onsite
Lead - Cybersecurity Third Party Risk Management - Freshworks
Security Engineer
Lead the cybersecurity third‑party risk program, driving vendor risk assessments, compliance, and governance to protect the organization’s data and infrastructure.
About the role
Key Responsibilities
- Design and execute comprehensive third‑party risk assessment frameworks for all vendor engagements.
- Lead cross‑functional risk reviews, ensuring alignment with security policies and regulatory requirements.
- Develop and maintain risk metrics, dashboards, and reporting for executive stakeholders.
- Collaborate with procurement, legal, and IT to integrate risk controls into vendor contracts.
- Provide guidance and training to internal teams on third‑party risk best practices.
Requirements
- 5+ years of experience in cybersecurity risk management, preferably in a third‑party context.
- Deep knowledge of security standards (ISO 27001, NIST, SOC 2) and regulatory frameworks.
- Strong analytical skills with the ability to translate risk findings into actionable recommendations.
- Excellent communication and stakeholder management abilities.
- Relevant certifications (CISSP, CRISC, or equivalent) are a plus.
Skills
siemiampenetration testing