Company logo hidden

Senior Manager - Third Party Security

Unlock employer Riyadh, Saudi Arabia Direct to Company Under an hour ago · 22 Sep 2026

Financial

  • Estimate: $60k - $120k*
  • Zero income tax location

Accessibility

  • Visa Provided

Requirements

  • Experience: Senior
  • English: Professional

Position

About the Role
Lead and manage the company's Third-Party Security Risk Management program to ensure that vendors, partners, consultants, and service providers comply with cybersecurity requirements and do not introduce unacceptable risks to the company's information assets, systems, and operations. This role is responsible for establishing security assessment frameworks, overseeing vendor security reviews, and driving the remediation of identified risks, aligning with industry practices for cybersecurity risk management and third-party oversight.

Ready to apply for roles like this?

Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.

Unlock employer & apply directly

Key Responsibilities

  • Develop and maintain the Third-Party Security Risk Management (TPSRM) framework.
  • Conduct cybersecurity due diligence and risk assessments for vendors and suppliers.
  • Review security requirements during procurement, RFP, and contract stages.
  • Assess cloud providers, SaaS platforms, managed service providers, and strategic partners.
  • Define vendor security controls aligned with NCA ECC, ISO 27001, NIST, and the company's cybersecurity standards.
  • Establish vendor risk classification and assessment methodologies.
  • Monitor remediation plans and track closure of identified security gaps.
  • Collaborate with Procurement, Legal, Compliance, Enterprise Risk, and Technology teams.
  • Lead periodic reassessments of critical vendors.
  • Report third-party cyber risks, trends, and KPIs to senior management.
  • Manage external security audits, questionnaires, and assurance activities.
  • Lead and develop the Third-Party Security team.

Requirements

  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, or related field.
  • 8–12 years of cybersecurity experience.
  • Minimum 4 years in Third-Party Security, Vendor Risk Management, Cybersecurity Risk Management, or GRC.
  • Experience within large enterprises, giga projects, banking, telecom, government, or critical infrastructure environments.
  • Experience managing teams and stakeholder engagement at senior levels.
Apply Direct

Jobs you might like   View all jobs

About Real Estate Development / Entertainment Company

Company details are hidden. Subscribe to view full company profile.

Ready to apply for this role?

Apply Direct