Назад
Company hidden
21 час назад

Client Assurance & TPRM Manager - Assistant Vice President (Cybersecurity Risk)

100 000 - 140 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Client Assurance & TPRM Manager - Assistant Vice President (Cybersecurity Risk): Leading third-party risk management and client assurance functions, including vendor cybersecurity assessments and responses to client due diligence requests, with an accent on team leadership, cybersecurity controls, and risk communication. Focus on reviewing complex assurance evidence, distinguishing material risks, improving scalable governance processes, and reporting risk trends to management.

Location: Greenwich or Stamford, Connecticut, United States. This is a hybrid role with office work Monday through Thursday and the flexibility to work remotely on Friday.

Salary: $100,000–$140,000 base salary annually, plus equity for full-time employees and an annual performance bonus.

Company

hirify.global provides financial technology and investment platform services.

What you will do

  • Lead, manage, mentor, and develop a team of approximately five professionals across Third-Party Risk Management and Client Assurance.
  • Set priorities, expectations, accountability, and technical direction across both cybersecurity risk functions.
  • Review vendor assessments and client assurance responses for accuracy, completeness, consistency, and supporting evidence.
  • Act as an escalation point for complex cybersecurity assessments, vendor issues, client inquiries, and competing priorities.
  • Perform assessments and client assurance work directly when workload or business needs require additional support.
  • Improve documentation, quality, efficiency, scalability, metrics, reporting, and governance processes.

Requirements

  • At least 10 years of relevant experience in cybersecurity, information security risk, technology risk, third-party risk, client assurance, or a related discipline.
  • Experience completing or reviewing cybersecurity due diligence questionnaires, client security inquiries, and third-party vendor risk assessments.
  • Prior experience leading, mentoring, or managing cybersecurity, risk, or assurance professionals.
  • Strong knowledge of identity and access management, vulnerability management, security monitoring, incident response, data protection, encryption, network and infrastructure security, cloud security, secure software development, business continuity, disaster recovery, and security governance.
  • Experience reviewing SOC 1/SOC 2 reports, ISO 27001 certifications, penetration testing reports, security policies, and control evidence.
  • Excellent analytical, written, verbal, interpersonal, stakeholder management, judgment, and prioritization skills. A relevant bachelor's degree or equivalent professional experience is preferred.

Nice to have

  • Master's degree in cybersecurity, information technology, computer science, risk management, or a related discipline.
  • CISSP, CISM, CRISC, CISA, or an equivalent professional certification.
  • Experience in financial services or another highly regulated industry.
  • Experience with third-party risk management, GRC, questionnaire automation, client assurance platforms, metrics, reporting, procedures, or governance processes.

Culture & Benefits

  • Hybrid schedule with office collaboration Monday through Thursday and remote work flexibility on Friday.
  • Equity for all full-time employees and an annual performance bonus.
  • Employer-matched retirement plan and subsidized healthcare.
  • Employer-paid dental, vision, telemedicine, and virtual mental health counseling.
  • Parental leave and unlimited paid time off.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →