Specialist-Third Party security Assessor

4 weeks ago


Mumbai, India IDFC FIRST Bank Full time

Job Title – Specialist-Third Party security Assessor

Function – Information Security Group

Job Purpose:

The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to ensure that the bank's shared data remains safeguarded through suitable security measures. It involves mitigating data-related risks and ensuring adherence to regulatory requirements. This entails evaluating the efficacy of these measures from the standpoint of data security and privacy. As a Third-Party Security Assessor, will be responsible for evaluating and assessing the security practices and controls of third-party vendors who have access to sensitive data or provide services to the organization. role is crucial in identifying and mitigating risks associated with outsourcing arrangements, ensuring compliance with regulatory requirements, and safeguarding the integrity of the Bank's data and systems. The individual in this position must stay updated on emerging technologies, secure configuration standards, and associated risks.

Roles and Responsibilities:

  • Conduct Third-Party Security Assessments: Perform comprehensive assessments of third-party vendors' security controls, policies, and procedures to identify potential vulnerabilities and risks.
  • Risk Analysis: Analyze the results of security assessments to evaluate the level of risk posed by third-party engagements. Assess the impact of identified vulnerabilities on the organization's data security and operational resilience.
  • Regulatory Compliance: Ensure that third-party engagements comply with relevant regulatory requirements, industry standards, and contractual obligations. Stay updated on regulatory changes and incorporate them into assessment processes.
  • Documentation and Reporting: Document assessment findings, including identified vulnerabilities, risks, and recommendations for remediation. Prepare clear and concise reports to communicate assessment results to stakeholders, including senior management and regulatory bodies.
  • Collaboration: Collaborate with internal stakeholders, including Business and Vendor Relationship Managers, Legal, Information Security, and Procurement teams, to facilitate the assessment process and ensure alignment with organizational objectives.
  • Vendor Management: Provide guidance to Business and Vendor Relationship Managers on selecting, onboarding, and managing third-party vendors from a security perspective. Assist in establishing and maintaining vendor security requirements and standards.
  • Continuous Improvement: Identify opportunities to enhance the effectiveness and efficiency of the third-party security assessment process. Implement best practices and lessons learned from previous assessments to continuously improve security posture.

Education Qualification:

Graduation: Bachelor's in Engineering / Technology / Computer Science / Information Security, or related field.

Post-graduation: PGDM / MBA / Mtech / MCA

Professional Qualification/Certification: CISSP, CISA, or CISM are preferred

Experience: 5 to 10 years of relevant experience in conducting security assessments and risk analysis, preferably in a financial or regulated industry.



  • mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security Assessor Function – Information Security Group Job Purpose: The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to ensure...


  • Mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security Assessor Function – Information Security Group Job Purpose: The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to...


  • Mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security AssessorFunction – Information Security GroupJob Purpose:The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to ensure that...


  • mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security AssessorFunction – Information Security GroupJob Purpose:The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to ensure that...


  • Mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security Assessor Function – Information Security Group Job Purpose: The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to...


  • Mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security Assessor Function – Information Security GroupJob Purpose:The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to ensure that...


  • Mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security AssessorFunction – Information Security GroupJob Purpose:The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to ensure that...


  • mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security Assessor Function – Information Security Group Job Purpose: The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to...


  • mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security Assessor Function – Information Security GroupJob Purpose:The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to ensure that...


  • mumbai, India IDFC FIRST Bank Full time

    Job Title – Specialist-Third Party security Assessor Function – Information Security Group Job Purpose: The Third-Party Technology Risk Management team assumes primary responsibility for overseeing the risks linked to third-party vendors and suppliers on behalf of the bank. This role necessitates close collaboration with vendor stakeholders to...


  • Mumbai, Maharashtra, India WTW Full time

    Role: - Leading and coordinating the completion of Third-party assessment requests against WTW best practice and global standards and controls.- Scheduling periodical re-assessment in line with standards and controls- Agree scheduled checkpoints with the Third Party and WTW Service Owner on evidencing remediations and maintaining central repository, these...


  • Mumbai, Maharashtra, India Visionyle Solutions Full time

    Job Title: Information Security EngineerAbout the Role: We are seeking an experienced Information Security Engineer to join our team at Visionyle Solutions. In this role, you will be responsible for conducting thorough security assessments of third-party vendors and suppliers to ensure they meet the required security standards.Key Responsibilities:Conduct...


  • Mumbai, Maharashtra, India CA Monk Full time

    TPRM Specialist Job DescriptionWe are seeking a skilled Third Party Risk Management (TPRM) Specialist to support our clients by assessing third-party risks and ensuring compliance with information security standards.This role involves IT audits, risk assessments, and working closely with internal and external stakeholders to safeguard data and processes.Key...


  • Mumbai, India Cubical Operations LLP Full time

    Job Description : Third-Party Risk Management (TPRM) SpecialistLocation : Bangalore, Mumbai, PuneExperience : 3+ yearsIndustry : Cybersecurity, Risk ManagementPosition Type : Full-Time, Immediate Joiner PreferredJob Summary :We are seeking a highly skilled and experienced Third-Party Risk Management (TPRM) Specialist to join our team in Bangalore. The ideal...


  • Mumbai, India IDFC FIRST Bank Full time

    **Role/Job Title**: Security Control Assessor **Business**: Risk **Function/ Department**: ISG **Place of work**: Mumbai **Experience**: - 5+ years in Information/cyber security **Education**: - BE. B.tech, M,tech, MCA, BCA **Job Purpose**: The Role would be responsible for working with the internal ISG stakeholders, Enterprise Security Architects,...


  • Mumbai, India Jio Full time

    Job OverviewIT Security Operations role with 3-8 years of experience, located in Navi Mumbai. This is a position at Jio (third party role) with primary skills in Vulnerability Management, IT security operations, Risk Assessment, Cybersecurity, Governance, Security Audit, Monitor Compliance.Qualifications and SkillsVulnerability ManagementIT security...


  • Navi Mumbai, India IDFC FIRST Bank Full time

    Role/Job Title : Security Control Assessor Function/ Department:  Information Security Group  Job Purpose: The Role would be responsible for working with the internal ISG stakeholders, Enterprise Security Architects, Application Owners & other Application Team members and other key stakeholders to ensure data-centric security and protection...


  • Mumbai, Maharashtra, India AANSEACORE Full time

    Job DescriptionAANSEACORE is seeking an experienced Third-Party Risk Management Analyst to join our team. This role will be responsible for managing risks associated with third-party vendors, ensuring contract alignment with organizational policies, and maintaining compliance with relevant regulations.Key Responsibilities:Identify, assess, and monitor risks...

  • Security Operations

    3 months ago


    Mumbai, India Jio Full time

    Role: Security Operations (IAM)Location: MumbaiPayroll - Third Party Job Description: 1. Experience on working in User Access Management/IAM and understanding ITIL. 2. Having knowledge of internal control procedures and documentation. 3. Hands on experience on Office package. 4. Reporting knowledge for management data as well as IT/Service Management. 5....


  • mumbai, India HDFC Bank Full time

    Proficient in : Planning & implementation of external audits basis bank's frameworkGovernance and monitoring of the end to end external audit processCoordinating between external auditors , third parties(auditees), Bank's Teams during the auditLiaising with third party SPOC and auditors in advance on audit schedule and ensure smooth audit...