We are looking for a Supply Chain Security Specialist for a client in the banking industry in the Netherlands. In this role, you will help manage and improve the security of relationships with external IT vendors, ensuring that security risks are identified, assessed, and properly managed throughout the vendor lifecycle.
You will work across Supply Chain Security, Third-Party Risk Management (TPRM), information security, risk assessments, and stakeholder management, while contributing to the continuous improvement of the team's services and way of working.
Your Job
- Managing IT vendor relationships from an information security perspective
- Monitoring vendor performance against security requirements and contractual obligations
- Executing Vendor Security Risk Assessments and coordinating follow-up actions
- Identifying and managing information security risks throughout the vendor lifecycle
- Translating technical security risks into business risks and helping stakeholders address them
- Reviewing third-party assurance reports and assessing their applicability and quality
- Managing the information security aspects of contracts and working with Legal, Compliance, Procurement, and other internal stakeholders
- Supporting stakeholders with security-related questions and escalating risks when required
- Identifying improvements in the team's way of working and contributing to the continuous improvement of the service offering
- Working with user stories and contributing to the improvement of Supply Chain Security services within an Agile and DevOps environment
- Staying up to date with emerging cybersecurity trends, technology developments, information risks, and threats
Your Profile
- HBO or University degree
- Experience in Supply Chain Security, Third-Party Risk Management (TPRM), or a similar information security field
- Experience setting up projects, processes, and deliverables within Supply Chain Security / TPRM
- Experience executing information security risk assessments
- Knowledge of areas such as security processes, technology architecture, network security, application security, or vulnerability management
- Strong stakeholder management skills and the ability to work with both technical and business stakeholders
- Strong ability to translate technical risks into business risks and vice versa
- Hands-on, self-organised, and proactive with strong execution power
- Service-oriented mindset and comfortable acting as an internal consultant
- Experience with ServiceNow TPRM is a strong advantage
We Offer
- Hybrid working environment
- Salary up to €6,000 based on 36 hours per week
Our Client
Our client is a leading financial institution in the Netherlands, focused on innovation, scalability, and modern cloud-based platforms. Their engineering teams work on critical systems that support large-scale digital services and real-time event-driven processing.
They offer a strong engineering culture with a focus on automation, platform thinking, and continuous improvement.