CrawlJobs Logo

Third-Party Cyber Risk Management Expert

https://www.allianz.com Logo

Allianz

Location Icon

Location:
Spain, Barcelona

Category Icon
Category:
IT - Administration

Job Type Icon

Contract Type:
Employment contract

Salary Icon

Salary:

Not provided

Job Description:

The Third-Party Cyber Risk Management Expert will play an essential role in the Group CISO team, contributing to the design and implementation of the Third-Party Cyber Risk Management (TPCRM) process and service. This position will integrate in the Group CISO team, actively supporting the Group’s mission to ensure that Allianz's operations remain resilient and secure, particularly in relation to third-party engagements.

Job Responsibility:

  • Design and Implementation: Actively contribute to the design and implementation of TPCRM processes in alignment with the Digital Operational Resilience Act (DORA) and Allianz Group standards
  • Risk Assessment: Support business owner to conduct comprehensive cyber risk assessments for third-party vendors, identifying potential vulnerabilities, assessing residual risk and following up on mitigation actions
  • Stakeholder Management: Collaborate with internal and external stakeholders to ensure effective communication and management of third-party cyber risks
  • Monitoring and Reporting: Develop and maintain monitoring systems to track third-party risk exposure, and provide regular reports to senior management
  • Compliance and Governance: Ensure third-party engagements comply with relevant regulations, including DORA, and Allianz's internal policies
  • Continuous Improvement: Identify opportunities for process improvements and implement changes to enhance the efficiency and effectiveness of TPCRM activities
  • Training and Awareness: Provide training and awareness sessions to internal stakeholders on third-party cyber risk management practices and principles

Requirements:

  • Bachelor's degree in Information Technology, Cybersecurity, Risk Management, or a related field
  • Professional certifications in risk management, IT risk management, or information security (e.g., CISM, CRISC, ISO27001, CISA) are favorable
  • Proven experience in cyber risk management, particularly in third-party risk assessment and management
  • Proven experience in managing multiple projects at the same time

Nice to have:

  • Familiarity with DORA requirements and implications for TPCRM
  • Professional certifications in risk management, IT risk management, or information security
  • Advanced degrees
What we offer:
  • Hybrid work model
  • Company bonus scheme
  • Pension
  • Employee shares program
  • Multiple employee discounts
  • Career development and digital learning programs
  • International career mobility
  • Flexible working
  • Health and wellbeing offers including healthcare and parental leave benefits

Additional Information:

Job Posted:
May 27, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.