Назад
Company hidden
9 дней назад

Third-Party Cyber Assurance Supervisor (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Spain
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Third-Party Cyber Assurance Supervisor (Cybersecurity): Assessing and improving the cybersecurity posture of critical suppliers through risk-based assessments, onsite inspections, and technical evaluations with an accent on third-party risk, operational resilience, DORA, and data-centre security. Focus on translating control weaknesses into business risks, evaluating security testing results, producing executive dashboards, and identifying automation opportunities through agentic artificial intelligence.

Location: Madrid, Spain; hybrid work with days at home and at the hirify.global MAD office. Travel may be required for assessments for approximately 6–8 weeks per year.

Company

hirify.global Hubs Spain is a newly established technology and operations hub supporthirify.global hirify.global’s bankhirify.global solutions, cybersecurity capabilities, and global customer base.

What you will do

  • Lead, plan, and execute risk-based cybersecurity assessments and onsite inspections of critical third-party providers.
  • Evaluate supplier security governance, technology controls, operational resilience, risk management practices, and control effectiveness.
  • Conduct interviews, documentation reviews, field inspections, configuration assessments, technical security evaluations, and data-centre inspections.
  • Identify cybersecurity risks, control weaknesses, and vulnerabilities, then translate technical findhirify.globals into business risks and actionable recommendations.
  • Support the evaluation of penetration testhirify.global and red-team results, and produce professional reports and executive-ready dashboards.
  • Collaborate with global security, risk, procurement, operations, and audit teams while coachhirify.global new team members and implementhirify.global automation opportunities through agentic AI.

Requirements

  • Bachelor’s or Master’s degree in Computer Science, Information Security, Cybersecurity, IT Engineerhirify.global, IT Risk Management, IT Audit, or a related field.
  • 7–9 years of experience in cybersecurity, IT audit, cyber risk management, third-party risk management, information security, or a similar area.
  • Strong knowledge of cybersecurity technologies and architecture, IT processes, COBIT, ISO 27001, ISO 22001, risk management, governance frameworks, and the Three Lines Model.
  • Knowledge of operathirify.global systems, networks, databases, identity and access management, cloud and web technologies, software development practices, and containerization.
  • Experience with audits, cybersecurity assessments, supplier reviews, or risk evaluations, combined with strong analytical, problem-solvhirify.global, communication, and stakeholder-management skills.
  • Fluency in English, written and spoken, and the ability to work in multicultural and international environments.

Nice to have

  • Experience in bankhirify.global or financial services, operational resilience, or third-party risk management.
  • Experience with penetration testhirify.global, red teamhirify.global, vulnerability assessments, or technical security testhirify.global.
  • Knowledge of DORA, NIST Cybersecurity Framework, ISO 27001, SOC 2, cloud security frameworks, NIS2, and other EU regulatory frameworks.
  • Hands-on experience with Nessus, Burp Suite, Kali Linux, Wireshark, Docker, scripthirify.global, data analytics, or automation tools.
  • CISSP, CISA, CEH, OSCP, or ISO 27001 Lead Auditor certification.

Culture & Benefits

  • Flexible hybrid model with shared accountability for chooshirify.global home and office days.
  • Health insurance for the employee and family, plus life insurance.
  • Restaurant card, transport allowance, flexible remuneration, and access to trainhirify.global support.
  • Pension plan available after one month of employment.
  • Office facilities include electric mobility solutions, a doctor, hairdresser, gym, and personal-services support.
  • International, inclusive, agile, and technology-focused environment with opportunities to shape a growhirify.global cybersecurity hub.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →