Cyber Risk Lead

CPS Group (UK) Limited

Greater London

Hybrid

GBP 81,000 - 99,000

Full time

12 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

CPS Group (UK) Limited is seeking a Cyber Risk Lead to own and develop the third-party cyber risk management framework within a global financial services organisation. The role sits in a hybrid setup with 3 days on site and involves close collaboration with IT, Procurement, Legal and senior stakeholders.

You will lead vendor risk assessments, develop MI and dashboards (Power BI), and ensure compliance with DORA, NIS2, PRA, FCA and GDPR. Relevant certifications are advantageous.

Qualifications

  • Proven experience in Cyber Security/Information Security Risk focused on third-party/vendor risk.
  • Strong experience designing and managing vendor security due diligence processes.
  • Knowledge of vendor security assessments (CSA STAR/CAIQ, SOC 2, ISO 27001).
  • Experience in regulated industries and understanding regulatory requirements.

Responsibilities

  • Own and continuously improve the third-party cyber risk and security due diligence process.
  • Lead vendor criticality assessments and ensure appropriate due diligence and ongoing monitoring.
  • Manage cyber risk requirements for critical and high-risk suppliers.
  • Ensure compliance with regulations including DORA, NIS2, PRA, FCA and GDPR.
  • Develop MI, dashboards and reporting for senior IT stakeholders and executives.
  • Provide cyber security guidance across vendor assessments, contracts and risk management.
  • Identify gaps and drive improvements across third-party cyber risk processes.

Skills

Vendor risk management
Cyber security
Information security risk
Stakeholder communication
MI dashboards

Tools

Power BI
GRC platforms

Job description

Cyber Risk Lead

Up to 90,000 p/annum

Hybrid Working - 3 days onsite

CPS Group are supporting a global financial services organisation with the recruitment of a Cyber Risk Lead to own and develop their third-party cyber risk management framework.

This is a great opportunity for an experienced Cyber Security / Third-Party Risk professional to take ownership of a growing vendor risk function and work closely with IT, Procurement, Legal and senior stakeholders.

The Role:
  • Own and continuously improve the third-party cyber risk and security due diligence process.
  • Lead vendor criticality assessments and ensure appropriate due diligence and ongoing monitoring.
  • Manage cyber risk requirements for critical and high-risk suppliers.
  • Ensure compliance with regulations including DORA, NIS2, PRA, FCA and GDPR.
  • Develop MI, dashboards and reporting for senior IT stakeholders and executives.
  • Provide cyber security guidance across vendor assessments, contracts and risk management.
  • Identify gaps and drive improvements across third-party cyber risk processes.
Required Experience:
  • Proven experience in Cyber Security / Information Security Risk, with a focus on third-party or vendor risk.
  • Strong experience designing, managing and improving vendor security due diligence processes.
  • Knowledge of vendor security assessments (ideally CSA STAR/CAIQ, SOC 2, and ISO 27001)
  • Experience working within a regulated industry and understanding relevant regulatory requirements.
  • Strong understanding of third-party cyber risk and the ability to communicate risks to both technical and non-technical stakeholders.
  • Experience with GRC / third-party risk management platforms is desirable.
  • Experience producing MI and dashboards, ideally using Power BI, is desirable.
  • Relevant certifications such as CISSP, CISM, CRISC or ISO 27001 are advantageous.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Risk Lead, Vendor Risk (Hybrid)
Cyber Risk Lead, Vendor Risk (Hybrid)

CPS Group (UK) Limited • Greater London

Hybrid
GBP 81,000 - 99,000
Supplier Assurance Lead
Supplier Assurance Lead

Morson Human Resources Limited • Greater Manchester

Hybrid
GBP 83,000 - 101,000
Supplier Assurance Lead
Supplier Assurance Lead

Morson Group • Manchester

Hybrid
GBP 55,000 - 92,000
Cyber Security Consultant
Cyber Security Consultant

Anson McCade • Cardiff

On-site
GBP 61,000 - 101,000
Third Party Cyber Risk Lead
Third Party Cyber Risk Lead

Tokio Marine HCC International • Greater London

On-site
GBP 60,000 - 80,000
Competitive salary
Employee benefit package
Dynamic growth environment
Cyber Compliance Manager
Cyber Compliance Manager

Harvey Nash Group • Manchester

On-site
GBP 70,000 - 90,000
Cyber Security Consulting Lead
Cyber Security Consulting Lead

DiverseJobsMatter • Greater London

Hybrid
GBP 90,000 - 140,000
30 days holiday + buy 2
Pension 10%
Hybrid working
Consultant - Third Party Risk
Consultant - Third Party Risk

MCS Group | Your Specialist Recruitment Consultancy • Belfast

On-site
GBP 45,000 - 65,000
Cyber Security Lead
Cyber Security Lead

La Fosse • Greater London

On-site
GBP 85,000 - 110,000
3rd Party Management & Resilience Analyst
3rd Party Management & Resilience Analyst

Cameron Kennedy • England

On-site
GBP 59,000 - 70,000