Vendor Cyber Risk Analyst
Vendor Cyber Risk Analyst
Vendor Cyber Risk Analyst
Requirements
Professional Experience
Minimum 1-2 years in Cybersecurity / IT Risk / IT audit areas roles (Required)
Education
Higher Education Certificate (HNC) computing or technology (IT) or Bachelors or Equivalent in Computer Science, Telecommunications engineering or similar (Required).
Cybersecurity / IT Risk / Audit industry certifications (such as CISA, CISM, ISO/IEC 27001, CompTIA Security+, CISSP, SSCP, CSX Cybersecurity Fundamentals, etc.) (Preferred)
Languages
Fluent in English (Required)
Hard Skills
Knowledge of information technology and security certifications and frameworks such as ISAE 3000 (SOC 2), NIST CSF, ISO 27001, COBIT... (Required)
Knowledge of IT Audit practices, IT Risk Management, Vulnerability Management, Security testing methodologies (OWASP, OSSTMM...) (Required)
Soft Skills
A candidate will also be able to manage multiple tasks simultaneously, and an enthusiastic team player.
Effective communication and excellent writing skills.
Keen attention to details and analytics skills are preferred.
Benefits
Original Advert
IT STARTS HERE
Santander (www.santander.com) is evolving from a global, high-impact brand into a technology-driven organization, and our people are at the heart of this journey. Together, we are driving a customer-centric transformation that values bold thinking, innovation, and the courage to challenge what's possible.
This is more than a strategic shift. It's a chance for driven professionals to grow, learn, and make a real difference.
Our mission is to contribute to help more people and businesses prosper. We embrace a strong risk culture and all our professionals at all levels are expected to take a proactive and responsible approach toward risk management.
The General Intervention and Management Control Division is composed of different areas (Regulatory Capital; Management Control; Internal Control; General Intervention; Pensions; Projects and Systems; Accounting Regulation) but with complementary functions, some of which are: interpretation of accounting regulations, preparation of income statements and business management balance sheets, planning and coordination of the process of preparing objectives and budgets of the units/business units/business, Estimates and financial planning, among others.
Santander is proud of being an organization where there are equal opportunities regardless of age, gender, disability, civil status, race, religion or sexual orientation.
THE DIFFERENCE YOU MAKE
VRAC is looking for a Vendor Cyber Risk Analyst based out of Boadilla del Monte (Madrid) office.
As a Vendor Cyber Risk Analyst, you will:
- Certificate critical services / vendors, establish and monitor remediation plans and issue a residual risk rating.
- Review and challenge of inherent risk scoring of critical services.
- Reporting and collaboration with CISO teams regarding risk assessment results.
- To support the key account management for providing vendor risk service in Santander Group.
- Periodic reporting to local Cost / Risk areas and respective committees.
WHAT YOU'LL BRING
Our people are our greatest strength. Every individual contributes unique perspectives that make us stronger as a team and as an organization. We're enabling teams to go beyond by valuing who they are and empowering what they bring.
The following requirements represent the knowledge, skills, and abilities essential for success in this role. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Professional Experience
- Minimum 1-2 years in Cybersecurity / IT Risk / IT audit areas roles (Required)
Education
- Higher Education Certificate (HNC) computing or technology (IT) or Bachelors or Equivalent in Computer Science, Telecommunications engineering or similar (Required).
- Cybersecurity / IT Risk / Audit industry certifications (such as CISA, CISM, ISO/IEC 27001, CompTIA Security+, CISSP, SSCP, CSX Cybersecurity Fundamentals, etc.) (Preferred)
Languages
- Fluent in English (Required)
Hard Skills
- Knowledge of information technology and security certifications and frameworks such as ISAE 3000 (SOC 2), NIST CSF, ISO 27001, COBIT... (Required)
- Knowledge of IT Audit practices, IT Risk Management, Vulnerability Management, Security testing methodologies (OWASP, OSSTMM...) (Required)
Soft Skills
- A candidate will also be able to manage multiple tasks simultaneously, and an enthusiastic team player.
- Effective communication and excellent writing skills.
- Keen attention to details and analytics skills are preferred.
WE VALUE YOUR IMPACT
Your contribution matters, and it's recognized. You can expect a fair, competitive reward package that reflects the impact you create and the value you deliver. But we know rewards go beyond numbers.
- We're enable our teams to go beyond through global opportunities and broad career paths.
- Flexibility that works. Enjoy a hybrid working models-some days remote, some days onsite with your team-along with flexible hours.
- Learning for life. Access hundreds of courses on our platforms, including exclusive access to our global learning space: Santander Open Academy (www.santanderopenacademy.com)
- Competitive rewards. Receive a highly competitive salary with performance-based bonuses, motivating you to keep growing with us.
- Financial advantages. Benefit from preferential banking terms, special interest rates on loans, life insurance, and more.
- Your health is our priority. Through BeHealthy, our global wellness programme, we promote Holistic wellbeing.
- We know family is everything. That's why we offer childcare support and family-friendly programmes tailored to each life stage.
- Always by your side. Get access to Santander Contigo, our program for employees and their families offering legal, emotional, and administrative advisory services.
- Extra benefits. Gym/WellHub membership, medical centers in some of our facilities, meal subsidy, parking, shuttle service from various points in Madrid, as well as exclusive discounts and offers for Santander employees. And that's only the beginning-we'll tell you more when you join!
We're here to keep you motivated, help you reach your goals, and celebrate your progress, every step of the way.
LOCAL COMPLIANCE
Santander is proud of being an organization where there are equal opportunities regardless of age, gender, disability, civil status, race, religion or sexual orientation. We are committed to providing an inclusive and accessible application process for all candidates.
WHAT TO DO NEXT
If this sounds like a role you are interested in, then please apply.
READY TO TAKE THE NEXT STEP IN YOUR JOURNEY?
#LI-FB1
Application managed by Santander