Cyber Risk Lead, Vendor Risk (Hybrid)

CPS Group (UK) Limited

Greater London

Hybrid

GBP 81,000 - 99,000

Full time

12 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

CPS Group (UK) Limited is seeking a Cyber Risk Lead to own and develop the third-party cyber risk management framework within a global financial services organisation. The role sits in a hybrid setup with 3 days on site and involves close collaboration with IT, Procurement, Legal and senior stakeholders.

You will lead vendor risk assessments, develop MI and dashboards (Power BI), and ensure compliance with DORA, NIS2, PRA, FCA and GDPR. Relevant certifications are advantageous.

Qualifications

  • Proven experience in Cyber Security/Information Security Risk focused on third-party/vendor risk.
  • Strong experience designing and managing vendor security due diligence processes.
  • Knowledge of vendor security assessments (CSA STAR/CAIQ, SOC 2, ISO 27001).
  • Experience in regulated industries and understanding regulatory requirements.

Responsibilities

  • Own and continuously improve the third-party cyber risk and security due diligence process.
  • Lead vendor criticality assessments and ensure appropriate due diligence and ongoing monitoring.
  • Manage cyber risk requirements for critical and high-risk suppliers.
  • Ensure compliance with regulations including DORA, NIS2, PRA, FCA and GDPR.
  • Develop MI, dashboards and reporting for senior IT stakeholders and executives.
  • Provide cyber security guidance across vendor assessments, contracts and risk management.
  • Identify gaps and drive improvements across third-party cyber risk processes.

Skills

Vendor risk management
Cyber security
Information security risk
Stakeholder communication
MI dashboards

Tools

Power BI
GRC platforms

Job description

CPS Group (UK) Limited is seeking a Cyber Risk Lead to own and develop the third-party cyber risk management framework within a global financial services organisation. The role sits in a hybrid setup with 3 days on site and involves close collaboration with IT, Procurement, Legal and senior stakeholders.

You will lead vendor risk assessments, develop MI and dashboards (Power BI), and ensure compliance with DORA, NIS2, PRA, FCA and GDPR. Relevant certifications are advantageous.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Risk Lead
Cyber Risk Lead

CPS Group (UK) Limited • Greater London

Hybrid
GBP 81,000 - 99,000
Cyber GRC Lead – Hybrid, Regulated Infrastructure
Cyber GRC Lead – Hybrid, Regulated Infrastructure

Matchtech • Greater London

Hybrid
GBP 90,000 - 125,000
Cyber Assurance Lead — Hybrid London (Audit & Risk)
Cyber Assurance Lead — Hybrid London (Audit & Risk)

Rullion • Greater London

Hybrid
GBP 120,000 - 157,000
Cyber GRC Lead - Hybrid, Regulated & Resilient
Cyber GRC Lead - Hybrid, Regulated & Resilient

Infosec • City Of London

Hybrid
GBP 90,000 - 120,000
Senior Cyber Risk & Security Leader (Hybrid)
Senior Cyber Risk & Security Leader (Hybrid)

DVSA.GOV • East Midlands

Hybrid
GBP 52,000 - 63,000
Employer pension contribution 28.97%
25 days annual leave
Flexible working options
Cyber Security Engagement Lead — Hybrid & Impactful
Cyber Security Engagement Lead — Hybrid & Impactful

RSM UK • Nottingham

Hybrid
GBP 55,000 - 75,000
Hybrid work
27 days holiday
Wellbeing benefits
+1
Cyber Risk & Delivery Assurance Lead
Cyber Risk & Delivery Assurance Lead

Cyber UK • United Kingdom

Hybrid
Hybrid Third-Party Risk Manager
Hybrid Third-Party Risk Manager

OSB Group • West Midlands

Hybrid
GBP 49,000 - 60,000
Annual discretionary bonus
30 days annual leave
Pension with employer contributions
+2
Supplier Assurance Lead
Supplier Assurance Lead

Morson Group • Manchester

Hybrid
GBP 55,000 - 92,000
Supplier Assurance Lead
Supplier Assurance Lead

Morson Human Resources Limited • Greater Manchester

Hybrid
GBP 83,000 - 101,000