Get the latest updates on AI-powered hiring, career growth, and technical deep-dives delivered to your inbox.
Grafton Recruitment
Grafton Engineering is Gi Group's specialization dedicated to enhancing the experience, skills and potential of candidates in the fields of Design, Logistics & Supply Chain, Production & Maintenance, Quality - Safety & Environment, Process & Project Management.
Saipem is a global leader in the engineering and construction of major projects for the energy and infrastructure sectors, both offshore and onshore. Saipem is “One Company” organized into business lines - Asset Based Services, Energy Carriers, Offshore Wind, Sustainable Infrastructures.
As CYBERSECURITY GOVERNANCE SPECIALIST you will be part of the Cybersecurity Governance (CYGO) team and will primarily focus on cybersecurity activities related to third parties and suppliers.
You will support and supervise the Third-Party Risk Management (TPRM) process, ensuring its effectiveness, consistency, and alignment with the related requirements, while contributing to contractual, audit, reporting, and awareness activities related to cybersecurity.
Tasks· Supervising and supporting the Third-Party Risk Management (TPRM) process, ensuring that both the process and the supporting tools operate effectively and efficiently.· Monitoring the outcomes of third-party cybersecurity risk assessments and ensuring the timely execution and tracking of required follow-up.· Supporting supplier audit activities, including preparation, execution support, evidence review, and follow-up actions.· Providing support during the review and evaluation of Data Processing Agreements (DPA), as well as General Terms and Conditions (GTC) and Special Terms and Conditions (STC) during supplier negotiation phases, from a cybersecurity perspective.· Supporting cybersecurity awareness initiatives, including:- Identifying relevant cybersecurity topics for the monthly internal newsletter (Cyber Wave) and contributing to the drafting of related articles.- Defining scenarios for periodic phishing simulation campaigns and monitoring and analysing campaign results.
Verified Listing
This role has been verified for authenticity, market-rate compensation, and remote eligibility.