Hybrid Cybersecurity Third-Party Risk Architect
Elisa Industriq France · Milano, Lombardia ·
- Work mode
- Hybrid
- Category
- Security
- Experience
- 5+ years
Saipem is seeking a seasoned IT System Architect - Cybersecurity Third-Party Risk Management Specialist to drive risk assessments of supplier engagements, evaluate cybersecurity posture, and manage remediation with cross-functional teams. The role spans governance, reporting, and regulatory compliance across multiple geographies.
You will contribute to continuous improvement of risk management processes, prepare dashboards, and support audits while working in a global, collaborative environment
Perform cybersecurity risk assessments of third-party engagements and review security evidence. Assess risks, gaps, non-compliance and remediation plans with suppliers and internal stakeholders. Maintain and improve third-party risk management processes and control frameworks. Prepare risk dashboards and management presentations for visibility of cyber risk exposures. Bachelor's or Master's degree in Cybersecurity, Information Security, Computer Science, Engineering, Risk Management or related disciplines. 5+ years of experience in Cybersecurity, Information Security, ICT Risk Management or Third-Party Risk Management. Italian native or C1; English at least B2 (written and spoken). Knowledge of Cybersecurity Governance and regulatory frameworks (NIS2, DORA). Experience with ISO 27001 and NIST frameworks. Health insurance Hybrid work model Flexible hours