UN

Cyber Security Officer

Unijobs
Posted 6 hours ago
IrelandHybrid€33.5/hrEngineering & Development
Is this job info correct?

Unijobs on behalf of our public sector client have a requirement for a Cyber Security Officer to join their team. The duration of this post is 12 months initially with likely extensions thereafter. This role will be Flexible/Hybrid Working - The successful candidate must be able to attend client sites as required.


Working 35 hours per week, the successful candidate will be employed as an agency employee and will be paid an hourly rate of €33.52 per hour based on an annualised salary of €61,219. You will accrue 30 days annual leave per year and paid Bank Holidays.


Principal Duties and Responsibilities


Supply Chain Risk Management

  • Coordinate SCRM activity and maintain oversight of the supplier assessment pipeline, prioritising work according to supplier criticality, risk, procurement dependencies and business need.
  • Perform cybersecurity due diligence for new and existing suppliers and review questionnaires, certifications, policies, audit or assurance reports, testing outputs and other supporting evidence.


Technical Supplier Assessment

  • Perform technical cybersecurity assessments of supplier solutions and services with Security Architecture, Networking and other technical subject matter experts against applicable security controls aligned to NIST CSF and ISO27001.
  • Review and interpret technical information including solution architecture, network diagrams, data flows, hosting arrangements, connectivity, integrations, APIs, trust relationships and remote access requirements.


SCRM Governance, Tooling and Reporting

  • Use a Third-Party Risk Management (TPRM) or equivalent cyber GRC platforms to manage supplier assessments, workflows, evidence, findings, remediation, monitoring and reporting.
  • Support continuous improvement of SCRM processes, supplier tiering criteria, assessment templates, evidence requirements, workflows, dashboards and guidance.


Cybersecurity Compliance and Assurance

  • Support cybersecurity compliance and assurance activities against applicable HSE policies, regulatory obligations and recognised frameworks, including NIS2, ISO/IEC 27001 and NIST CSF.
  • Coordinate the collection, review and validation of evidence required for internal or external assurance and support the tracking and closure of audit, regulatory and compliance findings.


Stakeholder Engagement and Leadership

  • Act as a point of coordination for supplier cybersecurity assessments, building effective relationships across technical, procurement, business and supplier stakeholders.
  • Provide constructive challenge, communicate technical and risk information clearly, and contribute to SCRM capability through guidance, peer review and improvement initiatives.


Eligibility Criteria


Applicants must, at the latest date of application, clearly demonstrate all the criteria listed below as relevant to the role:


  • A minimum of four years’ relevant professional experience in Supply Chain Risk Management, Third Party Risk Management, cybersecurity risk, security assurance or a closely related discipline, including experience within the Irish public sector or another large, complex or regulated organisation.
  • Demonstrated experience performing or coordinating cybersecurity assessments of suppliers, service providers or outsourced technology services, including supplier criticality or tiering, due diligence, evidence review, risk identification, remediation and ongoing assurance, while working across technical, procurement, business and supplier stakeholders.
  • Demonstrated experience performing or coordinating technical cybersecurity assessments in networking and architecture environments, including working with technical specialists and interpreting network diagrams, solution architecture, data flows, hosting, connectivity, integrations and relevant security controls.
  • Practical experience using a Third-Party Risk Management or equivalent GRC platform to manage supplier assessments, evidence, workflows, findings, remediation, monitoring and management reporting.


Highly Desirable

  • Experience in a healthcare, public sector or large complex ICT environment.


Professional Knowledge & Experience


The successful candidate will demonstrate:

  • Strong knowledge of SCRM and TPRM across the supplier lifecycle, including criticality and tiering, due diligence, inherent and residual risk, findings management, remediation, ongoing monitoring and reassessment.
  • Sound knowledge of networking, technology architecture and relevant cybersecurity controls, sufficient to understand supplier solutions, engage effectively with technical specialists and identify material security concerns.
  • Knowledge of cybersecurity regulation, assurance and recognised frameworks relevant to the role, including NIS2, ISO/IEC 27001, NIST CSF and relevant NCSC guidance.
  • Strong analytical, written and interpersonal skills, with the judgement to challenge supplier evidence, develop proportionate recommendations, influence stakeholders and recognise when escalation or specialist input is required.


*This position may be subject to Garda Vetting and Foreign Police Clearance, if applicable you will be required to obtain these prior to commencing in this role*


Unijobs is an equal opportunities employer

Similar jobs