Jobiglo

No results.

Cybersecurity TPRM Strategy & Governance SME

Hewlett Packard Enterprise · San Juan

New
Hybrid Senior 🇬🇧 English
NIST CSF NIST 800-53 ISO 27001 DORA NIS2 GDPR SEC Cybersecurity Rules OneTrust Archer ServiceNow

Job description

About the role

The Cybersecurity TPRM Strategy & Governance SME will define and advance HPE’s third‑party cybersecurity risk management strategy, operating model and governance framework. This senior role drives program maturity, efficiency and scalability by establishing risk‑based processes, standards and technology‑enabled solutions across the third‑party lifecycle.

Key responsibilities

  • Develop and maintain the enterprise Cybersecurity Third‑Party Risk Management (TPRM) strategy and operating model.
  • Define and continuously improve risk‑based frameworks, methodologies, standards and procedures for managing third‑party cybersecurity risk.
  • Lead the evolution of vendor criticality, inherent risk, residual risk and due‑diligence frameworks.
  • Identify opportunities to streamline, automate and optimise TPRM processes to improve scalability and user experience.
  • Partner with Procurement, Legal, Compliance, Privacy, Supply Chain, IT and business stakeholders to align TPRM processes with objectives and regulatory requirements.
  • Establish metrics, KPIs and reporting frameworks to measure program effectiveness and risk exposure.
  • Provide thought leadership on emerging risks such as supply‑chain security, software supply‑chain risk, cloud providers, AI‑related risks and operational resilience.

Required profile

  • Bachelor’s or Master’s degree in Engineering, Computer Science, Information Security or equivalent.
  • 6‑10 years of experience designing or managing TPRM programs, frameworks and governance models.
  • Security certifications such as CISSP, CISM, CRISC or equivalent are preferred.

Required skills

  • Deep knowledge of cybersecurity and risk‑management frameworks (NIST CSF, NIST 800‑53, ISO 27001).
  • Experience with global regulatory requirements (DORA, NIS2, GDPR, SEC Cybersecurity Rules).
  • Hands‑on experience with TPRM/GRC platforms such as OneTrust, Archer or ServiceNow.
  • Ability to translate regulatory and security requirements into scalable policies, standards and operational processes.

What we offer

  • Comprehensive health, wellbeing and financial benefits for you and your loved ones.
  • Personal and professional development programs to help you grow your career.
  • An inclusive culture that values diverse backgrounds and provides flexibility to balance work and personal needs.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Hewlett Packard Enterprise.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in Portugal.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 1 day ago

Expires 1 month from now

7 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Hewlett Packard Enterprise

San Juan