Third Party Risk Mgmt
Who We Are
At Kyndryl, we run and reimagine the mission-critical technology systems that drive advantage for the world's leading businesses. We are at the heart of progress; with proven expertise and a continuous flow of AI-powered insight, enabling smarter decisions, faster innovation, and a lasting competitive edge. For our people-Kyndryls-that means doing purposeful work that powers human progress. Join us and experience a flexible, supportive environment where your well-being is prioritized and your potential can thrive.
The Role
Kyndryl's Security & Resiliency is one of our most critical practices, ensuring enterprises, regardless of their size and complexity, remain secure, available, reliable, and resilient. We take Cybersecurity seriously. We're not just invested; we're committed. We're not just protecting data; we're empowering. Kyndryl is committed to making the world safer, not only by investing in state-of-the-art services and technologies but also by empowering underserved communities with essential cyber skills.
When you walk through our doors, you're not only joining a team but you're also becoming part of a legacy. Welcome to Kyndryl, where Cybersecurity is not just a job - it's a passion; a commitment to designing, running, and managing the most modern and reliable technology infrastructure the world depends on every day.
By joining Security & Resiliency as Cybersecurity Assurance at Kyndryl, you'll step into the world of Cybersecurity with a mission that extends beyond ordinary practices. You won't just be supporting one of the largest portfolios of Fortune 500 clients - you'll be partnering with them to safeguard their digital footprint in an ever-evolving landscape.
Cybersecurity Assurance is more than just compliance; it is about demonstrating the art of offensive security techniques, risk management, mitigation and quantification methodologies to protect our customers from emerging threats. We're not here to check boxes; we're here to fortify and empower. Your technical expertise will be the foundation on which we build our customers' audit readiness.
While your responsibilities may vary to include vulnerability management, penetration testing, and/or audit compliance - you'll be a vital component in our mission to fulfill each customer's cybersecurity requirements. Your insights and feedback will shape our future capabilities while driving innovation and excellence in cybersecurity. You will be the visionary behind business-driven IT solutions and processes that stand as defense against cybersecurity threats and regulatory challenges. Your mandate: risk management, compliance, protection, and readiness.
If you're ready to embrace the challenge, be the change, and make your mark in the landscape of Cybersecurity - join us at Kyndryl and be a part of our journey in safeguarding the digital world.
Roles & Responsibilities
- Focuses on designing and reviewing business-driven information technology solutions and business processes to meet cybersecurity and regulatory requirements related to function, protection, assurance, risk management, and compliance.
- Aimed at maintaining the highest levels of compliance posture.
- Maintains audit readiness at all times by performing reviews and tests.
- Reviews changing requirements; identifies new risks, threats, vulnerabilities, potential anomalous flows, and interactions.
- Defines the security processes for assurance, management, and compliance.
- Ensures that security subsystems, and architectures for security in networks, infrastructure, middleware, applications, and systems & service management systems meet the business' needs.
- Utilizes the vulnerability management processes of identifying, evaluating, and prioritizing vulnerabilities in computer systems, business processes, networks, and applications, and taking steps to remediate or mitigate risks.
Your Future at Kyndryl When you join Kyndryl, you're not just joining a company - you're entering a space of opportunities. Our partnerships with industry alliances and vendors mean you'll have access to skilling and certification programs needed to excel in Security & Resiliency, while simultaneously supporting your personal growth. Whether you envision your career path as a technical leader within cybersecurity or transition into other technical, consulting, or go-to-market roles - we're invested in your journey.
Who You Are
Who You Are You're good at what you do and possess the required experience to prove it. However, equally as important - you have a growth mindset; keen to drive your own personal and professional development. You are customer-focused - someone who prioritizes customer success in their work. And finally, you're open and borderless - naturally inclusive in how you work with others.
Required Skills and Experience
- 10+ years of cybersecurity experience
- Knowledge of global cyber threats, threat actors and the tactics, techniques and procedures (TTPs) used by cyber adversaries
- Experience conducting security and risk assessments using security frameworks (e.g., NIST, RMF, ISO, Common Criteria)
- Ability to adapt to changing security threats and technologies and stay updated with the latest security trends and best practices
Preferred Skills and Experience
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or other related fields
- Experience with either NIST 800-30 and/or ISO 27005 and/or ISO 31000 risk framework
- Experience with audits including but not limited to SOC1/SOC2/SOC3, ISO 27001, ISO 27017, ISO 27018, HITRUST, and/or PCI-DSS.
- Cybersecurity certification
Being You
Not included in the source posting: what you'll do, benefits.
Skills
Who can apply
The employer didn't state any visa, work authorization, citizenship or clearance requirements in this posting. Confirm with the employer before applying.
Read automatically from the employer's posting text. Always confirm with the employer — requirements can change after a job is published.