Ready to shape how FrieslandCampina manages supplier cyber risk and prioritizes its security investments?
As the Third Party Cyber Risk & Portfolio Manager, you will strengthen our global third-party risk management capability while providing oversight across the CISO Office portfolio. You will translate supplier risks, priorities, dependencies, and delivery progress into actionable management insights, enabling leaders to make informed decisions and drive measurable risk reduction.
The role operates independently within the approved cyber strategy, policies and risk management framework.
The job holder owns the Third Party Cyber Risk Management capability, its governance, reporting, assessment approach and improvement roadmap, while coordinating portfolio governance and reporting across the CISO Office.
The role sets risk-based priorities, challenges unresolved supplier risks and portfolio risks, and recommends appropriate treatment, escalation or reprioritisation.
Formal acceptance of material risk remains with the accountable business or technology risk owner. Enterprise-wide cyber risk strategy, risk appetite, policy ownership and executive-level risk accountability remain outside the scope of this role.
Job Responsibilities
In this role you will:
- Own and continuously improve FrieslandCampina's global Third Party Cyber Risk Management capability, including governance, assessment methodologies, reporting and continuous improvement.
- Coordinate cyber risk assessments of suppliers, partners and external service providers, ensuring risks are identified, evaluated and managed in line with business priorities.
- Translate supplier and third-party risk findings into business-relevant risk insights, treatment recommendations and management actions.
- Assess, challenge and coordinate third-party cyber risk exceptions, ensuring appropriate compensating controls and informed risk decisions.
- Provide portfolio oversight across the CISO Office by consolidating priorities, dependencies, risks, investments, resource constraints and delivery progress.
- Deliver management reporting, dashboards and actionable insights on third-party cyber risk exposure and portfolio performance.
- Drive stakeholder accountability and influence programme owners, business leaders, procurement teams and service providers to reduce cyber risk and improve delivery outcomes.
- Support assurance, audit and regulatory activities by demonstrating effective third-party cyber risk governance and portfolio management practices.
Job Requirements
The Third Party Cyber Risk & Portfolio Manager is a strong cybersecurity professional with experience in third-party risk, portfolio governance and risk-based decision-making. To be successful in this role, you have:
- 5+ years of experience in Cyber Security, Third Party Risk Management, Technology Risk Management or Portfolio Management.
- Proven experience assessing and managing cyber risks associated with suppliers, outsourced services and strategic partners.
- Experience coordinating complex portfolios, programmes or initiatives and translating delivery information into management insight.
- Strong understanding of cyber risk management, security controls, supplier governance and risk-based decision-making.
- Experience driving improvements through business teams, programme owners, service providers and external partners.
- Strong communication and influencing skills, with the ability to challenge stakeholders and drive accountability.
- Fluency in English and a pragmatic, results-oriented mindset.
Bonus points for
- Bachelor's or Master's degree in Information Security, Technology, Risk, Audit, Business Administration or a related field.
- Relevant certification in information security, risk, audit, procurement or portfolio management.
- Experience in an international organisation with complex supplier and technology landscapes.
- Experience supporting internal or external assurance activities.
- A good sense of humour.
For thousands of people every day, we are more than just a dairy company. To our farmers, our employees, the communities we serve, the businesses we work with and the people to whom we bring happiness, FrieslandCampina means something more. For them it's not just about what we do, but who we are. We value talented people from any background who want to contribute to something bigger than themselves. We encourage all of our employees to make decisions that benefit our entire company. At FrieslandCampina we own our own career and act accordingly. We trust you to make a difference in your job and influence the bigger picture. Working at FrieslandCampina means you are contributing to a better world.
Within the CISO Office, we help people make maximum use of technology and facilities in a secure way. Digital Safety is an important enabler of the FrieslandCampina strategy. We work as an international team, driving secure operations, improving security maturity and keeping abreast of threat developments. In this role, you work closely with colleagues responsible for cyber risk, security architecture, security operations, resilience and technology delivery, as well as with business and control functions.
爱上菲仕兰的理由?
有使命感的工作:
我们秉持“自然滋养”的使命-把更优质的营养带给全球亿万消费者,同时陪伴我们的奶农和社会共创可持续的未来。
合作共赢的基因:
在这里,我们跨越地域并肩前行,彼此尊重、彼此成就,把努力汇聚成真正被看见、被分享的成果。
真实可感的影响力:
被信任去尝试、被鼓励去突破,让卓越成为你自己的节奏。
一起成长,彼此点燃:
我们持续投入培训与学习资源,赋能你的每一次成长,你的进阶也同时推动菲仕兰功成乳此。