Vendor Security & Standards Manager

4 weeks ago
Full-time
Senior
Cybersecurity
Nebius

Nebius

Nebius enables B2B companies to build local hyperscaling cloud platforms with cost-effective GPUs, InfiniBand network, and 50% less compute cost. They offer managed Kubernetes and a launch-ready business model for innovative cloud solutions.

Internet Software & Services
51-250

Description

  • Own and maintain Nebius’s vendor security standards framework, requirements, and compliance benchmarks.
  • Ensure vendors formally accept and meet NGSCS security standards before operational engagement.
  • Conduct scheduled and unannounced on-site inspections across vendor facilities and logistics environments worldwide.
  • Verify controls including access management, personnel screening, CCTV, tamper evidence, handling procedures, and chain of custody.
  • Assess compliance against TAPA FSR, TAPA TSR, and NGSCS-specific requirements.
  • Document inspection findings, produce gap assessments, and identify systemic vendor risks.
  • Issue corrective action notices, define remediation timelines, and verify completion through follow-up inspections.
  • Maintain a global vendor compliance register covering inspection history, open actions, and status.
  • Escalate persistent or severe non-compliance and recommend sanctions, suspension, or vendor replacement.
  • Report compliance trends to leadership and improve standards, policies, procedures, and vendor documentation.

Requirements

  • Significant experience in supply chain security compliance, vendor auditing, or security standards enforcement.
  • Proven experience conducting physical security inspections across complex, multi-vendor environments.
  • Experience managing corrective actions, escalations, and remediation through resolution.
  • Deep familiarity with TAPA FSR and/or TAPA TSR standards.
  • Strong knowledge of logistics physical security controls, including access control, CCTV, personnel screening, tamper evidence, and chain of custody.
  • Assertive communication style and ability to hold vendor organizations accountable.
  • Highly organized, detail-oriented, and able to manage complex global compliance workloads independently.
  • Fluent spoken and written English.
  • Significant international travel availability and willingness to respond to urgent incidents outside standard working hours.
  • Preferred: law enforcement, military, corporate security auditing, critical infrastructure, global security, supply chain technology, or Dutch, Hebrew, or Mandarin language experience.

Benefits

  • Competitive compensation.
  • Career growth and learning opportunities.
  • Flexibility and ownership.
  • Collaborative and innovative culture.
  • Opportunity to work on impactful AI projects.
  • International environment with globally distributed teams.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

IT Systems Audit SME (SAP WMS)

C5MI 11-50 Internet Software & Services

C5MI is seeking an IT Systems Audit SME to lead audit readiness, internal-control evaluation, risk management, and compliance activities for mission-critical DoD/DLA warehouse management and SAP environments.

Cybersecurity
4 days ago

Principal Technical Consultant - Network & Security Solution Architect

AHEAD 1K-5K IT Services

AHEAD is seeking a Solution Architect – Network & Network Security to lead the design and delivery of enterprise-scale network and security solutions for a complex Fortune 10 client environment.

Azure Cisco Network Security
5 days ago

Technical Consultant

AHEAD 1K-5K IT Services

AHEAD is seeking a Technical Consultant to help enterprise clients improve cloud security and compliance through consulting delivery, business development, and security practice development.

AWS Azure Bash CI/CD Docker Kubernetes PowerShell Python SIEM Splunk Terraform
1 week ago

Senior Professional Services Technical Architect - Security

GitLab 1K-5K Internet Software & Services

GitLab is hiring a Senior Professional Services Technical Architect, Security to design and lead secure enterprise DevSecOps solutions for Professional Services clients across AMER, from pre-sales scoping through implementation and enablement.

Ansible CI/CD DevSecOps GitLab Jenkins SonarQube Terraform
1 week, 1 day ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers