Third-Party Risk Manager, Cybersecurity

Remote Full-time
Job Description:
• Develop, manage, and continuously improve the organization’s Third-Party Risk Management (TPRM) program and platform, including policies, procedures, risk methodologies, and performance metrics.
• Lead risk assessments and due diligence processes for new and existing third-party vendors, including IT, business services, SaaS providers, and critical suppliers.
• Build criteria and processes to evaluate AI-based vendor technologies to identify risk exposure.
• Evaluate vendor security practices, policies, and controls using industry frameworks (e.g., NIST CSF).
• Partner with Procurement, Legal, Compliance, IT, and business stakeholders to integrate risk assessments into the vendor lifecycle—from onboarding through termination and to review contracts, Business Associate Agreements (BAAs), and data-sharing agreements.
• Maintain a current and accurate vendor risk inventory and drive the development and execution of corrective action plans for vendors with risks or compliance gaps.
• Oversee the implementation of continuous monitoring controls and ensure timely reassessments of vendor risks.
• Collaborate with Internal Audit and Compliance teams to support external audits, regulatory requests, and risk reporting.
• Prepare executive-level reporting on third-party risk exposure and program effectiveness for GRC leadership and Board-level stakeholders.
• Stay current on emerging regulatory changes, industry standards (e.g., NIST, ISO, HIPAA, HITRUST), and best practices in third-party risk management, providing cybersecurity expertise and support for all IT Audit (SOX, PCI, HIPAA); Security Compliance (Vendor Security Assessments and Security Risk Analysis (SRA)); and Data Compliance (Data Classification and Automated / Continuous) audits.

Requirements:
• Four year degree in any business/ technical area or equivalent experience is preferred
• Certification Preferred - CISSP, CRISC, CTPRP, CTPRA or HCISPP
• 5+ years of experience in third-party/vendor risk management, preferably within highly regulated industries such as healthcare, finance, or technology.
• Strong understanding of GRC frameworks, risk assessment methodologies, and regulatory requirements (e.g., HIPAA, GDPR, SOC 2, NIST CSF).
• Proven ability to communicate complex risk concepts clearly to both technical and non-technical stakeholders.
• Experience managing risk assessment platforms or GRC tools (e.g., Archer, ServiceNow, OneTrust, Prevalent or Safe Security).
• Excellent analytical, organizational, and interpersonal skills.
• Certifications such CISSP, CRISC, CTPRP, CTPRA or HCISPP

Benefits:
• Medical, dental, vision, disability, AD&D and life insurance
• Manager Time Off – 20 days per year
• Discretionary 401k match
• 10 paid holidays per year
• Health savings accounts, healthcare & dependent flexible spending accounts
• Employee Assistance program, Employee discount program
• Voluntary benefits include pet insurance, legal insurance, accident and critical illness insurance, long term care, elder & childcare, auto & home insurance.
• For Colorado employees, paid leave in accordance with Colorado’s Healthy Families and Workplaces Act is available.

Apply Now

Apply Now
Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

Mobile App Developer (Flutter) Full-Time, Remote [m/f/x] Germany & Poland

Remote Full-time

**Experienced Customer Support Associate – Remote Opportunity at blithequark**

Remote Full-time

Work from Home Job - Part-time Focus Group – Indeed Jobs US

Remote Full-time

Customer Support Specialist - Remote

Remote Full-time

Analyst, Portfolio Retention

Remote Full-time

Stage Evaluation Immobilier et Asset Advisory F/H

Remote Full-time

Experienced Home Infusion Nurse - Accredo - Hybrid - Philadelphia, PA - Delivering Exceptional Patient Care through Autonomous Nursing Practice

Remote Full-time

Senior DL Algorithms Engineer, Inference Performance

Remote Full-time

[Remote/WFM] Remote Customer Service Associate at Amazon-

Remote Full-time

**Experienced Junior Data Entry Clerk – Remote Opportunity for Career Growth and Development at blithequark**

Remote Full-time
← Back to Home