Skip to main content
Back to Jobs

Lead Service Consultant - Supplier Security Due Diligence & Monitoring Service -

Summary shown in Indonesian — English version coming soon.

Full Description

At Allstate, great things happen when our people work together to protect families and their belongings from life's uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers' evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. Job Description The Supplier Security Due Diligence & Monitoring Service operates at the intersection of Cybersecurity, Legal, Procurement, Supplier Management, and Enterprise Risk Management. The team is responsible for helping the enterprise navigate information security requirements within supplier contracts by providing first-line support during contract negotiations and redline reviews. The Lead Service Consultant serves as a senior practitioner within the specialized service responsible for translating supplier risk assessments into practical contractual security positions. This role partners with stakeholders to evaluate supplier contract language, advise on acceptable contractual outcomes, apply approved fallback language, document security control exceptions, and support governance reviews for non-standard contractual positions. The Lead Service Consultant plays a critical role in balancing supplier risk management with business enablement while maintaining alignment with enterprise risk expectations and supporting consistent service delivery across the organization. Working under the direction of the Service Manager, the Lead Service Consultant serves as a trusted advisor for complex supplier negotiations, contributes to service maturity initiatives, and helps drive operational consistency, quality, and continuous improvement across the service. What's exciting about this role? Be a key influencer within a highly visible enterprise service that directly impacts supplier risk outcomes across the organization. This role operates at the center of cybersecurity, legal, procurement, and business strategy, providing the opportunity to shape supplier contracting decisions, influence enterprise risk management practices, and drive operational excellence in security governance. As a senior individual contributor, you will have the opportunity to advise stakeholders on complex contractual security matters, help establish scalable practices and standards, and support the evolution of a service that enables the business to move quickly while ensuring critical security requirements remain protected in an increasingly complex supplier ecosystem. Provide subject matter expertise and consultation on information security requirements within supplier contracts during contract negotiations and redline reviews. Translate supplier risk assessment outcomes into practical contractual security positions and recommend risk-aligned solutions for business stakeholders. Review supplier-proposed contractual language and determine alignment with established security requirements, standards, and enterprise risk expectations. Apply approved fallback language and assist stakeholders in navigating contractual negotiations involving security controls and requirements. Document security control exceptions, risk acceptance decisions, contractual deviations, and non-standard positions in accordance with established governance processes. Facilitate escalation and governance review of contractual positions that fall outside approved standards or risk tolerances. Partner closely with Cybersecurity, Legal, Procurement, Supplier Management, Enterprise Risk Management, and business stakeholders to support timely and informed contracting decisions. Serve as a senior resource for complex supplier security due diligence engagements and contractual risk discussions. Support development and maintenance of service procedures, operating guidelines, knowledge articles, templates, and training materials. Identify trends, recurring issues, and opportu

Why This Role?

Anda akan menjadi pengaruh kunci dalam layanan perusahaan yang sangat terlihat, mempengaruhi hasil risiko pemasok dan praktik manajemen risiko di seluruh organi

Key Responsibilities

  • Menerjemahkan penilaian risiko pemasok menjadi posisi keamanan kontrak yang praktis
  • Mengelola negosiasi kontrak pemasok yang kompleks sebagai penasihat terpercaya
  • Mendokumentasikan pengecualian kontrol keamanan dan mendukung ulasan governansi untuk posisi kontrak non-standar

Requirements

  • Pengalaman dalam keamanan siber, hukum, atau manajemen risiko
  • Kemampuan untuk berkolaborasi dengan berbagai stakeholder
  • Pengalaman dalam penilaian risiko dan manajemen kontrak

Required Skills

cybersecurityrisk managementcontract negotiationstakeholder managementlegal compliance

Indonesia Context

Working Hours Overlap:
Flexible — work your own hours
See remote (USD) vs local pay →

Keywords

supplier securitydue diligencecontract managementcybersecurityrisk managementlegalprocurementremotefull-time
View Original Description from The Muse

Original description from The Muse

At Allstate, great things happen when our people work together to protect families and their belongings from life's uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers' evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. Job Description The Supplier Security Due Diligence & Monitoring Service operates at the intersection of Cybersecurity, Legal, Procurement, Supplier Management, and Enterprise Risk Management. The team is responsible for helping the enterprise navigate information security requirements within supplier contracts by providing first-line support during contract negotiations and redline reviews. The Lead Service Consultant serves as a senior practitioner within the specialized service responsible for translating supplier risk assessments into practical contractual security positions. This role partners with stakeholders to evaluate supplier contract language, advise on acceptable contractual outcomes, apply approved fallback language, document security control exceptions, and support governance reviews for non-standard contractual positions. The Lead Service Consultant plays a critical role in balancing supplier risk management with business enablement while maintaining alignment with enterprise risk expectations and supporting consistent service delivery across the organization. Working under the direction of the Service Manager, the Lead Service Consultant serves as a trusted advisor for complex supplier negotiations, contributes to service maturity initiatives, and helps drive operational consistency, quality, and continuous improvement across the service. What's exciting about this role? Be a key influencer within a highly visible enterprise service that directly impacts supplier risk outcomes across the organization. This role operates at the center of cybersecurity, legal, procurement, and business strategy, providing the opportunity to shape supplier contracting decisions, influence enterprise risk management practices, and drive operational excellence in security governance. As a senior individual contributor, you will have the opportunity to advise stakeholders on complex contractual security matters, help establish scalable practices and standards, and support the evolution of a service that enables the business to move quickly while ensuring critical security requirements remain protected in an increasingly complex supplier ecosystem. Provide subject matter expertise and consultation on information security requirements within supplier contracts during contract negotiations and redline reviews. Translate supplier risk assessment outcomes into practical contractual security positions and recommend risk-aligned solutions for business stakeholders. Review supplier-proposed contractual language and determine alignment with established security requirements, standards, and enterprise risk expectations. Apply approved fallback language and assist stakeholders in navigating contractual negotiations involving security controls and requirements. Document security control exceptions, risk acceptance decisions, contractual deviations, and non-standard positions in accordance with established governance processes. Facilitate escalation and governance review of contractual positions that fall outside approved standards or risk tolerances. Partner closely with Cybersecurity, Legal, Procurement, Supplier Management, Enterprise Risk Management, and business stakeholders to support timely and informed contracting decisions. Serve as a senior resource for complex supplier security due diligence engagements and contractual risk discussions. Support development and maintenance of service procedures, operating guidelines, knowledge articles, templates, and training materials. Identify trends, recurring issues, and opportu

Track this application + get a follow-up reminder

Free account · no credit card · Log in

Pro $9/mo · unlimited applies + AI resume

View 5 similar jobs →

Company
Allstate
Source
The Muse
Job Type
full time
Location
Remote · Open worldwide
Category
Seniority
senior
PostedNew
Jul 29, 2026

Share this job

Help a friend find their next remote role.

Explore related

Market data & reports

Salary & skill-demand research built from our own listings data.

Track this application + get a follow-up reminder

Free account · no credit card · Log in

Pro $9/mo · unlimited applies + AI resume