Third Party Assurance Supervisor
Core
Lead risk-based cybersecurity assessments and onsite inspections of ING's critical third-party providers to evaluate design and effectiveness of security controls.
Role type
Senior IC third-party cyber risk assurance supervisor
Builds
Independent assessments of supplier cybersecurity posture, physical data center inspections, and executive-ready risk reports
Domain
Banking / Cybersecurity / Third-Party Risk Management
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Cybersecurity architecture, IT audit, risk management governance, technical security evaluations, data center physical inspection, regulatory compliance (DORA, NIS2), stakeholder management, technical reporting
Preferred skills
Penetration testing, red teaming, vulnerability assessments, automation with agentic AI, scripting, data analytics
Technologies
Nessus, Burp Suite, Kali Linux, Wireshark, Docker, Cloud environments
Responsibilities
Lead and execute risk-based cybersecurity assessments and onsite inspections of critical third-party providers; Evaluate design and effectiveness of supplier cybersecurity controls; Conduct interviews, documentation reviews, field inspections, and technical security evaluations; Identify cybersecurity risks, control weaknesses, and vulnerabilities; Inspect data centers including physical security, environmental controls, and power systems; Analyze findings and translate technical gaps into business risks and actionable recommendations; Support security testing activities including penetration testing and red teaming results; Produce professional reports and executive-ready dashboards; Collaborate with global security, risk, procurement, and audit teams; Contribute to continuous improvement in Third-Party Cyber Risk Management; Identify and implement automation opportunities through agentic artificial intelligence
Seniority
Senior, hands-on IC
