Lead for Global Vendor Security Assessments

1 month ago


Johannesburg, Gauteng, South Africa Dentons Full time

WHY DENTONS

Dentons stands out in the legal landscape. Our commitment is to be the firm of the future, constantly challenging conventional practices and delivering comprehensive business solutions to our clients through innovative approaches. We embody the spark of creativity and bold ideas. As the largest global law firm, we have over 12,000 professionals across more than 80 countries, leveraging diverse perspectives from our teams, clients, and communities to blend local expertise with global insights.

ROLE OVERVIEW

This position is centered on executing security evaluations for third-party vendors and managing supply chain risks from a cybersecurity standpoint. You will be responsible for assessing, monitoring, quantifying, and reporting on third-party cyber risks throughout the global organization.

KEY RESPONSIBILITIES

  • Oversee the entire third-party cyber risk management process, from initial security evaluations during onboarding to vendor offboarding.
  • Create an annual schedule for reassessing third-party cybersecurity risks relevant to the organization.
  • Establish and implement necessary third-party security evaluations based on the services utilized by the organization, complementing existing security assessments.
  • Identify and develop appropriate cybersecurity risk management information across the vendor landscape.
  • Enhance current processes and procedures related to third-party risk management.
  • Conduct thorough cybersecurity assessments of third-party vendors and identify controls to mitigate risks to the organization’s cybersecurity posture.
  • Adhere to established guidelines for third-party cybersecurity risk management during the onboarding of vendors.
  • Collaborate with internal teams and various risk/compliance experts to address and mitigate identified or potential cybersecurity risks.
  • Work with different stakeholder teams to identify and communicate cybersecurity risks associated with third-party relationships, ensuring residual risks are managed to acceptable levels.
  • Review information security clauses in third-party contracts to strengthen the organization’s legal security framework.
  • Design and deliver training sessions for staff on third-party risk management processes as required.
  • Execute tasks independently while fostering a collaborative and supportive environment.
  • Perform additional cybersecurity risk-related duties as necessary.
  • Lead and mentor members of the third-party cyber risk team.
  • Supervise and guide junior team members.

SKILLS & COMPETENCIES

Technical Skills

  • Proficient in Microsoft Office Suite.
  • Fluent in English, both written and verbal.

Personal Attributes

  • Exceptional troubleshooting, reasoning, and problem-solving abilities.
  • Quick learner with the capacity to grasp new concepts and technologies.
  • Strong critical thinking and analytical skills to identify issues and risks in third-party risk management.
  • Team-oriented with a talent for collaboration in diverse environments.
  • Ability to effectively manage multiple tasks, prioritize, and execute responsibilities.
  • Capable of working independently while collaborating with teams across various locations.
  • Strong work ethic and a passion for uncovering solutions.
  • Excellent relationship-building skills with clients.
  • Stay informed about industry trends in third-party and cybersecurity risk.
  • Outstanding written and verbal communication, interpersonal, and intercultural skills.

EDUCATION & EXPERIENCE

  • Bachelor's degree from an accredited institution.
  • 3-5 years of management experience.
  • 5+ years of hands-on experience in third-party or cybersecurity risk management.
  • Expertise in identifying cybersecurity risks in cloud services and implementing mitigating controls.
  • Proficient in addressing and remediating cybersecurity vulnerabilities.
  • In-depth knowledge of third-party risk strategies and best practices.
  • Relevant industry certifications such as CRISC, CISM, CISA, ISO/IEC 27001 Lead Auditor.
  • Familiarity with industry standards and best practices, including ISO/IEC 27001, ISO/IEC 27017, ISO/IEC 27018, and the NIST Cybersecurity Framework.

LANGUAGE CAPABILITIES

As a truly global law firm, we value candidates with foreign language skills and those with international experience gained across various regions.

BENEFITS

Flexible work-from-home options available.



  • Johannesburg, Gauteng, South Africa Dentons Full time

    WHY DENTONSDentons stands out in the legal landscape. Our commitment to innovation drives us to redefine the future of law, offering comprehensive business solutions to our clients through fresh and creative approaches. As the largest global law firm, we leverage the diverse insights of our workforce, clients, and communities, blending local expertise with...


  • Johannesburg, Gauteng, South Africa Dentons Full time

    WHY DENTONSDentons is committed to redefining the legal landscape. We strive to be the firm of the future, consistently challenging conventional norms while delivering comprehensive business solutions to our clients through innovative approaches. We embody creativity and boldness, standing as the world's largest global law firm with over 12,000 professionals...


  • Johannesburg, Gauteng, South Africa Dentons Full time

    Why Dentons?Dentons is a global law firm that values innovation and collaboration. We are driven to provide holistic business solutions to our clients, and our diverse team of professionals is key to achieving this goal.Role OverviewThe Global Third-Party Security Review Lead will be responsible for conducting third-party vendor security assessments and...


  • Johannesburg, Gauteng, South Africa Dentons Full time

    Job Title: Global Third-Party Security Review LeadAbout DentonsDentons is a global law firm that is designed to be different. We are driven to always be the firm of the future, to challenge the status quo, and to provide holistic business solutions to our clients in new and innovative ways. We are the lightbulb moments. The bold ideas. We are a team of...


  • Johannesburg, Gauteng, South Africa Dentons Full time

    {"title": "Cyber Security Risk Management Lead", "subtitle": "Join Dentons", "content": "Dentons is a global law firm that values innovation and collaboration. We are seeking a skilled Cyber Security Risk Management Lead to join our team.The successful candidate will be responsible for conducting third-party vendor security assessments and managing supply...


  • Johannesburg, Gauteng, South Africa Dentons Full time

    Job Title: Global Third-Party Security Review LeadAbout Us:Dentons is a global law firm that values innovation, collaboration, and excellence. We are committed to providing holistic business solutions to our clients and fostering a culture of diversity, equity, and inclusion.Job Summary:We are seeking a highly skilled and experienced Global Third-Party...


  • Johannesburg, Gauteng, South Africa NTT DATA Full time

    Job Overview Make a Difference with NTT DATAJoin a pioneering organization that is redefining possibilities. We are recognized for our technological expertise and innovative solutions, committed to making a positive impact on our clients and society. Our workplace fosters diversity and inclusion, providing an environment where you can develop, belong, and...


  • Johannesburg, Gauteng, South Africa NTT DATA Full time

    About the RoleNTT DATA is seeking a highly skilled and experienced Chief Information Security Officer to lead our information security program and drive the implementation of our security strategy. As a key member of our leadership team, you will be responsible for overseeing and leading our information security efforts to ensure the confidentiality,...


  • Johannesburg, Gauteng, South Africa NTT DATA Full time

    About the RoleNTT DATA is seeking a highly skilled and experienced Chief Information Security Officer to lead our information security program and drive the implementation of our security strategy. As a key member of our leadership team, you will be responsible for overseeing and leading our information security efforts to ensure the confidentiality,...


  • Johannesburg, Gauteng, South Africa NTT DATA Full time

    About the RoleOverviewNTT DATA is seeking a highly skilled and experienced Chief Information Security Officer to lead our information security programme(s). As a senior management role, this position plays a critical role in contributing towards the development of, as well as driving the implementation of NTT's security and governance strategy, frameworks,...


  • Johannesburg, Gauteng, South Africa Cochrane Global Full time

    About Cochrane GlobalWe are a leading security services provider, dedicated to delivering exceptional protection solutions to our clients.Job SummaryWe are seeking an experienced Security Threat Mitigator to join our team in Kempton Park, Woodmead and Sandton Area, Gauteng. The successful candidate will be responsible for ensuring a strong security presence...


  • Johannesburg, Gauteng, South Africa Telebest Full time

    Telebest OpportunityWe are seeking a highly skilled Senior Manager to lead our Vendor or Horizontal Partnerships function.Requirements:A minimum of 3 years of tertiary education.Relevant certification with a professional body is required.At least 8 years of experience in a specialized area, coupled with supervisory or management experience.Proven sales and...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Job OverviewThis is a critical role in our organization's digital transformation journey. As an IT Cloud Solutions and Vendor Manager, you will be responsible for overseeing our cloud solutions, optimizing vendor partnerships, and ensuring seamless collaboration.Critical ResponsibilitiesEvaluate, select, and implement cloud solutions that align with our...


  • Johannesburg, Gauteng, South Africa NTT DATA Full time

    Job DescriptionMake an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive.Your day at NTT...


  • Johannesburg, Gauteng, South Africa Cochrane Global Full time

    Job Title: Security Active PatrolAt Cochrane Global, we are seeking a highly skilled and experienced Security Active Patrol to join our team. The successful candidate will be responsible for ensuring a strong security presence within the Site, managing all security-related matters, and maintaining a high level of visibility in the assigned areas of...


  • Johannesburg, Gauteng, South Africa NTT DATA Full time

    About the RoleThe Senior Vendor Relations Specialist will play a key role in ensuring that services are delivered according to agreed service level agreements (SLAs) and other contractual performance requirements. This involves advanced ability in managing coordinated delivery of service and managing compliance to agreed performance standards.Key...


  • Johannesburg, Gauteng, South Africa NTT DATA Full time

    About the RoleThe Senior Vendor Relations Specialist will play a key role in ensuring that services are delivered according to agreed service level agreements (SLAs) and other contractual performance requirements. This involves advanced ability in managing coordinated delivery of service and managing compliance to agreed performance standards.Key...


  • Johannesburg, Gauteng, South Africa Cochrane Global Full time

    Job Title: Security Active PatrolAt Cochrane Global, we are seeking a highly skilled and experienced Security Active Patrol to join our team. As a Security Active Patrol, you will be responsible for ensuring a strong security presence within the Site.Key Responsibilities:Adhere to the company's disciplinary 'Code of Conduct'.Project a positive and forceful...


  • Johannesburg, Gauteng, South Africa Cochrane Global Full time

    Job Title: Security Active PatrolJob Summary:Cochrane Global is seeking a skilled and experienced Security Active Patrol to join our team. The successful candidate will be responsible for ensuring a strong security presence within the site, managing security-related matters, and providing a positive and forceful image for our services.Key...


  • Johannesburg, Gauteng, South Africa E-Merge Full time

    Role OverviewE-Merge is currently seeking an experienced Cloud Solutions and Vendor Manager to play a critical role in our organization's digital transformation journey.Key ResponsibilitiesCloud Solutions Architecture: Evaluate, select, and implement cloud solutions that align with E-Merge's business goals.Vendor Management: Develop and maintain successful...