Third-Party Cyber Risk Specialist
$84.15k - $108.9kCboe Global Markets
Third-Party Cyber Risk Specialist
Building trusted markets — powered by our people
At Cboe Global Markets, we inspire our people to solve complex challenges together because what we do matters. We provide the financial infrastructure that powers the global economy. As a leading provider of market infrastructure and tradable products, Cboe delivers cutting-edge trading, clearing and investment solutions to market participants around the world.
We're building meaningful ways to support professional and personal development while strengthening the trust we've earned as a global market leader. Our teams are empowered to share ideas, actively pursue them and bring on a challenge. As champions of internal mobility and access to opportunity, we encourage our people to "go for it" and equip our managers with the training to coach their teams to the next level. We strive to provide employees a safe space to network, share ideas and create opportunities.
Please note: To support strong partnership and team connection, this role follows a four day in office work model.
Location Overview
Cboe HQ is located in the historic Old Post Office district, it's a landmark that blends classic architecture with modern amenities. The building features expansive spaces with high ceilings and large windows, offering an abundance of natural light and panoramic views of the city skyline and the Chicago River.
With its prime location in the heart of downtown, the OPO Building provides easy access to major transportation hubs, including Union Station and multiple CTA lines, making it convenient for commuters. The building is home to a variety of amenities, including restaurants, a fitness center, and collaborative workspaces, creating a vibrant and dynamic work environment in one of Chicago's most iconic areas.
Role Overview
The Global Third-Party Risk Management Team is seeking a Third-Party Cyber Risk Specialist to assist in executing the risk management program for third-party vendors and service providers. This position includes conducting comprehensive risk assessments, ensuring compliance with Cboe and industry security standards, monitoring vendor relationships, and addressing client due diligence inquiries to mitigate potential risks to the organization. Cboe's Third Party Cyber Risk Specialist will specifically focus on cyber threats and vulnerabilities within the third-party ecosystem. Candidates must be able to quickly adjust to changing priorities and adapt to an evolving business environment.
Your responsibilities will be:
- Manage incoming client requests (such as assessments, questionnaires, etc.), prioritize and triage requests to appropriate teams, and validate non-disclosure agreements.
- Facilitate communication between business, legal, technology, and information security teams to validate questionnaire responses and fulfill general requests related to controls defined by Cboe's standards and policies.
- Serve as a point of contact for internal stakeholders for client due diligence inquiries, ensuring timely and accurate responses.
- Function as the subject matter expert for the response management software used for managing and responding precisely and quickly to client due diligence questionnaires.
- Manage and maintain a standardized library of responses for client due diligence questionnaires, ensuring accuracy and consistency.
- Collaborate with internal experts to update and refine responses as needed.
- Assist team with onboarding new vendor relationships.
- Collect, review, and process information and documentation from third party vendors/suppliers.
- Conduct third-party risk assessments and due diligence reviews. Analyze security information to identify significant control or security gaps and report findings to senior team members.
- Perform comprehensive security reviews of potential and existing third-party vendors using questionnaires and security tools to evaluate their cybersecurity controls and identify potential risks.
- Analyze identified risks from third parties and prioritize them based on their potential impact and likelihood of occurrence; create remediation plans accordingly.
- Continuously monitor third-party vendors' security posture through regular assessments, vulnerability scans, and incident reporting to maintain a consistent level of security.
- Coordinate with internal security team to respond to cyber incidents involving third-party vendors, providing necessary support for investigation and remediation.
- Assist with regulatory exams by obtaining documentation and drafting responses to regulator inquiries.
- Perform additional activities as needed.
The ideal candidate has:
- Bachelor's Degree or equivalent work experience in a relevant field.
- 3+ years' experience in third-party risk management, vendor management, security incident response, cyber management or comparable field required.
- Strong understanding of cybersecurity principles, including application security, access control, and incident response. Knowledge of compliance and regulatory frameworks (e.g., NIST, SOC 2, GDPR, ISO 27001).
- Excellent communication and interpersonal skills, with the ability to collaborate effectively with cross-function teams.
- Ability to work independently and manage multiple assignments/projects simultaneously.
- Experience conducting vendor risk assessments.
- Experience with third party/vendor risk management platforms is a plus.
Benefits and Perks of working for Cboe Global Markets
We value the total wellbeing of our people – including health, financial, personal and social wellness. We believe standard benefits like health insurance and fair pay are a given at any organization. Still, you should know we offer:
- Fair and competitive salary and incentive compensation packages with an upside for overachievement
- Generous paid time off, including vacation, personal days, sick days and annual community service days
- Health, dental and vision benefits, including access to telemedicine and mental health services
- 2:1 401(k) match, up to 8% match immediately upon hire
- Discounted Employee Stock Purchase Plan
- Tax Savings Accounts for health, dependent and transportation
- Employee referral bonus program
- Volunteer opportunities to help you give back to your communities
Some of our associates' favorite benefits and perks include:
- Complimentary lunch, snacks and coffee in any Cboe office
- Paid Tuition assistance and education opportunities
- Generous charitable giving company match
- Paid parental leave and fertility benefits
- On-site gyms and discounts to other fitness centers
More About Cboe Global Markets
We're reimagining the future of the workplace by focusing on what matters most, our people. Our journey is an inclusive one. We're investing deeply in leadership programs and career development initiatives that ensure everyone has an equal chance to succeed.
We work with purpose, solving problems with ingenuity, collaboration, and a lot of passion. We're an engaged and excited team connecting markets across borders and embracing growth in all its forms to achieve incredible outcomes.
Learn more about life at Cboe on our website and LinkedIn.
Equal Employment Opportunity
We're proud to be an equal opportunity employer do not discriminate against any employee or applicant for employment based on any legally protected characteristic, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, or veteran status. We are committed to fostering a workplace where all individuals are valued and respected.
This position is not eligible for visa sponsorship. Candidates must be legally authorized to work in the United States without the need for employer sponsorship now or in the future.
Salary Ranges (applicable for US locations only)
At Cboe, we are committed to providing a competitive, transparent, and market-informed total rewards program. The anticipated base salary range for this role is $84,150-$108,900, with actual compensation determined by job-related factors such as skills, relevant experience, education, internal alignment, and location.
This role may also be eligible for annual incentive compensation and, where applicable, participation in Cboe's long-term equity programs.
Additional information about Cboe's total rewards program, including benefits and other compensation components, can be found here: Total Rewards at CBOE.
Any communication from Cboe regarding this position will only come from a Cboe recruiter who has a @cboe.com email or via LinkedIn Recruiter. Cboe does not use any other third party communication tools for recruiting purposes.
- Cboe Global Markets is searching for a Third-Party Cyber Risk Specialist to manage third-party vendor relationships and ensure compliance with security standards. The role involves conducting risk assessments, addressing client inquiries, and monitoring vendor security...CyberFull time
- Northern Trust in Chicago is seeking a Director of Cyber Third-Party Risk Management to lead the CTPRM program across North America. The ideal candidate should have over 15 years of experience in Cyber Risk or related fields, exceptional skills in stakeholder management...Cyber
- Northern Trust Corp is seeking a Director of Cyber Third-Party Risk Management (CTPRM) in Chicago, IL. This role will define and execute the CTPRM strategy for North America, overseeing cyber risk assessments and developing third-party risk frameworks. Candidates should...Cyber
$67.5k - $111.5k
Northern Trust Corp. in Chicago is seeking an Audit & Regulatory Specialist to support Third Party Management and Procurement teams. Responsibilities include assisting with audits, executing risk assessments, and documenting control processes. Candidates should have a...Suggested$95k - $143.6k
...performing information security reviews of third parties that provide services to the bank. Key... ...a third party's information security risk with a holistic lens to determine if they... ...Required Qualifications 2+ years as a cyber Assessor. Experience in Information Security...CyberShift workDay shift- Third Party Risk Analyst, Sr Job Locations US-IN-Evansville | US-MN-Lake Elmo | US-IL-Chicago Category/Function Risk/Security Position Type Regular Full-Time Requisition ID 2026-19268 Workplace Type On Site...Full timeWork at office
$86k - $101k
...Citizens from regulatory, operational, financial, and reputational risk by executing proactive payment network compliance oversight,... ...merchant violations, compliance program notifications, third‑party agent compliance, and enforcement actions to ensure timely remediation...Full timeLocal areaVisa sponsorshipWork visaFlexible hoursShift work$95.6k - $162.4k
Northern Trust Corp in Chicago is looking for a Senior Consultant in Third Party Risk Management. The role involves overseeing governance, ensuring compliance with risk policies, and supporting audit engagements. Candidates should possess strong analytical skills and understanding...Full time- Overview We are seeking a detail-oriented and analytical Third-Party Risk Analyst to support our risk management program. This role is responsible for reviewing client contracts for security and compliance requirements, assessing vendor and third-party risks, and maintaining...Contract work
$90k - $110k
...the largest employers in downtown Chicago looking for their next Cyber Security Analysis/Audit Lead. This person will conduct platform... ...related reports. They will serve as organization’s POC for the third party certification of security procedures and use of cyber security...CyberWork experience placementSummer work$137.4k - $240.4k
...most sophisticated clients using leading technology and exceptional service. We are seeking an experienced Director of Cyber Third-Party Risk Management (CTPRM) to lead and mature the enterprise third-party cyber risk program across North America, with a strong focus...CyberH1bFlexible hours- Cboe Global Markets is looking for a Third‑Party Cyber Risk Specialist to join its Global Third‑Party Risk Management Team in Chicago. This role focuses on managing and executing risk assessments for third-party vendors, ensuring compliance with security standards, and...CyberWork at office
$160k - $200k
Blackkite, a leader in cyber third-party risk intelligence, is seeking a motivated Account Executive based in the West Coast to drive new business and revenue growth within commercial and mid-market accounts. The successful candidate will manage the full sales cycle, from...Cyber- ...Assessment Scheduling Automation - Automate the scheduling processes for assessments. Develop a SOR to normalize assessment data. • Third Party Cyber Security Framework - Modernize the assessment solution and portal to automate manual processes. Global Information...Cyber
- ...Senior Analyst, Cybersecurity Governance, Risk and Compliance, Chicago, IL The Senior Analyst, Cybersecurity Governance Risk &... ...implemented for managed systems and applications, as well as support Third Party Risk Management (TPRM) and Governance and Risk functions in...Work experience placement
$201k - $358.5k
...This includes cookies which are set by third parties which allow us to execute marketing campaigns... ...disputes, navigating crises, managing risk and optimizing performance, our teams... ...analysis, network operations, emerging cyber policy, security operations (malware analysis...CyberFull timeWorldwideVisa sponsorshipWork visa$76.4k - $138.6k
...client trust. Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions... ...will include supporting the validation of third-party risk assessments, identifying misconfigurations and exposed...CyberSummer holidayLocal areaFlexible hours$119k - $193k
...research and deliver strategic advice for risk management leaders and their teams. The... ...methods; deep knowledge and expertise in cyber risk quantification; and deep experience... ...broader risk topics: risk quantification, third-party risk, systemic risk, compliance, and cyber...CyberFor contractors$104.5k - $213.8k
...to help financial institutions stay ahead of evolving risks. We are seeking a Financial Services Cybersecurity Internal... ...Centers (SOC) Data Services and Data Governance Third Party Risk Management (TPRM) Cyber Resilience and Incident Response Infrastructure risk...CyberLocal areaWorldwide$160k - $200k
...Come join the leader in cyber third-party risk intelligence! Black Kite gives organizations a comprehensive, real-time view into cyber ecosystem risk so they can make informed risk decisions and improve business resilience while continuously monitoring more vendors, partners...CyberRemote work$85k - $110k
...day‑to‑day operations of AI and Technology Risk Governance, with primary responsibility... ...governance activities across AI Systems, Cyber Security, Data Privacy (IT lens), and IT... ...Support Vendor Management in aligning with third‑party risk requirements AI Governance...CyberTemporary workWork at officeRemote workHome officeFlexible hours$124k - $186k
...-edge cybersecurity solutions that reduce risk by improving visibility, prioritizing risk, and improving resilience against cyber threats. Our portfolio includes advanced technologies... ...such as RiskRecon Cyber Ratings for Third Party Risk Management, AI-driven risk...CyberFull timePart timeWorldwideFlexible hours$128.1k - $239.6k
...client trust. Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions... ...for technology infrastructure, applications, and third-party dependencies. Improve compliance with security standards...CyberWork experience placementSummer holidayLocal areaFlexible hours$325k - $350k
...operating in 64 countries. Founded in 2013 by security and risk experts Dr. Alex Yampolskiy and Sam Kassoumeh and... ...by over 25,000 organizations for self-monitoring, third-party risk management, board reporting, and cyber insurance underwriting; making all organizations...CyberPart time$45 - $55 per hour
...for cash treasuries as well as Bilateral Tri-party Repo. The candidate is responsible for daily monitoring of market risk and manage obligations in the event of a clearing... ...the consultant will be directly employed by a third party vendor, which would provide pay and...Hourly payFixed term contractWorldwide$84.2k - $131k
...Senior Credit Risk Analyst In this hybrid role based at our Chicago Headquarters, you will develop and review credit policies and... ...loans. Perform evaluation, implementation and monitoring of third-party and in-house scoring solutions. Perform model and strategy testing...Full timeTemporary workPart timeWork from home3 days per week- A leading risk management firm in Chicago is seeking a detail-oriented Third-Party Risk Analyst. This role involves reviewing client and vendor contracts for security and compliance, assessing vendor risks, and maintaining security policies aligned with regulations. The...Contract work
$91k - $321.5k
...Specialty/Competency: IFS - Risk & Quality (R&Q) Industry/Sector... ...a Risk Management - Contract Specialist - Managed Services - Senior... ...application managed services, (3) cyber managed services, or (4) risk... ...and external contract parties; - Driving process improvement...CyberFull timeContract workH1b$120k - $155k
...small- to mid-market commercial risks through brokers, other... ...including Professional Liability, Cyber, Technology and Media &... ..., or alternatively through a third-party broker or insurance carrier partner... ...: As an international specialist insurer, we are far removed from...CyberPermanent employmentTemporary workWork at office$105k - $145k
...Step into a region-wide Operational Resilience Risk leadership role at Rabobank, a global cooperative bank known for its mission... ...regulatory scrutiny, digital complexity, and heightened third-party and cyber risks, this role places you at the forefront of shaping how...CyberFull timeWork at officeRemote workWorldwideWork visaFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Third-Party Cyber Risk Specialist. Be the first to apply!
- it risk analyst Chicago, IL
- risk officer Chicago, IL
- risk compliance officer Chicago, IL
- information risk analyst Chicago, IL
- third party risk analyst Chicago, IL
- governance risk & compliance analyst Chicago, IL
- risk analyst Chicago, IL
- transaction risk analyst Chicago, IL
- operational risk consultant Chicago, IL
- senior quantitative risk analyst Chicago, IL

