Ready to shape how FrieslandCampina manages supplier cyber risk and prioritizes its security investments?
As the Third Party Cyber Risk & Portfolio Manager, you will strengthen our global third-party risk management capability while providing oversight across the CISO Office portfolio. You will translate supplier risks, priorities, dependencies, and delivery progress into actionable management insights, enabling leaders to make informed decisions and drive measurable risk reduction.
The role operates independently within the approved cyber strategy, policies and risk management framework.
The job holder owns the Third Party Cyber Risk Management capability, its governance, reporting, assessment approach and improvement roadmap, while coordinating portfolio governance and reporting across the CISO Office.
The role sets risk-based priorities, challenges unresolved supplier risks and portfolio risks, and recommends appropriate treatment, escalation or reprioritisation.
Formal acceptance of material risk remains with the accountable business or technology risk owner. Enterprise-wide cyber risk strategy, risk appetite, policy ownership and executive-level risk accountability remain outside the scope of this role.
Job Responsibilities
In this role you will:
- Own and continuously improve FrieslandCampina's global Third Party Cyber Risk Management capability, including governance, assessment methodologies, reporting and continuous improvement.
- Coordinate cyber risk assessments of suppliers, partners and external service providers, ensuring risks are identified, evaluated and managed in line with business priorities.
- Translate supplier and third-party risk findings into business-relevant risk insights, treatment recommendations and management actions.
- Assess, challenge and coordinate third-party cyber risk exceptions, ensuring appropriate compensating controls and informed risk decisions.
- Provide portfolio oversight across the CISO Office by consolidating priorities, dependencies, risks, investments, resource constraints and delivery progress.
- Deliver management reporting, dashboards and actionable insights on third-party cyber risk exposure and portfolio performance.
- Drive stakeholder accountability and influence programme owners, business leaders, procurement teams and service providers to reduce cyber risk and improve delivery outcomes.
- Support assurance, audit and regulatory activities by demonstrating effective third-party cyber risk governance and portfolio management practices.
Job Requirements
The Third Party Cyber Risk & Portfolio Manager is a strong cybersecurity professional with experience in third-party risk, portfolio governance and risk-based decision-making. To be successful in this role, you have:
- 5+ years of experience in Cyber Security, Third Party Risk Management, Technology Risk Management or Portfolio Management.
- Proven experience assessing and managing cyber risks associated with suppliers, outsourced services and strategic partners.
- Experience coordinating complex portfolios, programmes or initiatives and translating delivery information into management insight.
- Strong understanding of cyber risk management, security controls, supplier governance and risk-based decision-making.
- Experience driving improvements through business teams, programme owners, service providers and external partners.
- Strong communication and influencing skills, with the ability to challenge stakeholders and drive accountability.
- Fluency in English and a pragmatic, results-oriented mindset.
Bonus points for
- Bachelor's or Master's degree in Information Security, Technology, Risk, Audit, Business Administration or a related field.
- Relevant certification in information security, risk, audit, procurement or portfolio management.
- Experience in an international organisation with complex supplier and technology landscapes.
- Experience supporting internal or external assurance activities.
- A good sense of humour.
For thousands of people every day, we are more than just a dairy company. To our farmers, our employees, the communities we serve, the businesses we work with and the people to whom we bring happiness, FrieslandCampina means something more. For them it's not just about what we do, but who we are. We value talented people from any background who want to contribute to something bigger than themselves. We encourage all of our employees to make decisions that benefit our entire company. At FrieslandCampina we own our own career and act accordingly. We trust you to make a difference in your job and influence the bigger picture. Working at FrieslandCampina means you are contributing to a better world.
Within the CISO Office, we help people make maximum use of technology and facilities in a secure way. Digital Safety is an important enabler of the FrieslandCampina strategy. We work as an international team, driving secure operations, improving security maturity and keeping abreast of threat developments. In this role, you work closely with colleagues responsible for cyber risk, security architecture, security operations, resilience and technology delivery, as well as with business and control functions.
Why work with us:
An inspiring purpose
Better nutrition for the world and a good living for our farmers, now and for generations to come.
A cooperative culture
Driven by global collaboration, respect, and shared success
A tangible impact
Space to aim higher, with autonomy and a clear focus
Your growth fuels ours
We invest in your personal and professional development through training and education.