
Associate Cybersecurity Analyst - Third Party Technology Risk Management
- London
- Permanent
- Full-time
- Perform risk/security assessments of Suppliers and Third-Party relationships to identify, validate and remediate risks Cybersecurity Risks. This may include performing interviews, document design assessments and walkthroughs of cybersecurity controls.
- Support ongoing monitoring of Suppliers and Third Party to review compliance against compliance and regulatory requirements.
- Participate and conduct onsite assessments of Third Parties against Visa's security framework and industry security standards. Support risk/security assessments for special projects involving Third Parties.
- Support PCI-related activities relevant to third parties to ensure compliance with PCI requirements.
- Exhibit pragmatism in formulating process remediation and implementation strategies, defining work tracks, and submitting assessment findings and recommendations.
- Proactively follow-up with Suppliers to ensure prompt remedial actions for assessment findings.
- Bachelor's degree, OR 3+ years of relevant work experience.
- Bachelor's degree in Computer Science, Information Systems, Engineering, or
- related field, or equivalent work experience.
- Minimum of 1 years of experience in cybersecurity, IT audit, or IT risk
- management.
- Experience in cybersecurity, IT audit, risk management, compliance, or related
- fields.
- Knowledge of cybersecurity frameworks and standards such as NIST, ISO, PCI,
- etc.
- Proficiency in at least one scripting/programming language (e.g., Python, Java, JavaScript/TypeScript).
- Generative AI: Proven experience in developing solutions using Large Language Models and AI frameworks such as LangChain, Hugging Face, or OpenAI.
- Agentic AI: Experience with the concepts and practical applications of agentic AI or autonomous AI agents is highly desirable.
- Strong written and verbal communication skills, and ability to communicate
- effectively with technical and non-technical audiences.
- Ability to work independently and collaboratively in a fast-paced environment.
- Certifications such as CISSP, CISA, CISM, CRISC, or equivalent are preferred.