Information Security Supply Chain, Governance and Compliance Manager
vor 1 Woche
Employment Type: Permanent
Contract Duration:
At IATA, we represent over 350 airlines worldwide, striving to make
aviation safer, smarter, more sustainable, and inclusive.
• Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA - We collaborate across teams, TRUSTED - We do the right thing, INNOVATIVE - We make tomorrow better, INCLUSIVE - We embrace diverse perspectives.
• With over 30,000 courses available, we believe in continuous learning and support your growth in an ever-changing industry.
• Diversity, equity, and inclusion are our priorities. We are certified by the Equal Salary Foundation, offering equal pay and family-friendly policies.
• We encourage community involvement through volunteering and strive to make tomorrow better for aviation and our communities. We offer time off so you can support causes important to you.
• We promote work-life balance with flexible work options, including remote and hybrid work, a generous 'work from abroad' policy, and you get your birthday off
You will be joining the Information Security team in the Information and Data (I&D) Division.
You will be responsible for managing and maintaining IATA's supply chain security program, work within multiple time zones, conduct security assessments in allocated time, complete supply chain questionnaires from vendors, collaborate with international vendors, internal business, procurement, engineering, technology, and legal divisions. Provide recommendations, scores, and risks for vendors. Manage and maintain a database of vendors, write minutes, procedures, enhancement requests, policies, and standard operating procedures. Work with the security team to identify and remediate any vulnerabilities, end of life components, and other security control requirements for vendors of IATA current and future business.
You will be responsible for safeguarding the IATA's supply chain ecosystem against cybersecurity risks. This role will be establishing and maintaining IATA's supply chain security program, designing, implementing, and monitoring security controls and assurance programs across third-party vendors, providers, and strategic partners. The position plays a critical role in ensuring that all suppliers meet the IATA's information security standards and regulatory requirements
Establishing and maintaining IATA's supply chain security program aligned with organizational risk posture and business objectives
Develop and maintain internal processes and policies for supply chain and vendor management
Serve as the primary point of contact for supply chain security of critical vendor matters across the organization
Provide complete security assessments for RFPs, RFQs, RFIs, and any other required business objective software for products and services
Maintain a register of critical suppliers and their risk profiles; coordinate periodic reviews and audits
Maintain, manage, and configure with the help of a customer relations manager a risk platform for vendor assessments, analysis, and reporting
Collaborate with Legal, Procurement, and other business functions to define and enforce supplier security requirements
Develop metrics and dashboards to measure supply chain security posture and maturity as well as produce executive level summaries for management committee and C Suites
Produce summaries, after action reports, and minutes of meetings, discussions, and events
Support due diligence and contractual security clauses during procurement and onboarding
Support developing incident response plans for supply chain-related security events
Coordinate investigations and remediation activities when third-party incidents occur
Drive continuous process improvements and automation for supplier risk management
Stay current on emerging threats, technologies, and regulatory changes impacting supply chain cybersecurity
Minimum of 7 years of experience with international exposure in cybersecurity/ information security with at least 3 years in third-party risk, supply chain security management or security governance risk and controls
Strong knowledge of risk assessment methodologies, vendor due diligence, security assurance practices and experience in managing security assessments, audits, and corrective action plans with suppliers
Familiarity with regulatory and standards frameworks such as ISO 27001, NIST , NIST CSF, SOC 2, GDPR, CMM and best cybersecurity practices
Excellent written and verbal communication skills, with the ability to present technical findings to non-technical stakeholders as well as negotiation and stakeholder management skills
Proficiency in English is required; additional language skills are a plus
Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor, CISA, or equivalent is an advantage.
Travel Required: 10
Learn more about IATA's role in the industry, our benefits, and the team at iata/careers/. We are looking forward to hearing from you
-
Job Opportunities Product
Vor 4 Tagen
Schweiz Richemont Vollzeit CHF 60'000 - CHF 80'000 pro JahrA position of Information System Intern (100%) in the Supply Chain Division of Richemont, more precisely the Group Product & Trade Compliance Department (GPTC).As a function-head department, GPTC provides regulatory intelligence, risk assessment, as well as project management and compliance solutions to Richemont Group internal stakeholders (e.g. Maisons,...
-
Clinical Supply Chain Lead
vor 2 Wochen
schweiz Roche VollzeitAt Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure...
-
Sr. Director, Supply Chain Digital Id
vor 1 Woche
Schweiz Johnson & Johnson Family of Companies VollzeitJohnson & Johnson is recruiting for Sr. Director Digital Identification and Traceability in our J&J Supply Chain organization. Ideally, this position is based in Bridgewater, NJ. Zug, Switzerland or our other major SC hubs in NA or Europe may be considered. Remote work options may be considered on a case-by-case basis and if approved by the Company. The J&J...
-
Supply Chain Planning
Vor 2 Tagen
Schweiz ball Vollzeit $ 50'000 - $ 130'000 pro JahrThis position will be posted for a minimum of 3 days and will remain open until filled or adjusted based on the volume of applicants.Further your career at Ball, a world leader in manufacturing sustainable aluminum packaging. Achieve extraordinary things when you join our team, and make a difference in your professional development, the community, and around...
-
Supply Planning Manager EMEA
vor 2 Wochen
Schweiz Neogen Corporation Vollzeit CHF 80'000 - CHF 120'000 pro JahrIt's fun to work in a company where people truly believe in what they are doingWe are currently looking for a Supply Planning Manager to join our team in our award-winning business based remotely in Lucerne, Switzerland.At Neogen, we partner with our customers to protect and enhance the world's level of food and animal safety. By offering a diverse suite of...
-
Supply Planning Manager EMEA
Vor 2 Tagen
Schweiz Neogen Corporation Vollzeit CHF 80'000 - CHF 120'000 pro JahrIt's fun to work in a company where people truly believe in what they are doingWe are currently looking for a Supply Planning Manager to join our team in our award-winning business based in Lucerne, Switzerland or in the UK.At Neogen, we partner with our customers to protect and enhance the world's level of food and animal safety. By offering a diverse suite...
-
Head of Information Security and Infrastructure
vor 2 Wochen
Schweiz Solveva VollzeitCH, BG You can join a high-performing international team dedicated to software engineering for leading global (re-)insurers. **About the role** At Solveva, we are committed to maintaining and continually improving a secure IT landscape. This ensures our ability to protect both our own information assets and those of our clients. Join our team of software...
-
Information Security Specialist IT
Vor 4 Tagen
Schweiz Ronal Group Vollzeit CHF 80'000 - CHF 120'000 pro JahrHELLOWe are RONAL GROUP and our most important asset is our globally active team. With the right people by our side, our passion for what we do is what keeps the world moving.ARE WE RIGHT FOR YOU - AND ARE YOU RIGHT FOR US?Allow us to introduce ourselves: Founded in 1969, RONAL GROUP operates as a global company that prides itself on our multicultural...
-
Schweiz Richemont Vollzeit CHF 80'000 - CHF 120'000 pro JahrResponsible Sourcing Senior Project Manager - Precious MetalsCONTEXTBased in Bellevue, the Responsible Sourcing Precious Metals Senior Project Manager will support the deployment of the Responsible Sourcing program for precious metals, through the following elements:Supply Chain risk profile, based on Environmental, Social, Governance - "ESG" - criteriaRisk...
-
Supply Manager
vor 2 Wochen
Schweiz Evatec AG Vollzeit**Supply Manager**: Evatec ist ein Schweizer Unternehmen mit Aussenstellen in den USA, Europa und Asien, das sich auf die Entwicklung, Produktion und den Vertrieb von Hightech-Dünnfilm-Beschichtungsanlagen für den Halbleiter-, Optik - und Optoelektronik-Markt spezialisiert hat. Von den hellen LEDs in unseren Autos bis hin zu den Sensoren und Filtern in...