JLL empowers you to shape a brighter way.
Our people at JLL and JLL Technologies are shaping the future of real estate for a better world by combining world class services, advisory and technology for our clients. We are committed to hiring the best, most talented people and empowering them to thrive, grow meaningful careers and to find a place where they belong. Whether you’ve got deep experience in commercial real estate, skilled trades or technology, or you’re looking to apply your relevant experience to a new industry, join our team as we help shape a brighter way forward.
Information Security Third Party Risk Management- Information Security Consultant
JLL Technologies CoE – Bangalore
What this job involves:
About the role
Reporting directly to the Cybersecurity Third Party Risk Management, Senior Director, the role of Information Security Third Party Risk Management- IS Consultant will be involved with the planning, execution, and reporting of cybersecurity third-party due diligence for the company and work directly with the Senior Information Security Consultants within the team. The role will work closely with the Technology functional teams and internal business lines in the day-to-day operational delivery of Cybersecurity Third Party Risk Management program.
Teaming with the Cyber TPRM team, the Information Security Third Party Risk Management- IS Consultant will:
Perform Third party security risk assessments of potential new vendors and / or where vendor services have changed.Monitor changes in business processes, information systems, management and operations, and accordingly maintain an assessment to risk.Build and maintain productive relationships with process owners.Through effective leadership, ensure audits of control effectiveness and design and other projects are completed in an efficient manner, and within established deadlines.Through the effective review of department work, ensure that the assessments of internal control structure related to processes audited are supported through sufficient and adequately documented evidence.Assist with internal investigations.Promote good practice of Information Security Third Party Risk Management to staff and associated contractors.Provide direct and specific guidance to the department internal control process owners’ as appropriate for each process owner of the department and the work being performed.
Responsibilities
Sounds like you? To apply you need to be:
Experience & Education
Experience in evaluating third parties for the presence of fundamental information security controls.College diploma or university degree in the field of computer science, information systems, or computer engineeringExposure to any GRC technologies to perform risk management.Good understanding of compliance standards/framework like ISO 27001/27002, NIST, SOC1, SSAE16/SOC2, CIS.Knowledge of technical domains such as network security , cloud security , application security and penetration test concepts.Experience in conducting risk assessments and applying concept of inherent and residual risk in order to draw appropriate conclusion and articulate the same to non-technical audiences.Minimum of 4 years IT experience; or equivalent combination of education and experienceMinimum of 4 years' experience of contributing to the success of a range of midsize-to-large multi-country initiatives.Experience in designing and managing compliance and risk management controls and processes in day to day IT operations and projects.Experience in undertaking and reporting on internal audits of IT operations, applications and projects.Experience working in the corporate sectors (financial services, telecommunications or utilities)Experience working in real estate services industryTechnical Skills & Competencies
High level of written and oral English communication skills.High level of analytical, conceptual, and problem-solving abilities.Affable, credible and can communicate effectively with clients and colleagues.Good research skills and the ability to manage detailsAbility to present ideas in user-friendly language.Ability to effectively prioritize and execute tasks in a high-pressure environment.Team player with experience working in a team-oriented, collaborative environment Quality focused and highly flexibleThinks ahead and anticipate problems, issues and solutionsCertified Information Systems Auditor (CISA)Information Technology Infrastructure Library (ITIL) FoundationLocation:
Remote –Bengaluru, KAScheduled Weekly Hours:
40If this job description resonates with you, we encourage you to apply even if you don’t meet all of the requirements. We’re interested in getting to know you and what you bring to the table!
JLL Privacy Notice
Jones Lang LaSalle (JLL), together with its subsidiaries and affiliates, is a leading global provider of real estate and investment management services. We take our responsibility to protect the personal information provided to us seriously. Generally the personal information we collect from you are for the purposes of processing in connection with JLL’s recruitment process. We endeavour to keep your personal information secure with appropriate level of security and keep for as long as we need it for legitimate business or legal reasons. We will then delete it safely and securely.
For more information about how JLL processes your personal data, please view our Candidate Privacy Statement.
For additional details please see our career site pages for each country.
For candidates in the United States, please see a full copy of our Equal Employment Opportunity and Affirmative Action policy here.
Jones Lang LaSalle (“JLL”) is an Equal Opportunity Employer and is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process – including the online application and/or overall selection process – you may contact us at Accommodation Requests. This email is only to request an accommodation. Please direct any other general recruiting inquiries to our Contact Us page > I want to work for JLL.