





Mid-level, metro role with common security/TPRM skillset and moderate employer brand.
TPRM and GRC skills transfer across industries but require cybersecurity domain experience.
Explicit 5+ year requirement plus required TPRM tool experience and security evidence review increases filter strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Perform full lifecycle third-party cybersecurity risk assessments including onboarding, due diligence, continuous monitoring, and offboarding.
Identify security gaps, support remediation governance, and maintain audit-ready documentation for supplier security posture.
Coordinate across suppliers, Procurement, Legal, and internal teams to ensure timely, accurate risk evaluations and decisions.
Bachelor’s degree in Cybersecurity, Information Systems, Technology, Engineering, or related field.
Minimum 5 years experience in security assurance, supplier assessments, technology risk, or GRC.
Experience with third-party cybersecurity risk assessments and TPRM tools such as OneTrust and UpGuard.
Familiarity with cybersecurity frameworks (e.g., ISO 27001, SOC 2, NIST CSF) and evidence review (SOC reports, penetration tests).
Demonstrated expertise in third-party security risk management across supplier lifecycle with attention to detail and audit readiness.
Ability to interpret complex technical evidence, apply risk judgment, and propose actionable remediation plans.
Experience working cross-functionally with Procurement, Legal, Security Engineering, and vendor management teams to balance compliance and operational needs.