Specialist Cybersecurity - SCCRM | Gurgaon
India
About BHP
At BHP, we are the world’s largest mining company, with over 140 years of history. With that legacy comes the ability to tackle some of the world’s biggest challenges. These aren’t just mining challenges, they are cutting-edge technological challenges that are transforming BHP into one of the most advanced technology organizations globally.
To make this vision a reality, we need people like you - innovators, problem-solvers, and technologists ready to create solutions that will shape the future.
Why Join Us?
At BHP, people are at our core. We value individual ideas, diverse thought processes, and the unique perspectives that drive innovation. When you join us, you’re not just part of a team - you’re part of a culture that empowers you to make an impact.
- Innovation & Impact: Work on AI, data, digital platforms, automation, and cybersecurity projects that drive sustainability and global transformation.
- Stability & Purpose: Be part of a company with 140+ years of history and a strong commitment to environmental and social governance.
- Career Growth & Learning: Accelerate your career with structured learning, global mobility, and exposure to diverse teams.
- Inclusive Culture & Flexibility: Enjoy hybrid work options and a culture that values diversity and empowerment.
- Competitive Rewards: Transparent pay structures and equity plans that match your ambition.
What We're Looking For
We’re searching for technologists at the forefront of their game - people who don’t just follow trends but create them. Innovators who thrive on solving complex problems and generating solutions that push boundaries. If you’re passionate about technology and energized by the opportunity to shape the future, you belong here.
- Experience in information security, cyber risk management, or third-party risk assurance with direct technical assessment experience
- Understanding of cloud, SaaS, and hybrid models including associated risks, controls, and mitigations
- Demonstrated experience in conducting or overseeing cybersecurity due diligence, third party risk reviews, and remediating control gaps
- Track record of influencing third parties and internal stakeholders to drive risk reduction outcomes
- Knowledge and experience using Governance, Risk, and Compliance Tools.
- Cybersecurity related certifications like CISSP, CISM, CISA, and SANS certifications
- Sound knowledge and implementation skills of security standards and frameworks like ISO 27000 series standards and NIST
- Strong but respectful negotiation skills, interpersonal skills and team management skills
- Bachelor’s degree in Information Technology, Cyber Security, Computer Science, or related discipline
About the Role
Technology is a global function within BHP that builds and maintains Reliable, Impactful, Safe and Efficient technology. Cybersecurity is a key part of this team that manages BHP’s internal and external attack surface, safeguarding our people, data, and business operations against evolving threats.
Specialist Cybersecurity Supply Chain Cyber Risk Management is responsible for ensuring that third-parties (including vendor, suppliers, and outsourced service providers) maintain cybersecurity postures aligned with BHP's standards, regulatory requirements, and industry good practices. This role leads the execution of third-party cyber risk management (TPCRM) activities across the third party lifecycle - from onboarding assessment to continuous monitoring and offboarding. This role will also support operation of the critical control related to this process.
In this role, your key accountabilities will include:
- Identification of contracts needing TPCRM assessments and establish triggers to adhere to policies and standards.
- Determine third party criticality using a risk-based model for detailed TPCRM assessments.
- Coordinate with internal and external stakeholders to complete assessments.
- Analyse documentation including but not limited to SOC2 reports, ISO certifications, penetration tests, and cloud security configurations to identify gaps.
- Work with third parties to define mitigation plans, remediation timelines and ensure a path to risk closure.
- Ensure security controls are followed for terminated contracts.
- Assist with training Procurement, Legal, and other business teams on TPCRM processes.
- Align with Procurement, Data Privacy, and Legal on technical compliance requirements.
- Identification and monitoring of third parties that support the BHP value chain using continuous monitoring platforms.
- Monitor threat intelligence feeds for relevant third party cybersecurity and/or data security incidents and assist teams with any incident responses.
Application closes 20th January, 2026
What You'll Love
- Clear career pathways and fast upskilling
- Exposure to global teams and cutting-edge tech
- A safe, supportive culture (98% of our employees feel respected)
- Flexibility and trust (92% rate work-life balance highly)
- Empowerment to innovate (90% feel encouraged to improve how we work)
Ready to make an impact that matters?
Apply now and be part of a team where your ideas shape the future.
About Our Process
At BHP, we are committed to employing individuals who align with the BHP Charter Values and meet the requirements of the role. As part of the recruitment process, there are a number of checks which may be conducted to demonstrate applicants suitability for a role including police / criminal background checks, medical, drug and alcohol testing, due diligence checks, right to work checks, and/or reference checks.
If you are already employed directly by BHP, please log in using your BHP email address or apply via our internal jobs portal.
Supporting a Diverse Workforce
The size, stability and magnitude of our business not only provides significant opportunity for professional development, but also attractive salary packages with performance-based bonuses and a best-in-class employee share program. We know there are many aspects of our employees' lives that are important, and work is only one of these, so we offer benefits to enable your work to fit with your life. These benefits include flexible working options, a generous paid parental leave policy, other extended leave entitlements and parent rooms.
At BHP, we know that we are strengthened by diversity. We are an Equal Opportunity employer that is committed to making BHP a safe and inclusive workplace where everyone can thrive and be at their best every day. We are focused on creating a workforce that’s more diverse and represents the communities where we work and live. providing a work environment in which everyone is included, treated fairly and with respect. We are an Equal Opportunity employer and recognise that true diversity includes gender, age, race, disability status, sexual orientation, religion, neurodiversity, education levels, and many more aspects of your identity.
BHP is committed to providing a recruitment process that is fair, equitable and accessible for all. If you have a disability, we know that it may be helpful for us to adjust our process to make it equitable for your individual situation. If you would like to reach out to someone about your situation and our recruitment process, please email us at inclusion@bhp.com.