Cyber Security Third Party Risk Senior Analyst

1 day ago


Bengaluru, Karnataka, India LSEG Full time

LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.

Our purpose is the foundation on which our culture is built. Our values of
Integrity, Partnership
,
Excellence
and
Change
underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.

Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce. You will be part of a collaborative and creative culture where we encourage new ideas and are committed to sustainability across our global business. You will experience the critical role we have in helping to re-engineer the financial ecosystem to support and drive sustainable economic growth. Together, we are aiming to achieve this growth by accelerating the just transition to net zero, enabling growth of the green economy and creating inclusive economic opportunity.

Role Summary
Key relationships & committees

  • Working closely with the key stakeholders in Third Party Risk Management, Security Architecture and Governance teams to ensure adequate controls are adhered to when onboarding new vendors.
  • Working with the First- and Second-line Risk teams to develop and maintain risk profiles for key LSEG third parties
  • Working with Application Owners and their teams to ensure the results of Application Health assessments are understood and be acted upon.

Location - Bengaluru - India

Key responsibilities

Cyber Third-Party Risk Management

  • Responsible for conducting timely security impact assessments of third-party suppliers recording results accurately and initiating appropriate assurance response.
  • To produce high quality, informative and accurate reports in respect of third-party assurance assessments.
  • Provide advice and guidance to internal and external stakeholders on Cyber Security Minimum Requirements.
  • Ensure assurance portfolio of third-party suppliers remains updated, manage vendor cyber administrative schedules and communications.

Application Health Assessments

  • Initiate the Application Health assessments for in-scope Applications
  • Work collaboratively with Application Owners on the results of their Application Health assessments, guiding Application Owners through the process, support the reporting of results and signposting potential remediation activity.

General Role Responsibilities

  • Provide advice to Cyber Security Third Party Risk advice based on the vendor services to business stakeholders
  • Participate in and contribute to internal Cyber Security forums and bodies. Assist in the improvement of risk management and Cyber Security controls within the Group.
  • Ensure all activity is compliant with NIST, GDPR and other
  • Contribute to the collection, reporting and management of Key Risk Indicators (KRI's) and Management Information (MI's).

Leadership responsibilities

This is an Individual Contributor role, reporting to the Senior Manager leading the function. The role is part of a global Team and is seen by management as a trusted partner in a 'high support and high challenge' relationship.

Critical deliverables

Cyber Third-Party Risk Management

  • Ongoing third-party security assessments
  • Management of third-party schedules and administrative tasks in partnership with key stakeholder groups
  • Third party security risk reporting and metrics
  • Working with Group Third Party Risk Management to align assessments, schedules and best practice activities for cyber security

Application Health Assessments

  • Prioritised Application Health assessments outcomes – with signposting and advice to triage, sequence, report and remediate issues.Development of feedback on thematic areas resulting from Application Health assessments – to be taken forward by Cyber and Engineering leadership.

Diversity & Inclusion
We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone's race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs.

LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.

Our purpose is the foundation on which our culture is built. Our values of
Integrity, Partnership
,
Excellence
and
Change
underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.

Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce. You will be part of a collaborative and creative culture where we encourage new ideas and are committed to sustainability across our global business. You will experience the critical role we have in helping to re-engineer the financial ecosystem to support and drive sustainable economic growth. Together, we are aiming to achieve this growth by accelerating the just transition to net zero, enabling growth of the green economy and creating inclusive economic opportunity.

LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.

We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone's race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs.

Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it's used for, and how it's obtained, your rights and how to contact us as a data subject.

If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.


  • Cyber Security

    2 weeks ago


    Bengaluru, Karnataka, India, Karnataka Computacenter Full time

    Life on the teamOperates the Third-Party Cyber Risk Management framework to ensure cybersecurity risks related to our supply chain are effectively, managed to maintain a resilient and compliant security posture.What you’ll doOperate the Third-Party Cyber Risk Management Framework (~ 90%)• Third-Party Risk Management framework: operate processes and...


  • Bengaluru, Karnataka, India AT&T Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description:Role: Senior – Third Party Risk Management (TPRM)About the Company:Join AT&T and reimagine the communications and technologies that connect the world. Our Chief Security Office ensures that our assets are safeguarded through truthful transparency, enforce accountability and master cybersecurity to stay ahead of threats. Bring your bold...


  • Bengaluru, Karnataka, India Eltropy Full time US$ 1,25,000 - US$ 1,75,000 per year

    We are seeking a Senior Cybersecurity Analyst – GRC (Governance, Risk, and Compliance) to support and improve our security compliance and risk management program. This individual will help manage third-party audits, perform risk assessments, ensure ongoing compliance with security frameworks, and support business teams with customer and vendor...


  • Bengaluru, Karnataka, India Docusign Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Company OverviewDocusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people's lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now,...


  • Bengaluru, Karnataka, India DocuSign Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Company OverviewDocusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people's lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now,...


  • Bengaluru, Karnataka, India Equiniti Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    Management LevelGCore Duties/ResponsibilitiesRisk Identification, Assessment and AnalysisAssist and conduct comprehensive risk assessments to identify potential cybersecurity threats and vulnerabilities across EQ's infrastructure, data, applications, mobile and networks.Assist in conducting comprehensive security risk assessments for internal systems,...


  • Bengaluru, Karnataka, India Grant Thornton Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Role DescriptionThe Senior Manager, Information Security Third-party Risk Management position will be an integral member of the Information Security and Risk Management team. This role will be responsible for design, development, implementation and monitoring of risk management program. Work in Chief Information Security Officer (CISO) office under Associate...


  • Bengaluru, Karnataka, India Kiya Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    position: Contract to Hire(C2H)Skill: Third-Party Risk ManagementExperience: 3+Location: BangNotice Period: Immediate to 15 DaysJob Descrption :General Risk management and Controls management awareness.Internal Controls Testing/ Internal Audit.Understanding of Third-Party Risk Management including Inherent and Residual Risks.Familiarity with the banking...


  • Bengaluru, Karnataka, India Deloitte Full time US$ 9,00,000 - US$ 12,00,000 per year

    Job title: Third Party Cyber Risk Services– Senior Consultant (Solution Delivery Lead)AboutAt Deloitte, we do not offer you just a job, but a career in the highly sought-after risk management field. We are one of the business leaders in the risk market. We work with a vision to make the world more prosperous, trustworthy, and safe. Deloitte's clients,...


  • Bengaluru, Karnataka, India Resmed Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Let's talk about the RoleThis global role within Resmeds Enterprise Security Group is responsible for ensuring the confidentiality, integrity, and availability of ResMeds information assets and computing infrastructure. We are seeking a seasoned and proactive Senior Information Security Specialist to lead security risk assessments across cloud environments,...