Position Purpose
The
3rd Party Cyber Risk Analyst
works closely with the 3rd Party Cyber Security Manager, is responsible for implementing the Supplier cyber risk assessment and cyber risk finding workflows, and actively advising Supply Chain (P&SC) and Business owner on Supplier cyber security vulnerabilities and issues.
This position requires a self-driven individual, with sound knowledge of business processes, a thorough knowledge of security technologies or supplier management and good communication skills.
The 3rd Party Cyber Risk Coordinator will need to work with the P&SC Organization along with the Cyber and IT organization in an effort to evaluate our Suppliers and manage the potential risk to SLB through the supplier cyber risk assessment program.
This position offers an opportunity to make a strong impact across a company committed to its employees and customers.
Key Responsibilities
Follow and enforce processes to ensure compliance with the supplier cyber risk program
Supplier Management Procedure Tier III
Sourcing Guidelines
Funnel high and medium inherent cyber risk rated suppliers into cyber risk assessment workflow
Manage Suppliers cyber risk assessments workflow
Engage with Supplier Manager to kick off Supplier cyber assessment and provide
Close assessment process and follow up on resulted actions
Provide supplier cyber security vulnerability awareness to Supply Chain and Business owner
Qualifications
Education and Experience
Education: A Bachelor of Science degree from an accredited university in the area of engineering, computer science or computer information systems is strongly preferred; equivalent work experience may be considered.
Experience: Minimum of five years of experience within one or more of the following areas of integrating security into the business, security risk management, information processes, product security, business architecture positions, supplier management.
Additional: Applicant must have a valid work permit.
Professional supplier Management or Professional security management certification, such as a Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) or other similar credentials would be a strong plus
General Requirements:
Education and Experience
Education: A Bachelor of Science degree from an accredited university in the area of engineering, computer science or computer information systems is strongly preferred; equivalent work experience may be considered.
Experience: Minimum of five years of experience within one or more of the following areas of integrating security into the business, security risk management, information processes, product security, business architecture positions, supplier management.
Additional: Applicant must have a valid work permit.
Professional supplier Management or Professional security management certification, such as a Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) or other similar credentials would be a strong plus