  • Collect and maintain accurate evidence and maturity scoring reviews for cybersecurity controls
  • Ensure that the defined controls are compliant with Legal/Regulatory/Internal requirements and that measurements provide sufficient data for stakeholder reports
  • Work with Enterprise Risk Management, Chief Control Office and Audit (internal and external) to ensure that the Cybersecurity owned controls are monitored, assessed and tested according to the internal requirements, Risk Management Framework (RMF) and industry standards and best practices
  • Manage escalation of issues through appropriate channels based on the results of oversight process
  • Ensure improvement actions are updated regularly and aligned to the control objectives
What we offer
What we offer
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Fulltime
Read More
Arrow Right

Third Party Risk Management Expert

The Third Party Risk Management Expert manages the run of Third Party Risk Manag...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree (Legal, Business, Economics, Computer Science or similar)
  • 2-5 years of relevant working experience in Compliance, Vendor Management, Risk Management, Audit or Contract Management domains
  • familiarity with industry frameworks like ISO 27001, Cybersecurity Framework, SOC 2 and overall understanding of regulations such as GDPR, DORA, etc
  • knowledge of risk assessment methodologies, including inherent risk and residual risk assessments
Job Responsibility
Job Responsibility
  • Manage and oversee efficient and effective implementation of Allianz Third Party Risk Management Standard and Outsourcing Policy across Allianz Operating Entities to ensure compliance related to DORA and other regulatory requirements
  • perform vendor service classification and evaluate vendor security practice, including cloud security, data protection and incident response
  • plan and facilitate completion of all Risk and Control Assessments for vendor population
  • enable operational execution of activities related to vendor risk management and of the overall TPRM process using the internal tools and platforms
  • collaborate with relevant departments and stakeholders involved in the process
  • develop and implement a TPRM strategy that aligns with business goals
  • independently track progress of TPRM actions of operational entities and proactively communicate with stakeholders
  • prepare Third Party Vendor Management related reports/dashboards and report to senior management
  • support in remediation actions required to ensure compliance with the Digital Operational Resilience Act and other regulatory requirements
What we offer
What we offer
  • Fixed salary compensation along with fixed benefits
  • flexible benefits that can be individually customized
  • additional vacation days (work tenure, Allianz tenure, special events, paid day for child medical check-up)
  • Rewards and Recognition Program (Team Excellence Award, Anniversary Awards, Above & Beyond Awards, Thank you for your contribution!)
  • complete training curricula available (tailored courses): International Certifications (Agile, Lean Six Sigma, Prince, ITIL, IFOA, ACCA, IACCM etc.), Comprehensive Leadership Programs, LinkedIn Learning, German Language Courses
  • All you can read with Bookster
  • Share Purchase Plan
  • allowances for special events (Birth Allowance, Losing a Family Member)
  • flexible working environment (work from home, hybrid)
  • medical services, private pension, internal tourism, meal tickets and more
  • Fulltime
Read More
Arrow Right

Third Party Risk Management Expert

The Third Party Risk Management Expert manages the run of Third Party Risk Manag...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree (Legal, Business, Economics, Computer Science or similar)
  • 2-5 years of relevant working experience in Compliance, Vendor Management, Risk Management, Audit or Contract Management domains
  • Familiarity with industry frameworks like ISO 27001, Cybersecurity Framework, SOC 2 and overall understanding of regulations such as GDPR, DORA, etc
  • Knowledge of risk assessment methodologies, including inherent risk and residual risk assessments
  • Strong customer service orientation, developed social skills and cross-cultural experience and ability to operate within a global team environment / work within global virtual teams
  • Fluent English is necessary, knowledge of German or other languages is a plus and high quality of oral and written communication skills
  • Self-motivated, proactive and customer-centric working style
  • Experience in setting priorities and work to tight deadlines
  • Ability to deliver high-quality results and takes ownership of initiatives.
Job Responsibility
Job Responsibility
  • Manage and oversee efficient and effective implementation of Allianz Third Party Risk Management Standard and Outsourcing Policy across Allianz Operating Entities to ensure compliance related to DORA and other regulatory requirements
  • Perform vendor service classification and evaluate vendor security practice, including cloud security, data protection and incident response
  • Plan and facilitate completion of all Risk and Control Assessments for vendor population
  • Enable operational execution of activities related to vendor risk management and of the overall TPRM process using the internal tools and platforms (RSA Archer, ServiceNow)
  • Collaborate with relevant departments and stakeholders involved in the process
  • Develop and implement a TPRM strategy that aligns with business goals
  • Independently track progress of TPRM actions of operational entities and pro-actively communicate with stakeholders
  • Prepare Third Party Vendor Management related reports / dashboards and report to senior management
  • Support in remediation actions required to ensure compliance with the Digital Operational Resilience Act and other regulatory requirements.
What we offer
What we offer
  • Fixed salary compensation along with fixed benefits
  • Flexible benefits that can be individually customized
  • Additional vacation days (work tenure, Allianz tenure, special events, Paid day for child medical check-up)
  • Rewards and Recognition Program (Team Excellence Award, Anniversary Awards, Above & Beyond Awards, Thank you for your contribution!)
  • Complete training curricula available (tailored courses): International Certifications (Agile, Lean Six Sigma, Prince, ITIL, IFOA, ACCA, IACCM etc.), Comprehensive Leadership Programs, LinkedIn Learning, German Language Courses for any level
  • All you can read with Bookster
  • Share Purchase Plan
  • Allowances for special events (Birth Allowance, Losing a Family Member)
  • Flexible working environment (work from home, hybrid)
  • FlexiBenefits including Medical services, Private pension, Internal Tourism, Meal Tickets.
  • Fulltime
Read More
Arrow Right

Third Party Risk Management Senior Expert

The Third Party Risk Management Expert manages the run of Third Party Risk Manag...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University degree (Legal, Business, Economics, Computer Science or similar)
  • 2-5 years of relevant working experience in Compliance, Vendor Management, Risk Management, Audit or Contract Management domains
  • Familiarity with industry frameworks like ISO 27001, Cybersecurity Framework, SOC 2 and overall understanding of regulations such as GDPR, DORA, etc
  • Knowledge of risk assessment methodologies, including inherent risk and residual risk assessments
  • Strong customer service orientation, developed social skills and cross-cultural experience and ability to operate within a global team environment / work within global virtual teams
  • Fluent English is necessary, knowledge of German or other languages is a plus and high quality of oral and written communication skills
  • Self-motivated, proactive and customer-centric working style
  • Experience in setting priorities and work to tight deadlines
  • Ability to deliver high-quality results and takes ownership of initiatives
Job Responsibility
Job Responsibility
  • Manage and oversee efficient and effective implementation of Allianz Third Party Risk Management Standard and Outsourcing Policy across Allianz Operating Entities to ensure compliance related to DORA and other regulatory requirements
  • Perform vendor service classification and evaluate vendor security practice, including cloud security, data protection and incident response
  • Plan and facilitate completion of all Risk and Control Assessments for vendor population
  • Enable operational execution of activities related to vendor risk management and of the overall TPRM process using the internal tools and platforms (RSA Archer, ServiceNow)
  • Collaborate with relevant departments and stakeholders involved in the process
  • Develop and implement a TPRM strategy that aligns with business goals
  • Independently track progress of TPRM actions of operational entities and pro-actively communicate with stakeholders
  • Prepare Third Party Vendor Management related reports / dashboards and report to senior management
  • Support in remediation actions required to ensure compliance with the Digital Operational Resilience Act and other regulatory requirements
What we offer
What we offer
  • Fixed salary compensation along with fixed benefits
  • Flexible benefits that can be individually customized
  • Additional vacation days (work tenure, Allianz tenure, special events, Paid day for child medical check-up)
  • Rewards and Recognition Program (Team Excellence Award, Anniversary Awards, Above & Beyond Awards, Thank you for your contribution!)
  • Complete training curricula available (tailored courses): International Certifications (Agile, Lean Six Sigma, Prince, ITIL, IFOA, ACCA, IACCM etc.), Comprehensive Leadership Programs, LinkedIn Learning, German Language Courses for any level
  • All you can read with Bookster
  • Share Purchase Plan
  • Allowances for special events (Birth Allowance, Losing a Family Member)
  • Flexible working environment (work from home, hybrid)
  • Medical services, Private pension, Internal Tourism, Meal Tickets and many other benefits of your choice
  • Fulltime
Read More
Arrow Right

Sr. Director, Cybersecurity Governance, Risk & Compliance

The Sr. Director of Cybersecurity Governance, Risk Management, and Compliance (G...
Location
Location
United States
Salary
Salary:
173500.00 - 419500.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or higher in Information Technology, Cybersecurity, Computer Science, or a related field
  • Minimum of 10 years of experience in cybersecurity and/or IT Risk, with at least 5 years focus on GRC
  • Proven track record in a senior leadership role within a large organization
  • Experience in developing and implementing cybersecurity strategies
  • Strong knowledge of relevant regulations and standards, such as GDPR, NIST CSF, and ISO 27001
  • Exceptional leadership and management skills
  • Strong analytical and problem-solving abilities
  • Excellent communication and interpersonal skills
  • Ability to work collaboratively across departments and build consensus
  • Proficient in cybersecurity technologies and tools.
Job Responsibility
Job Responsibility
  • Define and execute a comprehensive cybersecurity GRC strategy that aligns with business objectives and legal/regulatory requirements
  • Partner with cross-functional teams, including Legal, IT, Audit, and Business Units, to integrate security and compliance requirements into business processes
  • Recruit, mentor, and develop a high-performing team of GRC professionals
  • Develop and maintain the cybersecurity governance framework, ensuring it aligns with the organization's overall business objectives
  • Create policies, procedures, and guidelines that support the cybersecurity strategy
  • Ensure compliance with industry standards, regulations, and best practices
  • Identify, assess, and prioritize cybersecurity risks facing the organization
  • Develop risk mitigation strategies and allocate resources to address key risk areas
  • Collaborate with other departments to integrate risk management practices across the organization
  • Monitor and report on the effectiveness of risk management strategies
What we offer
What we offer
  • Comprehensive suite of benefits supporting physical, financial, and emotional wellbeing
  • Career development programs to help achieve career goals
  • Inclusive work environment valuing diverse backgrounds.
  • Fulltime
Read More
Arrow Right

Cybersecurity Risk and Controls Framework Expert

Cybersecurity Risk and Controls Framework Expert to analyse the regulatory compl...
Location
Location
United States , Spring
Salary
Salary:
105500.00 - 243000.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Information Security, Information Technology, Risk Management or a related field, or equivalent experience
  • CISSP, CRISC, or similar certification
  • 5-7 years of experience in Information Security, IT Governance, and/or Risk Management
  • 5+ years of experience working with various industry standards and frameworks on risks and controls (e.g. ISO 27001, NIST CSF, COBIT)
  • Expert in a broad range of Information Security domains (e.g., Application Security, Cloud Security, Network Security, Data Security, Infrastructure Security)
  • Strong understanding of cybersecurity control frameworks (e.g., NIST CSF, ISO 27001)
  • Proven experience in risk assessments and analysis
  • Proven experience in defining and implementing cybersecurity policies, standards and guidelines across multiple platforms
  • Strong organizational skills and attention to detail
  • Ability to work effectively with technical and non-technical stakeholders
Job Responsibility
Job Responsibility
  • Support Governance, Risk and Compliance (GRC) leadership in delivering various risk overview summaries
  • Contribute to the development of the Cyber risk governance framework
  • Facilitating a gap analysis of the current processes against the Risk management framework
  • Provide subject matter expertise on the control framework, policies, standards and guidelines
  • Analyse the current suite of controls against the control framework
  • Ensure that changes to risk governance frameworks are effectively communicated
  • Work with regional representatives to coordinate the scanning for regulatory changes related to cybersecurity
  • Provide expert opinion on HPE's risk and effectiveness of our policies and standards
  • Support the handling of questions pertaining to cyber policies and standards from regulators, partners and customers
  • Deliver presentations and updates to key business and technology stakeholders
What we offer
What we offer
  • Health & Wellbeing benefits
  • Personal & Professional Development programs
  • Unconditional Inclusion environment
  • Comprehensive suite of benefits supporting physical, financial and emotional wellbeing
  • Fulltime
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.