Manager, Third Party Risk Management (Remote)
Core
Lead a team of TPRM analysts to assess and manage risks within CrowdStrike's third-party vendor ecosystem, ensuring customer data and operational security.
Role type
Manager, Third Party Risk Management (TPRM)
Builds
Scalable vendor risk management program, automated assessment workflows, and integrated security policies for the vendor lifecycle.
Domain
Cybersecurity, Governance, Risk, and Compliance (GRC), Third-Party Risk Management
Required skills
Third-party risk management, GRC, vendor risk assessment methodologies, control frameworks, risk lifecycle management, ServiceNow TPRM module, security compliance frameworks (NIST, ISO 27001, SOC 2), process improvement, automation, AI/ML in risk workflows, stakeholder management, program/project management
Preferred skills
Cloud environment experience, CrowdStrike products knowledge, software development/secure coding, integration risk assessments, threat modeling, leading GRC products
Technologies
ServiceNow, NIST CSF, ISO 27001, SOC 2, NIST 800-53, SIG, FAIR, AI/ML tools
Responsibilities
Lead, mentor, and develop a team of 4 TPRM professionals; oversee end-to-end third-party risk assessments and the full vendor risk lifecycle; partner with Procurement, Legal, IT, and Security to embed risk considerations; evaluate vendor security posture and compliance certifications; create and enhance the cybersecurity vendor risk management program; conduct third-party controls evaluations and audits; develop and maintain TPRM policies aligned with industry frameworks; prepare risk reporting for senior leadership; support internal and external audit activities.
Seniority
Manager, people leadership
