Cyber & Third-Party Risk Specialist
Lincoln Electric is a high-performance industrial machinery and technology leader who helps customers manufacture and maintain vital equipment and infrastructure. Lincoln Electric’s innovative solutions enable higher quality and productivity across a variety of processes including welding, cutting, brazing, machining, process automation, and field repair. The Company leverages proprietary technologies and expertise in materials science, power electronics, automation, and intelligent software to help customers build better and achieve resilience in their operations. Headquartered in Cleveland, Ohio, Lincoln Electric is the essential ‘Linc’ that keeps the economy running. The Company operates 71 manufacturing and automation facilities across 20 countries and serves customers in over 160 countries. For more information about Lincoln Electric and its products and services, visit the Company’s website at https://www.lincolnelectric.com.
Location: Guarulhos, Remote - Brazil, Remote - Poland
Req ID: 29553
TPRM Specialist - Cyber, Privacy & AI
📍 Remote | Brazil or Poland
Join our global cybersecurity and risk team and help shape how we manage third-party risk across a rapidly evolving technology landscape.
As a TPRM Specialist - Cyber, Privacy & AI, you will assess and manage cybersecurity, privacy, and AI-related risks associated with our global supplier ecosystem. You'll partner with Procurement, Legal, IT, Privacy, and business leaders to enable secure vendor relationships and support innovation while protecting the business.
What You'll Do
Conduct cyber and privacy risk assessments for new and existing vendors
Evaluate security controls, privacy practices, and AI governance frameworks
Review due diligence documentation such as SOC reports, ISO certifications, security policies, and privacy artifacts
Partner with Procurement and Legal to strengthen security, privacy, and AI contractual requirements
Monitor vendor risk, track remediation activities, and support continuous improvement initiatives
Provide clear, business-focused recommendations to stakeholders and leadership
Help advance our global Third-Party Risk Management (TPRM) program
What We're Looking For
✔ 5+ years of experience in Third-Party Risk Management, Cybersecurity, Privacy, Governance, Risk & Compliance (GRC), Audit, or related fields
✔ Experience conducting vendor risk assessments and reviewing security controls
✔ Knowledge of cybersecurity frameworks such as NIST, ISO 27001, or CIS Controls
✔ Understanding of privacy regulations (GDPR, CCPA, and similar frameworks)
✔ Familiarity with AI/ML risk concepts and emerging technologies is highly desirable
✔ Strong communication skills with the ability to translate technical risks into business recommendations
✔ Ability to manage multiple projects and stakeholders in a fast-paced global environment
Preferred Qualifications
• Bachelor's degree in Cybersecurity, Information Technology, Risk Management, Business, or related field
• Certifications such as CISSP, CISM, CRISC, CISA, or CIPP
• Experience with TPRM, GRC, or vendor risk platforms such as OneTrust, BitSight, or SecurityScorecard
Lincoln Electric is an Equal Opportunity Employer. We are committed to promoting equal employment opportunity for applicants, without regard to their race, color, national origin, religion, sex (including pregnancy, childbirth, or related medical conditions, including, but not limited to, lactation), sexual orientation, gender identity, age, veteran status, disability, genetic information, and any other category protected by federal, state, or local law.