At a Glance
- Tasks: Lead cybersecurity efforts to protect Sky from third-party risks and manage supplier security reviews.
- Company: Sky is a leading media and telecommunications company, innovating in tech and content for millions.
- Benefits: Enjoy perks like Sky Q, private healthcare, a generous pension, and hybrid working options.
- Why this job: Join a dynamic team tackling cyber threats while developing your skills in a supportive environment.
- Qualifications: Experience in IT risk, vendor management, and strong stakeholder skills are essential; CISA certification is a plus.
- Other info: Located at our vibrant Osterley campus with great amenities and a focus on inclusion.
The predicted salary is between 48000 - 72000 £ per year.
We believe in better. And we make it happen. Better content. Better products. And better careers. Working in Tech, Product or Data at Sky is about building the next and the new. From broadband to broadcast, streaming to mobile, SkyQ to Sky Glass, we never stand still. We optimise and innovate. We turn big ideas into the products, content and services millions of people love. And we do it all right here at Sky.
What you'll do
- You’ll play a pivotal role in safeguarding Sky against potential risks and threats from third parties, ensuring the protection of sensitive information and maintaining the highest standards of cybersecurity in a large, modern organisation.
- You’ll be managing the planning and delivery of information security reviews of Sky's suppliers, including assessing risk and identifying IT control deficiencies within suppliers' IT control environment.
- You will work primarily with the ServiceNow third party risk management tool.
- You will have the opportunity to identify areas for process improvement and control deficiency remediation.
- You will be helping to build and maintain a successful team; management and development of junior staff plays an important part of the role.
- There will be opportunities to enhance your own continuing personal development.
What you'll bring
- It is likely that you have worked in IT risk and controls audit, potentially with a Big 4 background, and/or have IT information security experience.
- You will be familiar with designing and testing control frameworks with previous experience in Vendor Risk Management.
- You will be working closely with our suppliers, representing Sky, and therefore you must have excellent stakeholder management skills and the ability to influence people at all levels of seniority.
- You will be expected to bring your analytical, project management, and problem-solving skills as well as business awareness and a broad knowledge and understanding of good business processes.
- German and/or Italian language skills would be advantageous.
- A CISA certification, or other IT audit equivalent, would be advantageous.
Team overview
Cyber Security: Our products, platforms and technologies are constantly evolving; that's why keeping Sky safe from cyber-attacks is one of our top priorities. Our Cyber Security team helps the business grow while protecting our customers, colleagues and partners from increasingly sophisticated cyber threats. Our team includes Cyber Fusion Centre, Security Services, Risk and Compliance, Supplier Security, Programme Delivery and Business Security, and we work across the UK, Italy and Germany. Join us and you’ll get involved in tackling challenges and future threats in an ever-changing cyber landscape.
The rewards
There’s one thing people can’t stop talking about when it comes to #LifeAtSky: the perks. Here’s a taster:
- Sky Q, for the TV you love all in one place.
- The magic of Sky Glass at an exclusive rate.
- A generous pension package.
- Private healthcare.
- Discounted mobile and broadband.
- A wide range of Sky VIP rewards and experiences.
Inclusion & how you’ll work
We are a Disability Confident Employer, and welcome and encourage applications from all candidates. We will look to ensure a fair and consistent experience for all, and will make reasonable adjustments to support you where appropriate. Please flag any adjustments you need to your recruiter as early as you can. We’ve embraced hybrid working and split our time between unique office spaces and the convenience of working from home. You’ll find out more about what hybrid working looks like for your role later on in the recruitment process.
Your office space
Osterley: Our Osterley Campus is a 10-minute walk from Syon Lane train station. Or you can hop on one of our free shuttle buses that run to and from Osterley, Gunnersbury, Ealing Broadway and South Ealing tube stations. There are also plenty of bike shelters and showers. On campus, you’ll find 13 subsidised restaurants, cafes, and a Waitrose. You can keep in shape at our subsidised gym, catch the latest shows and movies at our cinema, get your car washed, and even get pampered at our beauty salon.
We’d love to hear from you. Inventive, forward-thinking minds come together to work in Tech, Product and Data at Sky. It’s a place where you can explore what if, how far, and what next. But better doesn’t stop at what we do, it’s how we do it, too. We embrace each other’s differences. We support our community and contribute to a sustainable future for our business and the planet. If you believe in better, we’ll back you all the way.
Just so you know: if your application is successful, we’ll ask you to complete a criminal record check. And depending on the role you have applied for and the nature of any convictions you may have, we might have to withdraw the offer.
Group Supplier Security Senior Manager (12 months FTC) employer: Sky
Contact Detail:
Sky Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Group Supplier Security Senior Manager (12 months FTC)
✨Tip Number 1
Familiarise yourself with the ServiceNow third-party risk management tool, as this is a key part of the role. Understanding how to navigate and utilise this tool effectively will give you an edge during interviews.
✨Tip Number 2
Brush up on your knowledge of IT risk and controls audit, especially if you have a Big 4 background. Being able to discuss specific experiences and insights from your past roles will demonstrate your expertise in the field.
✨Tip Number 3
Develop your stakeholder management skills by practising how to influence and communicate with individuals at various levels of seniority. This will be crucial when working closely with suppliers and internal teams.
✨Tip Number 4
If you have language skills in German or Italian, make sure to highlight them. These skills could set you apart from other candidates and show your ability to work in a diverse environment.
We think you need these skills to ace Group Supplier Security Senior Manager (12 months FTC)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in IT risk, controls audit, and cybersecurity. Emphasise any work with third-party risk management and your familiarity with tools like ServiceNow.
Craft a Compelling Cover Letter: In your cover letter, express your passion for cybersecurity and how your skills align with the role. Mention specific examples of how you've managed risks or improved processes in previous positions.
Highlight Stakeholder Management Skills: Since the role requires excellent stakeholder management, provide examples in your application that demonstrate your ability to influence and communicate effectively with various levels of seniority.
Showcase Continuous Learning: Mention any certifications like CISA or ongoing professional development in your application. This shows your commitment to staying updated in the ever-evolving field of cybersecurity.
How to prepare for a job interview at Sky
✨Understand the Role
Make sure you have a clear understanding of the Group Supplier Security Senior Manager role. Familiarise yourself with the responsibilities, especially around risk management and cybersecurity practices. This will help you articulate how your experience aligns with what Sky is looking for.
✨Showcase Your Stakeholder Management Skills
Since the role involves working closely with suppliers and influencing stakeholders at various levels, prepare examples from your past experiences where you've successfully managed relationships and navigated complex situations. Highlight your communication skills and ability to build rapport.
✨Demonstrate Analytical and Problem-Solving Skills
Be ready to discuss specific instances where you've identified risks or control deficiencies and how you addressed them. Use the STAR method (Situation, Task, Action, Result) to structure your answers and showcase your analytical mindset.
✨Prepare for Technical Questions
Brush up on your knowledge of IT risk and controls audit, as well as Vendor Risk Management. Be prepared to discuss frameworks you've designed or tested in the past. If you have any certifications like CISA, be sure to mention them and explain how they relate to the role.