Black Duck

4 days ago


Bengaluru, India Black Duck Full time

About the Role :

As a Third-Party Risk Analyst, you will play a crucial role in safeguarding our organization by managing and mitigating risks associated with third-party vendors.

You will work closely with internal stakeholders and external vendors to ensure compliance with security standards and regulations.

Key Responsibilities :

- Conduct thorough risk assessments of third-party vendors, including evaluating their security controls, data protection practices, and business continuity plans.

- Develop and maintain risk rating methodologies to prioritize risk treatments.

- Onboard and manage third-party vendors throughout their lifecycle, from initial assessment to termination.

- Monitor vendor performance and compliance.

- Enforce contractual obligations and security requirements.

- Identify and implement risk mitigation strategies, such as security controls, contractual terms, and monitoring activities.

- Work with vendors to address security vulnerabilities and compliance gaps.

- Ensure compliance with relevant regulations and industry standards, including ISO 27001, NIST SP 800-53, and GDPR.

- Stay informed about emerging threats and vulnerabilities.

- Develop and maintain key performance indicators (KPIs) to measure the effectiveness of the TPRM program.

- Generate regular reports on third-party risk exposure and compliance status.

- Respond to security incidents involving third-party vendors.

- Coordinate with internal and external teams to mitigate the impact of security breaches.

Qualifications :

- 5+ years of experience in Third-Party Risk Management.

- Strong understanding of information security principles and practices.

- Experience with risk assessment methodologies and frameworks.

- Familiarity with regulatory requirements (GDPR, HIPAA, PCI DSS).

- Excellent analytical and problem-solving skills.

- Strong communication and interpersonal skills.

- Ability to work independently and as part of a team.

- Certification in information security (CISSP, CISM, CRISC) is a plus

(ref:hirist.tech)
  • Black Duck

    4 days ago


    Bengaluru, India Black Duck Full time

    Our DevOps Team is at the heart of Black Duck's mission to secure and accelerate software development. We are a group of dedicated professionals who are passionate about integrating security seamlessly into the DevOps pipeline. Our team is responsible for building and maintaining the platforms that enable continuous integration, continuous delivery, and...


  • Bengaluru, Karnataka, India Black Duck Full time

    Job DescriptionWe are seeking a highly motivated and experienced developer to join our team at Black Duck, a leading provider of software quality and security solutions. Our team is dedicated to building a market-leading security code analysis platform that helps customers get the most out of our products.You will work collaboratively with a dynamic team of...


  • Bengaluru, Karnataka, India Black Duck Full time

    We are seeking a highly motivated and experienced developer to join our team at Black Duck. This is an exciting opportunity to work with a team of enthusiastic and dynamic software engineers on building a market-leading security code analysis platform.As a key member of our team, you will be responsible for contributing to the development of cloud-native...


  • Bengaluru, India Black Duck Full time

    We are seeking a highly motivated and experienced developer to join our team to help build the Market-leading security code analysis platform. You will work with a team of enthusiastic and dynamic software engineers, creating a platform to help customers get the most out of Black Duck’ software quality and security products. You will be able to contribute...


  • Bengaluru, Karnataka, India Black Duck Full time

    About the RoleWe are seeking an exceptional Senior Cloud Architect to join our team at Black Duck. As a key member of our engineering team, you will be responsible for designing and developing cloud-native applications using Java, ensuring scalability, reliability, and security.Key Responsibilities:Design and develop scalable, resilient, and efficient...


  • Bengaluru, India Black Duck Full time

    We are seeking a highly motivated and experienced developer to join our team to help build the Market-leading security code analysis platform. You will work with a team of enthusiastic and dynamic software engineers, creating a platform to help customers get the most out of Black Duck’ software quality and security products. You will be able to contribute...


  • Bengaluru, India Black Duck Full time

    We are seeking a highly motivated and experienced developer to join our team to help build the Market-leading security code analysis platform. You will work with a team of enthusiastic and dynamic software engineers, creating a platform to help customers get the most out of Black Duck’ software quality and security products. You will be able to contribute...


  • Bengaluru, India Black Duck Full time

    We are seeking a highly motivated and experienced developer to join our team to help build the Market-leading security code analysis platform. You will work with a team of enthusiastic and dynamic software engineers, creating a platform to help customers get the most out of Black Duck’ software quality and security products. You will be able to contribute...


  • Bengaluru, India Black Duck Full time

    We are seeking a highly motivated and experienced developer to join our team to help build the Market-leading security code analysis platform. You will work with a team of enthusiastic and dynamic software engineers, creating a platform to help customers get the most out of Black Duck’ software quality and security products. You will be able to contribute...


  • Bengaluru, Karnataka, India Black Duck Full time

    We are seeking a highly motivated and experienced developer to join our team at Black Duck to help build the leading security code analysis platform. As a key member of our dynamic software engineering team, you will collaborate to create a platform that empowers customers to get the most out of our software quality and security products.About the RoleThis...


  • Bengaluru, Karnataka, India Black Duck Full time

    About the RoleAt Black Duck, we are seeking a highly experienced Senior Cloud Architect to join our team. This is an exciting opportunity to leverage your technical expertise and leadership skills to drive innovation in cloud-native application development.Key Responsibilities:Lead the design and development of scalable, resilient, and efficient...


  • Bengaluru, Karnataka, India Black Duck Full time

    Job DescriptionOverviewBlack Duck is a cutting-edge technology company that seeks an exceptional Lead Java Software Engineer with expertise in cloud-native architecture to join our team. This role will involve leading the design and development of scalable, secure, and high-performing applications using Java.About the RoleWe are looking for a highly skilled...

  • Black Duck

    5 days ago


    Bengaluru, India Black Duck Full time

    We are looking for a highly skilled Senior Software Development Manager to spearhead the next evolution of our application security platform. Join us and be part of a team that's pushing the boundaries of technology with agile practices, cloud-native patterns and state-of-the-art engineering methodologies.The ideal candidate is an inspiring engineering...

  • Black Duck Software

    3 weeks ago


    Bengaluru, India Black Duck Full time

    Key Responsibilities :Ensure the timely delivery of high-quality software that meets business requirements and maintains high performance in production environments.Contribute to the design and development of cloud-native applications using Java, ensuring scalability, reliability, and security.Provide technical leadership and mentorship to a team of...


  • Bengaluru, India Infosys Full time

    Job Description:Location : BangaloreKey Responsibilities:Prime contact for everything related to usage of FOSS in the product life cycle. Should have expertise in OSS program management driving the strategy and compliance while leading all the initiatives w.r.t OSS policies and process across the organization. To ensure end – end compliance of Open Source...


  • Bengaluru, India Black Duck Full time

    Key ResponsibilitiesEnsure the timely delivery of high-quality software that meets business requirements and maintains high performance in production environments.Contribute to the design and development of cloud-native applications using Java, ensuring scalability, reliability, and security.Provide technical leadership and mentorship to a team of engineers,...


  • Bengaluru, India Black Duck Full time

    Key ResponsibilitiesEnsure the timely delivery of high-quality software that meets business requirements and maintains high performance in production environments.Contribute to the design and development of cloud-native applications using Java, ensuring scalability, reliability, and security.Provide technical leadership and mentorship to a team of engineers,...


  • Bengaluru, India Black Duck Full time

    Key ResponsibilitiesEnsure the timely delivery of high-quality software that meets business requirements and maintains high performance in production environments.Contribute to the design and development of cloud-native applications using Java, ensuring scalability, reliability, and security.Provide technical leadership and mentorship to a team of engineers,...


  • Bengaluru, India Black Duck Full time

    Key ResponsibilitiesEnsure the timely delivery of high-quality software that meets business requirements and maintains high performance in production environments.Contribute to the design and development of cloud-native applications using Java, ensuring scalability, reliability, and security.Provide technical leadership and mentorship to a team of engineers,...

  • FOSS Engineer

    1 month ago


    Bengaluru, India Embitel Technologies Full time

    Job Description :Experience with Fossology or similar OSS license compliance tools.Use Fossology to scan and identify licenses, detect compliance issues, and assess risk in open source componentsCurate and manage OSS projects, ensuring they meet the company's compliance standards and legal requirementsIn-depth understanding of open source licenses such as...