04 ott - Milano
Saipem
Questa posizione è in Saipem Il processo di selezione sarà interamente gestito Saipem.
-- Join Saipem and engineer a sustainable future.
We are a global leader in engineering and construction for the energy and infrastructure sectors, delivering complex onshore and offshore projects worldwide.
Driven by technological innovation as "One Company", our 30,000 people from over 130 nationalities in more than 50 countries work every day to enable the energy transition toward Net Zero.
At Saipem, we embrace diversity as a driver of innovation and inclusion, while prioritizing people's safety and environmental sustainability, even in the most challenging conditions.
Purpose of the position: As Cybersecurity Third-Party Risk Management Analyst you will be part of the Cyber Security Governance Department.
How can you support us?
Support cybersecurity risk assessments of third-party engagements through the review of supplier questionnaires, supporting evidence, cybersecurity documentation and other relevant information.
Identify, document and track cybersecurity risks, control gaps, remediation actions and compliance findings relating to suppliers and third parties, supporting follow-up activities with internal and external stakeholders.
Assist in the monitoring of suppliers' cybersecurity posture, including periodic reassessments, remediation tracking and other third-party risk monitoring activities.
Support the preparation of reports, dashboards, metrics and management presentations relating to third-party cybersecurity risk exposure and remediation status.
Contribute to the execution and continuous improvement of cybersecurity third-party risk management processes, audits, compliance activities and supplier assessment programmes, collaborating with Procurement, Vendor Management and other relevant stakeholders.
What are we looking for?
Education: Bachelor's or Master's degree in Cybersecurity, Computer Science, Information Security, Engineering, Risk Management or related disciplines.
Background: 1–3 years of professional experience in Cybersecurity, Information Security, ICT Risk Management, Internal Audit, IT Audit, Compliance or related fields.
Languages: Italian: native or at least C1 proficiency.
English: at least B2 level (written and spoken).
Technical/IT Knowledge: Information Security, Cybersecurity Governance any subjective or discriminatory factors, including but not limited to gender or other personal characteristics.
Regulatory Compliance The decision is made in compliance with: the principle of equal pay for the same work or work of equal value; the pay transparency requirements set out in EU Directive ******** and the relevant national implementing legislation.
Additional Information We support your development!
Do you feel you might not fit this role perfectly?
If you think you can contribute to our business development in the future, don't hesitate to apply anyway through our spontaneous application form!
PRIVACY POLICY All interested candidates (L. ******) are invited to consult the privacy policy (art 13, 14, D.Lgs ****** and art 13 GDPR ******).
-- [#J-ENTERPRISE]
06 ott - Italia
Bending Spoons
06 ott - Putignano
Direzione Lavoro
06 ott - Novara
Elecnor Italia
06 ott - Reggio Emilia
Banca Più