FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Cyber Risk Specialist
Cboe Global Markets. Manage incoming client requests, including assessments and questionnaires; prioritize and triage requests to appropriate teams and validate non-disclosure agreements .
Tech Stack
Tools & technologiesCyber Security
About the role
Key responsibilities & impact- Manage incoming client requests, including assessments and questionnaires; prioritize and triage requests to appropriate teams and validate non-disclosure agreements
- Facilitate communication between business, legal, technology, and information security teams to validate questionnaire responses and fulfill requests related to Cboe standards and policies
- Serve as a point of contact for internal stakeholders for client due diligence inquiries, ensuring timely and accurate responses
- Serve as subject matter expert for response management software used for client due diligence questionnaires
- Manage and maintain a standardized library of questionnaire responses
- Collaborate with internal experts to update and refine responses
- Assist with onboarding new vendor relationships
- Collect, review, and process information and documentation from third-party vendors and suppliers
- Conduct third-party risk assessments and due diligence reviews; analyze security information to identify control or security gaps and report findings to senior team members
- Perform security reviews of potential and existing third-party vendors using questionnaires and security tools to evaluate cybersecurity controls and identify risks
- Analyze and prioritize third-party risks based on potential impact and likelihood; create remediation plans
- Monitor third-party vendors’ security posture through regular assessments, vulnerability scans, and incident reporting
- Coordinate with the internal security team on cyber incidents involving third-party vendors, supporting investigation and remediation
- Assist with regulatory exams by obtaining documentation and drafting responses to regulator inquiries
- Perform additional activities as needed
Requirements
What you’ll need- Bachelor’s Degree or equivalent work experience in a relevant field
- 3+ years’ experience in third-party risk management, vendor management, security incident response, cyber management or comparable field required
- Strong understanding of cybersecurity principles, including application security, access control, and incident response
- Knowledge of compliance and regulatory frameworks, e.g., NIST, SOC 2, GDPR, ISO 27001
- Excellent communication and interpersonal skills, with the ability to collaborate effectively with cross-function teams
- Ability to work independently and manage multiple assignments/projects simultaneously
- Experience conducting vendor risk assessments
- Experience with third party/vendor risk management platforms is a plus
- Must be legally authorized to work in the United States without the need for employer sponsorship now or in the future
Benefits
Comp & perks- Fair and competitive salary and incentive compensation packages with an upside for overachievement
- Generous paid time off, including vacation, personal days, sick days and annual community service days
- Health, dental and vision benefits, including access to telemedicine and mental health services
- 2:1 401(k) match, up to 8% match immediately upon hire
- Discounted Employee Stock Purchase Plan
- Tax Savings Accounts for health, dependent and transportation
- Employee referral bonus program
- Volunteer opportunities to help you give back to your communities
- Complimentary lunch, snacks and coffee in any Cboe office
- Paid Tuition assistance and education opportunities
- Generous charitable giving company match
- Paid parental leave and fertility benefits
- On-site gyms and discounts to other fitness centers