Third Party Risk Analyst
easyjet, Someries, Central Bedfordshire
Third Party Risk Analyst
Salary not available. View on company website.
easyjet, Someries, Central Bedfordshire
- Full time
- Permanent
- Onsite working
Posted 6 days ago, 31 Jul | Get your application in now to be included in the first week's applications.
Closing date: Closing date not specified
Job ref: 7c47842dcdf94dbea3969d1cb0948f5a
Location ref: Someries, Central Bedfordshire
Full Job Description
As a Digital Safety Risk and Assurance Specialist, you will be responsible for delivering our risk management framework by identifying, capturing, and measuring cyber security risks across easyJet. You will work with multiple business areas to gather relevant risk information and present well-defined risk insights to support informed decision-making. Your role will also provide visibility of key regulatory compliance and control maturity information to support the wider Digital Safety Assurance team. What you will do:
- Operate the Digital Safety risk framework to assess and record cyber risks
- Collaborate with technical IT and business functions to capture a full spectrum of risk information
- Manage the digital safety supplier assurance process to identify supply chain risks
- Identify gaps in regulatory compliance and work with compliance and data protection teams to resolve them
- Support the Data Governance framework alongside the Digital Safety Data Management Manager
- Align with IT Quality and Risk functions on relevant digital safety risks
- Present findings at risk forums to aid risk treatment decisions
- Provide training and advice on risk methodology to encourage consistent risk measurement and reporting
- Maintain risk registers for information assets and exceptions, assessing associated risks
- Develop and maintain bow-tie models and statistical risk models such as Monte Carlo analysis
- Stay up to date with the threat landscape and its impact on risk probabilities
Have experience in cyber security risk management or information security - Enjoy working collaboratively across diverse teams and business functions
- Are passionate about embedding digital safety principles in a fast-paced, innovative environment
- Want to play a key role in protecting a major airline's digital assets and regulatory compliance, CRISC or similar risk management qualification (e.g. Institute of Risk Management)
- CISSP, CompTIA Security+ or other recognised security qualification
- Information Security or industry relevant certifications
- Experience in a similar information security or risk management role
- Strong communication skills and ability to influence colleagues and stakeholders
- Analytical and systematic approach to problem-solving
- Ability to work autonomously with general direction and escalate issues appropriately
- Understanding of how your role impacts security and commitment to routine security practices
We are easyJet - a FTSE listed, £multi-billion low-cost airline that serves tens of millions of customers every single year. If you're reading this, you have probably already been an easyJet customer, and you'll know that there is no more iconic or Orange travel brand in Europe. We fly more than 1,207 routes, connecting 38 countries across Europe, and employ more than 18,000 colleagues. We're on a mission to make low-cost travel easy - and whatever your role here, you'll connect millions of people to what they love using Europe's best airline network, great value fares, and friendly service. What makes us easyJet? Our Promise Behaviours - we are Safe, Bold, Welcoming and Challenging. Four Behaviours. One Spirit. One easyJet. - Up to 20% maximum bonus
- 5% pension contributions
- Medical Cash Plan
- Excellent staff travel benefits
- 25 days of annual leave + bank holidays
- Annual credit towards an easyJet holiday
- Various flexible benefits and extras