Third Party Risk Manager

Link Group

Warszawa

On-site

PLN 180,000 - 260,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Link Group in Warsaw is seeking an experienced Third Party Risk & Governance Manager to lead the development and continuous improvement of cybersecurity risk management for external partners. You will collaborate with Cybersecurity, Procurement, Legal, IT and business teams to ensure risks are identified, assessed, monitored, and addressed throughout the relationship lifecycle.

This role emphasizes governance, risk scoring, process optimization, and clear guidance for diverse stakeholders across

Qualifications

  • Experience in Third Party Risk Management, cybersecurity risk, or GRC.
  • Understanding of third party cybersecurity risks and their impact on business operations.
  • Knowledge of standards like NIST CSF, ISO 27001/27036, DORA, NIS2.
  • Experience coordinating risk assessments, remediation activities and third party monitoring.
  • Ability to collaborate with Procurement, Legal, Cybersecurity, IT and business stakeholders.
  • Strong stakeholder management in international or matrix environments.
  • Experience with operational program coordination and cross-functional collaboration.
  • Ability to use KPIs, dashboards, and management reporting.
  • Analytical and problem-solving skills with a focus on continuous improvement.
  • Ability to translate risk and governance requirements into practical guidance.
  • Structured, proactive, and independent working style.
  • Strong written and verbal English communication skills.

Responsibilities

  • Support the development and ongoing improvement of third party cybersecurity risk management processes.
  • Coordinate third party risk assessments, classification activities, risk reviews, and remediation follow-up.
  • Work with internal stakeholders to ensure consistent application of risk management requirements and security standards.
  • Build effective relationships with Cybersecurity, Procurement, Legal, IT, business teams, and external partners.
  • Support operational activities related to third party onboarding, assessment, monitoring, and risk treatment.
  • Track identified risks, findings, remediation plans, exceptions, and outstanding actions.
  • Monitor program effectiveness using KPIs, dashboards, progress reports, and management updates.
  • Ensure that high-risk third parties and services receive appropriate attention and oversight.
  • Identify process gaps, bottlenecks, and opportunities to improve efficiency, scalability, and risk visibility.
  • Develop and maintain procedures, guidance materials, reporting standards, and governance documentation.
  • Support risk escalation and decision-making related to third party cybersecurity exposure.
  • Coordinate activities delivered by internal teams and external service providers.
  • Translate governance requirements into practical actions for different stakeholder groups.
  • Promote a consistent, risk-based approach to third party cybersecurity management.

Job description

About the Role

We are looking for an experienced Third Party Risk & Governance Manager to support the development, implementation, and continuous improvement of cybersecurity risk management processes covering suppliers, service providers, partners, and other external parties. The role combines third party cyber risk management, governance, stakeholder coordination, operational oversight, and process improvement. You will work with Cybersecurity, Procurement, Legal, IT, business teams, and external partners to ensure that third party risks are identified, assessed, monitored, and addressed consistently throughout the relationship lifecycle.

Key Responsibilities
  • Support the implementation and ongoing development of third party cybersecurity risk management processes.
  • Coordinate third party risk assessments, classification activities, risk reviews, and remediation follow-up.
  • Work with internal stakeholders to ensure consistent application of risk management requirements and security standards.
  • Build effective relationships with Cybersecurity, Procurement, Legal, IT, business teams, and external partners.
  • Support operational activities related to third party onboarding, assessment, monitoring, and risk treatment.
  • Track identified risks, findings, remediation plans, exceptions, and outstanding actions.
  • Monitor program effectiveness using KPIs, dashboards, progress reports, and management updates.
  • Ensure that high-risk third parties and services receive appropriate attention and oversight.
  • Identify process gaps, operational bottlenecks, and opportunities to improve efficiency, scalability, and risk visibility.
  • Develop and maintain procedures, guidance materials, reporting standards, and governance documentation.
  • Support risk escalation and decision-making related to third party cybersecurity exposure.
  • Coordinate activities delivered by internal teams and external service providers.
  • Translate governance requirements into practical actions that can be understood and applied by different stakeholder groups.
  • Promote a consistent, risk-based approach to third party cybersecurity management.
Requirements
  • Professional experience in Third Party Risk Management, cybersecurity risk, supplier risk, GRC, technology risk, or a related area.
  • Good understanding of third party cybersecurity risks and their potential impact on business operations, data protection, resilience, and regulatory compliance.
  • Knowledge of relevant cybersecurity frameworks, standards, and regulations, such as NIST CSF, ISO 27001, ISO 27036, DORA, NIS2, or equivalent.
  • Experience coordinating risk assessments, remediation activities, issue tracking, or third party monitoring processes.
  • Ability to work effectively with Procurement, Legal, Cybersecurity, IT, business stakeholders, and external partners.
  • Strong stakeholder management and influencing skills in complex, international, or matrix-based environments.
  • Experience with operational program coordination and cross-functional collaboration.
  • Ability to work with KPIs, dashboards, service indicators, and management reporting.
  • Strong analytical and problem-solving skills, with a focus on continuous process improvement.
  • Ability to translate risk and governance requirements into clear, practical guidance.
  • Structured, proactive, and independent working style.
  • Strong written and verbal English communication skills.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Third-Party Risk Manager
Third-Party Risk Manager

mthree • Kraków

On-site
PLN 180,000 - 260,000
Senior Third-Party Cyber Risk & Governance Manager
Senior Third-Party Cyber Risk & Governance Manager

Link Group • Warszawa

On-site
PLN 180,000 - 260,000
Continuous Monitoring Lead for OCRA( for RFP purposes)
Continuous Monitoring Lead for OCRA( for RFP purposes)

Luxoft • Kraków

On-site
PLN 180,000 - 280,000
Private medical insurance
Dental care
Life insurance
+1
Business Risk Manager (Third Party Risk)
Business Risk Manager (Third Party Risk)

Revolut • Poland

On-site
PLN 180,000 - 300,000
Third-Party Risk Manager: Build Controls & Strategy
Third-Party Risk Manager: Build Controls & Strategy

Revolut • Poland

On-site
PLN 180,000 - 300,000
Supplier Cyber Assessor
Supplier Cyber Assessor

Engenious • Kraków

Hybrid
PLN 193,000 - 248,000
Private Medical Care – INTER Polska
Co-funded Multisport Card
Training and certification subsidies
Senior Cybersecurity Risk & Compliance Consultant
Senior Cybersecurity Risk & Compliance Consultant

Jobtailor • Katowice

On-site
PLN 210,000 - 270,000
Senior Third-Party Risk Architect
Senior Third-Party Risk Architect

mthree • Kraków

On-site
PLN 180,000 - 260,000
Manager - Cyber Security
Manager - Cyber Security

KK Group • Szczecin

Hybrid
PLN 180,000 - 300,000
Cybersecurity Risk and Compliance Manager
Cybersecurity Risk and Compliance Manager

EY • Poland

Hybrid
PLN 80,000 - 110,000
Continuous learning opportunities
Flexible work options
Transformative leadership coaching
+1