Consultant for IT Security Evaluation of Suppliers

3 settimane fa


Milan, Italia Stefanini A tempo pieno

Job Details

Consultant for IT Security Evaluation of Suppliers
Job Description The consultant will be responsible for evaluating IT security maturity of suppliers and coordinating the remediation actions to enhance supplier security posture. This role involves in-depth analysis of security findings, collaboration, and coordination with external partners, and driving proactive security measures to mitigate supplier potential risks effectively.
 Main Task / Key responsibilities: Collaborate and coordinate with external stakeholders to send self-assessment questionnaire to suppliers and to collect evidence of implemented IT security controls. Manage supplier assessment plan.  Review supplier IT Security Assessment reports delivered by external stakeholders to ensure quality of risk evaluation. Design risk mitigation action plans to improve security posture of suppliers. Work closely with suppliers and internal teams to guide and oversee remediation efforts, ensuring compliance with security best practices and industry standards.  Facilitate communication and coordination between internal teams and suppliers to ensure timely resolution of identified security weaknesses.  Provide guidance and recommendations to suppliers on security measures and risk mitigation strategies based on assessment findings.  Document findings, remediation progress, and lessons learned for continuous improvement and knowledge sharing within the organization.  Job Requirements Bachelor's degree in computer science, Information Security, or a related field. Availability for an individual employment contract for a fixed term of 12 months with the possibility of extension.
  Knowledge and Experience: Demonstrated experience in information security, particularly in security risk assessments and vulnerability management. Proficiency in assessing security vulnerabilities and their potential impact on systems and networks.  Strong understanding of industry-standard security frameworks (e.g., ISO 27001, NIST, CIS). Excellent communication and interpersonal skills to collaborate effectively with internal and external stakeholders.
Experience in coordinating and driving remediation efforts to address identified security vulnerabilities. Certifications such as Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) are a plus.  The preceding job description had been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties and responsibilities required of employees assigned to this job. What's next: Diversity & Inclusion Here at the Stefanini Group, we value plurality and equity, regardless of race, sexual orientation, disability, age, ancestry, religion, gender, and nationality. We understand and encourage the importance of being you About us We are a Brazilian company with over 35 years of experience in delivering IT services worldwide, ranging from IT outsourcing to application development or IT staffing. We have a direct presence in 41 countries, through our 70 offices located throughout the world. We have managed to become the preferred partner of many small-to-midsize local and regional companies as well. Most of our clients come from industries such as financial services, manufacturing, telecommunications, chemical, services, technology, public sector and utilities.Stefanini has career opportunities locally and around the world for professionals interested in a vibrant, passionate, team-oriented workplace. If you are a customer-centric person with a "get it done" attitude, come over for coffee and a talk on your future career with us Learn more about us on and join us on , and where we regularly post insights from our colleagues.#LI-HYBRID

  • IT Risk

    3 giorni fa


    Milan, Italia Oliver James Associates Ltd. A tempo pieno

    For a Banking company we are looking for an enthusiastic IT Security and Risk Specialist. A Team-player that is technically passionate, proud of his/her craft, solution-focused and broadly developed on all SecOps disciplines including latest technologies (awareness on pipeline automation, container infrastructure), IT risk and Monitoring & Altering. You are...


  • Milan, Italia Control Risks A tempo pieno

    Control Risks is a global risk consultancy firm that assists major corporations in managing security challenges during major events worldwide. We work closely with prestigious events such as UEFA, America's Cup regattas, World Cup, the Olympics, and more. Our team of experienced security professionals plays a critical role in ensuring the safety and security...


  • Milan, Italia Control Risks A tempo pieno

    Control Risks is a global risk consultancy firm that assists major corporations in managing security challenges during major events worldwide. We work closely with prestigious events such as UEFA, America's Cup regattas, World Cup, the Olympics, and more. Our team of experienced security professionals plays a critical role in ensuring the safety and security...


  • Milan, Italia ION Group A tempo pieno

    About us The ION Group is made up of innovators who provide trading and workflow automation solutions, high-value analytics, and strategic consulting to corporations, financial institutions, central banks, and governments. More than 40% of the world’s largest companies use our solutions. We’ve achieved tremendous growth by bringing together some of the...

  • Cyber Security

    3 giorni fa


    Milan, Italia Sky A tempo pieno

    The senior security architect will set controls and solutions in relation to Sky cyber security objectives, will maintains cyber security documentation and will develops architecture patterns and approaches to work with new technologies. The role holder will work with all teams and all levels of management to review and improve the level of security of any...

  • Security Analyst

    3 giorni fa


    Milan, Italia iGenius A tempo pieno

    Milan, Metropolitan City of Milan, ItalyWork somewhere with the creativity of a scaleup and expertise of an enterprise. We are seeking an experienced Security Analyst who will be responsible for planning, designing, and carrying out penetration tests to identify vulnerabilities in our software, implementing OWASP best practices and thorough knowledge of...

  • Cyber Security

    3 giorni fa


    Milan, Italia Sky A tempo pieno

    SkyExplore a career at Sky, Europe's leading media and entertainment company. Make a positive impact on millions.View company pageThe role is part of the Cyber Security function, the candidate will be responsible for measuring the effectiveness of Security strategy against a potential attack by supporting and performing activities such as Red Team...


  • Milan, Italia Lonza A tempo pieno

    Job Description: IT Infrastructure Security Engineer Today, Lonza is a global leader in life sciences operating across three continents. While we work in science, there’s no magic formula to how we do it. Our greatest scientific solution is talented people working together, devising ideas that help businesses to help people. In exchange, we let our people...


  • Milan, Italia Lonza A tempo pieno

    Today, Lonza is a global leader in life sciences operating across three continents. While we work in science, there’s no magic formula to how we do it. Our greatest scientific solution is talented people working together, devising ideas that help businesses to help people. In exchange, we let our people own their careers. Their ideas, big and small,...


  • Milan, Italia Capgemini A tempo pieno

    Invia un messaggio diretto all’autore dell’offerta di lavoro da Capgemini Ti piacerebbe dare uno slancio alla tua carriera? Giocare un ruolo da protagonista in una azienda leader nel settore IT? Partecipare all’esperienza di innovazione tecnologica che viviamo ogni giorno in Capgemini? Cogli l’opportunità, unisciti alla squadra, intraprendi il tuo...


  • Milan, Italia Minded Security A tempo pieno

    Software Security Trainer – Italy Contesto:IMQ Minded Security supporta le aziende nel realizzare software e servizi sempre più sicuri oramai da 15 anni. Divisa in 4 aree – Consulting, Testing, Training e Software Security Technologies – IMQ Minded Security combina le ultime ricerche sulla sicurezza del software con le tecniche di test riconosciute a...

  • Security Engineer

    3 giorni fa


    Milan, Italia iGenius A tempo pieno

    Milan, Metropolitan City of Milan, ItalyWork somewhere with the creativity of a scaleup and expertise of an enterprise. We are seeking an experienced Security Engineer to join our Architecture & Security team. The ideal candidate will have at least 3-5 years of experience in this field and will play a crucial role in developing and maintaining our security...


  • Milan, Italia Estée Lauder Companies A tempo pieno

    Are you r eady to be part of the future of prestige beauty? ✨ At The Estée Lauder Companies you can play a rolein our global success. We are a leader in prestigebeauty with a growing portfolio of coveted brands.We create and market the highest quality productsthat delight consumers around the globe. Our culturevalues diversity of thought and...

  • IT Cloud Architect

    2 settimane fa


    Milan, Italia Prysmian Group A tempo pieno

    Description We are looking for an experienced Service Cloud Architect, based in the headquarter in Milan of Prysmian Group. The candidate will report to the Global Infrastructure & Operation Manager and work within the IT department. He/her can manage complex infrastructures such as Data Center, Public Cloud, Virtual Farm and has experience in project...


  • Milan, Italia Kuehne+Nagel A tempo pieno

    Are you an IT Infrastructure Specialist? Would you like to develop your career in one of the biggest Logistics Company in the world? Your Role The IT Infrastructure Specialist works within the IT function. IT in Kuehne+Nagel is a fundamental asset for the business and encompasses a wide range of activities and services, they are accountable to...


  • Milan, Italia Kuehne+Nagel A tempo pieno

    Are you an IT Infrastructure Specialist? Would you like to develop your career in one of the biggest Logistics Company in the world? Your Role The IT Infrastructure Specialist works within the IT function. IT in Kuehne+Nagel is a fundamental asset for the business and encompasses a wide range of activities and services, they are accountable to support...


  • Milan, Italia KUEHNE + NAGEL A tempo pieno

    Are you an IT Infrastructure Specialist? Would you like to develop your career in one of the biggest Logistics Company in the world? Your Role The IT Infrastructure Specialist works within the IT function. IT in Kuehne+Nagel is a fundamental asset for the business and encompasses a wide range of activities and services, they are accountable to support...


  • Milan, Italia Kuehne Nagel A tempo pieno

    Are you an IT Infrastructure Specialist? Would you like to develop your career in one of the biggest Logistics Company in the world? Your Role The IT Infrastructure Specialist works within the IT function. IT in Kuehne+Nagel is a fundamental asset for the business and encompasses a wide range of activities and services, they are accountable to support...

  • IT Licence To Operate

    2 giorni fa


    Milan, Italia Vodafone A tempo pieno

    IT Licence To Operate - Senior SpecialistEnable the CIO (Chief Information Officer) and his staff to make decisions in terms of investment priorities in relation to risks to be managed (e.g. Business, Security, internal Policy) and budget availability on FY. Internal IT Department projects (i.e. MUST DO initiatives, Cyber Security driven) will be organized...


  • Milan, Italia Kuehne + Nagel AS A tempo pieno

    Are you an IT Infrastructure Specialist? Would you like to develop your career in one of the biggest Logistics Company in the world?Your RoleThe IT Infrastructure Specialist works within the IT function. IT in Kuehne+Nagel is a fundamental asset for the business and encompasses a wide range of activities and services, they are accountable to support business...