Cybersecurity Vendor Risk Analyst
Arrecife PG1, Spain
Santander
Our purpose is to help people and businesses prosper. We strive to make all we do Simple, Personal and Fair.Vendor Risk Assessment Center is looking for CYBERSECURITY VENDOR RISK ANALYST (Cyber and BCP) based in our BOADILLA DEL MONTE (Madrid HQ) office.
WHY YOU SHOULD CONSIDER THIS OPPORTUNITY
At Santander (www.santander.com) we are key players in the transformation of the financial sector. Do you want to join us?
The General Intervention and Management Control Division is composed of different areas (Regulatory Capital; Management Control; Internal Control; General Intervention; Pensions; Projects and Systems; Accounting Regulation) but with complementary functions, some of which are: interpretation of accounting regulations, preparation of income statements and business management balance sheets, planning and coordination of the process of preparing objectives and budgets of the units/business units/business, Estimates and financial planning, among others.
Our mission is to contribute to help more people and businesses prosper. We embrace a strong risk culture and all our professionals at all levels are expected to take a proactive and responsible approach toward risk management.
Santander is proud of being an organization where there are equal opportunities regardless of age, gender, disability, civil status, race, religion or sexual orientation.
WHAT YOU WILL BE DOING
As a Cybersecurity Vendor Risk Analyst, you will:
- Certificate critical services / vendors, establish and monitor remediation plans and issue a residual risk rating.
- Review and challenge of inherent risk scoring of critical services.
- Reporting and collaboration with Subject-matter expert (SME) teams regarding risk assessment results.
- To support the key account management for providing vendor risk service in Santander Group.
- Periodic reporting to local Cost / Risk areas and respective committees.
EXPERIENCE
- 1-3 years work experience in IT Risk and / or Business Continuity areas.
EDUCATION
- Bachelor’s degree in Telecommunications/Computer engineering or Business Administration and Management.
- Related industry certifications (such as CISA, CISSP, ISO 27001 LA, ISO 22301 LA, CompTIA Security+…).
SKILLS & KNOWLEDGE
- Knowledge of IT Risk and Business Continuity and security certifications or frameworks such as ISAE 3000 (SOC 2), NIST CSF, ISO 27001, ISO 22301, COBIT...
- Communication and oral expression fluent in English and Spanish.
OTHER INFORMATION
- A candidate will also be able to manage multiple tasks simultaneously, and an enthusiastic team player.
- Effective communication and excellent writing skills.
- Keen attention to details and analytics skills are preferred.
If you want to know more about us, follow us on https://es.linkedin.com/company/banco-santander
Visit our website https://www.betechwithsantander.com/en/home
#LI-FB1* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics CISA CISSP COBIT CompTIA ISO 22301 ISO 27001 NIST Risk assessment Risk management SOC SOC 2
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.