Cyber Security Risk Specialist - Grc, Third-Party Risk Assessments, Iso27001
Current- I managed the entire Vendor Risk Management Framework using GRC tools like One Trust.
- I handled the Security Compliance Assessment of numerous third party vendors/suppliers ensuring they are compliant with Security standards as well as Data Privacy regulations
- I worked within scrum teams working in an agile manner whilst collaborating with other business departments
- I reviewed vendor risk reports highlighting cybersecurity impacts
- I created risk review documentation and used a risk tiering formula to prioritize for remediation the risks identified based on their severity.
- I created a risk treatment plan using ISO27001 standards which was used by the organization to carry out risk assessments and compliance analysis across all areas of the business.