
Vendor Risk Consultant
21 hours ago
Overview
Join to apply for the
Vendor Risk Consultant
role at
SecurityScorecard .
SecurityScorecard is the global leader in cybersecurity ratings, providing risk insights for organizations worldwide.
About the Role
SecurityScorecard’s MAX team delivers vendor risk management services on behalf of customers. Our MAX team is growing and we are seeking a Vendor Risk Consultant to join our team and help us manage and mitigate cyber risks associated with our customers’ vendors. This is an exciting opportunity to work alongside some of the largest companies in the world and make a significant impact on their business by ensuring that their information is held securely by their vendors.
What You’ll Do
Assess and Reduce Risk: Conduct cybersecurity risk assessments on potential and existing vendors within MAX customer portfolios to identify and reduce business risks.
Advise Stakeholders: Serve as a trusted advisor to both customers and their vendors, translating technical risk findings into clear business impacts and risk management actions.
Apply Threat Intelligence: Leverage SecurityScorecard’s proprietary findings and all-source threat intelligence to assess emerging risks, advise vendors on impacts, and guide remediation.
Build and Maintain Relationships: Foster trust with both customers and vendors as you help each understand risks, ensure ongoing compliance with requirements, and prevent incidents.
Enhance Customer Risk Programs: Evaluate the maturity of vendor risk management programs and recommend improvements to strengthen governance and operational processes.
Monitor & Elevate Vendor Security: Track and report on vendor risk profiles, proactively identifying trends, emerging threats, and opportunities for program improvement.
Manage Multiple Engagements: Orchestrate concurrent client programs, ensuring consistent delivery excellence, measurable results, and alignment with regulatory and industry standards.
What We Need You to Have
Experience: 5+ years of demonstrated professional cybersecurity consulting experience or similar.
Communications Skills: Outstanding ability to explain complex cybersecurity and vendor risk concepts to a range of technical and non-technical audiences, in both written and verbal form.
Cybersecurity Expertise: Strong comprehension and ability to apply cybersecurity concepts, frameworks, technologies, controls, threat knowledge, and best practices to vendor risk.
Analytical Skills: Proficiency in common scripting languages (Python preferred) and/or Microsoft Excel (or equivalent) to analyze complex data, build trends, and spot patterns.
Client & Program Management: Demonstrated success managing multiple external clients and projects simultaneously, prioritizing competing demands, and meeting deadlines.
Solo and Team Excellence: Ability to thrive in fast-paced independent and collaborative settings.
Desired Certifications (One or More Completed): CRISC, CISSP, CISM, CISA, GSTRT, GCCC, GSLC, or GSNA. CRVPM, CTPRP, ISO 27001 Lead Auditor or technical certs are also a plus.
Languages: English (fluent). Other regional languages are a plus.
Other Desired Experience: Experience conducting cybersecurity audits, vendor risk assessments or broader vendor risk management.
Compensation and Benefits
Specific to each country, we offer a competitive salary, stock options, health benefits, and unlimited PTO, parental leave, tuition reimbursements, and much more. The estimated total compensation range for this position is $120,000 - $150,000 (base plus bonus). Actual compensation is based on factors including affordability, skills, qualifications and experience, and may vary from the range. In addition to base salary, employees may also be eligible for annual performance-based incentive compensation awards and equity, among other company benefits.
Equal Employment Opportunity
SecurityScorecard is committed to Equal Employment Opportunity and embraces diversity. We hire based on merit and do not discriminate based on race, color, religion, national origin, sex or gender (including pregnancy) gender identity or expression (including transgender status), sexual orientation, age, marital status, veteran status, disability status or any other protected category in accordance with applicable law.
We also consider qualified applicants regardless of criminal histories, in accordance with applicable law. We are committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or accommodation due to a disability, please contact
Any information you submit to SecurityScorecard as part of your application will be processed in accordance with the Company’s privacy policy and applicable law.
SecurityScorecard does not accept unsolicited resumes from employment agencies. Please note that we do not provide immigration sponsorship for this position.
Details
Seniority level: Mid-Senior level
Employment type: Full-time
Job function: Consulting and Information Technology
Industries: Data Security Software Products, Computer and Network Security, Technology, Information and Media
#J-18808-Ljbffr
-
Consultant - Safety and Risk
2 weeks ago
Singapore VANGUARD RISK AND SAFETY ASIA PTE. LTD. Full time**_Vanguard Risk and Safety Asia Pte. Ltd. Singapore -**: **_About Us _** We are a Process Safety and Risk Management consultancy, an affiliate of the Vanguard Solutions Group of Companies, covering various territories predominately South-East Asia, Australia, Middle East, North/South Americas and Europe. We specialise in the provision of high quality...
-
IT Vendor Risk Management
1 week ago
Singapore AMSERS CONSULTING PTE. LTD. Full time**About the Role**: We are seeking an experienced **IT Vendor Risk Management Analyst**to join our **Governance, Risk & Compliance (GRC)**team as part of a broader **transformation initiative**. This role focuses exclusively on managing **third-party and vendor risk**from an **IT risk management**standpoint. You will be responsible for ensuring that vendors...
-
Senior Vendor Risk Manager
2 weeks ago
Singapore beBeeTechnology Full time $90,000 - $120,000Job DescriptionWe are seeking an experienced Third-Party Technology Risk Specialist to lead our vendor risk management framework and ensure alignment with regulatory requirements and enterprise risk appetite.As a seasoned professional in IT vendor risk, third-party governance, or technology risk management, you will shape and strengthen our vendor risk...
-
IT Vendor Risk Management Professional
2 weeks ago
Singapore beBeeVendor Full timeIT Vendor Risk Management Specialist Job Description We are seeking an experienced IT Vendor Risk Management Professional to join our organization. The ideal candidate will have a strong background in IT risk management, audit, compliance, and vendor management. Main Responsibilities: Manage third-party IT risks and ensure adherence to regulatory...
-
IT Vendor Risk Management Specialist
2 weeks ago
Singapore beBeeVendor Full time $90,000 - $120,000Key Responsibilities: - Ensure IT vendor risk management compliance with regulatory requirements and performance standards. - Implement end-to-end vendor risk management processes, including onboarding, due diligence, performance tracking, and compliance monitoring. - Conduct third-party risk management audits and outsourcing audits in line with MAS...
-
IT Vendor Risk Management Specialist
3 weeks ago
Singapore CAREERALLY PTE. LTD. Full timeRoles & ResponsibilitiesKey Highlights:Permanent Position Opportunity to work with a dynamic, industry-leading company Good Bonus + comprehensive benefits packageWe are looking for an experienced IT Vendor Risk Specialist to strengthen our client's 1.5/2nd line of defense. This role is pivotal in managing third-party IT risks, ensuring compliance with...
-
Principal Consultant
7 days ago
Singapore Risk Solutions Full timePrincipal Consultant Do you have experience as an Implementation Engineer, Solutions Consultant and are able to wear all Business, Functional and Technical hats? Would you like to be part of a team delivering effective financial crime & compliance solutions? About the Business LexisNexis Risk Solutions is the essential partner in the assessment of risk....
-
Cybersecurity Vendor Risk Manager
7 days ago
Singapore ASM Full timeWe’re not like most. We don’t just overcome obstacles - we don’t see them. Instead, we see the potential in every person, and every situation. We don’t wait for opportunity to appear - we create it. Meet ASM. A company that has been searching for people just like you._ **Who is ASM?** ASM is a leading, global supplier of semiconductor wafer...
-
Regional Vendor Risk Governance Manager
5 days ago
Singapore Manulife Full time**_We are a _**_leading financial services provider committed to making decisions easier and lives better for our customers and _**_colleagues around the world. From our environmental initiatives to our community investments, we lead with values throughout our business. _**_To help us stand out, we help you step up, because when colleagues are healthy,...
-
Technical Consultant
5 days ago
Singapore Risk Solutions Full timeAbout the Business LexisNexis Risk Solutions is the essential partner in the assessment of risk. Within our Business Services vertical, we offer a multitude of solutions focused on helping businesses of all sizes drive higher revenue growth, maximize operational efficiencies, and improve customer experience. Our solutions help our customers solve difficult...