Senior Third-party Risk Management Specialist

1 week ago


Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time
About the Role

This is an exciting opportunity to join Tesco's Third-Party Risk Management Team, part of the wider Cyber function. The Third-Party Risk team provides assurance to Tesco by assessing the security risk and criticality of third-party (supplier) organisations that store, access or process Tesco data or provide a critical service.

Key Responsibilities
  • Expertise in IT risk and controls principles, Cyber security audit methodology, third-party cyber security risk review methodology and common challenges.
  • Support team lead on driving our quality improvement agenda across all business areas/functions.
  • Work collaboratively with review platform provider in driving feature enhancement implementation.
  • Contribute to the design and implementation of strategic initiatives regarding continuous improvement over operational efficiency, quality and risk management.
  • Work closely with the relevant business owners, legal and procurement to ensure third-party risks are considered and managed at appropriate points of the supplier lifecycle.
Requirements
  • IT audit/risk management, with examples of managing technology risk and compliance within an organisation.
  • Knowledge of ISO standards in relation to information security and business continuity.
  • SME level expertise in respect to information security risk management processes, frameworks and procedures.
  • Leading, planning and conducting interviews with suppliers (or similar stakeholders) to obtain an understanding of the area being reviewed.
  • Critical thinking with strong attention to detail and good organisational skills.
  • Strong written, verbal communication and presentation skills, working with all levels of seniority and disciplines within the organisation.
  • Able to build solid working relationships with peers as well as internal and external stakeholders.
  • At least one professional qualification such as CISA, CISM, CISSP or equivalent.
What's in it for you

We're committed to supporting our colleagues' wellbeing and providing a range of benefits to help you achieve a better work-life balance. These include:

  • Annual bonus scheme of up to 20% of base salary.
  • Holiday starting at 25 days plus a personal day (plus Bank holidays).
  • Buy holiday salary sacrifice scheme (for salaried roles).
  • Private medical insurance.
  • Retirement savings plan - save between 4% and 7.5% and Tesco will match your contribution.
  • Life Assurance - 5 x contractual pay.
  • 26 weeks maternity and adoption leave (after 1 year's service) at full pay, followed by 13 weeks of Statutory Maternity Pay or Statutory Adoption Pay.
  • The right to request flexible working from your first day with us.
  • Free 24/7 virtual GP service, Employee Assistance Programme (EAP) for you and your family, free access to a range of experts to support your mental wellbeing.
  • A Colleague Clubcard for you & a family member (after 3 months of service), giving you access to lots of discounts in-store & online.
  • Great colleague deals and discounts, saving you money on everyday purchases, eating out and utility bills for the home.
  • Access to our colleague networks providing a space for colleagues to come together from a range of backgrounds.
  • Opportunities to get on - take advantage of our ongoing learning opportunities and award-winning training, to help you achieve the job and career you want.


  • Welwyn Garden City, Hertfordshire, United Kingdom Lacuna Talent Full time

    We are working exclusively with a global client to fill a Senior Third Party Risk Manager position in their in-house Information Security team.This role is ideal for someone with prior experience providing assurance and assessing security risk, Third Party Risk, and Supply Chain Risk.Conduct ongoing quality assurance work of the in-house TPRM ManagersReview...


  • Welwyn Garden City, Hertfordshire, United Kingdom Lacuna Talent Full time

    We are working exclusively with a global client to fill a Senior Third Party Risk Manager position in their in-house Information Security team.This role is ideal for someone with prior experience providing assurance and assessing security risk, Third Party Risk, and Supply Chain Risk.Conduct ongoing quality assurance work of the in-house TPRM ManagersReview...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the Role We are seeking a highly skilled Third-party Risk Manager to join our team at Tesco. As a key member of our Cyber function, you will play a critical role in assessing the security risk and criticality of third-party organisations that store, access or process Tesco data or provide a critical service.Your Responsibilities - Develop and maintain...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the Role We are seeking a highly skilled Third-party Risk Manager to join our team at Tesco. As a key member of our Cyber function, you will play a critical role in assessing the security risk and criticality of third-party organisations that store, access or process Tesco data or provide a critical service.Your Responsibilities - Develop and maintain...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the Role At Tesco, we're committed to creating a workplace where everyone feels valued and empowered to contribute. As a Third-party Risk Manager, you'll play a critical role in ensuring the security and integrity of our business by assessing and mitigating risks associated with third-party suppliers. This is a fantastic opportunity to join our Cyber...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the Role At Tesco, we're committed to creating a workplace where everyone feels valued and empowered to contribute. As a Third-party Risk Manager, you'll play a critical role in ensuring the security and integrity of our business by assessing and mitigating risks associated with third-party suppliers. This is a fantastic opportunity to join our Cyber...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the Role At Tesco, we're committed to creating a workplace where everyone feels valued and empowered to contribute. As a Third-party Risk Manager, you'll play a critical role in ensuring the security and integrity of our business by assessing and mitigating risks associated with third-party suppliers. This is a fantastic opportunity to join our Cyber...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the Role At Tesco, we're committed to creating a workplace where everyone feels valued and empowered to contribute. As a Third-party Risk Manager, you'll play a critical role in ensuring the security and integrity of our business by assessing and mitigating risks associated with third-party suppliers. This is a fantastic opportunity to join our Cyber...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the RoleThis is a fantastic opportunity to join Tesco's Third-Party Risk Management Team, part of the wider Cyber function. The Third-Party Risk team provides assurance to Tesco by assessing the security risk and criticality of third-party (supplier) organisations that store, access or process Tesco data or provide a critical service.Key...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the RoleThis is a fantastic opportunity to join Tesco's Third-Party Risk Management Team, part of the wider Cyber function. The Third-Party Risk team provides assurance to Tesco by assessing the security risk and criticality of third-party (supplier) organisations that store, access or process Tesco data or provide a critical service.Key...


  • Welwyn Garden City, Hertfordshire, United Kingdom ENGINEERINGUK Full time

    About the RoleThis is an exciting opportunity to join our Third-Party Risk Management Team, part of the wider Cyber function. The team provides assurance to our organisation by assessing the security risk and criticality of third-party organisations that store, access or process our data or provide a critical service.Key ResponsibilitiesExpertise in IT risk...


  • Welwyn Garden City, Hertfordshire, United Kingdom ENGINEERINGUK Full time

    About the RoleThis is an exciting opportunity to join our Third-Party Risk Management Team, part of the wider Cyber function. The team provides assurance to our organisation by assessing the security risk and criticality of third-party organisations that store, access or process our data or provide a critical service.Key ResponsibilitiesExpertise in IT risk...


  • Welwyn Garden City, Hertfordshire, United Kingdom Lacuna Talent Full time

    We are working exclusively with a global client who is expanding their in-house Information Security team. The team is seeking a Senior TPRM Manager to join their ranks.This role is ideal for someone with prior experience in providing assurance to the company and assessing security risk, Third Party Risk, and Supply Chain Risk.Ongoing quality assurance work...


  • Welwyn Garden City, Hertfordshire, United Kingdom Lacuna Talent Full time

    We are working exclusively with a global client who is expanding their in-house Information Security team. The team is seeking a Senior TPRM Manager to join their ranks.This role is ideal for someone with prior experience in providing assurance to the company and assessing security risk, Third Party Risk, and Supply Chain Risk.Ongoing quality assurance work...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the RoleWe're committed to creating a workplace where everyone truly feels able to be themselves. At Tesco, we not only celebrate diversity, but recognise the value and opportunity it brings. We're proud to have an inclusive culture where differences are valued, and make sure that all colleagues are given the same opportunities.Key ResponsibilitiesWork...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the RoleWe're committed to creating a workplace where everyone truly feels able to be themselves. At Tesco, we not only celebrate diversity, but recognise the value and opportunity it brings. We're proud to have an inclusive culture where differences are valued, and make sure that all colleagues are given the same opportunities.Key ResponsibilitiesWork...


  • Welwyn Garden City, Hertfordshire, United Kingdom Lacuna Talent Full time

    Senior Third Party Risk ManagerWe are working exclusively with a global client to build their in-house Information Security team, and we are seeking a Senior TPRM Manager to join their team.This role would be ideal for someone with prior experience providing assurance and assessing security risk, Third Party Risk, and Supply Chain Risk.Key...


  • Welwyn Garden City, Hertfordshire, United Kingdom Lacuna Talent Full time

    Senior Third Party Risk ManagerWe are working exclusively with a global client to build their in-house Information Security team, and we are seeking a Senior TPRM Manager to join their team.This role would be ideal for someone with prior experience providing assurance and assessing security risk, Third Party Risk, and Supply Chain Risk.Key...


  • Welwyn Garden City, Hertfordshire, United Kingdom Ocado Group Full time

    About the RoleWe are seeking a highly skilled Product Compliance Specialist to join our team at Ocado Group. As a key member of our compliance team, you will be responsible for ensuring that all new products developed by Ocado and our external partners meet the required National and International standards, including any relevant third-party...


  • Welwyn Garden City, Hertfordshire, United Kingdom Ocado Group Full time

    About the RoleWe are seeking a highly skilled Product Compliance Specialist to join our team at Ocado Group. As a key member of our compliance team, you will be responsible for ensuring that all new products developed by Ocado and our external partners meet the required National and International standards, including any relevant third-party...