Information Security Vendor Assessor

17 hours ago


Chester, Cheshire, United Kingdom Bank of America Full time
Role Summary:

We are seeking an experienced Cyber Risk Security Specialist to join our team. In this role, you'll be responsible for conducting security reviews of third-party vendors, including pre-assessment, assessment, and remediation activities. The ideal candidate will have a strong background in IT, information security, and business continuity, with excellent analytical and problem-solving skills.

The estimated annual salary for this position is £65,000 - £80,000 depending on experience, with a comprehensive benefits package including private healthcare, competitive pension plan, life assurance, group income protection, and 20 days back-up childcare.

Your Key Responsibilities:

As a Cyber Risk Security Specialist, you'll be responsible for:
  • Validating assessment scope.
  • Partnering with vendor managers and third parties to answer detailed questions.
  • Preparing them for assessment.
  • Collecting and reviewing documentation.
  • Evaluating a third party's information security risk with a holistic lens.
  • Identifying and discussing any information security gaps in the service provider's program with the third party.
  • Determining if appropriate information security controls are in place.
  • Escalating security issues or risks identified during the assessment.
  • Completing assessment work papers.
  • Producing assessment summary reports detailing the gaps identified and the potential impact and recommendations for mitigating the risk.
Key Skills and Qualifications:

To be successful in this role, you'll need:
  • A broad knowledge of IT, information security, and business continuity principles and concepts.
  • Technical knowledge of a wide range of information security controls and the processes used for evaluating their design and effectiveness.
  • A technical background in IT and networks having worked in a technical area and gained a deep understanding of the technology.
  • A good understanding of cyber risks and controls and how they relate to current and emerging technologies.
  • Critical Thinking skills - Ability to analyse complex security challenges and devise effective solutions.
  • Problem Solving abilities- Proactive approach to addressing security issues and vulnerabilities.
  • Technology System Assessment - Previous involvement in evaluating third-party systems for security risks.
  • Customer and Client Focus - Ability to understand stakeholder needs and provide relevant security guidance.
  • An ambassador for Bank of America always presenting a professional demeanour to external parties especially when faced with challenging situations.
  • Effective Oral Communication skills - Articulating security findings and recommendations clearly to technical and non-technical audiences.
  • Vendor Management experience - Coordinating security assessments with external vendors.
  • Ability to work independently and able to prioritise conflicting tasks.
  • Flexibility and the ability to adapt easily and quickly to new and changed processes.
  • Understanding of System Architecture - Awareness of how system architecture impacts security.
  • Consulting skills - Providing advice on security best practice.


  • Chester, Cheshire, United Kingdom Bank of America Full time

    About the Role:This critical position requires a highly skilled Information Security Professional to join our team at Bank of America. As a Third Party Assurance Expert, you will be responsible for evaluating and mitigating information security risks associated with third-party vendors.Responsibilities:- Evaluate third-party information security risks using...


  • Chester, Cheshire, United Kingdom Bank of America Full time

    Job Overview: We are seeking an experienced Cyber Security Pre-Assessor to join our team. In this role, you will be responsible for performing comprehensive assessments of third-party vendors to ensure they meet Bank of America's security requirements. You will work closely with various teams, including EVMs, application managers, and line of business...


  • Chester, Cheshire, United Kingdom Bank of America Full time

    About the Job: The Third-Party Cyber Security Pre-Assessor is responsible for conducting thorough assessments of third-party vendors to ensure their services align with Bank of America's security standards. Your duties will involve collaborating with various stakeholders, including EVMs, application managers, and line of business owners, to gather...


  • Chester, Cheshire, United Kingdom Bank of America Full time

    Job Title: Third Party Assessment Pre-Assessor.About the Role: As a Cyber Security Pre-Assessor, you will be responsible for ensuring that third-party assessments performed in EMEA are of the correct type and scope for the services provided and the level of risk that each third party presents to Bank of America. This role requires liaising with enterprise...


  • Chester, Cheshire, United Kingdom Bank of America Full time

    Job Description:The Third Party Cyber Risk Assessor role at Bank of America requires a highly skilled professional to evaluate and mitigate information security risks associated with third-party vendors. This involves conducting thorough risk assessments, identifying potential security issues, and providing recommendations for mitigation.Key...


  • Chester, Cheshire, United Kingdom GBG Full time

    About the RoleWe are seeking an experienced Information Security Risk Manager to join our team at GBG. As a key member of our Information Security team, you will play a critical role in supporting the delivery of our information security strategy.Key ResponsibilitiesSupport the implementation of our information security risk programme to ensure minimal risk...


  • Chester, Cheshire, United Kingdom Maximus Full time

    As a Paramedic Functional Assessor at Maximus, you will play a vital role in helping people with disabilities or health conditions receive the benefits they deserve. This challenging and rewarding position requires a clinical responder with a strong ability to understand how an individual's condition affects their daily life.About the RoleYou will conduct...


  • Chester, Cheshire, United Kingdom Michael Page Full time

    Job OverviewWe are seeking a highly skilled Information Security Risk Management Specialist to join our team at Michael Page. This role will play a key part in supporting the Information Security Risk program, ensuring it is effectively implemented to protect the organisation, its customers, and stakeholders.


  • Chester, Cheshire, United Kingdom Michael Page Full time

    Key ResponsibilitiesContribute to the development and implementation of the information security risk management framework.Oversee and update the information security risk register to ensure compliance with policy.Collaborate with business leaders to manage risks in accordance with policy.You will also be responsible for conducting risk assessments for new...


  • Chester, Cheshire, United Kingdom Maximus Full time

    Physiotherapist Functional AssessorMaximus is seeking a skilled Physiotherapist to join our team as a Functional Assessor. In this role, you will use your clinical expertise to assess individuals who have been referred to us by the Department for Work and Pensions (DWP).Conducting thorough assessments of individuals' abilities and limitations.Producing...


  • Chester, Cheshire, United Kingdom Bank of America Full time

    Job Title: IT Assurance ConsultantCorporate Title: Up to Vice PresidentLocation: ChesterBecome an integral part of our team at Bank of America as a Risk Management Specialist. In this role, you will be responsible for evaluating third-party information security risk with a holistic lens, escalating security issues or risks identified during the assessment....


  • Chester, Cheshire, United Kingdom Impact Services (Northern) Limited Full time

    We are seeking a highly experienced and skilled Senior Security Operations Manager to join our team at Impact Services (Northern) Limited. This is a rolling 12-hour shift rota position, with three days on, three nights on, and four days off.As a Senior Security Operations Manager, you will be responsible for ensuring the smooth operation of our security...


  • Chester, Cheshire, United Kingdom Bank of America Full time

    Job Title: Cyber Security EvaluatorCorporate Title: Up to Vice PresidentLocation: ChesterWe are seeking a talented IT Assurance Consultant to join our team at Bank of America. As a Third Party Cyber Risk Assessor, you will be responsible for evaluating third-party systems for security risks and producing assessment summary reports detailing gaps identified...


  • Chester, Cheshire, United Kingdom HCA Healthcare UK Full time

    Job DescriptionThe Display Screen Equipment (DSE)/Workstation Assessor is an essential service in the occupational health team. Key responsibilities include producing concise and accurate reports for clients, experience of producing accurate statistics for finance team for invoicing, and providing guidance and leadership to the DSE team.A key aspect of this...


  • Chester, Cheshire, United Kingdom Maven Consulting Group Ltd Full time

    Role OverviewThe Disability Assessor role involves conducting thorough assessments to understand how a person's disability or health condition affects their daily life. You will gather information through telephone, video, or face-to-face interactions and use your insights to produce factual reports.This is an exceptional opportunity to work with a...


  • Chester, Cheshire, United Kingdom Weston Solutions Full time

    Key ResponsibilitiesManage critical databases for financials, vendors, and project closeout information.Process subcontractor invoices and manage Weston reports.Track and communicate updates on monthly invoices, payment, and expense reporting.Meet Weston EHS program certifications and educational training requirements.The estimated salary for this position...


  • Chester, Cheshire, United Kingdom GBG Plc Full time

    About GBG PlcGBG Plc is a leading provider of identity, risk and compliance solutions. Our innovative technology helps businesses grow by giving them intelligence to make the best decisions about their customers.We power over 20,000 of the world's best-known organisations to reach and trust their customers.Job SummaryThis role is a hybrid position that...


  • Chester, Cheshire, United Kingdom Michael Page International Full time

    This is a unique opportunity to take on a key role in supporting the Information Security Risk program at Michael Page International, ensuring effective implementation to protect the organisation and its stakeholders. Reporting directly to the Head of Information Security GRC, this hybrid position requires a strong understanding of advanced global...


  • Chester, Cheshire, United Kingdom CAF Rail UK Ltd Full time

    About the RoleThe Training & Competence Lead will be part of a dynamic team at CAF Rail UK Ltd to support the development and delivery of comprehensive training and competency standard compliance, primarily for the Transport For Wales project and CAF Rail UK operations as required.This role is responsible for supporting the development of assessment plans...


  • Chester, Cheshire, United Kingdom Michael Page Full time

    About the RoleThis Senior IT Risk and Compliance Professional position involves contributing to the execution of the information security strategy, including advanced global projects. You will report to the Head of Information Security GRC and work on-site in Chester for 2 days a week.