Cyber Manager – Third Party Risk
Company: A.P. Moller – Maersk
Location: Bangalore, India
Key Responsibilities
- Conduct detailed cyber security assessments on third parties (e.g., suppliers, partners) consistently and timely.
- Report observations and collaborate with business stakeholders and the Cyber Risk team to ensure any identified risks are being managed.
- Facilitate the supplier onboarding by performing rapid cyber security assessments and advise on the potential risk exposure.
- Act as an SME to ensure appropriate cyber security measures are incorporated in agreements with third parties.
- Facilitate the collation of information required to respond to Maersk customer cyber security questions.
- Create documentation, reports and dashboards for a variety of audiences to facilitate decision making.
- Build effective relationships with key stakeholders and teams across Maersk.
- Drive a culture of understanding and awareness of third party cyber security risk across Maersk.
- Focus on continuous improvement of processes, solutions and professional practices of the team.
Primary Internal Stakeholders
- Cyber Risk Portfolio
- Cyber Teams
- Cyber Security Officers
- Procurement Vendor Management Office
- Legal
- Data Privacy
- Commercial Enterprise Architecture
- Maersk Portfolios & Platforms
- Maersk Brands
Primary External Stakeholders
- Maersk suppliers
- Maersk customers
Qualifications
- 8-12 years of experience in IT / Cyber security audit & risk management background.
- Cyber security assurance experience in a global and similar size business, preferably in third party assurance / vendor risk management roles.
- Risk‑based and pragmatic approach to security.
- Demonstrable understanding of digital native and emerging technologies.
- In‑depth understanding of cyber security standards (e.g., NIST, ISO27001) and their application and implementation.
- Familiarity with GRC and cyber security monitoring tools (e.g., Archer, OneTrust, BitSight, etc.) and task management tools (e.g., Jira).
- Passion for staying up to date with current cyber security events and trends.
- Cyber Security Certifications (e.g., CISSP, CISM, CISA) (preferable).
- Proven ability to work and effectively prioritize in a dynamic environment.
- Excellent written and verbal communication skills and ability to be understood by both technical and non‑technical stakeholders.
- Stakeholder management and interpersonal/influencing skills.
- Excellent organization, time management, problem‑solving skills and attention to detail.
- Resilient, can‑do attitude and ability to work as part of a team to meet deadlines.
Maersk is an equal opportunities employer and welcomes applicants without regard to race, colour, gender, sex, age, religion, creed, national origin, ancestry, citizenship, marital status, sexual orientation, physical or mental disability, medical condition, pregnancy or parental leave, veteran status, gender identity, genetic information, or any other characteristic protected by applicable law. We will consider qualified applicants with criminal histories in a manner consistent with all legal requirements. Maersk is committed to a diverse and inclusive workplace, and we embrace different styles of thinking.