Cyber and Technology Controls Issue Management Associate, Supplier Assurance Services
Make your mark by strengthening supplier oversight and risk management in a high-impact control function. You’ll partner closely with internal stakeholders and critical suppliers to drive timely, well-evidenced remediation. You’ll build credibility through clear guidance, strong judgment, and high-quality reviews. Join a team that values collaboration, accountability, and continuous learning.
As an information security and controls officer in the Supplier Issue Management team, you help us maintain robust risk management and supplier oversight. You will work closely with internal stakeholders to review and validate supplier assessment findings, ensuring the process meets our organizational standards. You will also work with our most critical suppliers and our cross line of business representatives in reducing risk exposure to the firm through our third party supplier relationships. Together, we foster a culture of quality, collaboration, and continuous learning.
Job responsibilities
- Review assessment findings for accuracy and compliance with organizational guidance
- Validate closure evidence provided by suppliers, including policies, procedures, and documentation
- Engage with internal stakeholders to address issue management queries
- Provide consultative guidance and leadership to our business partners to help them work with our suppliers in resolving findings through action plans or if necessary understanding the implication of accepting risk and for our critical and high risk suppliers engage in ongoing consultation to expedite risk remediation and provide transparency on progress to key business stakeholders
- Liaise with business partners to ensure timely remediation of action plans and risk acceptances
- Manage the entire issue lifecycle, including identification, creation, modification, extension, and closure validation
- Identify opportunities for process improvements within supplier management
- Support internal education and share best practices with peers and colleagues
- Maintain a thorough understanding of the supplier risk assessment process
- Communicate effectively with senior management across various business groups
- Ensure all activities align with organizational standards and policies
Required qualifications, capabilities, and skills
- Experience in information security, risk management, supplier management, information technology, or cyber security
- Understanding of supplier information technology and operational risk, as well as information technology control policies
- Excellent verbal communication skills
- Experience of delivering written and verbal presentation to senior stakeholders up to managing director level
- Ability to collaborate across multiple business groups
- Attention to detail in reviewing documentation and evidence
- Commitment to maintaining high standards of quality and compliance
- Ability to manage multiple tasks and priorities
- Proficiency in identifying and implementing process improvements
- Strong problem-solving skills
- Ability to work effectively in a team-oriented environment
Required qualifications, capabilities, and skills
- Certification in Information Systems Audit or Risk and Information Systems Control
- Experience supporting internal education and best practices sharing
- Familiarity with supplier risk assessment processes
- Experience in validating closure evidence for compliance
- Ability to engage with diverse stakeholders
- Knowledge of global supplier management standards
- Demonstrated commitment to professional development and continuous learning