CareerPlanGet AI match score →

Third-Party Security Risk Management, Consultant

Singapore, SG-AIA Singapore💼 Full-time🗓 2025-07-02 → 2026-07-30

Core

Overseeing third-party security risk management, providing consultation and professional advice on information security and technology risk matters to build a strong security risk culture.

Role type

Senior Information Security Risk Consultant (Third-Party)

Builds

Third-party security assessment renewals, due diligence reports, compliance audits, and security governance frameworks.

Domain

Financial Services / Information Security Risk Management

Deliverable

production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work

Required skills

Third-party vendor security assessment, regulatory compliance (MAS TRMG), risk assessment methodology, contract security clause review, audit response, KRIs and metrics development, cloud security governance, application security governance

Preferred skills

CISSP, CISA, CRISC, CCSP certifications, ISO27001, NIST, SOC2, OSPAR standards knowledge, project management

Technologies

MAS TRMG, ISO27001, NIST, SOC2, OSPAR

Responsibilities

Manage the process of assessing and evaluating the security postures of third-party vendors and partners; Perform due diligence and risk assessments on third party vendors to ensure compliance; Review clients' contracts clauses to ensure alignment with company's security policies; Support and respond to audit queries and be involved in control assessment related to Risk Management; Lead or be involved in ensuring governance of specialized areas under information security, such as cloud security and application security

Seniority

Senior, hands-on IC with strategic advisory

Sourced via workday · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.
Apply on Workday ↗