Information Security Supply Chain, Governance and Compliance Manager
vor 3 Wochen
Why you will love working here At IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive. Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA, We collaborate across teams, TRUSTED, We do the right thing, INNOVATIVE, We make tomorrow better, INCLUSIVE, We embrace diverse perspectives. With over 30,000 courses available, we believe in continuous learning and support your growth in an ever-changing industry. Diversity, equity, and inclusion are our priorities. We are certified by the Equal Salary Foundation, offering equal pay and family-friendly policies. We encourage community involvement through volunteering and strive to make tomorrow better for aviation and our communities. We offer time off so you can support causes important to you. We promote work-life balance with flexible work options, including remote and hybrid work, a generous 'work from abroad' policy, and you get your birthday off About the team you are joining You will be joining the Information and Data Division, reporting to Head of Information Security Governance, Risk & Compliance and Aviation Advocacy under the Chief Information Security Officer (CISO). You will be responsible for managing and maintaining IATA’s supply chain security program, work within multiple time zones, conduct security assessments in allocated time, complete supply chain questionnaires from vendors, collaborate with international vendors, internal business, procurement, engineering, technology, and legal divisions. Provide recommendations, scores, and risks for vendors. Manage and maintain a database of vendors, write minutes, procedures, enhancement requests, policies, and standard operating procedures. Work with the security team to identify and remediate any vulnerabilities, end of life components, and other security control requirements for vendors of IATA current and future business. You will be responsible for safeguarding the IATA’s supply chain ecosystem against cybersecurity risks. This role will be establishing and maintaining IATA’s supply chain security program, designing, implementing, and monitoring security controls and assurance programs across third-party vendors, providers, and strategic partners. The position plays a critical role in ensuring that all suppliers meet the IATA’s information security standards and regulatory requirements. What your day would be like Establishing and maintaining IATA’s supply chain security program aligned with organizational risk posture and business objectives Develop and maintain internal processes and policies for supply chain and vendor management Serve as the primary point of contact for supply chain security of critical vendor matters across the organization Provide complete security assessments for RFPs, RFQs, RFIs, and any other required business objective software for products and services Maintain a register of critical suppliers and their risk profiles; coordinate periodic reviews and audits Maintain, manage, and configure with the help of a customer relations manager a risk platform for vendor assessments, analysis, and reporting Collaborate with Legal, Procurement, and other business functions to define and enforce supplier security requirements Develop metrics and dashboards to measure supply chain security posture and maturity as well as produce executive level summaries for management committee and C Suites Produce summaries, after action reports, and minutes of meetings, discussions, and events Support due diligence and contractual security clauses during procurement and onboarding Support developing incident response plans for supply chain-related security events Coordinate investigations and remediation activities when third-party incidents occur Drive continuous process improvements and automation for supplier risk management Stay current on emerging threats, technologies, and regulatory changes impacting supply chain cybersecurity We would love to hear from you if Minimum of 7 years of experience with international exposure in cybersecurity/ information security with at least 3 years in third-party risk, supply chain security management or security governance risk and controls Strong knowledge of risk assessment methodologies, vendor due diligence, security assurance practices and experience in managing security assessments, audits, and corrective action plans with suppliers Familiarity with regulatory and standards frameworks such as ISO 27001, NIST 800-161, NIST CSF, SOC 2, GDPR, CMM and best cybersecurity practices Excellent written and verbal communication skills, with the ability to present technical findings to non-technical stakeholders as well as negotiation and stakeholder management skills Proficiency in English is required; additional language skills are a plus Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor, CISA, or equivalent is an advantage Travel Required: 10 Learn more about IATA’s role in the industry, our benefits, and the team at IATA careers. We are looking forward to hearing from you #J-18808-Ljbffr
-
Genf, Schweiz International Air Transport Association (IATA) VollzeitInformation Security Supply Chain, Governance and Compliance Manager Join International Air Transport Association (IATA) as an Information Security Supply Chain, Governance and Compliance Manager. This permanent role is part of the Information and Data Division, reporting to the Head of Information Security Governance, Risk & Compliance and Aviation Advocacy...
-
Genf, Schweiz International Air Transport Association VollzeitEmployment Type: PermanentContract Duration: Why you will love working here At IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive. Our Values ONE IATA - We collaborate across teams. TRUSTED - We do the right thing. INNOVATIVE - We make tomorrow better. INCLUSIVE - We embrace diverse...
-
Genf, Schweiz The International Air Transport Association VollzeitOverviewEmployment Type: PermanentContract Duration :Why you will love working hereOur Values are not just words on a page - they are the energy behind everything we do : ONE IATA - We collaborate across teams, TRUSTED -We do the right thing, INNOVATIVE -We make tomorrow better, INCLUSIVE -We embrace diverse perspectives.With over 30,000 courses available,...
-
Genf, Genf, Schweiz International Air Transport Association (IATA) Vollzeit CHF 110'000 - CHF 135'000 pro JahrEmployment Type: PermanentContract DurationWhy you will love working hereAt IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive.Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA - We collaborate across teams, TRUSTED - We do the right thing,...
-
Global Supply Chain Security
vor 3 Wochen
Genf, Schweiz IATA Consulting VollzeitA leading aviation organization in Geneva is seeking a cybersecurity expert to manage their supply chain security program. This role involves collaborating with international vendors, conducting assessments, and ensuring compliance with information security standards. The ideal candidate will have at least 7 years of experience in cybersecurity, strong risk...
-
Remote InfoSec: Supply Chain Security
vor 3 Wochen
Genf, Schweiz International Air Transport Association VollzeitA global aviation organization in Switzerland is seeking a Supply Chain Security Manager. You will manage and enhance the supply chain security program, ensuring compliance with security standards and regulatory requirements. The ideal candidate has over 7 years experience in cybersecurity, particularly in third-party risk management. Excellent communication...
-
Remote Global Lead: Supply Chain Security
vor 3 Wochen
Genf, Schweiz The International Air Transport Association VollzeitA leading aviation industry organization in Geneva is seeking a Supply Chain Security Manager to oversee and enhance their security program. The role requires a minimum of 7 years of experience in cybersecurity, emphasizing third-party risk management. You will collaborate with multiple stakeholders to ensure compliance with security standards. Strong...
-
Information Security and Compliance Officer
vor 2 Wochen
Genf, Schweiz Alohi SA VollzeitInformation Security and Compliance Officer Join to apply for the Information Security and Compliance Officer role at Alohi 1 day ago Be among the first 25 applicants Description Alohi SA brings together a team of highly competent engineers that focus on merging state‑of‑the‑art technologies with compelling user experience in order to simplify and...
-
Information Security and Compliance Officer
vor 2 Wochen
Genf, Schweiz Alohi SA VollzeitDescription Alohi SA brings together a team of highly competent engineers that focus on merging state‑of‑the‑art technologies with compelling user experience in order to simplify and enhance life for companies and people around the world. The company provides Sign.Plus (a legally binding electronic signature), Fax.Plus (online faxing), Dial.Plus...
-
Information Security and Compliance Officer
vor 2 Wochen
Genf, Genf, Schweiz Alohi SA Vollzeit CHF 90'000 - CHF 120'000 pro JahrDescriptionAlohi SA brings together a team of highly competent engineers that focus on merging state-of-the-art technologies with compelling user experience in order to simplify and enhance life for companies and people around the world. The company provides Sign.Plus (a legally binding electronic signature), Fax.Plus (online faxing), Dial.Plus (AI-voice...