
Cyber Security Third Party Risk Analyst-1
1 day ago
The Third-Party Security Risk Analyst will be responsible for executing and maintaining DXC’s global Cyber Security Third-Party Risk Management program. They will work daily with Supply Chain Management, Legal, Privacy, Sales and other business functions to assess vendors’ information security posture, identify compliance concerns, document information security risk and work with the business on risk mitigation plans. The Risk Analyst will be working with the business and technical organizations globally across multiple geographies and industries. They must be a team player and leader that has a history of risk management, is extremely effective at communicating information security controls with the business and working collaboratively across a matrixed organization resulting in the reduction of information security risk for the company. This position will be responsible for accurately capturing, communicating, and managing the risk posture of the organization. Experience and knowledge of working with both qualitative and quantitative risk methodologies is highly preferred.
**Detailed Responsibilities**:
- Fulfill the role of Third-Party Risk Management Information Security Subject Matter Expert.
- Quickly triage vendors and other third-parties in accordance with DXC information security policies and industry best practices.
- Carry out information security risk assessments of vendors and the services they provide.
- Provide contract support and consultancy with respect to both DXC contract wording and vendor provided contracts and/or terms and conditions.
- Meet regularly with internal customers (colleagues) and vendors’ representatives in order to support reviews, assessments, recommendations, and remediation activities.
- Assist the business with the formulation of risk mitigation plans.
- Maintain a record of all interactions within DXC’s established vendor risk management platform.
- Build and establish good working relationships and to become a trusted information security risk partner.
- Actively manage open risks, issues, queues with reference to service levels and/or due dates.
- Escalate problems or issues to management where necessary.
- Recommend improvements to Third Party Risk Management process, procedure, documentation, and platform.
- Work with other DXC Risk teams to ensure alignment and consistency of approach in order to identify, manage, and reduce risk.
- Work flexibly with respect to time management to ensure team availability across the time zones that DXC operate.
**Skills**
- Strong communication and business relationship skills at all levels of the organization.
- Delivery-focused mindset that will be able to work in a fast-paced environment with shifting priorities.
- Knowledge of a wide variety of information security concepts, services, and technologies.
- Maintains a solid understanding of information security risk, controls mapping, and business processes.
- GRC Tool management (ServiceNow, Archer or similar system).
- Possess familiarity with information security policies and standards.
- Able to act independently when making technical or business decisions.
**Education and Experience**
- 5+ years of relevant experience desired.
- Minimum 3 years of experience conducting risk assessments using risk and control frameworks including ISO, NIST or other industry standard.
- Demonstrated work history on enterprise-wide projects or initiatives with global scope.
- Professional security certification or qualification such as CTPRP, CISA, CRISC, CISM, CISSP or relevant related experience preferred.
-
Cyber security internship
2 weeks ago
Noida, Uttar Pradesh, India Pankh Cyber Solution Full time ₹ 4,00,000 - ₹ 8,00,000 per yearAbout Us:Pankh Cyber Solution is a pioneering organization dedicated to empowering individuals through digital awareness, cybersecurity training, and forensic support. We conduct workshops, internships, and cyber crime investigations with a mission to build a cyber-resilient India. Internship Objective:This internship provides comprehensive, practical, and...
-
Cyber-Security Risk Analyst
6 days ago
Noida, India PrismHR Full timeInformation security analysts are responsible for improving the overall security posture of the organization. They evaluate, test and document security solutions and controls, and work closely with other security team members to remediate risk while ensuring the business can innovate. Information security analysts must continually adapt to stay a step ahead...
-
Cyber Security Specialist
1 week ago
Noida, Delhi NCR, India beBeeCyber Full time ₹ 1,30,00,000 - ₹ 1,70,00,000Job Title: Cyber Security ProfessionalWe are seeking a skilled Cyber Security Professional to join our team. As a key member of our Cyber Security Team, you will be responsible for Risk Assessment and management of customer and internal activities including proprietary and public data.This role offers the opportunity to learn and grow as you would be exposed...
-
Cyber Security
1 week ago
Noida, India Wildnet Technologies Full timeFULL-TIME NOIDA 2 PLUS YEARS **SOC Analyst** Wildnet Technologies is a 15+ years old Award-winning IT Software Solution Engineering Company with its foundation laid in the year 2006. We are headquartered in India and have client presence in the United States, Canada, Australia, and the United Kingdom **.** This is a great opportunity for those who are...
-
Cyber Security Engineer
6 days ago
Noida, India GE VERNOVA Full time* *Job Description Summary****As a Cyber Security Engineer at GE Vernova Grid Solutions, you will play a crucial role in designing, implementing, and optimizing the cybersecurity requirement for EHV/HV substations (AIS/GIS/HVDC/FACTS/STATCOM/Onshore/Offshore/Renewable/etc.,) considering the safety/quality/Cost/time delivery criteria. In this role, you...
-
Cyber Security Analyst
4 days ago
Noida, India Brainwork TechnoSolutions Pvt. Ltd Full timePosition Overview :We are seeking a skilled Cyber Security Analyst with hands-on experience in the automotive domain to ensure the security, integrity, and resilience of connected vehicle systems, embedded controllers, and in-vehicle networks. The ideal candidate will be responsible for assessing vulnerabilities, implementing security controls, monitoring...
-
Vendor Risk Management
3 days ago
Noida, India HCLTech Full timePosition - Deputy General ManagerLocation - NoidaEducation - Graduate or postgraduate degree in Computer Science, Information Technology, Cybersecurity, or a related field.Professional Qualifications - ISO 27001 Lead Auditor, CISA, CISM, CISSP, CRISC, or equivalent.Experience - 12–15 years of overall experience in Information Security, Cybersecurity,...
-
Technology Risk and Compliance Analyst
1 week ago
Noida, Uttar Pradesh, India Clearwater Analytics Full time ₹ 6,00,000 - ₹ 12,00,000 per yearClearwater Analytics' mission is to become the world's most trusted and comprehensive technology platform for investment reporting, accounting, and analytics. With our team, you will partner with the most sophisticated and innovative institutional investors around the world. If you are infectiously passionate about what you do, intensely committed to...
-
Technology Risk and Compliance Analyst
6 days ago
Noida, India Clearwater Analytics Full timeClearwater Analytics' mission is to become the world's most trusted and comprehensive technology platform for investment reporting, accounting, and analytics. With our team, you will partner with the most sophisticated and innovative institutional investors around the world. If you are infectiously passionate about what you do, intensely committed to...
-
Vendor Risk Management
4 days ago
Noida, India HCLTech Full timePosition - Deputy General Manager Location - Noida Education - Graduate or postgraduate degree in Computer Science, Information Technology, Cybersecurity, or a related field. Professional Qualifications - ISO 27001 Lead Auditor, CISA, CISM, CISSP, CRISC, or equivalent. Experience - 12–15 years of overall experience in Information Security,...