Director, IT Security Third Party Monitor & Compliance
HybridLondon, England, United Kingdom
Job Summary
Lead the set-up, development, and management of the new Third-Party Security Monitoring team, fostering a culture of technical excellence and continuous improvement. Drive the operationalisation and continuous monitoring of critical Third-Party supplier security obligations, ensuring compliance with CLS security requirements and Customer Security Document standards. Operate the monitoring regime to ensure third parties have clear remediation plans for non-compliance areas, while reviewing supplier security processes and documentation to align with CLS standards and regulatory expectations. Establish and operate governance processes with supporting metrics and performance indicators. Liaise extensively with internal stakeholders including IT Security, Procurement, Legal, and Risk, alongside critical Third-Party suppliers to drive effective security oversight and compliance. Oversee the Critical Third-Party Supplier Security Monitoring transformation programs, implementing robust monitoring solutions that establish a strong foundation for the IT Security Function.
Required Qualifications
- Experience in third-party security risk management, vendor oversight, or security governance (12-15 years)
- ~8-10 years in a leadership role managing third-party security relationships
- Experience in: Leading team adherence to operational and compliance standards within highly regulated environments
- Experience in: Reporting on team performance and project progress to senior management, translating technical insights
- Experience in: Representing the team in governance forums or committees, providing expert input and driving outcomes
- Experience in: Understand, interpret and apply regulatory requirements, compliance and industry standards as pertains to critical Third-Party supplier Security Monitoring and Compliance
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.