/ Schweiz Verzeichnis von Stellenangeboten
FR DE
Zurück zu den Stellenangeboten

TPRM Security Assessor

Red Commerce Schweiz GmbH Eastern Europe, Poland 30.09.2026 Bewerbung einreichen
Unternehmen
Red Commerce Schweiz GmbH
Ort
Eastern Europe, Poland
Datum
30.09.2026
Referenznummer
360424

Global Security Team Opportunity

Join a global security team to assess and manage the cybersecurity risks associated with third-party vendors and suppliers. This role is ideal for professionals with a background in Third-Party Risk Management, Information Security, Cybersecurity Risk, IT Audit, or GRC who enjoy assessing security controls and collaborating with both technical and business stakeholders.

Key Responsibilities

  • Conduct third-party and vendor security assessments and due diligence
  • Review vendor security questionnaires and supporting evidence
  • Assess supplier controls across areas including:
    • Access Management
    • Vulnerability Management
    • Incident Response
    • Business Continuity
    • Security Monitoring
    • Data Protection
  • Review security assurance documentation such as SOC 2, ISO 27001, CAIQ, and SIG
  • Identify security gaps, risks, and control weaknesses
  • Document assessment findings and support risk remediation
  • Communicate findings and requirements clearly to vendors and internal stakeholders
  • Work closely with Security, Risk, Procurement, Legal, and other business teams
  • Support ongoing vendor reassessments and third-party risk activities

Requirements

  • 2+ years of experience in TPRM, Information Security, Cybersecurity Risk Management, IT Audit, or GRC
  • Hands-on experience conducting vendor and supplier security assessments
  • Good understanding of cybersecurity controls and risk management
  • Experience reviewing security questionnaires and assurance reports
  • Knowledge of SOC 2, ISO 27001, CAIQ, and/or SIG
  • Strong analytical, written, and verbal communication skills
  • Strong stakeholder management skills
  • Ability to assess security risks and clearly communicate findings to technical and non-technical audiences

Desirable Certifications

  • CRISC
  • CISA
  • CISSP
  • ISO 27001 Lead Auditor
  • CTPRP

Location

Poland, with Warsaw preferred

Bewerbung einreichen

Akzeptierte Formate: PDF, Word, RTF oder ODT. Maximale Größe: 3 MB.

Ähnliche Stellenangebote

Alle Stelleangebote anzeigen