Logo for RecruitNest Consulting

Third-Party Security Risk Analyst - Japanese Bilingual (JLPT N1)

Role overview

Qualifications

  • Bachelor's Degree in Computer Science, Business, Finance, or a related field.
  • At least 5 years of experience in Information Security, IT Risk, Governance, Compliance, Cybersecurity, Technology Audit, or Third-Party Risk Management.
  • Experience in vendor risk assessments and security control reviews.
  • Japanese language proficiency: JLPT N1 is required.

Responsibilities

  • Perform information security risk assessments for new and existing vendors, including vendors supporting Japan and other regions.
  • Review vendor security documents such as audit reports, penetration testing reports, and vulnerability reports.
  • Conduct virtual vendor assessments and site visits when required.
  • Work closely with Procurement, business stakeholders, contract owners, Security, Privacy, Business Continuity, Legal, and Compliance teams.

Key facts

Other skills

  • Analytical Thinking
  • Communication
  • Time Management

About the company

RecruitNest Consulting logo

RecruitNest Consulting

Unknown

Company details

Company sizeUnknown

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Job Expectations:

  • Position Type: Experienced - Senior/Lead
  • Employment Type: Full-Time, Permanent (Direct Hire)
  • Work Setup & Location: Hybrid (2-3x onsite per week) - Commonwealth Avenue, Quezon City
  • Work Schedule: Weekdays; Mid/Night Shift
  • Budget: Up to ₱90K Salary + ₱50K Monthly Language Premium
  • Industry: Insurance & Financial Services

About the Job:

We are looking for a Vendor Information Security Senior Analyst to join our client's Vendor Information Security Management (VISM) / IT Governance team. In this role, you will assess and manage information security risks related to third-party vendors, including vendors supporting Japan and other regions. You will work with global teams to ensure vendor risks are properly assessed, documented, and addressed.

Key Responsibilities:

  • Perform information security risk assessments for new and existing vendors, including vendors supporting Japan and other regions.
  • Review vendor security documents such as audit reports, penetration testing reports, and vulnerability reports.
  • Conduct virtual vendor assessments and site visits when required.
  • Work closely with Procurement, business stakeholders, contract owners, Security, Privacy, Business Continuity, Legal, and Compliance teams.
  • Identify, document, and track security risks and control gaps related to vendor engagements.
  • Maintain accurate vendor risk records using tools such as Archer or ProcessUnity.
  • Support remediation tracking and communicate risk updates to stakeholders.
  • Support internal and external audits, including regulatory and client audits.
  • Conduct security reviews of vendor contracts in partnership with Legal and Compliance teams.
  • Ensure vendor security practices align with information security frameworks such as ISO 27001, NIST, and PCI DSS.
  • Stay updated on cybersecurity risks, industry trends, and regulatory requirements.
  • Contribute to improving vendor risk management processes, policies, and procedures.
  • Support other initiatives related to information security, IT governance, and business continuity.

Qualifications:

  • Bachelor's Degree in Computer Science, Business, Finance, or a related field.
  • At least 5 years of experience in Information Security, IT Risk, Governance, Compliance, Cybersecurity, Technology Audit, or Third-Party Risk Management.
  • Experience in vendor risk assessments and security control reviews.
  • Knowledge of IT risk and security frameworks such as ISO 27001 and NIST.
  • Experience with vendor risk management tools such as Archer or ProcessUnity is an advantage.
  • Experience in the financial services or insurance industry is a strong advantage.
  • CISA, CRISC, CISSP, or equivalent certification is preferred.
  • Strong analytical, communication, and stakeholder management skills.
  • Ability to manage multiple priorities in a global environment.
  • Japanese language proficiency: JLPT N1 is required.
  • Strong written and verbal communication skills in Japanese, with the ability to work effectively with Japan-based stakeholders and vendors.

-

RecruitNest is your trusted career partner, dedicated to connecting you with the right opportunities that match your skills, goals, and aspirations. We help you take the next step in your professional journey with personalized guidance and support.

Don't forget to follow us on LinkedIn to stay updated on upcoming and other job opportunities.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Analyst Related jobs

Other jobs at RecruitNest Consulting

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.