KPMG Nederland
Computer And Network Security
ITThirdParty&ClientManager
“IT Third Party & Client Manager at KPMG Nederland. Skills: Third-party risk management, Security assessments, Contractual security provisions. Assess external parties for compliance with information security standards. Translate risk assessment outcomes into security requirements”
What You'll Achieve.
Ensure security requirements are demonstrably met; Ensure processes run smoothly; Ensure security risks are demonstrably managed
Industry & Context.
Identify risks; Develop security requirements; Advise on feasibility and mitigations
What They're Looking For.
Must Have
Five years of demonstrable work experience with executing, assessing, and substantiating risk analyses of external parties, Interpreting security documentation such as ISO certifications, SOC reports, pentest results, or due diligence questionnaires, Experience with drafting, assessing, and refining contractual security provisions, Coordinating client audits and information requests, Gathering information from IT, Legal, Procurement, Risk Management, and other teams, Ensuring answers are complete, timely, and demonstrably correct, Strong communication skills in Dutch and English, Translating complex subject matter into understandable and convincing language, Good insight into all relevant components of third-party risk management, Relevant completed HBO or WO education, Affinity with (generative) AI
Nice to Have
Ability to translate outcomes of risk assessments into concrete security requirements, Ability to ensure these requirements are documented in contracts, DPAs, SLAs, and other binding documents, Ability to structure the chain of third-party risk management, Ability to demonstrate to clients and external stakeholders that KPMG has its information security in order, Ability to coordinate client audits and information requests, Ability to ensure security requirements are included and implemented in projects, Ability to monitor risks, guard measures, and check if they have been demonstrably executed and are effective, Ability to monitor these analyses, assess them, and sharpen them where necessary, Ability to monitor the depth of the analyses, Ability to ensure the correct security requirements are included and guaranteed in contracts, SLAs, and other binding documentation, Ability to assess the security requirements that clients want to impose on KPMG before contracts are signed, Ability to advise on feasibility, acceptance, and possible mitigations, Ability to quickly understand what is needed, Ability to translate complexity into understandable actions, Ability to ensure everyone in the chain fulfills their role effectively, Ability to convey urgency, motivate colleagues, and create support, Ability to act as the connecting link that ensures processes run smoothly and security risks are demonstrably managed, Ability to align them with the risk profile of the collaboration
What You'll Do.
Assess external parties for compliance with information security standards
Translate risk assessment outcomes into security requirements
Structure third-party risk management chain
Demonstrate KPMG's information security to clients
Coordinate client audits and information requests
Ensure security requirements are included in projects
Monitor and assess third-party risk analyses
Sharpen risk analyses where necessary
Monitor analysis depth
Ensure security requirements are included in contracts
Coordinate information requests and client audits
Gather necessary information from subject matter experts
Assess client-imposed security requirements
Advise on feasibility and acceptance of requirements
How You'll Work.
Team & Collaboration
Coordinate input from IT, Legal, Assurance, Procurement, and Risk Management; Collaborate with project teams; Work closely with colleagues from various departments; Translate complexity into understandable actions for the team; Ensure everyone in the chain fulfills their role effectively; Act as a connecting link between departments
Communication Scope
Communicative in Dutch and English; Explain complex matters in understandable language; Convincing communication
Applying for this IT Third Party & Client Manager role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on SmartRecruiters
- SmartRecruiters often includes a video screening step — check camera and mic permissions.
- Link your GitHub or portfolio directly in the profile section for technical roles.
- Applications may be reviewed by AI scoring before reaching a recruiter — use keywords from the job description.
ANONYMOUS · UNFILTERED
What do employees actually say about KPMG Nederland?
Real rants from real employees. Read before you apply.