
Posted 16 days ago
Vendor Assessor
DeeplightVendor Assessor
Perks & benefits
Education AllowanceHealth InsurancePaid LeaveVisa
Requirements
Third-Party Risk Management (TPRM) expertise, Proficiency in ISO/IEC 27001, NIST, SOC 1/2, and GDPR, Cloud security evaluation (AWS/Azure), 5+ years in cybersecurity auditing or risk management, Experience in regulated banking or financial services, Client-facing professional services experience
Skills
CybersecurityISO 27001
About the role
Responsibilities
- Conduct end-to-end cybersecurity and data privacy risk evaluations of third-party vendors, including SOC 2 reports, ISO certifications, and architecture diagrams
- Verify vendor compliance with financial services regulations, local banking authority guidelines, and internal security standards
- Identify security gaps, negotiate technical remediation plans with vendor security teams, and track risks to closure
- Produce detailed risk assessment reports and maintain an accurate ledger of third-party risk profiles for regulatory audits
- Advise procurement teams, business sponsors, and senior risk managers on vendor-related technical risks
- Represent the company by providing objective analytical judgment and structured communication to high-level stakeholders
Requirements
- 5+ years of dedicated experience in cybersecurity auditing, information security risk management, or Third-Party Risk Management (TPRM)
- Deep proficiency in global security and privacy frameworks including ISO/IEC 27001, NIST, SOC 1/2, and GDPR
- Proven experience executing vendor security assessments within a regulated banking or financial services environment
- Ability to evaluate network security, application security, and cloud controls (AWS/Azure)
- Experience in a client-facing professional services or consultancy capacity
- Strong ability to synthesize complex technical findings into clear risk summary reports for senior leadership
Preferred Qualifications
- Professional certifications such as CISA, CRISC, CISM, or CISSP
- Practical familiarity with enterprise TPRM and GRC platforms like OneTrust, Archer, or ServiceNow
- Understanding of software supply chain security and automated software bill of materials (SBOM) validation
Benefits
- Competitive salary and monthly employee incentive program
- Comprehensive personal health insurance
- Visa sponsorship for the successful candidate
- Professional development, certification support, and subscription reimbursement
- Career advancement opportunities within a rapidly growing AI consultancy
About the Company
Deeplight is a specialist AI and data consultancy based in the UAE. We partner with organizations across diverse sectors—with deep expertise in Financial Services and Banking—to bridge the gap between complex data and actionable business strategy through bespoke, high-impact intelligent systems.
ScoutJobs Agent
Get matches like this delivered daily
Sign up free — we'll pull jobs that fit your CV from across the web and rank them for you.
Get started — it's freeVendor Assessor
Deeplight · Abu Dhabi
