
Vendor Risk Consultant
3 weeks ago
Join to apply for the Vendor Risk Consultant role at SecurityScorecard
SecurityScorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated, operating in 64 countries. Founded in 2013 by security and risk experts Dr. Alex Yampolskiy and Sam Kassoumeh and funded by world-class investors, SecurityScorecard's patented rating technology is used by over 25,000 organizations for self-monitoring, third-party risk management, board reporting, and cyber insurance underwriting; making all organizations more resilient by allowing them to easily find and fix cybersecurity risks across their digital footprint.
Headquartered in New York City, our culture has been recognized by Inc Magazine as a "Best Workplace," by Crain's NY as a "Best Places to Work in NYC," and as one of the 10 hottest SaaS startups in New York for two years in a row. Most recently, SecurityScorecard was named to Fast Company's annual list of the World's Most Innovative Companies for 2023 and to the Achievers 50 Most Engaged Workplaces in 2023 award recognizing "forward-thinking employers for their unwavering commitment to employee engagement." SecurityScorecard is proud to be funded by world-class investors including Silver Lake Waterman, Moody's, Sequoia Capital, GV and Riverwood Capital.
About the RoleSecurityScorecard's MAX team delivers vendor risk management services on behalf of customers. Our MAX team is growing and we are seeking a Vendor Risk Consultant to join our team and help us manage and mitigate cyber risks associated with our customers' vendors. This is an exciting opportunity to work alongside some of the largest companies in the world and make a significant impact on their business by ensuring that their information is held securely by their vendors.
What You'll Do- Assess and Reduce Risk: Conduct cybersecurity risk assessments on potential and existing vendors within MAX customer portfolios to identify and reduce business risks.
- Advise Stakeholders: Serve as a trusted advisor to both customers and their vendors, translating technical risk findings into clear business impacts and risk management actions.
- Apply Threat Intelligence: Leverage SecurityScorecard's proprietary findings and all-source threat intelligence to assess emerging risks, advise vendors on impacts, and guide remediation.
- Build and Maintain Relationships: Foster trust with both customers and vendors as you help each understand risks, ensure ongoing compliance with requirements, and prevent incidents.
- Enhance Customer Risk Programs: Evaluate the maturity of vendor risk management programs and recommend improvements to strengthen governance and operational processes.
- Monitor & Elevate Vendor Security: Track and report on vendor risk profiles, proactively identifying trends, emerging threats, and opportunities for program improvement.
- Manage Multiple Engagements: Orchestrate concurrent client programs, ensuring consistent delivery excellence, measurable results, and alignment with regulatory and industry standards.
- Experience: 5+ years of demonstrated professional cybersecurity consulting experience or similar.
- Communications Skills: Outstanding ability to explain complex cybersecurity and vendor risk concepts to a range of technical and non-technical audiences, in both written and verbal form.
- Cybersecurity Expertise: Strong comprehension and ability to apply cybersecurity concepts, frameworks, technologies, controls, threat knowledge, and best practices to vendor risk.
- Analytical Skills: Proficiency in common scripting languages (Python preferred) and/or Microsoft Excel (or equivalent) to analyze complex data, build trends, and spot patterns.
- Client & Program Management: Demonstrated success managing multiple external clients and projects simultaneously, prioritizing competing demands, and meeting deadlines.
- Solo and Team Excellence: Ability to thrive in fast-paced independent and collaborative settings.
- Desired Certifications (One or More Completed): CRISC, CISSP, CISM, CISA, GSTRT, GCCC, GSLC, or GSNA. CRVPM, CTPRP, ISO 27001 Lead Auditor or technical certs are also a plus.
- Languages: English (fluent). Other regional languages are a plus.
- Other Desired Experience: Experience conducting cybersecurity audits, vendor risk assessments or broader vendor risk management.
Specific to each country, we offer a competitive salary, stock options, Health benefits, and unlimited PTO, parental leave, tuition reimbursements, and much more
The estimated total compensation range for this position is $120,000 - $150,000 (base plus bonus). Actual compensation for the position is based on a variety of factors, including, but not limited to affordability, skills, qualifications and experience, and may vary from the range. In addition to base salary, employees may also be eligible for annual performance-based incentive compensation awards and equity, among other company benefits.
Equal Employment Opportunity and PrivacySecurityScorecard is committed to Equal Employment Opportunity and embraces diversity. We believe that our team is strengthened through hiring and retaining employees with diverse backgrounds, skill sets, ideas, and perspectives. We make hiring decisions based on merit and do not discriminate based on race, color, religion, national origin, sex or gender (including pregnancy) gender identity or expression (including transgender status), sexual orientation, age, marital, veteran, disability status or any other protected category in accordance with applicable law.
We also consider qualified applicants regardless of criminal histories, in accordance with applicable law. We are committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or accommodation due to a disability, please contact
Any information you submit to SecurityScorecard as part of your application will be processed in accordance with the Company's privacy policy and applicable law.
SecurityScorecard does not accept unsolicited resumes from employment agencies. Please note that we do not provide immigration sponsorship for this position.
Details- Seniority level: Mid-Senior level
- Employment type: Full-time
- Job function: Consulting and Information Technology
- Industries: Data Security Software Products, Computer and Network Security, and Technology, Information and Media
Referrals increase your chances of interviewing at SecurityScorecard by 2x
Get notified about new Risk Consultant jobs in Greater Sydney Area.
Sydney, New South Wales, Australia 2 days ago
#J-18808-Ljbffr
-
Vendor Risk Consultant
3 weeks ago
Sydney, New South Wales, Australia SecurityScorecard Full timeJoin to apply for the Vendor Risk Consultant role at SecurityScorecardSecurityScorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated, operating in 64 countries. Founded in 2013 by security and risk experts Dr. Alex Yampolskiy and Sam Kassoumeh and funded by world-class investors, SecurityScorecard's...
-
Vendor Risk Consultant
3 weeks ago
Sydney, New South Wales, Australia SecurityScorecard Full timeJoin to apply for the Vendor Risk Consultant role at Security Scorecard Security Scorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated, operating in 64 countries.Founded in 2013 by security and risk experts Dr.Alex Yampolskiy and Sam Kassoumeh and funded by world-class investors, Security Scorecard's...
-
Vendor Risk Professional
2 weeks ago
Sydney, New South Wales, Australia beBeeCybersecurity Full time $120,000 - $150,000About the JobWe are looking for an experienced professional to assess and reduce risk, advise stakeholders, apply threat intelligence, and build relationships with our customers and their vendors.Main Responsibilities:Conduct cybersecurity risk assessments on potential and existing vendors within customer portfolios to identify and reduce business...
-
Senior Vendor Risk Manager
1 week ago
Sydney, New South Wales, Australia beBeeCybersecurity Full time $120,000 - $150,000Job Title:Vendor Risk Management ProfessionalWe are seeking a skilled Vendor Risk Management Professional to join our organization and play a critical role in mitigating cyber risks associated with our vendors. This is an exciting opportunity to work with some of the largest companies in the world and make a significant impact on their business by ensuring...
-
Expert Vendor Risk Manager
1 week ago
Sydney, New South Wales, Australia beBeeCybersecurity Full time US$120,000 - US$150,000Vendor Risk Management ExpertWe are seeking a highly skilled Vendor Risk Management Expert to join our team. This role involves conducting cybersecurity risk assessments on potential and existing vendors within customer portfolios.Main Responsibilities:Conduct in-depth risk assessments on vendors, identifying potential security threats and...
-
Cybersecurity Vendor Risk Specialist
2 weeks ago
Sydney, New South Wales, Australia beBeeRisk Full time US$120,000 - US$150,000Vendor Risk ManagerWe are seeking a highly skilled Vendor Risk Manager to join our team. This individual will be responsible for assessing and reducing risk associated with vendors, advising stakeholders on technical risk findings, and applying threat intelligence to identify emerging risks.The ideal candidate will have excellent communication skills, the...
-
Cyber Risk Consultant
2 weeks ago
Sydney, New South Wales, Australia beBeeCybersecurity Full time US$120,000 - US$150,000Job DescriptionAs a cybersecurity risk consultant, you will be responsible for assessing and mitigating cyber risks associated with vendors. Your primary goal will be to identify and reduce business risks associated with vendors.This role involves working closely with customers and their vendors to conduct thorough risk assessments and provide actionable...
-
Risk Consultant
2 weeks ago
Sydney, New South Wales, Australia beBeeRisk Full time $160,000 - $220,000Enterprise Risk Management Professional">Job Description">As an Enterprise Risk Management (ERM) professional, you will play a vital role in supporting leading organisations in the public and private sector across various engagements. Your primary responsibility will be to deliver resilience and security-focused services for large and complex projects.Key...
-
Chief Vendor Risk Officer
1 week ago
Sydney, New South Wales, Australia beBeeRisk Full time $10,400 - $130,878Third Party Risk Management RoleOur company is seeking a skilled Third Party Risk Management Specialist to join our team.The successful candidate will be responsible for ensuring the effective management of risks associated with third-party relationships. This involves conducting thorough risk assessments, continuous monitoring, and ensuring compliance with...
-
Risk Consultant
2 weeks ago
Sydney, New South Wales, Australia Protecht Group Full timeProtecht is redefining the way the world thinks about risk.Our cloud-based SaaS platform - Protecht.ERM - is what makes us really stand out. It's one of the most comprehensive, flexible and dynamic risk management solutions available today.**Join us at Protecht**We are seeking an exceptional **Risk Consultant** professional with a commercial focus with deep...