About the job Business Analyst COTS Project (Third-Party Software Supply Chain Security)
Mission Overview
Keystone Solutions is seeking a skilled Business Analyst to contribute to a consultancy mission focused on enhancing third-party software supply chain security for our client. The successful candidate will be instrumental in both the design phase of the project set for Q4 2025 and the deployment of the defined strategies in 2026.
Project Scope
This project aims to establish new capabilities to manage security where software suppliers are involved. Specifically, the tasks will include:
For suppliers providing on-premises software to our client, the establishment of processes to ensure:
Compliance with security practices during the development and maintenance of the software.
Identification and management of vulnerabilities associated with the software and libraries.
For suppliers providing SaaS applications, ensuring:
Adherence to our clients security practices during software development, hosting, and maintenance.
Identification and management of vulnerabilities in relation to the software and libraries.
Defining and coordinating the implementation and maintenance of dedicated reporting to support these activities:
Mapping third parties to software.
Creating mappings for each software to libraries.
Reviewing alert and incident response procedures involving third parties and establishing response mechanisms when incidents occur.
Deploying processes to manage supplier subcontractors according to DORA and security practices, including:
Defining processes for identification of subcontractors.
Creating and maintaining data repositories to support activities.
Enhancing existing governance through operational follow-ups with suppliers to track and coordinate activities.
Key Responsibilities
The selected candidate will be responsible for:
Key Skills
If you are ready to tackle technical and strategic challenges in a dynamic consultancy environment, apply today at Keystone Solutions Career Portal.