Third Party Security Risk Consultant
1 dia atrás
**Third Party Security Risk management - Portugal**
Integrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and the Caribbean. With over 700 employees, across 12 locations, and six Security Operations Centres (SOCs)—including locations in Dublin, Sofia, Stockholm, Madrid, Naples and Cape Town—we support more than 2,500 clients across a wide range of industries.
Over 80% of our team are technical experts, focused on helping clients proactively identify, protect, detect and respond to threats in an ever-evolving cyber landscape. Our security-first approach positions cyber resilience as a business enabler, empowering organisations to operate with confidence.
At Integrity360, people come first. We invest heavily in learning, development and progression, fostering a dynamic culture where innovation, collaboration and continuous growth are at the heart of what we do. If you're ready to take your cyber security career to the next level, we’d love to hear from you.
**Job Role / Responsibilities**
Integrity360 is seeking a_ _Third Party Security Risk Consultant to join our Cyber Risk & Assurance department who will be based in Portugal, who has an interest in the Information Security field. As a Third-Party Security Risk Consultant, you will be embedded within a high-profile client environment in the entertainment industry, serving as a key member of the security team. In this role, you will work directly with client stakeholders to evaluate and manage third-party security risks across a dynamic and fast-paced ecosystem. This position requires strong communication skills, sound judgment, and the ability to navigate complex vendor relationships while upholding the client’s security and compliance standards.
**Primary Duties/Responsibilities Include**:
- Conduct comprehensive third-party risk assessments to evaluate the security posture of vendors, partners, and service providers.
- Develop and maintain third-party security risk assessment processes aligned with industry standards.
- Collaborate with stakeholders (Legal, Procurement, IT, Compliance) to evaluate, mitigate, and monitor third-party risks.
- Review security documentation including questionnaires, penetration tests, vulnerability scans, and audit reports to ensure compliance with security requirements.
- Communicate risk findings clearly and effectively to technical and non-technical stakeholders, including executives.
- Track and manage remediation efforts with third parties, ensuring timely resolution of identified risks.
- Maintain and update third-party risk registers and reporting metrics for ongoing monitoring and compliance.
- Assist with the development and enforcement of security policies, standards, and procedures related to vendor management.
- Stay current on emerging third-party risk trends, threats, and best practices, especially those affecting the entertainment and media industries.
**Desired Skills and Qualifications**:
- Minimum 3 years of experience in third-party/vendor risk management, information security, or a related field.
- Strong knowledge of information security concepts, frameworks, and regulatory requirements (e.g., ISO27001, NIST CSF, NIST 800-171R3, Cyber Essentials, CIS CSC 18 etc.).
- Familiarity with third-party risk management tools and platforms (e.g., ProcessUnity, OneTrust, RSA Archer, BitSight, black Kite, SecurityScorecard).
- Exceptional analytical and critical thinking skills with the ability to assess complex security documentation.
- Excellent communication and interpersonal skills; ability to work cross-functionally in a fast-paced, high-stakes environment.
- Experience supporting clients in media, entertainment, or other high-profile industries is highly desirable.
**Languages**
- Fluent English speaker (mandatory)
- French (Desired)
- Portuguese (Desired)
- Spanish (Desired)
**Qualifications (Desirable)**
- Relevant certifications such as CISA, CISM, CRISC, CISSP, or vendor risk-specific credentials are a plus.
- Educated to Degree Level desirable in security or related field.
- Technical Qualification in the IT Infrastructure field desirable but not necessary
-
Third Party IT Risk
2 semanas atrás
Lisboa, Portugal Inetum Tempo inteiro**Mission** **Job description**: Certification (not mandatory but recommended) : TPRA, ISO 27001, CISSP, CRISC, CISM, CISA **Main Tasks**: - REINFORCE WM THIRD PARTY SECURITY FRAMEWORK - Ensure WM Third Party Technology Risk Management procedures are aligned with Group framework - Prepare, coordinate and execute Third Party IT Risk & Security awareness -...
-
Third Party Information Risk Analyst
1 semana atrás
Lisboa, Portugal Amgen Tempo inteiro**Portugal - Lisbon** **JOB ID**: R-207971 **LOCATION**: - Portugal - Lisbon **WORK LOCATION TYPE**: Flex Commuter / Hybrid **DATE POSTED**: May. 23, 2025 **CATEGORY**: Information Systems **HOW MIGHT YOU DEFY IMAGINATION?** **LIVE** **THIRD-PARTY RISK ASSESSMENT SPECIALIST** **WHAT YOU WILL DO**: As a Third-Party Risk Assessment Specialist to join...
-
Security Third Party Risk Management Specialist
Há 16 horas
Lisboa, Lisboa, Portugal Cloudflare Tempo inteiro*About Us*At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world's largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without...
-
GRC Consultant
1 semana atrás
Lisboa, Porto, Portugal Devoteam Tempo inteiroDevoteam Cyber Trust is the Cybersecurity specialist arm of the Devoteam Group. With our 800+ experts located across EMEA, we aim to establish cybersecurity as an enabler of business success rather than a gatekeeper. We leverage an end-to-end approach to Cyber Resilience, Applied Security, and Managed Security services to secure the tech journey of large and...
-
IT Risk
2 semanas atrás
Lisboa, Portugal Noesis Tempo inteiro**Description**: **Noesis is looking for professionals with the following profile**: - Degree in Information Technology (preferably with relevant knowledge in Cybersecurity); - Minimum 2 years of experience in Cybersecurity area; - Excellent knowledge in third party Cybersecurity; - Good skills in Artificial Intelligence and AI security; - Certification in...
-
Third Party IT Risk
Há 6 dias
Lisboa, Portugal Welvaart Tempo inteiroSobre a Welvaart Diariamente, assumimos compromissos e apresentamos soluções aos nossos stakeholders de forma a criar uma estrutura de valores humanos, assente no profissionalismo, honestidade e rigor. Com uma gestão baseada no Human Centered Design, cuidamos dos nossos profissionais com planos de carreira consistentes, mas flexíveis com as suas...
-
Third Party IT Risk
2 semanas atrás
Lisboa, Lisboa, Portugal Welvaart Tempo inteiro 40 000 € - 60 000 € por anoSobre a WelvaartDiariamente, assumimos compromissos e apresentamos soluções aos nossos stakeholders de forma a criar uma estrutura de valores humanos, assente no profissionalismo, honestidade e rigor.Com uma gestão baseada no Human Centered Design, cuidamos dos nossos profissionais com planos de carreira consistentes, mas flexíveis com as suas...
-
Third Party IT Risk
Há 6 dias
Lisboa, Lisboa, Portugal Welvaart Tempo inteiroSobre a WelvaartDiariamente, assumimos compromissos e apresentamos soluções aos nossos stakeholders de forma a criar uma estrutura de valores humanos, assente no profissionalismo, honestidade e rigor.Com uma gestão baseada no Human Centered Design, cuidamos dos nossos profissionais com planos de carreira consistentes, mas flexíveis com as suas...
-
Business Continuity
Há 3 dias
Lisboa, Portugal Effitalents Tempo inteiro**Our client is a fintech company looking for a Business Continuity & Risk Manager with experience in the banking sector.** This critical role goes beyond traditional continuity planning and encompasses IT risk management & coordination, third-party oversight and cross-functional responsibilities that directly support the organization's operational...
-
Information Security
3 semanas atrás
Lisboa, Portugal Neotalent Conclusion Tempo inteiroWho are we: Neotalent Conclusion is one of the leading Iberian specialists providing services in Information Technology and Engineering services. As part of the Netherlands-based organization Conclusion, which has an ecosystem of over 25 companies and 3,600 employees, we are focused on increasing the technological capacity of our clients and the digital...