3rd Party Risk Manager
Job Description
We are seeking a hands on Third Party Risk Manager with a strong cybersecurity focus to help design, operationalize, and mature an evolving Third Party Risk Management (TPRM) program. This individual will own vendor cyber risk throughout the lifecycle - due diligence, tiering, onboarding, continuous monitoring, and issue management - while working within an existing but loosely structured framework across Procurement, Compliance, and IT Operations.
Key Responsibilities
-
Design and mature a cyber focused TPRM program in an immature-to-developing state.
-
Perform vendor due diligence, including review of SOC 1 / SOC 2 Type II reports, security questionnaires, and regulatory requirements.
-
Establish and execute a three tier vendor risk model (High / Medium / Low) based on criticality and cyber exposure.
-
Develop a unified operating plan for vendor onboarding, monitoring, and risk escalation.
-
Determine when and how to challenge vendors on control gaps, remediation plans, and residual risk.
-
Build and support continuous cyber risk monitoring and critical vendor scanning capabilities.
-
Own ongoing monitoring of high risk vendors post onboarding.
-
Define and track TPRM metrics to measure risk posture and program effectiveness.
-
Support initiatives to reduce third party risk exposure, including vendor rationalization.
-
Partner closely with Procurement, Compliance, IT, Security, and external vendors to ensure effective execution.
-
Ensure the TPRM program is operational, repeatable, and audit ready.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to [email protected] learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy:
Skills and Requirements
-
5+ years of experience in Third Party Risk Management, Cyber Risk, or Information Security.
-
Strong hands on experience reviewing full SOC 1 / SOC 2 Type II reports.
-
Experience assessing security questionnaires and regulatory/security requirements.
o Experience working directly with vendors to assess, challenge, and remediate risk.
-
Proven ability to tier vendors and manage risk based decisioning.
-
Ability to design practical, operational processes across frameworks.
-
Ability to define, track, and report TPRM metrics. - Experience with TPRM tools/platforms (e.g., CoreStream).
-
Experience with continuous cyber risk monitoring platforms (e.g., BlackKite or similar).
-
Experience automating third party risk workflows.
-
Exposure to regulated environments (financial services, healthcare, life sciences).
-
Experience supporting vendor risk reduction or third party footprint consolidation.
-
Audit or regulator facing TPRM experience.
Recommended Jobs
Pulmonary Function Test (PFT) Technician
Job Description Job Description Position Overview Sina Health Pulmonology is seeking a qualified and certified Pulmonary Function Test (PFT) Technician to join our outpatient pulmonary practic…
Direct Support Professional-Erie County
Job Description Job Description Direct Support Professional (DSP) Scope: Direct Support Professional staff function as members of teams that are responsible for the direct care and instruction…
Certified Medication Technician
Job Description Job Description Now Hiring: Certified Medication Technician – Full Time & Part Time We are looking for Certified Medication Technician to join our team at Morningside Hous…
Carpenter Helper
Job Description Job Description Apple Outdoor Supply, a division of Blevins, Inc., is seeking a dependable and skilled Carpenter Helper to join our team at our Camp Hill, PA branch. This is a…
Provider Enrollment Specialist
United States Category Operations Job Id 44258 Remote Application Instructions: Make sure your resume has been customized to the Provider Enrollment Specialist role showing you are a go…
Millwright - Weekend Full-time
Job Description Job Description The newly created Company, FerroWorks, has locations in Pittsburgh, McKees Rocks, and Kutztown, PA including McConway and Torley and Standard Forged, which have be…
Licensed Insurance Sales Representative
Jim D'Angelo - State Farm Agency, located in Bryn Mawr, PA has an immediate opening for a full-time Licensed Insurance Sales Professional. We are an award winning State Farm agency focused on fulfill…
Accounts Receivable Specialist
Job Description Job Description Accounts Receivable Specialist Full-Time | High-Volume Corporate Environment Why This Role Is Exciting This role sits within a large, evolving organiza…
Diesel and Construction Equipment Mechanic Trainee
Reference #: 5274948 Salary $47,844.00 - $60,714.00 Annually Location Cameron County, PA Job Type Non-Civil Service Permanent Full-time Job Number N-2026-45511 De…
Administrative and Customer Service Openings! - Norristown, Pa
Job Description Job Description Our client in Norristown is seeking candidates with Administrative Support and Customer Service Experience for a great opportunity on-site at their location in Nor…