Senior Third Party Security Manager

5 dni temu


Poland Euroclear Pełny etat 90 000 zł - 120 000 zł rocznie
Description

Senior Third Party Security Manager, Band 6 

Division: CISO

About the Role: We are seeking a dynamic and experienced Third Party Security Manager to join the IT Risk tribe. In this role, you will be responsible for internal coordination of Third Party Security assessments for all external Third Parties including Merger and Acquisition initiatives and enable the post-merger integration initiatives when applicable.

To achieve it, you will work closely with multi-functional teams from all the organization and will be exposed to a diversified set of topics, business and technologies.

Role Description – IT Security Manager

The role will be responsible for execution of risk-based IT Security controls for Third Parties. Key responsibilities:

Merge and Acquisition Assurance: 

  • Assessment and Due Diligence execution on future mergers and acquisitions
  • Consulting and support in definition of security road up for potential start ups
  • Prepare detailed reports on findings and Security recommendations

Third-Party Assurance Lifecycle ​

  • Due Diligence - risk profiling, onboarding, re-certification
  • ​​Contract Management - ensuring that the security expectations included in the contract are proportionate to the risk profiling​​
  • Exit Management - performance of necessary security checks at the end of a contractual agreement with a Third Party ​
  • Ongoing monitoring - Facilitate and support response to the, alerting and incident of external Third Parties

Continues Improvements 

  • Participate and support in delivery of regulatory driven change i.e. DORA 
  • Identify, design and implement process improvements 
  • Lead demand capacity management 
  • Deliver training and coaching sessions for the team 
  • Taking initiatives to document and communicate intensively to further increase Third Party Security, knowledge and expertise

Core Skills

  • Previous experience in Third Party Security Management (i.e. Due Diligence), is mandatory  
  • Knowledge of security risk management
  • Knowledge of control frameworks, e.g., ISO 27000, NIST, CIS-18, COBIT-5
  • Knowledge of relevant regulations, i.e. DORA, Outsourcing, ESMA, etc. 
  • Knowledge of logging, monitoring and alerting is an advantage
  • Knowledge of similar ecosystem frameworks, e.g., SWIFT CSP is an advantage
  • Knowledge of financial markets, FMIs and CSD operations is an advantage
  • Experience with supplier and supply chain due diligence framework, procedures, data gathering risk and control assessment.
  • Experience with contract review of information security schedules and terms
  • Knowledge of logging, monitoring and alerting is an advantage
  • Experience with ServiceNow GRC is an advantage
  • IT Security Certification such as CISSP, CSSLP, CCSP, CISM, CISMP, GCIH, CEH, etc. is an advantage.

Soft Skills

  • Leadership. Be an inspiring and engaging leader by providing strategy and direction to team members, by showing business acumen, by possessing self-reflection and by being results-driven
  • Interpersonal. Be self-motivated and proactive, have strong, innovative and creative problem-solving skills, be open and welcoming to change, work comfortably in a constantly evolving environment and have an ability to remain calm under pressure and in the face of uncertainty.
  • Collaborative. Work comfortably with business executives and stakeholders, within group settings or with team-members
  • Change. Ability to handle multiple projects against tight deadlines whilst being instrumental in delivering cultural change throughout the organisation
  • Experience with managing regulatory compliance issues as well as providing best practices in security
  • Strong organisation, prioritisation management, coordination, reporting and communication

#LI-NS1



  • Poland JPMorganChase Pełny etat 60 000 zł - 120 000 zł rocznie

    DescriptionJoin JP Morgan Chase & Co., a global leader in financial services, and be part of a team that ensures compliance with Third Party Risk regulations worldwide. This role offers the opportunity to lead innovative projects that enhance data governance and regulatory reporting. Collaborate with teams across the globe and contribute to the strategic...

  • Offensive Security

    5 dni temu


    Poland Euroclear Pełny etat 40 000 zł - 60 000 zł rocznie

    DescriptionDivision: CISOSecurity is at the core of Euroclear's services, embedded in every system and process across the organization. As part of the Chief Information Security Office (CISO), you will join the Offensive Security Tribe, a team dedicated to proactively identifying vulnerabilities and strengthening our cyber resilience.This role focuses on...

  • IT Project Manager

    5 dni temu


    Poland Euroclear Pełny etat 45 000 zł - 75 000 zł rocznie

    DescriptionDivision: Group Business Solutions (GBS)Please note that this is a permanent position, and we do not offer freelance/contract arrangement for the role.As an IT Project Manager, your responsibilities will include:Leading projects of varying complexity, adapting to changes and instabilities in project management processes and frameworks.Developing...


  • Poland Euroclear Pełny etat 60 000 zł - 120 000 zł rocznie

    DescriptionDivision: Group Digital Capabilities (GDC)The Role:Ensuring on-time delivery of IT projects, within the committed budget and with the expected quality.Integrating contributions from various teams into a globally consistent plan, in alignment with our Agile Operating Model.Writing comprehensive project memos to enable informed decision-making by...


  • Poland Gypsy Collective Pełny etat 45 000 zł - 90 000 zł rocznie

    We are looking for an InfoSec Manager to develop and enforce security strategy, policies, and operations across the company. This role combines governance and hands-on technical responsibility: from Security Risk management and IAM to endpoint protection, security operations, and IT infrastructure. Information Security Manager will work closely with...


  • Remote - Poland Dropbox Pełny etat 98 400 zł - 123 456 zł rocznie

    Role DescriptionThe Developer Infrastructure organization at Dropbox builds and maintains the foundational systems that enable our engineers to deliver innovative features and services to millions of users worldwide.  Repo Rangers is a new team in this organization with a dedicated mission of accelerating the pace of software development and strengthening...


  • Poland - Warsaw - HQ UniCredit Pełny etat 60 000 zł - 360 000 zł rocznie

    What we do? Aion Bank is a fully regulated European bank and credit institution, combining Vodeno's cutting-edge, private blockchain-based platform with its ECB banking license, strong balance sheet, and deep regulatory expertise. Our mission is to provide a comprehensive suite of embedded banking solutions, enabling businesses to seamlessly integrate...

  • Project Manager

    4 tygodni temu


    Poland (Remote), PL DCG Pełny etat

    As a recruitment company, DCG understands that every business is powered by experienced professionals. Our management style and partnership approach enable us to meet your needs and provide continuous support. Due to our ongoing growth and the large number of recruitment projects we undertake for our partners, we are currently looking for:Project...

  • IT Project Manager

    5 dni temu


    Poland Euroclear Pełny etat 40 000 zł - 80 000 zł rocznie

    DescriptionDivision: Group Business Solutions (GBS)The rolePlease note that this is a permanent position, and we do not offer freelance/contract arrangement for the role.The GBS Group ESA services tribe manages solutions used by our internal corporate teams such as Finance, HR, Risk, Audit, Compliance and Legal. The applications in scope are mostly packaged...

  • Security Specialist

    5 dni temu


    Poland Íslandsbanki Pólland Pełny etat 60 000 zł - 84 000 zł rocznie

    About us:The Digital & Data department of Íslandsbanki is a collaborative group of software development professionals who work together following best practices and processes to deliver high-quality software solutions and capabilities.We believe in agile methodologies and cross-team synergy in product ideation and deliveryWe reach our development goals by...