Global Cyber Security Risk Management Lead

4 weeks ago


Johannesburg, Gauteng, South Africa Dentons Full time

Why Dentons?

Dentons is a global law firm that values innovation and collaboration. We are driven to provide holistic business solutions to our clients, and our diverse team of professionals is key to achieving this goal.

Role Overview

The Global Third-Party Security Review Lead will be responsible for conducting third-party vendor security assessments and managing supply chain threats from a cyber security perspective. This role will involve assessing, tracking, measuring, and reporting third-party cyber risk across the global organization.

Key Responsibilities

  • Lead the third-party cyber risk management lifecycle, from executing onboarding security reviews to the offboarding of vendors.
  • Develop an annual calendar of third-party re-assessment cyber security reviews on cyber risk presented to the organization.
  • Define and introduce into production required third-party security assessments based on services consumed by the organization that will complement current security assessments.
  • Identify and create appropriate cyber security risk MI across the third-party vendor estate.
  • Identify and implement improvements in current third-party processes and procedures.
  • Conduct third-party cyber security assessments and identify controls to mitigate cyber risks to the organizations cyber security posture from vendor relationships.
  • Follow established third-party cyber security risk management program guidelines to complete the onboarding of third-party vendors.
  • Collaborate with internal business teams and various risk/compliance subject matter experts to address and/or mitigate identified or potential cyber security risks.
  • Collaborate with various stakeholder teams to identify and communicate cyber security risk from third-party relationships and drive residual risk to acceptable levels.
  • Conduct reviews of IS clauses included in third-party contracts to help strengthen legal security posture for the organization.
  • Design and deliver training and education of staff in third-party risk management processes as needed.
  • Complete tasks with minimal supervision, in a collaborative, supportive environment.
  • Perform other cyber security risk duties as needed.
  • Lead the third-party cyber risk team members.
  • Supervise and manage junior team members.

Requirements

Technical Skills

  • Skilled in the use of Microsoft Office suite.
  • Fluent in English language – written and verbal.

Personal Skills and Attributes

  • Strong troubleshooting, reasoning, and problem-solving skills.
  • The ability to pick up and quickly understand new concepts and technology.
  • Critical thinking and analytical decision making to discover issues and risks pertaining to third-party risk management.
  • Team-oriented and skilled in working within a collaborative environment.
  • Ability to effectively multi-task, prioritize and execute tasks.
  • Ability to work independently and collaborate with geographically dispersed teams.
  • A strong work ethic and passion for finding answers.
  • Strong Client relationships building skills.
  • Stay current with industry trends in third-party and cyber security risk.
  • Excellent written and verbal communication, interpersonal and intercultural skills.

Education, Experience & Certifications

  • A bachelor's degree from an accredited college or university.
  • At least 3- 5 years' management experience.
  • 5+ years' experience as a skilled practitioner in third-party or cyber/IS Risk Management.
  • Skilled practitioner in identifying cyber security risks in cloud services and providing mitigating controls.
  • Skilled practitioner in the mitigation and/or remediation of cybersecurity vulnerabilities.
  • Strong practitioner knowledge of third-party risk strategies and best practices.
  • Relevant industry certifications e.g., CRISC, CISM, CISA, ISO/IEC 27001 Lead Auditor.
  • Working knowledge and experience with industry standards and best practice including the ISO/IEC 27001, ISO/IEC 27017, ISO/IEC 27018 and NIST Cybersecurity Framework.

Language Capabilities/International Experience

We are a truly global law firm and as such, always welcome hearing from those with foreign language capabilities. Additionally, we would be delighted to hear from candidates with a global background including professional experience gained across different geographies.

Benefits

Work from home.



  • Johannesburg, Gauteng, South Africa Dentons Full time

    {"title": "Cyber Security Risk Management Lead", "subtitle": "Join Dentons", "content": "Dentons is a global law firm that values innovation and collaboration. We are seeking a skilled Cyber Security Risk Management Lead to join our team.The successful candidate will be responsible for conducting third-party vendor security assessments and managing supply...


  • Johannesburg, Gauteng, South Africa Dentons Full time

    Job Title: Global Third-Party Security Review LeadAbout DentonsDentons is a global law firm that is designed to be different. We are driven to always be the firm of the future, to challenge the status quo, and to provide holistic business solutions to our clients in new and innovative ways. We are the lightbulb moments. The bold ideas. We are a team of...


  • Johannesburg, Gauteng, South Africa Dentons Full time

    Job Title: Global Third-Party Security Review LeadAbout Us:Dentons is a global law firm that values innovation, collaboration, and excellence. We are committed to providing holistic business solutions to our clients and fostering a culture of diversity, equity, and inclusion.Job Summary:We are seeking a highly skilled and experienced Global Third-Party...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Job SummaryWe are seeking a highly skilled Cyber Security Risk Manager to join our team at Nedbank. As a key member of our information security team, you will be responsible for implementing and executing our cyber resilience risk management framework.Key Responsibilities:Implement and maintain our cyber resilience risk management framework.Develop and...


  • Johannesburg, Gauteng, South Africa Dentons Full time

    WHY DENTONSDentons is committed to redefining the legal landscape. We strive to be the firm of the future, consistently challenging conventional norms while delivering comprehensive business solutions to our clients through innovative approaches. We embody creativity and boldness, standing as the world's largest global law firm with over 12,000 professionals...


  • Johannesburg, Gauteng, South Africa KPMG-SouthAfrica Full time

    Cyber Security Response LeadThe role of Cyber Security Response Lead at KPMG-SouthAfrica is a critical position within our cyber security team. The successful candidate will be responsible for managing engagement relating to cyber incident response. This includes assisting in building pipeline and leading business development activities for the service-line....


  • Johannesburg, Gauteng, South Africa KPMG-SouthAfrica Full time

    Cyber Incident Response Senior ManagerThe Cyber Incident Response Senior Manager will be part of the cyber security team and will be responsible for managing engagement relating to cyber incident response. This role requires a strong understanding of cyber security principles and practices, as well as excellent communication and interpersonal skills.Key...

  • Cyber Security Manager

    2 months ago


    Johannesburg, Gauteng, South Africa KPMG-SouthAfrica Full time

    Description of the Role and Purpose of the Job:The successful candidate will be part of the cyber security team and will be responsible for managing engagement relating to cyber incident response. This includes assisting in building pipeline and leading business development activities for the service-line, leading engagement on cyber incident response, and...

  • Cyber Security Manager

    2 months ago


    Johannesburg, Gauteng, South Africa KPMG-SouthAfrica Full time

    About the RoleWe are seeking a highly skilled and experienced Cyber Security Manager to join our team at KPMG-SouthAfrica. As a key member of our Cyber Security team, you will be responsible for managing engagement related to cyber incident response and providing leadership in building a pipeline and leading business development activities for the...


  • Johannesburg, Gauteng, South Africa KPMG-SouthAfrica Full time

    Job Title/Position:Cyber Security ManagerNumber of Positions:Johannesburg: 1Function and Business Unit:Advisory - Risk Consulting: Technology Assurance (Cyber Security)Description of the Role and Purpose of the Job:KPMG-SouthAfrica is currently seeking a Cyber Security Manager to join our Cyber Security consulting and assurance practice based in...


  • Johannesburg, Gauteng, South Africa KPMG-SouthAfrica Full time

    Job Title/Position:Cyber Security ManagerNumber of Positions:Johannesburg: 1Function and Business Unit:Advisory - Risk Consulting: Technology Assurance (Cyber Security)Description of the Role and Purpose of the Job:KPMG-SouthAfrica is seeking a Cyber Security Manager to join our Cyber Security consulting and assurance practice based in Johannesburg. The...


  • Johannesburg, Gauteng, South Africa Dentons Full time

    WHY DENTONSDentons stands out in the legal landscape. Our commitment is to be the firm of the future, constantly challenging conventional practices and delivering comprehensive business solutions to our clients through innovative approaches. We embody the spark of creativity and bold ideas. As the largest global law firm, we have over 12,000 professionals...


  • Johannesburg, Gauteng, South Africa KPMG-SouthAfrica Full time

    Job SummaryWe are seeking a highly skilled Cyber Incident Response Senior Manager to join our team at KPMG-SouthAfrica. The successful candidate will be responsible for leading our cyber security team and managing engagement related to cyber incident response.Key ResponsibilitiesDevelop and execute business development strategies to grow our cyber security...


  • Johannesburg, Gauteng, South Africa HR Genie Full time

    Job Title: Server and Cyber Security ManagerOur client, a leading global tech firm, is seeking a highly skilled Server and Cyber Security Manager to join their team in Johannesburg on a contract basis. The successful candidate will be responsible for overseeing the company's server infrastructure, data centers, and cyber security operations.Key...

  • Cyber Security Manager

    2 months ago


    Johannesburg, Gauteng, South Africa NTT Full time

    About the RoleWe are seeking a seasoned Cyber Security Manager to join our Global Cybersecurity Incident Response Team (CSIRT). As a key member of our team, you will be responsible for providing operational management and support to a team of CSIRT Security Platform Engineers who detect and monitor escalated threats and suspicious activity affecting NTT...

  • Cyber Security Manager

    2 months ago


    Johannesburg, Gauteng, South Africa KPMG-SouthAfrica Full time

    Job Title: Cyber Security ManagerWe are seeking a highly skilled Cyber Security Manager to join our team at KPMG-SouthAfrica. As a Cyber Security Manager, you will be responsible for leading technology-based consulting and assurance engagements, managing the day-to-day delivery effort, and providing subject matter expertise in specific technical security...


  • Johannesburg, Gauteng, South Africa Isilumko Staffing Full time

    Senior IT Auditor - Cyber SecurityA leading company in the Energy and Chemical Industry is seeking a highly skilled and experienced Senior IT Auditor with a strong background in Cyber Security to join their dynamic team.Key Responsibilities:Cyber Security Auditing: Conduct comprehensive audits of our IT systems, processes, and procedures to identify...


  • Johannesburg, Gauteng, South Africa KPMG-SouthAfrica Full time

    Job Title: Cyber Security Incident Response ManagerAs a Cyber Security Incident Response Manager at KPMG-SouthAfrica, you will play a critical role in managing engagement relating to cyber incident response. This includes assisting in building a pipeline and leading business development activities for the service-line, as well as leading engagement on cyber...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Cyber Resilience Risk Manager RoleWe are seeking a highly skilled Cyber Resilience Risk Manager to join our team at Nedbank. As a key member of our organization, you will play a critical role in ensuring the security and resilience of our information assets.

  • Cyber Security Expert

    2 months ago


    Johannesburg, Gauteng, South Africa Telebest Full time

    {"h1": "Cyber Security Expert Wanted at Telebest", "p": "We are seeking a highly skilled Cyber Security Expert to join our team at Telebest. As a Cyber Security Expert, you will be responsible for monitoring, analyzing, and detecting cyber events and incidents within our information systems and networks. You will also consult on integrated, dynamic cyber...