| Vendor Security Risk Analyst || Location: San Jose, CA at San Jose, California, USA |
| Email: [email protected] |
|
http://bit.ly/4ey8w48 https://jobs.nvoids.com/job_details.jsp?id=2211416&uid= From: Khayal Abbas, Scalable-Systems [email protected] Reply to: [email protected] Job Title: Vendor Security Risk Analyst Location: San Jose, CA Company: TCS-Contract Job Description: We are seeking a Vendor Security Risk Analyst to assess third-party vendor security, manage risk mitigation strategies, and enhance security compliance. The ideal candidate will have experience in cybersecurity risk assessment, vendor security programs, and security automation.Key Responsibilities: Vendor Security & Risk Management: Evaluate third-party security postures, assess risks, and develop mitigation strategies. Collaboration & Compliance: Work with business, technology, legal, and vendor teams to ensure security compliance and risk-based decision-making. Security Program Improvement: Benchmark vendor security programs against ISO 27001, SOC 2, NIST, and GDPR standards, recommending enhancements. Automation & Reporting: Develop dashboards (Power BI preferred), automate security processes, and track vendor security metrics. Contract & Compliance Support: Assist legal teams in negotiating security requirements and ensuring vendor compliance. Continuous Vendor Monitoring: Utilize BitSight or similar tools for ongoing vendor security evaluations.Required Skills & Experience: 5+ years of experience in cybersecurity risk management, vendor security assessment, and risk mitigation. Expertise in security controls, threat modeling, and third-party risk assessment. Strong experience in stakeholder engagement, contract negotiations, and security compliance. Ability to automate security processes using Power BI dashboards, JIRA tracking, and workflow automation. Experience with continuous vendor security monitoring tools (BitSight, OneTrust, SecurityScorecard, Archer).Preferred Skills (Good to Have): Knowledge of cloud security risks and SaaS applications. Familiarity with ISO 27001, SOC 2, NIST, GDPR compliance frameworks. Experience with scripting languages (Python, Power, etc.) for automation. Incident response and vendor-related security forensics expertise. Keywords: business intelligence California Vendor Security Risk Analyst || Location: San Jose, CA [email protected] http://bit.ly/4ey8w48 https://jobs.nvoids.com/job_details.jsp?id=2211416&uid= |
| [email protected] View All |
| 07:22 PM 27-Feb-25 |