Your Team
As a Senior Associate in our Cybersecurity and Privacy team, you will play a vital role in enhancing and expanding our supply chain cyber risk capabilities across diverse sectors. You will assist our clients in strengthening their third-party cyber risk management programs, ensuring compliance with evolving regulatory standards such as DORA and NIS2, and addressing emerging threats within intricate, global supply chains.
This growth-focused role supports engagements with various clients in the financial and non-financial sectors, many of which are involved in multi-year transformation initiatives.
Your Impact
As a member of the Cybersecurity and Privacy team at PwC Switzerland, you will:
- Deliver client engagements centered on supply chain cybersecurity, third-party risk, and compliance with regulations like DORA and NIS2 across various industries.
- Design and implement supplier segmentation, conduct cyber risk assessments, perform control testing, and establish continuous monitoring and incident response processes as part of comprehensive Supplier Risk and IT GRC transformations.
- Collaborate with clients to define and operationalize future state Third Party Risk Management (TPRM) operating models, including defining roles, responsibilities, escalation paths, and response plans.
- Build AI-augmented TPRM capabilities and workflows utilizing platforms such as ServiceNow, ProcessUnity, BitSight, RiskRecon, and SecurityScorecard, including tool configuration and integrations.
- Develop practical recommendations and roadmaps to enhance cyber risk governance, continuous monitoring, and incident/issue management throughout the third-party lifecycle.
- Lead and contribute to workshops, reporting, and executive-ready presentations for CISO, CIO, Risk, Compliance, and Procurement stakeholders.
- Support internal capability building, contributing to thought leadership, market propositions, proposal responses, and account expansion initiatives.
- Coach and mentor junior team members while nurturing a high-performance, inclusive team culture.
Your Skill Set
We are seeking a Senior Associate who embodies our core values and possesses a robust background in cybersecurity:
- At least 5 years of relevant experience in cybersecurity, third-party risk, or supply chain risk management.
- A master's or bachelor's degree, or an equivalent professional qualification in business administration or computer science. Additional certifications such as CISM, CRISC, ISO 27001 Lead Implementer, or CISSP are advantageous.
- Proven experience working with financial services clients, ideally within regulatory-driven projects (e.g., DORA, NIS2).
- Strong understanding of supply chain cybersecurity frameworks, supplier risk segmentation, control testing, and cyber risk quantification.
- Familiarity with supply chain risk platforms such as ProcessUnity, ServiceNow, BitSight, RiskRecon, or equivalents.
- Excellent communication, stakeholder engagement, and client-facing skills.
- Strong verbal and written communication skills to effectively interact with all levels of management and staff.
- Fluency in English; proficiency in German and/or French is preferred.
- A high degree of initiative, self-organization, and sense of responsibility.
Apply online using the form below. Please note that only applications matching the job profile will be considered.
Work locationZürich, Switzerland