Jobs
My ads
My job alerts
Sign in
Find a job Career Tips Companies
Find

Third party risk lead cyber

London
Hays
Posted: 9 February
Offer description

UK ONLY

Key Responsibilities

1. Lead and continuously improve The organisation’s third ‑ party cyber risk assurance process, covering onboarding, risk assessment, due diligence, and ongoing monitoring.
2. Develop and maintain a robust vendor criticality assessment model, ensuring assurance activities are aligned to supplier risk level.
3. Define and own due diligence requirements for critical and high ‑ risk third parties in alignment with DORA, NIS2, PRA, FCA, and other emerging regulatory obligations.
4. Produce dashboards, scorecards, and MI reports that provide senior stakeholders with meaningful insight into the organisation’s third ‑ party cyber risk posture.
5. Embed third ‑ party security controls into vendorernance processes, working closely with Procurement, Legal, Technology, and Risk.
6. Monitorpliance with industry frameworks such as CIS Controls, NIST, GDPR, and sector ‑ specific guidance.
7. Support contract reviews and provide expert input on security clauses, ensuring risk ‑ based decisions are supported by strong security requirements.
8. Maintain process documentation, templates, and training materials for all third ‑ party security assurance activities.
9. Track developments in vendor security, regulatory change, and emerging threats, ensuring the programme remains aligned to best practice.
10. Provide data,mentary, and risk metrics for divisional or organisational IT risk reporting.
11. Escalate material risks or emerging issues to the Cyberernance Manager and BISO leadership when required.

Performance Objectives

12. Build aprehensive understanding of the organisation’s supplier landscape and existing vendor ernance controls, taking full ownership of third ‑ party cyber risk management.
13. Identify gaps within current third ‑ party cyber risk processes and deliver a clear roadmap to mature security controls and oversight.
14. Demonstrate measurable improvements in third ‑ party cyber assurance, including reduced risk exposure and increased visibility across leadership teams.

Skills and Experience Specification

Essential

15. Experience in cyber security, information security, or technology risk roles with a focus on third ‑ party/vendor risk management.
16. Bachelor’s degree in Information Security, Technology Risk Management, or a related discipline.
17. Professional certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Lead Auditor, or equivalent.
18. Experience working in regulated industries and applying regulatory expectations to third ‑ party assurance programmes.
19. Proven experience designing, executing, and improving structured vendor due diligence processes.
20. Strong understanding of vendor ‑ held assurance artefacts such as ISO 27001, SOC 2, CSA STAR/CAIQ, and security questionnaires.
21. Ability tomunicateplex vendor ‑ related cyber risks clearly to both business and technical audiences.
22. Skilled in facilitating cross ‑ functional meetings, workshops, and risk discussions with diverse stakeholders.
23. Confident presenting information, acting as an SME, and influencing decision ‑ making at all levels.
24. Strong analytical, conceptual thinking, and structured execution skills.
25. Ability to drive initiatives, coordinate effectively across teams, and manage oues to agreed targets.
26. Results ‑ driven mindset with a mitment to continuous improvement.
27. Strongmunication skills with the ability to translate technical issues into actionable business insight.
28. Passion for championing good cyber behaviours and staying informed about emerging cyber and vendor ‑ related threats.

Desirable

29. Experience with third ‑ party risk management or GRC platforms.
30. Ability to develop meaningful MI and dashboards (, using Power BI) and convert data into clear insights and decisions.
31. Experience within the specialty insurance, financial services, or wider regulated industries.

Your new role

What you'll need to succeed

What you'll get in return

Apply
Create E-mail Alert
Job alert activated
Saved
Save
Similar job
Teacher of sociology and psychology
London
Hays
Teacher
£65,000 a year
Similar job
Psychology teacher
London
Hays
Psychology teacher
£65,000 a year
Similar job
Teacher of history (maternity)
London
Hays
History teacher
£55,000 a year
See more jobs
Similar jobs
Hays recruitment
Hays jobs in London
jobs London
jobs Greater London
jobs England
Home > Jobs > Third Party Risk Lead Cyber

About Jobijoba

  • Career Advice
  • Company Reviews

Search for jobs

  • Jobs by Job Title
  • Jobs by Industry
  • Jobs by Company
  • Jobs by Location
  • Jobs by Keywords

Contact / Partnership

  • Contact
  • Publish your job offers on Jobijoba

Legal notice - Terms of Service - Privacy Policy - Manage my cookies - Accessibility: Not compliant

© 2026 Jobijoba - All Rights Reserved

Apply
Create E-mail Alert
Job alert activated
Saved
Save