Third-party Security Risk Analyst

il y a 13 heures


Paris, France Ledger Temps plein

We’re the forever innovators. On a mission that goes beyond business. Securing digital ownership in a changing world. Unlocking true freedom. We’re revolutionaries.

Looking beyond today. Bridging excellence and pragmatism, with ambition and conviction, to push the limits of what’s possible. That’s what you’ll do here, in this playground of innovation. With leadership and trust, you’ll write the rules of new technology, and create products that redefine security in a digital age.

Founded in 2014, Ledger is the global platform for digital assets and Web3. Over 20% of the world’s crypto assets are secured through our Ledger Nanos. Headquartered in Paris and Vierzon, with offices in UK, US, Switzerland and Singapore, Ledger has a team of more than 500 professionals developing a variety of products and services to enable individuals and companies to securely buy, store, swap, grow and manage crypto assets - including the Ledger hardware wallets line with more than 6 millions units already sold in 200 countries.

As a Third-Party Security Risk Analyst at Ledger, you will play a vital role in protecting our organization and our customers from security risks associated with third-party vendors and partners. You will assess, mitigate, and monitor risks throughout the vendor lifecycle to ensure high-security standards, protect data, and secure systems.

**Your mission**:

- Conduct comprehensive security assessments of third-party vendors, including reviewing their security policies, procedures, and controls
- Identify and evaluate security/privacy risks, especially for vendors handling sensitive customer data and critical product supply chain operations.
- Develop and implement risk mitigation strategies to address identified vulnerabilities
- Collaborate with vendors to remediate security gaps and ensure compliance with Ledger's stringent security requirements
- Monitor vendor performance and compliance with security agreements
- Contribute to the development and improvement of Ledger's third-party security risk management program
- Prepare reports and presentations on vendor security risks and mitigation efforts for various stakeholders

**What we're looking for**:

- Degree or equivalent experience in Information Security, Cybersecurity, or a related field
- Minimum 2 years of experience in areas like audit, risk management, compliance or control function
- Strong organizational skills to manage multiple projects and document outcomes effectively
- Familiarity with security frameworks and standards (e.g., ISO 27001, NIST Cybersecurity Framework)
- Analytical and problem-solving mindset with a proactive approach to challenges
- Clear and inclusive communication skills for technical and non-technical audiences
- Experience with security assessment tools and technologies is an asset
- Knowledge of data privacy regulations (e.g., GDPR, CCPA)
- Certifications (e.g., CISSP, CISM, CISA) are welcome

**What’s in it for you**:

- **Equity**: Employees are the foundation of our success, and we award stock options so you can share in that success as we grow
- **Flexibility**: A hybrid work policy
- **Social**: Annual company outing for Ledgerdary Days, plus frequent social events, snacks and drinks
- **Medical**: Comprehensive health insurance policy offering extensive medical, dental and vision care coverage
- **Well-being**: Personal development, coaching & fitness with our dedicated partners
- **Vacation**: Five weeks of paid leave per year, in addition to national holidays and rest & relaxation (RTT) days
- **High tech**: Access to high performance office equipment and gadgets, including Apple products
- **Transport**: Ledger reimburses part of your preferred means of transportation
- **Discounts**: Employee discount on all our products

We are an equal opportunity employer for all without any distinction of gender, ethnicity, religion, sexual orientation, social status, disability or age.


  • Third-Party Risk Management

    il y a 2 semaines


    Paris, France SCOR Temps plein

    Social network you want to login/join with:Third-Party Risk Management (TPRM) Officer, ParisClient: SCORLocation: Paris, FranceJob Category: OtherEU work permit required: YesJob Reference: ef557576393cJob Views: 4Posted: 07.07.2025Expiry Date: 21.08.2025Job Description:You are acting as the point of contact for our local entities on the implementation of...


  • Paris, France twentyAI Temps plein

    A- Posted by - Anai Patel- Recruiter twentyAI have partnered with a leading Financial Institution in Paris who are looking for a Third Party Risk Officer to join their function. There is a Third Party Risk management framework being implemented as part of the Ops Resilience framework and it will need to evolved to align with DORA...


  • Paris, France Talents ADV Supply Temps plein

    Third Party Risk Management (TPRM) - Analyst - DORA (H/F) #72891 - Offre publiée le 17/11 Talents ADV Supply, cabinet de recrutement spécialisé en ADV, Assistanat Commercial, Import/Export, Logistique, Transport, Achats et Supply Chain, vous propose des offres d’emploi ciblées dans ces domaines. Les missions principales pour le poste Third Party Risk...

  • Cyber Risk Officer: TLPT

    il y a 5 jours


    Paris, France Talan Group Temps plein

    Une société de conseil technologique recherche un TLPT & Third-Party Cyber Risk Officer basé à Paris. Vous serez responsable de la gestion des risques cybernétiques et de l'évaluation des fournisseurs. Le poste nécessite de solides compétences en cybersécurité, une connaissance des réglementations comme DORA et une capacité d'analyse. La...


  • Paris, France Satispay Temps plein

    **ICT Third Party Management Specialist** **Please note that this opportunity requires relocation to our Luxembourg office.** **About Satispay** Satispay was born to revolutionise everyday payments - making them simple, fair, and accessible to everyone. Now, the focus has moved even further, aiming to shape the future of money. We're a movement empowering...

  • Cyber Risk Officer: TLPT

    il y a 5 jours


    Paris, France Talan Group Temps plein

    Un groupe international de conseil à Paris cherche un TLPT & Third-Party Cyber Risk Officer pour piloter des tests basés sur les menaces et évaluer la maturité cyber des fournisseurs. Ce rôle exige une solide expérience en gestion des risques et en cybersécurité, ainsi qu'une bonne compréhension des techniques d'évaluation avancées. Les candidats...


  • Paris, France Talan - France Temps plein

    Une société de conseil technologique recherche un TLPT & Third-Party Cyber Risk Officer à Paris. Vous serez responsable de la coordination des exercices de tests basés sur les menaces et superviserez l'évaluation des fournisseurs critiques en matière de cybersécurité. Ce poste exige une solide expérience en gestion des risques et en cybersécurité,...


  • Paris, France HIGHTEAM Temps plein

    Assurer la fonction de PRODUCT OWNER dans un contexte Agile. - Gestion de la vision de la solution. - Alimenter le backlog de la solution conformément aux priorités de la Direction de projet Third Party Security et aux attentes des utilisateurs IT. - Gestion des user stories. - Assurer un premier niveau de tests de recette des livraisons. - Mettre en place...

  • Business Analyst DORA

    il y a 24 heures


    Paris, France Collective Temps plein

    Business Analyst for Supporting DORA Implementation About the Role We are looking for an experienced Business Analyst to support the run of the application, its parametrisation through the Designer Tool, Requirements Definition, Release implementation and introduction of further modules. Key Responsibilities Support application operations and management...

  • Vendor Risk Manager

    il y a 2 semaines


    Paris, Île-de-France AXA France Temps plein

    Job Description:Why AXA? Every day, we work together for human progress by protecting what matters. A mission that puts a smile on your face and makes you want to get up in the morningOne of the world's leading insurers in the protection of property, people and assets, AXA is 145,000 employees and contributors who are committed to our customers on a daily...