Cubical Operations LLP
7 months ago
TPRM Senior Manager - Cyber
Sign up to save this job, get alerts, and apply with an optimized CV.
Company information
- Company
- Cubical Operations LLP
- Location
- India, Karnataka, Bangalore India
- Posted
- 7 months ago
Job description
Job Title Senior Manager – Third Party Risk Management (TPRM) & Application Security Location Mumbai / Bangalore - Japan Experience 6 years (Early joiners preferred) Role Overview We are seeking a highly experienced Senior Manager – TPRM & Application Security to lead enterprise-wide third-party risk, application security risk, and GRC initiatives. The role requires deep expertise across vendor risk, cybersecurity, application security, ISO 27001, and GRC frameworks , along with strong stakeholder management skills, strategic thinking, and ability to drive complex projects forward. Key Responsibilities: • Develop and implement a comprehensive TPRM strategy aligned with the company's overall risk appetite and objectives. • Lead cross-functional teams to assess, prioritize, and mitigate third-party risks, ensuring compliance with regulatory requirements and industry best practices. • Collaborate with stakeholders to identify, classify, and manage application security risks, leveraging expertise in threat modeling, secure coding practices, and vulnerability management. • Design and implement a GRC framework that integrates TPRM, application security, and other risk management initiatives, ensuring transparency, accountability, and continuous improvement. • Develop and maintain relationships with key stakeholders, including business leaders, IT teams, and third-party vendors, to ensure effective communication and collaboration. • Stay up-to-date with industry trends, emerging threats, and regulatory changes, applying this knowledge to continuously improve the TPRRM program. • Manage a team of risk management professionals, providing guidance, mentorship, and coaching to drive individual and team performance. • Develop and manage budgets for TPRM initiatives, ensuring effective allocation of resources and ROI. • Ensure compliance with relevant laws, regulations, and industry standards, including GDPR, HIPAA, PCI-DSS, and NIST Cybersecurity Framework. • Collaborate with the company's security operations center (SOC) to integrate TPRRM insights into incident response and threat hunting activities. • Develop and maintain a comprehensive risk register, tracking third-party risks, application security risks, and other enterprise-wide risks. • Provide thought leadership and subject matter expertise on TPRRM best practices, emerging trends, and regulatory requirements. • Participate in industry forums, conferences, and working groups to stay informed about the latest developments in TPRRM and application security. • Develop and maintain a comprehensive training program for risk management professionals, ensuring they have the necessary skills and knowledge to drive effective risk mitigation strategies. • Ensure that all TPRRM initiatives are aligned with the company's overall business objectives, strategic priorities, and risk tolerance. • Collaborate with the company's audit and compliance teams to ensure that TPRRM initiatives are properly audited and compliant with relevant regulations. • Develop and maintain a comprehensive metrics program to measure the effectiveness of TPRRM initiatives, including key performance indicators (KPIs) for third-party risk management, application security, and GRC. • Provide regular reporting to senior leadership on TPRRM program performance, highlighting successes, challenges, and areas for improvement. • Ensure that all TPRRM initiatives are properly documented, tracked, and reported, in accordance with company policies and procedures.
Required skills
- compliance
- project management
- gdpr
- risk assessment
- cybersecurity
- stakeholder management
- threat modeling
- application security
- industry standards
- strategic thinking
- regulatory requirements
- pci-dss
- vulnerability management
- grc
- iso 27001
- hipaa
- secure coding practices
- tprm
- vendor risk
- nist cybersecurity framework
- third party risk management
Interested in this position?
Create your free account and tailor your CV to match this job.