Director, IT Security Third Party Monitor & Compliance

Reference: jui8bn6gsihbsnhl7x66

We are seeking a Director, IT Security Third Party Monitor & Compliance to lead the governance, oversight, and continuous improvement of third-party information security and compliance activities. This senior role will establish and maintain a comprehensive framework for assessing suppliers, service providers, and strategic partners throughout the relationship lifecycle. You will ensure that third-party risks are identified, evaluated, documented, and managed in line with applicable regulatory obligations, internal policies, contractual requirements, and recognised industry standards.

Key responsibilities include directing third-party security assessments, reviewing control evidence, monitoring remediation plans, and providing clear risk-based reporting to senior leadership and relevant governance committees. You will oversee the development of risk thresholds, metrics, dashboards, and escalation processes, while partnering with procurement, legal, technology, privacy, enterprise risk, and business stakeholders. The role will also lead the review and enhancement of security clauses, due diligence procedures, ongoing monitoring practices, exception management, and audit readiness. You will manage and develop a team of security and compliance professionals, promote consistent operating standards, and support responses to regulatory reviews, internal audits, and customer assurance requests.

The successful candidate will bring substantial experience in third-party risk management, information security governance, technology compliance, or a related discipline, including significant leadership experience in complex, regulated environments. Strong knowledge of frameworks and standards such as ISO 27001, NIST, SOC 2, PCI DSS, privacy regulations, and relevant outsourcing guidance is highly desirable. You should be confident interpreting technical and audit information, challenging stakeholders constructively, and communicating material risks to both technical and executive audiences. Excellent analytical, organisational, negotiation, and presentation skills are essential, together with the ability to manage competing priorities and influence outcomes across a matrixed organisation. Professional certifications such as CISSP, CISM, CRISC, CISA, or relevant third-party risk qualifications would be advantageous.

COMPETITIVE SALARY
Added 09/09/2026
Reference: jui8bn6gsihbsnhl7x66

Director, IT Security Third Party Monitor & Compliance

London, England, United Kingdom Permanent Compliance

Other similar jobs

Assistant Vice President, Cyber & Network Security Engineer

Added 14/09/2026

We are seeking an experienced Assistant Vice President, Cyber & Network Security Engineer to lead the design, implementation and continuous improvement of enterprise security capabilities. This role combines strategic leadership with hands-on technical expertise, supporting the protection of critical infrastructure, applications, data and networks against evolving cyber threats. The successful candidate will work closely with technology, risk, compliance and business stakeholders to establish resilient, risk-based security solutions aligned with organisational objectives and regulatory expectations. Key responsibilities will include defining and maintaining network security architecture, security standards and engineering roadmaps; overseeing the deployment and optimisation of firewalls, intrusion prevention, secure access,...

Learn more

Senior Associate, Cyber Security Analyst – Incident Response

Added 02/09/2026

We are seeking a Senior Associate, Cyber Security Analyst – Incident Response to join a dedicated security operations function. In this role, you will help protect critical systems, data and services by leading the investigation and response to cyber security incidents. You will work closely with technology, risk, infrastructure and business teams to identify threats, contain activity, recover affected environments and strengthen the organisation’s overall security posture. Key responsibilities include monitoring and analysing security alerts, endpoint activity, network traffic, identity events and other indicators of compromise. You will triage incidents, determine scope and severity, coordinate containment and eradication activities, and...

Learn more

Third Party Security Due Diligence Lead

Added 09/09/2026

We are seeking a Third Party Security Due Diligence Lead to oversee the assessment and management of information security risks associated with suppliers, partners and other external service providers. In this role, you will lead the end-to-end due diligence process, ensuring that third parties meet defined security, privacy, resilience and compliance requirements before and throughout the relationship lifecycle. You will work closely with procurement, legal, privacy, technology, risk and business stakeholders to provide clear, practical and risk-based recommendations. Your responsibilities will include designing and maintaining third-party security assessment processes, reviewing security questionnaires and supporting evidence, and evaluating controls across areas...

Learn more

Information Security Third Party Assurance Analyst

Added 03/09/2026

We are seeking an Information Security Third Party Assurance Analyst to support the assessment and ongoing oversight of the organisation’s suppliers, partners and other external service providers. In this role, you will help ensure that third parties meet required information security, privacy, resilience and risk management standards before and throughout the relationship lifecycle. You will work closely with procurement, legal, technology, privacy, risk and business teams to provide clear, practical assurance and support informed risk-based decisions. Your responsibilities will include reviewing supplier security questionnaires, independent assurance reports, policies, certifications and other evidence; assessing controls against recognised frameworks and internal requirements;...

Learn more

Third Party Cyber Risk Lead

Added 25/08/2026

We are seeking an experienced Third Party Cyber Risk Lead to strengthen the management of cyber security risks across our external supplier and partner ecosystem. In this role, you will lead the development and delivery of a robust third-party cyber risk management programme, helping ensure that suppliers meet required security, resilience, privacy and regulatory standards. You will work closely with procurement, legal, technology, information security, risk and business teams to embed effective controls throughout the supplier lifecycle. Your responsibilities will include defining and maintaining third-party cyber risk policies, standards, procedures and assessment methodologies; conducting risk assessments and due diligence for...

Learn more

Third Party Cyber Risk Lead

Added 25/08/2026

We are seeking an experienced Third Party Cyber Risk Lead to strengthen the management of cyber security risks across a complex supplier and partner ecosystem. In this role, you will develop and oversee a proportionate third-party cyber risk management framework, helping ensure that suppliers meet security expectations throughout the procurement, onboarding, monitoring, renewal and offboarding lifecycle. You will work closely with procurement, legal, information security, technology, risk and business stakeholders to embed effective controls and provide clear, practical advice. Your responsibilities will include conducting and overseeing supplier cyber risk assessments, reviewing security questionnaires and independent assurance reports, identifying control gaps,...

Learn more

Cyber Operations & 3rd Party Security Manager

Added 01/09/2026

We are seeking a Cyber Operations & 3rd Party Security Manager to lead the development, operation and continual improvement of cyber security capabilities across a complex technology and supplier landscape. This role will help protect critical systems, information and services by overseeing security operations, coordinating incident response and ensuring that third-party relationships meet appropriate security standards. You will work closely with technology, risk, compliance, procurement and business stakeholders to embed practical, proportionate and effective security controls. Key responsibilities will include managing day-to-day cyber operations, monitoring security events and vulnerabilities, coordinating responses to incidents and supporting investigations, remediation and lessons learned....

Learn more

Director of Cyber Security and Compliance

Added 20/08/2026

We are seeking an experienced and strategic Director of Cyber Security and Compliance to lead our organization’s efforts in safeguarding critical data and ensuring adherence to regulatory standards. In this role, you will develop and implement comprehensive cyber security strategies, policies, and procedures that align with industry best practices and regulatory requirements. You will oversee risk assessments, audits, and incident response protocols, working closely with IT teams to enhance the overall security posture of the organization. The ideal candidate will possess a deep understanding of cyber security frameworks, compliance regulations, and data protection laws. You will be responsible for leading...

Learn more

Chief Information Security Officer Director

Added 16/09/2026

We are seeking an experienced Chief Information Security Officer Director to lead the development and execution of an organisation-wide information security strategy. This senior leadership role will be responsible for protecting critical systems, data, infrastructure and services while ensuring security supports business objectives and operational resilience. You will provide clear direction to security teams, advise executive leadership on cyber risk, and promote a strong culture of security, accountability and continuous improvement across the organisation. Key responsibilities include establishing and maintaining security policies, standards, procedures and governance frameworks; overseeing threat management, vulnerability management, security monitoring, identity and access management, data protection...

Learn more

Director, Senior Security Architect

Added 15/09/2026

We are seeking a Director, Senior Security Architect to provide strategic leadership and technical direction across a complex cybersecurity environment. This role will define and evolve the security architecture strategy, ensuring that technology platforms, applications, infrastructure and information assets are protected against current and emerging threats. You will work closely with senior technology, risk, compliance and business stakeholders to translate organisational objectives into practical, resilient and scalable security solutions. Key responsibilities include leading the development of enterprise security architecture principles, standards, reference models and roadmaps; reviewing proposed technologies and designs for security, privacy and regulatory alignment; and overseeing the integration...

Learn more

Director, Senior Security Architect

Added 15/09/2026

We are seeking a Director, Senior Security Architect to provide strategic leadership and technical direction across enterprise cybersecurity architecture. This role will define and evolve a secure, scalable architecture strategy aligned with business priorities, regulatory obligations, and emerging threat landscapes. You will lead the design of security solutions across cloud, applications, infrastructure, data, identity, and networks, ensuring that security is embedded throughout the technology lifecycle. Key responsibilities include establishing architecture principles, standards, reference models, and governance processes; reviewing and approving solution designs; and identifying opportunities to improve resilience, risk management, and operational efficiency. You will work closely with technology, engineering,...

Learn more

Associate Director – Cyber Security

Added 14/09/2026

We are seeking an experienced Associate Director – Cyber Security to provide strategic leadership and operational direction across a complex information security environment. The successful candidate will shape and deliver the cyber security strategy, ensuring that security risks are identified, managed and reduced in line with business objectives, regulatory expectations and industry best practice. This is a senior role requiring strong technical understanding, sound commercial judgement and the ability to influence stakeholders at all levels. Key responsibilities will include leading the development and implementation of cyber security policies, standards, frameworks and assurance processes; overseeing security operations, threat detection, incident response,...

Learn more

Associate Director – Cyber Security

Added 11/09/2026

We are seeking an experienced Associate Director – Cyber Security to provide strategic leadership across the organisation’s cyber security, information security and technology risk landscape. This is a senior role responsible for setting and delivering a clear security strategy that supports business objectives, strengthens resilience and protects critical information, systems and services. You will lead the development of security policies, standards, governance frameworks and assurance processes, ensuring they remain aligned with recognised industry practices and applicable regulatory requirements. You will oversee the identification, assessment and treatment of cyber and information security risks, working closely with technology, risk, legal, compliance and...

Learn more

Associate Director – Cyber Security

Added 11/09/2026

We are seeking an experienced Associate Director – Cyber Security to provide strategic leadership and operational oversight across a broad information security landscape. The successful candidate will shape and deliver a mature cyber security strategy, ensuring that security risks are identified, managed and aligned with organisational objectives. This role will work closely with senior stakeholders, technology teams and business leaders to promote secure practices, strengthen resilience and support the delivery of critical services. Key responsibilities will include leading the development and implementation of cyber security policies, standards and governance frameworks; overseeing security operations, threat detection, incident response and vulnerability management;...

Learn more

Security & Networks Portfolio Director

Added 09/09/2026

We are seeking an experienced Security & Networks Portfolio Director to lead the strategic direction, governance and delivery of a complex portfolio spanning cyber security, network infrastructure and associated technology services. This senior role will be responsible for ensuring that security and network capabilities support organisational priorities, enable operational resilience and provide a secure foundation for future growth. You will define portfolio strategy, manage investment priorities and oversee the development of effective roadmaps aligned with business and technology objectives. You will lead a diverse portfolio of programmes, projects and operational improvements, ensuring delivery is well governed, financially controlled and aligned...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.