CrawlJobs Logo

Supplier Security Specialist

vodafone.com Logo

Vodafone

Location Icon

Location:
Romania , Bucuresti

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

We are seeking a Supplier Security Analyst to support the end-to-end security assurance lifecycle of Vodafone’s critical and high-risk suppliers. This role involves liaising with suppliers, conducting due diligence, performing security assessments, and ensuring compliance with Vodafone’s standards. The individual will play a key role in identifying risks, improving assurance frameworks, and producing high-quality reports that inform strategic decisions.

Job Responsibility:

  • Act as a subject matter expert on supplier security, including due diligence testing, assessments, and contract negotiations
  • Conduct security assessments based on supplier criticality and initiate appropriate assurance responses
  • Monitor ongoing compliance and manage supplier onboarding, monitoring, and offboarding processes
  • Develop and operate processes, tools, and reports that support supplier security activities
  • Continuously improve the Supplier Security framework in line with evolving threats and industry best practices

Requirements:

  • Experienced in third-party security risk management within complex global organisations
  • Knowledgeable in ISO security standards and security management processes
  • Skilled in stakeholder engagement, with strong communication and influencing capabilities
  • Able to analyse complex information and present findings in a clear, accessible format
  • Familiar with supplier governance and technical countermeasures
  • Professional certifications such as CISSP, CISM, CISA, CRISC, ISO 27001 Lead Auditor, or ISO 22301 Lead Auditor
What we offer:
  • Hybrid way of working: 2 days from office per week (8 per month)
  • Medical and dental services
  • Life and hospitalization insurance
  • Dedicated employee phone subscription
  • Take control of your benefits and choose any of the following options: meal tickets / private pension / vacation vouchers / cultural vouchers - within the budget
  • Special discounts for gyms and retailers
  • Annual Company Bonus
  • Ongoing Education
  • We let you write your own story by planning vacations: go for a trip, experience new things, have fun and enjoy your 23 days off
  • Special Paternal Program - 4 months of paid paternity leave

Additional Information:

Job Posted:
January 22, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Supplier Security Specialist

Specialist, Physical Security

This is a Uniform Security Officer Position.
Location
Location
United States of America , Colorado Springs
Salary
Salary:
21.00 - 40.00 USD / Hour
walmart.com Logo
Walmart
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 1 years’ experience in a relevant position, police, fire, EMS, military, security
  • Must possess a valid US Driver’s License
  • Will complete and pass all core components of the Physical Security Specialist Training Academy within 90 days of job entry date and will maintain them while employed in this position
  • 1 year experience in security, law enforcement, military, emergency services or related field
Job Responsibility
Job Responsibility
  • Supports the development and implementation of protocols, programs, and training by providing input, making recommendations for improvement of safety and security protocols, standard operating procedures (SOPs), training, and security programs, ensuring compliance with Corporate Security protocols, SOPs, and company policy, updating and maintaining site-specific responsibilities, initiating the incident command system in emergency situations until relieved, and providing tactical response to emergency situations (for example, domestic violence, workplace violence, fire, severe weather, active shooter, chemical spill)
  • Implements security systems and strategies (for example, compliance, crisis response, threat management, investigations, patrol, dispatch) by responding to alarm and intrusion detection system activation (for example, voice evacuation, panic/duress device, perimeter, motion/ground sensor), determining priorities of action in emergency situations, providing tactical security responses to life safety events and incidents (for example, Cardiopulmonary Resuscitation (CPR), First Aid) according to company guidelines, ensuring threats are reported and assisting with mitigation of identified threats, investigating reported corporate facility threats, allegations of policy violations, criminal activity, security breaches, and complaints, assessing visitor (for example, associates, guests, supplier, drivers, panhandlers) threat level, assisting with and escorting critical and valued information and merchandise (for example, legal files and documents, diamonds, mergers and acquisition documents)
  • Ensures regulatory and corporate policy compliance (for example, Payment Card Industry (PCI), personally identifiable information (PII), Occupational Safety and Health Act (OSHA), Fire Code, Life Safety) by addressing compliance-related issues
  • reporting and correcting violations (for example, eyewash stations, fire extinguishers, panic/duress alarms, egress and ingress routes)
  • and implementing solutions to achieve compliance
  • Develops and maintains relationships with internal and external partners to promote a safe working environment by providing tactical emergency responses during life safety incidents (for example, fire, bomb threats, active shooter situations), providing customer service with internal (for example, Alarm Technicians, Asset Protection, Facility Management) and external (for example, law enforcement, regulatory agencies) groups, and reporting feedback from customers
  • Completes work assignments and priorities by using policies, data, and resources, collaborating with managers, co-workers, customers, and other business partners, identifying priorities, deadlines, and expectations, carrying out tasks, communicating progress and information, determining and recommending ways to address improvement opportunities, and adapting to and learning from change, difficulties, and feedback
  • Complies with company policies, procedures, and standards of ethics and integrity by implementing related action plans, Door Policy and applying these in executing business processes and practices
What we offer
What we offer
  • performance-based bonus awards
  • Health benefits include medical, vision and dental coverage
  • Financial benefits include 401(k), stock purchase and company-paid life insurance
  • Paid time off benefits include PTO (including sick leave), parental leave, family care leave, bereavement, jury duty, and voting
  • Other benefits include short-term and long-term disability, company discounts, Military Leave Pay, adoption and surrogacy expense reimbursement
  • PTO and/or PPTO that can be used for vacation, sick leave, holidays, or other purposes
  • Live Better U is a Walmart-paid education benefit program for full-time and part-time associates in Walmart and Sam's Club facilities
  • Programs range from high school completion to bachelor's degrees, including English Language Learning and short-form certificates
  • Tuition, books, and fees are completely paid for by Walmart
  • Multiple health plan options, including vision & dental plans for you & dependents
  • Fulltime
Read More
Arrow Right

Supplier Governance Manager

The role reports into the Senior Manager of Governance and Reporting in our Pers...
Location
Location
Australia , Sydney
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrated experience in supplier / vendor management, procurement, or contract administration
  • Strong understanding of governance, risk, and compliance ideally within the financial services industry
  • Excellent verbal and written communication skills
  • Demonstrated understanding of cyber security standards, IT systems, and risk management practices
  • Experience working across Enterprise Risk, Operational Risk, Governance, Legal, Compliance, or Regulatory Assurance
  • High attention to detail with focus on compliance and regulatory requirements
  • Strong analytical and problem-solving skills
  • Experience in managing and fostering strong relationships with internal teams and supplier partners
  • Ability to plan and prioritise effectively, organise tasks and manage competing resources and demands
  • Tertiary qualifications in a relevant discipline
Job Responsibility
Job Responsibility
  • Oversee the onboarding, renewal, and governance of supplier contracts
  • Ensure compliance with procurement, cyber security, IT, as well as risk and regulatory standards
  • Work closely with internal teams to manage supplier supervision and monitoring programs
  • Assess suppliers required to be onboarded
  • Provide oversight over end-to-end supplier onboarding, contract renewals and variations, document execution, supplier governance, and offboarding
  • Oversee negotiations with suppliers
  • Work closely with the Cyber Governance team
  • Maintain accurate records of supplier agreements, risk assessments, compliance documentation, and supervision and monitoring routines
  • Facilitate supervision and monitoring routines
  • Assist with analysing the effectiveness of supplier partnerships
What we offer
What we offer
  • Inclusive Culture
  • Flexible Work-Life Balance
  • Career Development
  • Financial and Well-being Perks
  • Fulltime
Read More
Arrow Right

TPRM Specialist

A highly motivated and hands-on professional to join the Supply Chain Security (...
Location
Location
Netherlands , Amsterdam
Salary
Salary:
Not provided
levy-professionals.com Logo
Levy Professionals
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Knowledge and experience with setting up projects & deliverables within supply chain security / Third-Party Risk Management (TPRM)
  • Proven experience in executing information security risk assessments
  • Knowledgeable on one or more areas such as security processes, technology architectures, network security, application security, and vulnerability management
  • Experience with the ServiceNow TPRM module is a significant advantage
  • HBO or University degree
  • Excellent stakeholder management skills
  • A strong ability to translate technical risks into business risks and vice versa
  • Hands-on, self-organised, willing to finish and deliver (execution power)
  • Service-oriented professional who enjoys taking on an internal consultancy role
  • The working language within the team is English
Job Responsibility
Job Responsibility
  • Govern and manage IT vendor relationships concerning performance on the security aspects of underlying contractual obligations
  • Execute Vendor Security Risk Assessments and perform necessary follow-up actions, focusing on material risks
  • Ensure that information security risks are identified and managed effectively throughout all stages of the relationship with external vendors
  • Review the applicability and quality level of assurance reports issued by third parties
  • Manage the IT security-related part of vendor contracts, working closely with 2nd line functions such as legal, compliance, and procurement on contractual changes
  • Actively stay up-to-date with emerging cyber security trends, risk, and threat developments, and share this knowledge to help integrate them into the assessment program
  • Help solve security-related questions, take initiative, and escalate in time if needed
  • Signal improvements related to the way of working inside the team and contribute to improving the excellence of the service offering
  • Work according to the DevOps & Agile methodology, improving Supply Chain Security services based on user stories
  • Occasionally investigate and resolve incidents as they occur
Read More
Arrow Right

Risk Specialist, GRCP

Airtable is looking for someone who wants to work in a fast paced and dynamic en...
Location
Location
United States , San Francisco; Austin
Salary
Salary:
148000.00 - 246000.00 USD / Year
airtable.com Logo
Airtable
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • General understanding of security, compliance, and privacy frameworks such as SOC2, ISO27001, ISO27701, GDPR, CCPA
  • Experienced with SaaS/Cloud suppliers
  • Familiarity with cloud data compliance and working with public cloud solutions (AWS)
  • Have knowledge of and interest in third party information security challenges and trends, including emerging threats
  • Independent self-starter, ability to manage multiple projects simultaneously
  • Detail-oriented and organized
  • Ability to take action quickly and drive to improve processes for efficiency
  • Flexible and able to change gears and focus depending on team and company priorities
Job Responsibility
Job Responsibility
  • Conduct third party security and privacy reviews on softwares, contractors, and other services to Airtable to reduce third party risks
  • Identify third party business risks and recommend risk treatment options to internal business stakeholders
  • Determine security contract requirements and communicate those to the Procurement & Legal team
  • Communicate with vendors and internal stakeholders to gather information needed for initial and periodic security and compliance reviews, validations, and audits, and to understand business objectives
  • Perform annual reviews on critical vendors to meet compliance and customer requirements
  • Collaborate with Procurement, IT, Legal, Finance to improve third party due diligence process
  • Provide general support to the GRCP team as needed
What we offer
What we offer
  • benefits
  • restricted stock units
  • incentive compensation
  • Fulltime
Read More
Arrow Right

Technical Support Specialist

An established and growing technology provider offering managed support across n...
Location
Location
United Kingdom , Manchester
Salary
Salary:
33000.00 GBP / Year
dynamicsearch.co.uk Logo
Dynamic Search Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A proactive, self-motivated approach with strong communication skills
  • Interest in developing across IT, networking, security and communications technologies
  • Passion for problem-solving and customer service
  • Previous experience in a technical support or service environment is beneficial but not essential
Job Responsibility
Job Responsibility
  • Acting as the first point of contact for customer technical issues across IT, network, voice and infrastructure
  • Troubleshooting and resolving incoming cases, escalating where necessary and working alongside on-site engineers
  • Managing support tickets end-to-end, ensuring clear and consistent communication with all stakeholders
  • Producing incident reports, summaries and root-cause analysis documentation
  • Carrying out system updates, patches, configuration changes and general maintenance tasks
  • Working professionally with customers, internal teams and third-party suppliers to ensure timely resolution
What we offer
What we offer
  • Structured career development with access to training and professional certifications
  • Supportive, friendly team culture with a genuine focus on wellbeing
  • 25 days holiday plus bank holidays (increasing with service)
  • Enhanced parental leave, pension contributions and employee health plans
  • Electric vehicle, cycle-to-work and technology purchase schemes
  • Regular team events, social activities and opportunities to get involved in community initiatives
  • Fulltime
Read More
Arrow Right

Cyber Security Governance & Assurance Specialist - ESN

The Emergency Services Network (ESN) is a major strategic priority for BT and ou...
Location
Location
United Kingdom , London; Birmingham; Bristol; Manchester
Salary
Salary:
Not provided
plus.net Logo
Plusnet
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Internal & Statutory Security Audit
  • Stakeholder Management
  • Security Assurance
  • Policy Design
  • Security assurance experience, including carrying out assurance activities and writing reports and recommendations
  • Experience with ISO 27001 controls and audit
  • Experience of administering security processes
  • Strong stakeholder management skills at a senior level
  • Excellent communication and presentation skills are essential, so experience presenting security guidelines and processes to colleagues and senior audiences would be essential
  • You will be required to undergo National Security Vetting to SC or NPPV level.
Job Responsibility
Job Responsibility
  • Contributing to the ESN Security Management Plan, ISMS and Security Processes - ensuring effective management of security within the Programme and that Contract obligations are met
  • Identifying security threats to ESN and ensures the adequacy of processes and controls in place to mitigate them
  • Work with other Security professionals and other teams to meet ESN security objectives
  • Engage with Customer security teams, providing assurance that Security requirements are met and identifying opportunities for improvement
  • Identify and understand all elements of contractual security obligations for the ESN Contract
  • Deliver and verify the implementation of end to end security services as defined within specified the ESN contracts
  • Deliver and implement ISO27001 compliant security strategies, policies, procedures, processes, threat identification & responses that provide wrap-around security services and solutions for the ESN service
  • Deliver the required Security accreditation for the ESN contract
  • Manage operational risks related to people, information, assets, revenues and reputation and ensure compliance with relevant security requirements, typically: the HMG Security Policy Framework, Contractual Obligations, company security and business continuity policies
  • Monitor and manage third party supplier compliance to the flow-down of contractual obligations from BT
What we offer
What we offer
  • 10% on target annual bonus
  • BT Pension scheme, minimum 5% employee contribution, BT contribution 10%
  • X4 Salary Life Assurance
  • Huge range of flexible benefits including Cycle to Work, Healthcare, Season Ticket Loan, Electric Vehicle Salary Sacrifice
  • 25 days annual leave (not including bank holidays), increasing with service
  • From January 2025, equal family leave: receive 18 weeks at full pay, 8 weeks at half pay and 26 weeks at the statutory rate. It’s for all parents, no matter how your family is made up
  • Enhanced women’s health support: including help with menopause symptoms, cancer screenings, period care and more
  • 24/7 private virtual GP appointments for UK colleagues
  • 2 weeks paid carer’s leave
  • World-class training and development opportunities
  • Fulltime
Read More
Arrow Right

Group Cyber Security Specialist

The Group Cyber Security Specialist plays a critical hands-on role in delivering...
Location
Location
United Kingdom , Manchester
Salary
Salary:
Not provided
arrowglobal.net Logo
Arrow Global Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience in a technical cyber security, SOC, or security engineering role within complex environments
  • Strong hands-on experience with core security tooling, including EDR, SIEM, Secure Email, Secure Web, CASB, and vulnerability management platforms
  • Solid understanding of incident response lifecycle, threat investigation techniques, and operational security processes
  • Proven experience supporting multi-business-unit, federated, or decentralised IT environments
  • Working knowledge of cloud security principles across Azure and AWS environments
  • Ability to manage multiple priorities across BAU operations, security incidents, and project delivery
  • Strong analytical capability with excellent written and verbal communication and documentation skills
  • Experience driving security remediation and working effectively with IT teams and managed service providers
  • Familiarity with security frameworks and regulatory expectations (e.g. ISO 27001, NIST CSF, FCA or equivalent)
  • Confident stakeholder engagement skills, including the ability to influence, present risk, and communicate effectively with technical and non-technical audiences across geographies
Job Responsibility
Job Responsibility
  • Act as the Group cyber security SME for projects across multiple business units, providing early engagement, risk identification, and secure-by-design guidance
  • Review and challenge solution designs to ensure security controls are embedded from the outset and aligned with Group policies and architectural standards
  • Validate that new systems, applications, integrations, and third-party suppliers meet Group security and assurance requirements
  • Partner with the Group Cyber Architect to ensure implementations align with strategic roadmaps, security patterns, and target architectures
  • Monitor, triage, and respond to SOC/MSSP alerts, supporting threat analysis, incident investigations, and remediation planning
  • Analyse operational security events to identify recurring issues and proactively drive control improvements and SOC maturity
  • Own and enhance security runbooks, detection rules, and BAU processes to strengthen response capability and reduce false positives
  • Manage the end-to-end vulnerability management lifecycle, including scanning, prioritisation, reporting, and stakeholder engagement
  • Identify systemic vulnerability trends, provide technical remediation guidance, and drive SLA-based remediation with BU IT teams
  • Coordinate and manage third-party penetration testing activities, from scoping through to remediation and closure of findings
  • Fulltime
Read More
Arrow Right
New

Supplier Cyber Security Specialist - Third Party Risk Management

We are seeking a seasoned cyber security professional to lead the Vulnerability ...
Location
Location
India , Pune
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Possess over 10 years of IT experience with a strong focus on cyber security, vulnerability management, and remediation
  • Proficient in tools such as QualysGuard VMDR, WAS, and cloud scanning solutions
  • Skilled in web application penetration testing and knowledgeable in OWASP, Kali Linux, Burp Suite, CVE, SSL PKI, IAM, SIEM, and perimeter security
  • Experienced in managing large-scale vulnerability scanning operations and reporting
  • Strong stakeholder management and communication skills
  • Solid understanding of networking and cyber security policies, standards, and procedures
Job Responsibility
Job Responsibility
  • Lead the Vulnerability Management and Responsible Disclosure team to strengthen Vodafone’s cyber defence capabilities
  • Drive vulnerability management initiatives, ensuring timely identification, communication, and remediation of threats
  • Oversee penetration testing activities related to responsible disclosures and support incident response during crises
  • Research emerging threats, including zero-day vulnerabilities, and ensure targeted scans and mitigation actions
  • Champion continuous improvement through automation and cross-functional collaboration
  • Act as a technical expert in security scanning and penetration testing
  • Foster team development through individual growth plans and maintain high engagement levels
  • Contribute to administrative and delivery initiatives across domains
What we offer
What we offer
  • Opportunity to lead a high-impact domain within a global cyber security function
  • Exposure to cutting-edge vulnerability management tools and practices
  • Collaboration with international teams and stakeholders across Vodafone markets
  • A chance to influence Vodafone’s cyber risk strategy and operational resilience
  • A dynamic and inclusive work environment that values innovation and continuous improvement
  • Fulltime
Read More
Arrow Right