Support the Supplier Cyber Risk and Assurance processes for all business units and support functions across GSK, to ensure cyber security risks that may be introduced by third-parties are understood, managed or mitigated
Key Responsibilities
Conduct comprehensive supplier cybersecurity assessments and generate detailed reports, ensuring alignment with up-to-date departmental procedures and industry best practices.
Continuously develop and enhance the third-party risk management process framework for security risk, incorporating the latest standards, procedures, emerging technologies, and AI-driven insights.
Review and analyse supplier security practices through questionnaires, audits, scans and assessments to ensure compliance with company cyber security standards.
Coordinate and respond to security incidents involving suppliers, including investigation, mitigation, and reporting.
Examine supplier contracts to ensure they include necessary security clauses and negotiate terms to address identified risks.
Provide clear and effective support to internal third-party relationship owners and external third-party representatives, facilitating accurate responses to the security risk assessment questionnaire.
Collaborate closely with Legal, Procurement teams to ensure the inclusion of robust security and privacy clauses in third-party contracts, in line with current regulatory and industry requirements.
Accurately interpret third-party responses to assessment questionnaires, using AI and automation tools to translate them into concise and actionable risk exposure reports for internal stakeholders.
Work with internal third-party relationship owners and external third-party representatives to recommend and implement effective cyber security controls to mitigate risks to GSK.
Ensure robust tracking and remediation of third-party security and privacy risk exposures identified through assessment processes
Deliver ongoing training and awareness programs related to the supplier cyber risk and assurance process, keeping pace with the latest industry trends and threats.
Aggregate and distribute periodic program metrics and dashboards, leveraging advanced analytics and reporting tools.
Provide expert consultancy and subject matter expertise (SME) support in conducting security posture assessments, as part of continuous monitoring or post-breach scenarios, ensuring that suppliers maintain robust and up-to-date security controls with the assistance of AI and automation technologies. * Ability to Perform detailed assessments of AI-enabled tools to identify potential risks related to compliance, security, bias, and ethical considerations.
MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.