Third Party Security Risk Analyst

4 weeks ago


Sydney, Australia UpGuard Full time

**Who are we?**
- UpGuard’s mission is to protect the world’s data. We obsessively seek out elegant, robust ways to enable our customers to find, acknowledge, and remediate cyber risk. With UpGuard, organizations leverage our security expertise and software to automate what was once laborious, spreadsheet-driven processes-whether it's monitoring the attack surface of hundreds of vendors or assessing the security of their own infrastructure. UpGuard is used by some of the world’s largest, fastest-growing, and most innovative companies.

Our Product team at UpGuard comprises of our Product Management, Product Support, Engineering, Design, Data Leaks Detection, and Third Party Risk Management Services. Our Product team’s vision is to become the leader in the Cyber VRM category by providing a best-in-class SaaS platform for organizations to manage their third-party risk and external attack surface. Our purpose as a Product team is simply to build a product that enables this. We aim to build a product that users love and come to rely on, and one that regularly and consistently improves.

**Why are we hiring this role?**

We have successfully implemented third party security managed services for our customers and are looking to scale these efforts therefore need to scale the team

**In this role you will**:

- Translate complex and technical aspects into a report so that the business can understand it.
- Partner with customers to identify, measure and manage Third Party risks and controls.
- Assist with standardised reports, templates and scorecards used to inform customers on third party risks.
- Work closely with various teams including, sales and customer success to understand the changing needs of our customers.
- Develop and maintain working knowledge of emerging financial, operational, third party and regulatory/compliance related information to contribute to the continuous improvement of the Third Party risk management offering.

**What do we need from you**:

- Strong knowledge of relevant security frameworks, standards, US requirements, US laws e.g. ISO 27001, PCI DSS, NIST CSF, HIPAA etc.
- Thorough understanding of cybersecurity risk management.
- 2-3+ years of experience in Risk Management, Third Party Risk, Auditing, Consulting or the equivalent.
- Understanding of Third Party risk management practices, including the lifecycle of risk identification, treatment, mitigation, acceptance, remediation as well as inherent and residual risks.
- Have a track record of mastering highly technical problem spaces.
- Possess strong written and verbal communication skills, with a talent for precise articulations of customer problems.
- Customer Service experience for managing customer relationships.

**What would give you an edge**:

- Bachelor Degree in the fields of Information Technology or Systems or related major.
- Any relevant professional certification, such as Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Control (CRISC), Certified Regulatory Vendor Program Manager (CRVPM) or Certified Third Party Risk Professional (CTPRP).
- Performed data leaks assessments.
- Experience in managing customer expectations.
- Experience in performing Third Party Security Risk Assessments.
- Experience or a keen interest in cybersecurity.

**What's in it for you?**:

- ** Hybrid or Remote**: you choose. While we have offices in Sydney & Hobart, we don’t mandate how often you need to be there. We focus on what you deliver, not where you deliver it from.
- ** Impact**: Influence the direction and design of projects that push the boundaries of your field and see the impact of your work daily.
- ** Be part of an energetic team**: Our team is highly collaborative, fostering a positive work environment that encourages creativity and innovation.
- ** We value work-life balance**: We recognize the importance of maintaining balance and provide a supportive work environment that allows you to prioritize your personal life and well-being.
- ** Generous reward**: We offer a competitive salary + equity
- ** Great perks**: You won’t find table tennis tables or office mandates - we prefer to offer perks that support your overall well-being - including a lifestyle allowance, well-being program, WFH budget, personal learning & development budget, generous leave benefits, and plenty more

As an Equal Employment Opportunity and Affirmative Action Employer, qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, or disability status.



  • Sydney, Australia TAL Full time

    **Company Description** - We’re passionate about internal career moves for our people. - Trusted by 4.5 million Australians, we’ve been protecting Australians for 150 years - We’re growing and investing in our future Welcome to This Australian Life. From the millions of Australians we protect, to those that make it happen every day at TAL, people...


  • Sydney, New South Wales, Australia TAL Full time

    Job DescriptionThis role plays a critical part in ensuring that TAL's third-party technology and cyber risk management practices are aligned with our overall business strategy and objectives.The successful candidate will be responsible for conducting risk assessments, due diligence, and compliance reviews on potential and existing third-parties to identify...


  • Sydney, Australia Chubb Full time

    You will be accountable for effectively managing third party relationships in accordance with the standards defined within Chubb’s Third-Party Provider Policy (TPPP) and Third-Party Risk Management (TPRM), as well as creating, implementing, and managing the processes, workflows, governance model and technology platform components that comprise the TPRM...


  • Sydney, Australia NSW Government -Engineering & Maintenance Full time

    **About us** At Sydney Trains our vision is to keep Sydney moving by putting the customer at the centre of everything we do. We work at the heart of local communities and integrate cutting edge technology to deliver efficient rail services which exceed expectations and support a rapidly growing economy. Sydney Trains also operate the Rail Operations Centre...


  • Sydney, Australia NSW Government -Engineering & Maintenance Full time

    **About us** At Sydney Trains our vision is to keep Sydney moving by putting the customer at the centre of everything we do. We work at the heart of local communities and integrate cutting edge technology to deliver efficient rail services which exceed expectations and support a rapidly growing economy. Sydney Trains also operate the Rail Operations Centre...


  • Sydney, Australia ING Full time

    ING, Australia’s most recommended bank for the 5th consecutive year, is on the hunt for an experienced Third Party Risk Manager to join our high performing Business Controls, Third Party Risk team in a permanent role based in Sydney. As our Third Party Risk Manager, you’ll be a generalist risk manager who can assist with performing risk assessments and...


  • Sydney, Australia ING Full time

    ING, Australia’s most recommended bank for the 5th consecutive year, is on the hunt for an experienced **Third Party Risk Manager **to join our high performing **Business Controls, Third Party Risk** team in a **permanent **role** **based in **Sydney.** As our Third Party Risk Manager, you’ll be a generalist risk manager who can assist with performing...


  • Sydney, Australia ING Bank N.V. Full time

    ING, Australia’s most recommended bank for the 5th consecutive year, is on the hunt for an experienced Third Party Risk Manager to join our high performing Business Controls team in a permanent role based in Sydney. As our Third Party Risk Manager, you’ll be a generalist risk manager who can assist with performing risk assessments and risk profiles. with...


  • Sydney Inner Suburbs, Australia Suncorp Group Full time

    **Brisbane OR Sydney** - **Play a key role in establishing this new team within a leading Australian Insurer**: - **Wide reaching role supporting a regulatory standard**: - **Collaborative and supportive team environment, hybrid working** We’re never just satisfied with how things are - because we know how things could be. And it’s our expert...


  • Sydney, Australia Westpac Banking Corporation Full time

    Information Security Consultant - Third Party Governance **How will I help?** We are seeking a highly skilled and detail-oriented Information Security Consultant who will play an integral role in advising business and GroupTech units in Information Security, so as to facilitate compliance with the Westpac Group information security framework and target...


  • Sydney Inner Suburbs, Australia Suncorp Group Full time

    **Brisbane OR Sydney** - **Newly formed team, opportunity to make your mark**: - **Wide reaching role supporting a regulatory standard**: - **Collaborative and supportive team environment, hybrid working** We’re never just satisfied with how things are - because we know how things could be. And it’s our expert Technology team who forge ahead every day...


  • Sydney, Australia The Star Entertainment Group Full time

    The Star Entertainment Group (TSEG) is a publicly listed company on the ASX. Our purpose is to create fun at trusted destinations and our aim is to deliver sustainable outcomes for our guests, our Team Members, the communities in which we exist and our shareholders. We do this by providing entertainment, gaming, and leisure experiences in a safe,...

  • Risk Advisor

    4 weeks ago


    Sydney, Australia Reserve Bank of Australia Full time

    More change, less static You will join a team of Risk Management specialists in the Operational and Strategic Risk team as part of the Risk Management and Compliance Department at the RBA. As a Risk Advisor for Third Party Risk, you will provide Line 2 risk and controls assurance support in Third-Party / Vendor Risk Management. You will engage business...


  • Sydney, Australia QBE Full time

    Primary Details Time Type: Full time Worker Type: Employee- Location: Sydney- Type: Permanent, full time- Hybrid role, Happy to talk flexible working The opportunity Our Group Third Party Risk team (a line 1 function) is responsible for the overall governance and management framework for third parties at an enterprise level, including setting policies...


  • Sydney, Australia HSBC Full time

    **_Some career choices have more impact than others._** - At HSBC we exist with the purpose of Opening up a World of Opportunity. We use our unique expertise, capabilities, breadth and perspectives to provide opportunities for our customers and colleagues through global connectivity. We bring together the people, ideas and capital that nurture progress and...


  • Sydney, Australia Royal Bank of Canada Full time

    Associate Director, APAC Third Party Risk **Job Summary** **What is the Opportunity?** The GRM Third Party Risk (TPR) team is accountable for RBC's enterprise wide Third Party Risk management (TPRM) strategy and framework, enabling RBC to identify, measure, monitor, and mitigate the risks associated with third parties. TPR works with Senior Management...


  • Sydney, Australia Commonwealth Bank Full time

    **Manager, Third Party Cyber Incident Response** **See yourself in our team**: Cyber Security protects the bank and our customers from theft, loss and risk events, through effective and proactive management of cyber security, privacy, fraud, physical security and operational risk. **Do work that matters**: The Third Party Cyber Incident Management team...


  • Sydney, Australia Bluefin Resources Full time

    **Third Party Risk Manager. Sydney based. Flexible working between WFH/Office.**: - **Global Brand and well-respected team and division. Up to $140k package + Bonus + Company Benefits.**: - **Work for a global firm with offices in over 150+ countries - Overseas & Interstate working encouraged.** **Overview**: Leading global brand is looking for an...


  • Sydney Inner Suburbs, Australia Suncorp Group Full time

    **Brisbane OR Sydney** - **Newly formed team, collaborative and supportive team environment**: - **Great opportunity to gain exposure to a new regulatory standard - CPS230**: - **6-month fixed term contract, hybrid working** We’re never just satisfied with how things are - because we know how things could be. And it’s our expert teams who forge ahead...

  • Risk Strategy

    3 weeks ago


    Sydney, Australia KPMGau Full time

    **Job Description **Our Risk Strategy & Technology team is dedicated to helping clients achieve commercial outcomes by viewing risk management as a lever for enhanced innovation, reputation, and sustainable growth. Our areas of expertise include Risk Strategy - understanding risk capacity to inform strategic direction and decision-making, Governance -...