logo

JobNob

Sua carreira. Nossa paixão.

Cybersecurity Specialist - Third Party Risk Management


Siemens Gas and Power GmbH & Co. KG


Location

Brasil | Brazil


Job description

Cybersecurity Specialist - Third Party Risk Management

About the Role

Location

Company

Siemens Energy Brasil Ltda.

Organization

Business Unit

n/a

Full-time

Experience Level

Experienced Professional

Snapchat of your day

Embark on a dynamic journey as a Cybersecurity Supplier Assessor at Siemens Energy, as no two days are the same!

In this role, you will dive into supplier assessments, cooperating with key partners on identifying critical suppliers and ensuring compliance with cybersecurity standards throughout the process. Your day will be a mix of evaluating security controls, analyzing risks and driving innovation through tools and process improvements. You will have the chance to build on your interests and skills through development as a domain expert in key areas of cybersecurity third party risk management. Finally, you will be engaging with the most multifaceted and exciting global Cybersecurity team on the global!

How You’ll Make an Impact

•Conduct detailed assessments of cybersecurity practices and 3rd party controls.

•Analyze assessment findings to identify risks and gaps in security posture.

•Collaborate with key customers, procurement, legal to develop and implement improvement plans.

•Understand and translate cybersecurity legal clauses and terms within supplier contracts. Lead and support required negotiations of those terms with procurement and/or legal.

•Drive innovation throughout the supplier assessment lifecycle. Support transformation efforts to improve efficiencies and effectiveness using lean methodologies.

•Share a point of view and mentorship to internal teams, key collaborators, and suppliers on cybersecurity standard methodologies.

•Keep abreast of cybersecurity trends and emerging threats to continuously improve assessment methodologies.

•Lead multiple projects and maintain communication flow with all interested key parties.

•Understand industry standard processes and support benchmarking of 3rd party risk management services, tools, etc.

•Make a direct impact on the organization's cybersecurity posture by ensuring 3rd party suppliers meet the highest security standards.

What you Bring

•Area of formation (bachelor)

University degree from Faculty with a preference for computer science, data science, information technology, legal fields, or equivalent technology/business management related degree.

•Languages this person must speak

Fluency in English, Portuguese language. Fluency in Spanish language desirable

•The specific kind of experience

•Familiar with Information Security Risk, methodologies, frameworks such as ISO 27001, NIST, COBIT and industry best practices to help ensure a secure cloud computing environment.

•Keen eye for detail and passion for excellence

•Deep understanding of cybersecurity principles, exceptional analytical abilities, and familiarity with standard methodologies regarding security of networks, services, products, operations, etc.

•Good communication and presentation skills. Passionate about listening and collaborating with different functions like procurement, legal and suppliers. Ability to communication with all levels of the organization up through and including our executive management team.

•Experience in the end-to-end management of supplier assessments, integration of application security standard processes, secure coding practices, etc. into remediation measures, and ensuring risk measures are properly documented, understood, and handled.

•Energized to use innovative methods and ideas that drive supplier resilience methodologies.

•Desire to get results and continuously focus on improving processes and services.

•Desired Work Experience 3 to 5 years as an Information Security auditor

•CRISC, CISA, CCSK, CCAK, CSX-Practitioner, ISO 27001 Lead Auditor, PM or comparable certifications will be considered a plus

About the team

You will be part of a global team that provides cybersecurity support services for all Siemens Energy Divisions and Functions as well as all seven Siemens Energy hubs. You will also join our companywide cybersecurity community of more than 130 members.

Who is Siemens Energy?

At Siemens Energy, we are more than just an energy technology company. We meet the growing energy demand across 90+ countries while ensuring our climate is protected. With more than 94,000 dedicated employees, we not only generate electricity for over 16% of the global community, but we’re also using our technology to help protect people and the environment.

Our global team is committed to making sustainable, reliable, and affordable energy a reality by pushing the boundaries of what is possible. We uphold a 150-year legacy of innovation that encourages our search for people who will support our focus on decarbonization, new technologies, and energy transformation.

Find out how you can make a difference at Siemens Energy:

Our Commitment to Diversity

Lucky for us, we are not all the same. Through diversity we generate power. We run on inclusion and our combined creative energy is fueled by over 130 nationalities. Siemens Energy celebrates character – no matter what ethnic background, gender, age, religion, identity, or disability. We energize society, all of society, and we do not discriminate based on our differences.

#J-18808-Ljbffr


Job tags



Salary

Todos os direitos reservados