Cybersecurity Third-party Risk Assessor

3 months ago


Bengaluru Karnataka, India Hewlett Packard Full time

As the world around us becomes more connected and digital, cybersecurity attacks increase opportunities for fraud and disruption. In this constantly changing landscape, the need for companies, products, and services to be secure is more important than ever.

Are you passionate about keeping good people safe from bad actors? We are, too We are HP Cybersecurity, and we are tasked with the security of the HP enterprise. As HP continues our digital transformation, the work of the cybersecurity professional is never complete and is always interesting. Come be a part of making a difference with us

The HP Cybersecurity Risk Assessor is responsible for end-to-end cyber security risk management, including risk identification, analysis, and evaluation, identifying remediation requirements, and supporting remediation efforts. Defined risk assessment processes and risk management methodologies are utilized to meet these objectives.

This role also contributes to and/or leads continuous process improvements to enhance HP’s cyber security GRC capabilities.

The Cybersecurity Risk Assessor controls data flows, identifies relevant cybersecurity-related information to understand trends, and reflects them in reporting tools that enable cybersecurity data-driven decisions, plans, and actions to keep HP secure. Also collaborates across teams to assess, consult, and implement data & automation solutions.

**What a Cybersecurity Risk Analyst/ Assessor does at HP**:

- Scopes manages and performs cyber security risk and/or compliance assessments.
- Maintains the risk register for all assessed assets utilizing eGRC/IRM solution.
- Provides risk mitigation/remediation guidance to stakeholders.
- Supports internal and external audits as needed.
- Contributes to and/or leads the continuous improvement and maturation of GRC practices.
- Monitors industry cybersecurity threats, Cybersecurity best practices, regulatory changes, corporate updates, and geo-political changes impacting HP’s security.

**Individuals who thrive in this role at HP typically have**:

- Bachelor’s degree (preferably in computer science, engineering or related area of study, or equivalent experience).
- Typically, 6+ years of relevant experience, including conducting risk and compliance assessments.
- Technical Cyber Security Certification through one of the recognized bodies preferred: SANS, ISACA, (ICS)2, CompTIA, Cisco, CERT.
- Solid working knowledge of industry frameworks and standards, including ISO27001/27002/27005, NIST CSF, NIST 800-53, SOC2, PCI-DSS, and SIG.
- Knowledge of standard GRC processes, including risk management, exception to policy, policy management, controls management/mapping, and auditing.
- Results-driven, strong analytical skills, ability to connect the dots to make better decisions.
- Able to deal well with ambiguity, balancing risk with potential delays.
- Fluent in Oral and written communications.
- Able to work effectively in a team and with various stakeholders at various organizational levels.
- Excellent responsiveness, organizational, and time management skills.
- Proactive in seeking problem resolution.

**About the team**:
The Cybersecurity Governance, Risk Management and Compliance team is a key pillar of the Cybersecurity organization responsible for protecting the HP Enterprise against cyber threats. The GRC team is a diverse group of cyber security professionals who collaborate with all disciplines within Cybersecurity as well as business and functional stakeholders as trusted advisors to effectively manage cyber security risks to the business.

**About HP**:
You’re out to reimagine and reinvent what’s possible—your career and the world around you. So are we. We love taking on tough challenges, disrupting the status quo, and creating what’s next. We’re in search of talented people who are inspired by big challenges, driven to learn and grow, and dedicated to making a meaningful difference.

We are 60,000+ HP employees, united in creating technology that makes life better for everyone, everywhere. Interested in joining us? Let’s talk.

**Knowledge & Skills**
- Cybersecurity operations
- Cybersecurity governance
- Third-Party Risk Assessments
- Knowledge of risk assessment frameworks
- Risk analysis.
- Issue tracking.
- Security controls
- Operating systems

**Cross-Org Skills**
- Effective Communication
- Strong relationship management skills
- Analytical Mindset
- Results Orientation
- Learning Agility
- Customer Centricity
- Multitasking

**Impact & Scope**
Impacts function and leads and/or provides expertise to functional project teams and may participate in cross-functional initiatives.

**Complexity**
Works on complex problems where analysis of situations or data requires an in-depth evaluation of multiple factors.



  • Bengaluru, Karnataka, India CA Monk Full time

    Job OpportunityWe are seeking a seasoned Third-Party Risk Management (TPRM) professional to join our team at CA Monk in Bangalore, India.Job DescriptionThis is a challenging role that requires strong expertise in conducting risk assessments for third-party vendors, evaluating vendor controls, and identifying/mitigating risks in outsourcing and supply chain...


  • Bengaluru, India eliterecruitments Full time

    **Information Security Risk Assessor (ISRA)**: We are looking for an Information Security Risk Assessor (ISRA) to join our client’s team. In this role, you will play a crucial part in securing our projects by design through the delivery of Information Security Assurance Plans based on ISO Risk Management principles. **Location -...


  • Bengaluru, Karnataka, India CA Monk Full time

    **About CA Monk**At CA Monk, we provide job opportunities in leading consulting firms. Our current position is an Assistant Manager & Manager role in the Generic TPRM department.**Job Overview**This Job opportunity involves working as a Third Party Risk Management (TPRM) Specialist to support our clients by assessing third-party risks and ensuring compliance...


  • Bengaluru, Karnataka, India Hewlett Packard Full time

    As the world around us becomes more connected and digital, cybersecurity attacks increase opportunities for fraud and disruption. In this constantly changing landscape, the need for companies, products, and services to be secure is more important than ever. Are you passionate about keeping good people safe from bad actors? We are too! We are HP...


  • Bengaluru, Karnataka, India JPMorgan Chase Full time

    The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC's Corporate Third-Party Oversight (CTPO) program. SAS also supports JPMC's Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC's supply chain. SAS is part of Global...


  • Varthur, Bengaluru, Karnataka, India JPMorganChase Full time

    **JOB DESCRIPTION** The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC’s Corporate Third-Party Oversight (CTPO) program. SAS also supports JPMC’s Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC’s supply...


  • Varthur, Bengaluru, Karnataka, India JPMorganChase Full time

    **JOB DESCRIPTION** The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC’s Corporate Third-Party Oversight (CTPO) program. SAS also supports JPMC’s Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC’s supply...

  • Risk Management Lead

    3 weeks ago


    Bengaluru, Karnataka, India CA Monk Full time

    Job Opportunity at CA MonkThis role involves leading third-party risk management efforts to ensure the security and compliance of vendors. The ideal candidate will have a strong background in IT security, risk assessment, and vendor oversight.About the Role:Description:The successful candidate will be responsible for conducting thorough risk assessments on...


  • Varthur, Bengaluru, Karnataka, India JPMorgan Chase & Co Full time

    **JOB DESCRIPTION** Short description**: Join a team which drives and performs end to end quality review of Third-Party Assessments and assist the execution of the Assessments. **Posting description** The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC’s Corporate Third-Party Oversight (CTPO)...


  • Bengaluru, India HSBC Full time

    Some careers have more impact than others. If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 62 countries and territories. We aim to be where the growth is, enabling businesses to...


  • Varthur, Bengaluru, Karnataka, India JPMorgan Chase & Co Full time

    **JOB DESCRIPTION** Firm-wide Supplier Oversight Services (SOS) is a centralized group that manages the Third Party Oversight & Governance function across the organization.. This group provides consistent monitoring of all Third Party activities in order to ensure compliance to the Third Party Oversight (TPO) standards and Global Technology Standards. As...


  • Bengaluru, Karnataka, India Applicantz Full time

    Are you looking for a challenging and rewarding career in cybersecurity? We have an exciting opportunity for a Global Cybersecurity Risk Specialist to join our team at Applicantz.In this role, you will be responsible for analyzing and streamlining operational tasks and processes to protect our clients against adversaries and comply with global regulations....


  • Bengaluru, Karnataka, India Thomson Reuters Full time

    About the OpportunityIn this exciting role as Senior Analyst, Third-Party Risk Management, you will play a crucial part in ensuring our organization's third-party relationships are thoroughly assessed and managed to minimize risk.Key Responsibilities:Conduct thorough risk assessments of third-party vendors, suppliers, partners, and more, utilizing...


  • Bengaluru, Karnataka, India Thomson Reuters Full time

    At Thomson Reuters, we're transforming the way knowledge professionals work to create a more transparent, just and inclusive future.About the RoleIn this exciting opportunity as Director, Third Party Risk Management, you'll play a crucial role in shaping our enterprise-wide risk and control program. Your expertise will help us mature our Third-Party Risk...


  • Bengaluru, India ADCI - BLR 14 SEZ Full time

    Are you ready to apply your risk and compliance expertise to Amazon's unique environment? We are looking for a candidate with demonstrated Third Party Risk Management expertise who will play a key role in building out new exciting programs across Amazon’s different organizations. The Sr. Risk Manager will accelerate a broad TPRM framework, drive risk...


  • Bengaluru, Karnataka, India Thomson Reuters Full time

    About the RoleAs a Senior Analyst, Third-Party Risk Management, you will be responsible for assessing inherent and residual risk associated with third parties, including vendors, suppliers, and partners. This role involves screening third parties for potential red flags using open and closed source intelligence. You will support the development and...


  • Bengaluru, Karnataka, India Teamware Solutions Full time

    Teamware Solutions is committed to providing top-notch cybersecurity services, and we're seeking a skilled Cybersecurity Threat Assessor to join our team. Estimated salary for this position is $120,000 - $180,000 per year.About UsWe are Teamware Solutions, a leading provider of innovative solutions in the field of cybersecurity. Our mission is to protect...


  • Bengaluru, India Thomson Reuters Full time

    About the Role In this opportunity as Senior Analyst, Third-Party Risk Management, you will: Assess the inherent and residual risk associated with third parties to TR including vendors, suppliers, partners and more, using standardized methodology, process, and toolset. Screening third parties for potential red flags using both open and closed...


  • Bengaluru, Karnataka, India The Nielsen Company Full time

    The Cybersecurity Lead Risk Analyst will be part of the Global Cybersecurity department, reporting to the Security Performance Management team. This role is responsible for assisting with the execution of internal and third-party risk analysis and assessments related to our business units. The Lead Analyst will work closely with the Global Cybersecurity team...


  • Bengaluru, India Thomson Reuters Full time

    Come and join the Risk & Compliance team in Operations & Technology as we work to transform Thomson Reuters into a truly digital company. With the transformation, come new and emerging risks. We are looking for a curious, collaborative, and driven professional who can work across the enterprise to help us mature our Third-Party Risk Management program and...