Senior Associate - Supply Chain Cyber Security Specialist - Cyber Risk Advisory
Listed on 2025-12-07
-
IT/Tech
Cybersecurity, Data Security
Overview
Line of Service
:
Advisory
Industry/Sector
:
Not Applicable
Specialism
:
Cybersecurity & Privacy
Management Level
:
Senior Associate
Job Description & Summary
Your team: As a Senior Associate in our Cybersecurity and Privacy team, you will play a key role in delivering and growing our supply chain cyber risk capability across all sectors of clients. You will help our clients strengthen their third-party cyber risk management programmes, comply with evolving regulatory expectations such as DORA, NIS2, and respond to emerging threats across complex, global supply chains.
This is a growth-focused role, supporting engagements across multiple financial services and non-financial services clients, many of which are part of multi-year transformation programs. You will work alongside experienced leaders and subject matter experts, with opportunities to shape go-to-market offerings, drive delivery excellence, and coach junior team members. This role is ideal for someone looking to sit at the intersection of cybersecurity and supply chain, and be part of a forward-thinking team building the next generation of cyber risk services.
/ Your impact
- As part of the Cybersecurity and Privacy team of PwC Switzerland, work on delivering client engagements focused on supply chain cyber security, third‑party risk, and compliance with DORA, NIS2, and related regulations across industries.
- Design and implement supplier segmentation, cyber risk assessments, control testing, continuous monitoring, and incident response processes as part of broader Supplier Risk and IT‑GRC transformations.
- Collaborate with clients to define and ope rationalise future‑state Third‑Party Risk Management (TPRM) operating models, including roles and responsibilities, escalation paths, and response plans.
- Build AI‑augmented TPRM capabilities and workflows leveraging platforms such as Service Now, Process Unity, Bit Sight, Risk Recon, and Security Scorecard, including tooling configuration and integrations.
- Develop pragmatic recommendations and roadmaps to improve cyber risk governance, continuous monitoring, and incident/issue management across the third‑party lifecycle.
- Lead and contribute to workshops, reporting, and executive‑ready presentations for CISO, CIO, Risk, Compliance, and Procurement stakeholders;
- Support internal capability building, contributing to thought leadership, market propositions, proposal responses, and account expansion initiatives; and
- Coach and mentor junior team members while fostering a high‑performance, inclusive team culture.
- Minimum 5 years of relevant experience in cybersecurity, third-party risk, or supply chain risk management.
- Master's or bachelor's degree or equivalent professional qualification in business administration or computer science. Certifications such as CISM, CRISC, ISO 27001 Lead Implementer, CISSP are a plus.
- Proven experience with financial services clients, ideally within regulatory-driven engagements (e.g., DORA, NIS2).
- Strong understanding of supply chain cybersecurity frameworks, supplier risk segmentation, control testing, and cyber risk quantification.
- Familiarity with supply chain risk platforms such as Process Unity, Service Now, Bit Sight, Risk Recon, or equivalent.
- Excellent communication, stakeholder engagement, and client-facing skills.
- Strong verbal and written communication skills to interact effectively with all levels of management and staff.
- Fluent in English;
German and/or French is ideal. - High degree of initiative, self-organisation and sense of responsibility.
Degrees/Field of Study required:
Degrees/Field of Study preferred:
Required
Certifications:
(not specified in original)
- Required Skills
- Optional Skills
Skills listed in the original include Accepting Feedback, Active Listening, Agile Methodology, Analytical Thinking, Cybersecurity, Cybersecurity Framework, Privacy Compliance, Regulatory Response, and others as part of the candidate profile.
LanguagesDesired
Languages:
English (required/ideal), German and/or French (preferred).
Travel Requirements:
Not specified in the original description.
Available for Work Visa Sponsorship? Not specified.
ClearanceGovernment Clearance Required? Not specified.
Job Posting End DateJob Posting End Date:
Not specified.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: