Security Third Party Risk Management Specialist II
Security Third Party Risk Management Specialist II

Security Third Party Risk Management Specialist II

Full-Time 36000 - 60000 ÂŁ / year (est.) Home office (partial)
C

At a Glance

  • Tasks: Conduct vendor security reviews and support Cloudflare’s Third Party Risk Program.
  • Company: Join Cloudflare, a leader in building a better Internet with a vibrant culture.
  • Benefits: Competitive salary, inclusive environment, and opportunities for professional growth.
  • Why this job: Make a real impact on Internet security while developing your skills in a dynamic team.
  • Qualifications: 2-5 years in Security GRC and experience with vendor security documentation.
  • Other info: Exciting career growth in a billion-dollar business with a commitment to innovation.

The predicted salary is between 36000 - 60000 ÂŁ per year.

About Us

At Cloudflare, we are on a mission to help build a better Internet. The company runs one of the world’s largest networks, powering millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare have all web traffic routed through its intelligent global network, which gets smarter with every request, leading to significant improvement in performance and a decrease in spam and other attacks. Cloudflare was named to Entrepreneur Magazine’s Top Company Cultures list and ranked among the World’s Most Innovative Companies by Fast Company. We are looking for curious and empathetic individuals who are committed to developing themselves and learning new skills, and we are ready to help you do that. We hire the best people based on an evaluation of their potential and support them throughout their time at Cloudflare.

Available Locations: Lisbon or London

The Team

We are hiring an experienced Security Third Party Risk Management Specialist on our Governance, Risk, and Compliance team. This role will be responsible for completing vendor security reviews, maintaining our vendor master list, and supporting Cloudflare’s Third Party Risk Program. This is an opportunity to join a rapidly scaling and world‑class security organization within a billion‑dollar business. We guarantee that you won’t get bored.

What You’ll Do

  • Execute vendor security reviews by collecting and analyzing vendor security control documentation and audit reports.
  • Assist in identifying third‑party security risks, documenting findings, and recommending risk treatment options.
  • Collaborate with the Contracts & Legal teams to ensure security contract requirements are incorporated into vendor agreements.
  • Support the maintenance of Cloudflare’s vendor master list, ensuring data accuracy and proper classification of critical vendors.
  • Help the team monitor current security events (e.g., zero‑day vulnerabilities) and support outreach to vendors to confirm their status and remediation efforts.
  • Gather and prepare evidence of vendor security reviews to support Cloudflare’s security certification audits.
  • Liaise and coordinate with stakeholders across Cloudflare’s Procurement, IT, Contracts, Legal, and Privacy teams to ensure vendor due diligence workflows are completed efficiently.
  • Assist in the ongoing improvement of the vendor security review process, documentation, and tooling.
  • Some travel may be required to engage teammates and stakeholders in San Francisco, Austin, or other global Cloudflare locations.

Examples Of Desirable Skills, Knowledge, and Experience

  • Experience typically gained in 2‑5 years working in Security GRC.
  • Experience reviewing vendor security documentation including ISO 27001, SOC 2, PCI DSS, and other audit reports.
  • Experience identifying security controls gaps, determining risk ratings, and recommending mitigating controls.
  • Familiarity with security contract requirements.
  • Strong organizational, analytical, and interpersonal skills.
  • Self‑starter with the ability to work independently with a sense of curiosity.

What Makes Cloudflare Special?

Cloudflare’s mission to protect the free and open Internet is supported by projects such as Project Galileo, the Athenian Project, and the public DNS resolver 1.1.1.1, each delivering services to diverse communities worldwide. Our culture, commitment to innovation, and focus on inclusion set us apart.

This position may require access to information protected under U.S. export control laws, including the U.S. Export Administration Regulations. Any offer of employment may be conditioned on your authorization to receive software or technology controlled under these U.S. export laws without sponsorship for an export license.

Cloudflare is proud to be an equal‑opportunity employer. We are committed to providing equal employment opportunity for all people and place great value in both diversity and inclusiveness. All qualified applicants will be considered for employment without regard to their, or any other person's, perceived or actual race, color, religion, sex, gender, gender identity, gender expression, sexual orientation, national origin, ancestry, citizenship, age, physical or mental disability, medical condition, family care status, or any other basis protected by law. We are an AA/Veterans/Disabled Employer. Cloudflare provides reasonable accommodations to qualified individuals with disabilities. Please let us know if you require a reasonable accommodation to apply for a job.

Security Third Party Risk Management Specialist II employer: CloudFlare

At Cloudflare, we pride ourselves on fostering a dynamic and inclusive work culture that empowers our employees to grow and innovate. With a commitment to professional development and a focus on collaboration, we offer unique opportunities for career advancement in vibrant locations like Lisbon and London. Join us in our mission to build a better Internet while enjoying the benefits of a supportive environment that values diversity and creativity.
C

Contact Detail:

CloudFlare Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Security Third Party Risk Management Specialist II

✨Tip Number 1

Network like a pro! Reach out to current employees at Cloudflare on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for landing a role in the Governance, Risk, and Compliance team.

✨Tip Number 2

Prepare for the interview by brushing up on your knowledge of vendor security documentation like ISO 27001 and SOC 2. We want to see that you can identify security risks and recommend solutions, so be ready to discuss real-world examples.

✨Tip Number 3

Show off your curiosity! During interviews, ask insightful questions about Cloudflare’s Third Party Risk Program and how it evolves. This demonstrates your genuine interest in the role and the company’s mission.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining our team at Cloudflare.

We think you need these skills to ace Security Third Party Risk Management Specialist II

Vendor Security Reviews
Security GRC
ISO 27001
SOC 2
PCI DSS
Risk Assessment
Security Controls Gap Analysis
Organisational Skills
Analytical Skills
Interpersonal Skills
Self-Starter
Curiosity
Documentation Improvement
Stakeholder Coordination

Some tips for your application 🫡

Tailor Your CV: Make sure your CV reflects the skills and experiences that align with the Security Third Party Risk Management Specialist role. Highlight relevant experience in vendor security reviews and risk management to catch our eye!

Craft a Compelling Cover Letter: Your cover letter is your chance to show us your personality and passion for the role. Share why you’re excited about working at Cloudflare and how your background makes you a great fit for our team.

Showcase Your Curiosity: We love curious minds! In your application, mention any instances where you've gone above and beyond to learn new skills or tackle challenges. This will demonstrate your commitment to personal growth, which we value highly.

Apply Through Our Website: To ensure your application gets the attention it deserves, make sure to apply through our website. It’s the best way for us to keep track of your application and get back to you quickly!

How to prepare for a job interview at CloudFlare

✨Know Your Stuff

Make sure you’re familiar with key security frameworks like ISO 27001, SOC 2, and PCI DSS. Brush up on how these apply to vendor security reviews, as you'll likely be asked about your experience with them during the interview.

✨Show Your Curiosity

Cloudflare values curious individuals, so come prepared with questions about their Third Party Risk Program. This shows that you're not just interested in the role but also in how you can contribute to their mission of building a better Internet.

✨Highlight Your Collaboration Skills

Since this role involves liaising with various teams, be ready to discuss examples of how you've successfully collaborated with others in past roles. Emphasise your interpersonal skills and how they helped you achieve common goals.

✨Be Ready for Real-World Scenarios

Prepare for situational questions where you might need to identify security risks or recommend mitigation strategies. Think through some scenarios based on your previous experience and how you would handle them in the context of Cloudflare's operations.

Security Third Party Risk Management Specialist II
CloudFlare

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

C
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>