Third Party Risk Advisor

hace 4 días


Monterrey, México Nearshore Cyber A tiempo completo

**Location: Monterrey or Matamoros, Mexico**:** Applications from persons not living in Mexico will NOT be accepted.**

The Third Party Risk Advisor is responsible for third-party information risk management related to suppliers and other third parties. The individual creates and leads an effective program to improve suppliers' information security maturity to protect the enterprise. The Third Party Risk Advisor works under the direction of security leadership to drive awareness of third-party information risks through all business groups.

In addition, the Third Party Risk Advisor will monitor the enterprise's security posture as seen by our customers and work with various internal teams to prioritize any remediation activities needed. As such, the role requires technical aptitude, business understanding, and the ability to work with diverse groups.

**Essential Job Duties**
- Partner with business groups to identify, analyze, and mitigate third-party security risks associated with outsourced activities and products.
- Provide third-party security consultation for new and ongoing third-party relationships.
- Consult on defining third-party security policies and best practices.
- Educate and build awareness of third-party security requirements.
- Improve third-party compliance with enterprise security standards and policies.
- Participate in testing and monitoring security and privacy controls executed by third parties interacting with enterprise data.
- Lead security enhancement projects focused on new or changing third-party relationships.
- Review contracts, project documentation, system design documents, vendor security policies, and other vendor security references (i.e., SOC reports, SIG questionnaires, security ratings, etc.) to determine the extent, type, and scope of risks of the vendor relationship.
- Maintain an inventory of third parties who possess and interact with enterprise data, including critical risk information about the relationship, data attributes, and regulatory compliance.
- Support completion of enterprise information security reviews for new and ongoing third-party relationships.
- Monitor open third-party security issues and remediation actions associated with security control gaps to ensure timely closure.
- Collaborates with the vulnerability management team to prioritize and remediate internal findings.
- Please do other duties as assigned.

**Skills and Experience**
- 2-3 years of information security, IT, risk management, or procurement experience.
- Technical background with an understanding of security threats.
- Practical verbal and written communication skills, including presentation and the ability to
- influence.
- Strong project management skills and organizational skills.
- Experience with security rating platforms such as BitSight, SecurityScorecard, or others.
- Ability to work in a constantly changing environment under tight deadlines.
- Ability to switch from independent work to group activities with excellent interpersonal skills.
- Track record of acting with integrity, taking pride in work, seeking to excel, being curious and adaptable, and communicating effectively.
- Experience with one or more of the following: NIST, ISO 27001, PCI DSS, HIPAA, HITECH, SOX, GDPR, CCPA, CIS, or SOC 2.

**Education Requirements**
- Preferably higher education or equivalent industry experience.

**Certification Requirements**
- CISSP (Associate), CISM, or similar security certifications are preferred but not required.


  • Third Party Risk Advisor

    hace 2 semanas


    Monterrey, Nuevo León, México Nearshore Cyber A tiempo completo

    Location: Monterrey or Matamoros, Mexico: Applications from persons not living in Mexico will NOT be accepted.The Third Party Risk Advisor is responsible for third-party information risk management related to suppliers and other third parties. The individual creates and leads an effective program to improve suppliers' information security maturity to protect...


  • Monterrey, México Chubb INA Holdings Inc. A tiempo completo

    Job Requirements **Key Responsibilities**: Management and completion of Chubb inherent risk ranking of ALL suppliers in compliance with the Global Third-Party Cyber Risk policy. This includes liaising with and working alongside the Global Third-Party team as well as Business relationship Owners. Risk assessments of Cloud providers Identification, tracking...

  • 09 - Advisor, SCM Risk

    hace 2 meses


    Monterrey, México Celestica A tiempo completo

    Req ID: Remote Position: Hybrid Region: Americas  Country: Mexico  State/Province: Nuevo Leon  City: Monterrey  General Overview Functional Area: Supply Chain Management (SCM) Career Stream: Supply Chain Management (SCM) Role: Advisor (ADV) Job Title: Advisor, SCM Data Job Code: ADV-SCM-SCD Job Level: Level 09 Direct/Indirect Indicator: Indirect ...

  • 09 - Advisor, SCM Risk

    hace 4 semanas


    Monterrey, México Celestica A tiempo completo

    Req ID: Remote Position: Hybrid Region: Americas  Country: Mexico  State/Province: Nuevo Leon  City: Monterrey  General Overview Functional Area: Supply Chain Management (SCM) Career Stream: Supply Chain Management (SCM) Role: Advisor (ADV) Job Title: Advisor, SCM Data Job Code: ADV-SCM-SCD Job Level: Level 09 Direct/Indirect Indicator: Indirect ...

  • 09 - Advisor, SCM Risk

    hace 2 semanas


    Monterrey, Nuevo León, México Celestica Inc. A tiempo completo

    Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: Date: May 14, 2024Location: Monterrey, NLE, MX Functional Area: Supply Chain Management (SCM)Career Stream: Supply Chain Management (SCM)Role: Advisor (ADV)Job Title: Advisor, SCM DataJob Code: ADV-SCM-SCDJob Level: Level 09Direct/Indirect Indicator:...


  • Monterrey, México Nearshore Cyber A tiempo completo

    **Location: Monterrey or Matamoros, Mexico**: **Applications from persons not living in Mexico will NOT be accepted.** Information Security Risk Assessors report continuously on the state of risk, providing visibility and helping business leaders and risk managers understand where risk resides and where improvements must be made to protect the business....


  • Monterrey, México BAXTER A tiempo completo

    **This is where you save and sustain lives** At Baxter, we are deeply connected by our mission. No matter your role at Baxter, your work makes a positive impact on people around the world. You'll feel a sense of purpose throughout the organization, as we know our work improves outcomes for millions of patients. Baxter's products and therapies are found in...


  • Monterrey, Nuevo León, México BAXTER A tiempo completo

    This is where you save and sustain livesAt Baxter, we are deeply connected by our mission. No matter your role at Baxter, your work makes a positive impact on people around the world. You'll feel a sense of purpose throughout the organization, as we know our work improves outcomes for millions of patients.Baxter's products and therapies are found in almost...


  • Monterrey, México Nemak A tiempo completo

    Objective As part of the Information Security organization, develop a strategic program to ensure compliance of regulatory requirements to support the organization's resilience. Through a process of Risk Management and the systematic evaluation of potential threats, the organization will be able to meet the law, regulations and contractual requirements and...

  • 09 - Advisor, Scm Data

    hace 3 semanas


    Monterrey, México Celestica A tiempo completo

    Req ID: 120896 Remote Position: Hybrid Region: Americas Country: Mexico State/Province: Nuevo Leon City: Monterrey **General Overview**: Functional Area: Supply Chain Management (SCM) Career Stream: Supply Chain Management (SCM) Role: Advisor (ADV) Job Title: Advisor, SCM Data Job Code: ADV-SCM-SCD Job Level: Level 09 Direct/Indirect Indicator:...


  • Monterrey, México LEGO A tiempo completo

    **Location** - Monterrey, Mexico **Job ID** - 0000014102 **Category** - Finance The Sanctioned Party Screening Specialist is responsible for the daily handling of compliance alerts related to sanctioned party and embargo risks in the SAP Global Trade Services (GTS) system. **What your day will look like**: - Daily review of the initial blocks in SAP GTS...


  • Monterrey, Nuevo León, México CEMEX A tiempo completo

    Descripción de puestoExpert advisor in accounting records related to Accounts Payable in the SAP system that collaborates with the follow-up of Advances, Documented and Undocumented Liabilities to ensure the integrity of the balances of the Balance Sheet Accounts.Principales responsabilidades• Follow up on aged liabilities (documented and undocumented)....


  • Monterrey, México British American Tobacco A tiempo completo

    **ROLE PROFILE** **FUNCTION**:Operations **SUB FUNCTION**:Procurement **What are the key objectives and expectations from this role?** To support centralize Supply Chain and Procurement processes; this role is a point of contact for Supply Chain and Procurement personnel and other internal stakeholders including Regulatory Oversight, Supplier Compliance,...


  • Monterrey, Nuevo León, México LEGO A tiempo completo

    Location Monterrey, MexicoJob IDCategory FinanceThe Sanctioned Party Screening Specialist is responsible for the daily handling of compliance alerts related to sanctioned party and embargo risks in the SAP Global Trade Services (GTS) system.What your day will look like:Daily review of the initial blocks in SAP GTS regarding alerts on potential Sanctioned...

  • Online Investigator

    hace 2 semanas


    Monterrey, México Cápita Works - Virtual Assistants in Mexico A tiempo completo

    Job Opportunity: Online Investigator Are you an expert in research and analysis? Do you have skills in social media investigations and background checks? This is your chance to join our team! **Key Responsibilities**: - Conduct social media investigations. - Perform background checks. - Utilize third-party databases to gather leads and assist in...

  • IT Project Manager

    hace 3 semanas


    Monterrey, México Bluehill.dev A tiempo completo

    IT Project Manager (Infrastructure) **Location**: Monterrey **Position Overview**: **Key Responsibilities**: **Project Management**: Lead and manage IT infrastructure projects from inception to completion. Ensure projects are completed on time, within scope, and within budget. Develop detailed project plans, including scope, objectives, and...

  • Accounts Receivable

    hace 3 meses


    Monterrey, México ZF Group A tiempo completo

    Responsibilities Maintain AR past due balances at acceptable levels Interact with international and domestic customers Proactive to take the lead to collect all past due accounts Perform credit analysis Creation of third party and Intercompany invoices, credit memo’s and customer statements, Verification and application of customer...

  • Accounts Receivable

    hace 1 mes


    Monterrey, México ZF Group A tiempo completo

    Responsibilities Maintain AR past due balances at acceptable levels Interact with international and domestic customers Proactive to take the lead to collect all past due accounts Perform credit analysis Creation of third party and Intercompany invoices, credit memo’s and customer statements, Verification and application of customer...

  • Accounts Receivable

    hace 4 semanas


    Monterrey, México ZF Group A tiempo completo

    Responsibilities Maintain AR past due balances at acceptable levels Interact with international and domestic customers Proactive to take the lead to collect all past due accounts Perform credit analysis Creation of third party and Intercompany invoices, credit memo’s and customer statements, Verification and application of customer...

  • Procurement Intern

    hace 3 semanas


    Monterrey, México Signify A tiempo completo

    Monterrey, Mexico Category Procurement Posted Date 01/20/2024 Job Id 346854 We are Signify, formerly Philips Lighting. We’re the world leader in lighting for professionals, consumers and for the Internet of Things. Our passion for sustainability makes us one of the top 10 greenest companies in the world. See #SignifyLife through the eyes of our...