Senior Manager - Vendor Security Risk
Small Business Investment Company (SBIC) program — U.S. Small Business AdministrationMatch Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessLog in to see why each signal reads the way it does.
Job Description
Structured overview of role & requirementsAbout This Role
Conduct vendor risk assessments based on standards like ISO27001:2013, PCI-DSS, and Cloud security frameworks to identify and address information security risks of third parties.
Track, report, and ensure timely remediation of identified security risks in collaboration with cross-functional teams and vendor partners.
Develop and maintain assessment questionnaires, monitor vendor compliance, perform remediation testing, and deliver security compliance training to business partners.
Minimum Requirements
Bachelor’s Degree in Computer Science, Information Security, or relevant discipline.
Experience with information security risk assessments and vendor security, including PCI-DSS and ISO27001 compliance implementations or audits.
Familiarity with information security technologies, security architectural principles, and control objectives related to ISMS, technology risk, and cloud security.
Industry-standard certifications such as ISO27001:2013 LA, CISA, CISM, or Cloud Security relevant certifications preferred.
Ideal Candidate Profile
Strong background in information security risk management specifically in vendor or third-party risk contexts within Financial Services Industry (FSI) preferred.
Experienced in coordinating cross-functional teams for security risk mitigation and compliance adherence.
Detail and process-oriented professional skilled at stakeholder management and proficient in delivering security compliance training and documentation.
