Demo

Cybersecurity Third-Party Risk Program Manager

Insight Global
Virginia, VA Contractor
POSTED ON 3/2/2025
AVAILABLE BEFORE 3/27/2025

This is a REMOTE opportunity for candidates that sit in one of the pre-approved states: Alabama, Delaware, Florida, Georgia, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, New Hampshire, North Carolina, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Virginia, Washington (State), West Virginia, Wisconsin, Wyoming.


Insight Global is seeking a Cyber Security Third Party Risk Manager to join the GRC team at one of our largest health insurance clients. This is a fully remote role (see approved state list) and will be a 6-month contract-to-hire format. As a Cyber Security Third-Party Risk Manager, this individual will play a critical role developing, enhancing and executing the third-party risk management program including onboarding, maintenance and ongoing monitoring, and offboarding of third-party suppliers. Primary responsibilities will include identifying and categorizing third-party vendors based on risk, understanding and prioritizing the risks, establishing and enforcing key controls to mitigate the risk, performing continuous monitoring that tracks and reassesses third parties, and ensuring third party contractual compliance with Sentara policy and standards.


Key Responsibilities:

  • Regularly interact with all levels of management to present and discuss third-party risk management
  • Conduct comprehensive risk assessments of third-party vendors based on risk
  • Manage a team of assessors for performing vendor assessments and vendor contracts negotiations
  • Analyze and prioritize risks based on their potential impact on the organization’s operations, data, and reputation.
  • Develop and streamline the third-party risk management process.
  • Identify and assess vulnerabilities within vendor systems, networks, and applications.
  • Collaborate with cross-functional teams, including IT, security, and compliance, to develop and implement risk mitigation strategies.
  • Prepare detailed third-party risk assessment reports, including findings, recommendations, and mitigation plans, for presentation to management.
  • Maintain accurate and up-to-date documentation of third-party risk assessment activities, findings, and risk treatment plans.
  • Assist in audits and assessments to demonstrate compliance with cybersecurity standards.


Must Haves:

  • 10 years of experience in Governance, Risk, and Compliance (GRC) related roles.
  • 2-3 years of experience successfully managing a third-party risk, or vendor due diligence team/program in cyber security.
  • Proficiency in performing third-party risk assessments and negotiating contractual security language with vendors' legal and information security teams.
  • Strong background in risk and controls, security controls, auditing, and system security.
  • Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA).
  • Experience with industry regulations and frameworks such as HIPAA, NIST, and ISO 27001.


Plusses:

  • Bachelor’s degree in computer science, Information Security, or experience in related field
  • Healthcare industry experience / working in a highly regulated environment.
  • Experience with GRC tools such as Service Now, One Trust, Archer, etc.


Compensation:

$50/hr to $65/hr.

Exact compensation may vary based on several factors, including skills, experience, and education.

Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

Salary : $50 - $65

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cybersecurity Third-Party Risk Program Manager?

Sign up to receive alerts about other jobs on the Cybersecurity Third-Party Risk Program Manager career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$122,325 - $159,127
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$176,392 - $248,211
Income Estimation: 
$163,962 - $219,201
Income Estimation: 
$99,793 - $130,112
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$163,631 - $209,073
Income Estimation: 
$192,911 - $256,346
Income Estimation: 
$150,041 - $190,701
Income Estimation: 
$163,631 - $209,073
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Insight Global

Insight Global
Hired Organization Address Bentonville, AR Contractor
JOB DESCRIPTION Insight Global' s client is seeking a dedicated and detail-oriented project manager with experience trac...
Insight Global
Hired Organization Address Bentonville, AR Part Time
Summary: The client of Insight Global is seeking a tech-savvy Sales Support Specialist to join their team in Bentonville...
Insight Global
Hired Organization Address Orleans, LA Full Time
JOB DESCRIPTION: Insight Global is seeking an IT Project Delivery Lead to join a client in New Orleans, LA on a full-tim...
Insight Global
Hired Organization Address Kansas, KS Full Time
Position Title: Project Manager Location: Kansas City, MO Duration: Permanent Salary: $75K-$110K Must Haves: Bachelor’s ...

Not the job you're looking for? Here are some other Cybersecurity Third-Party Risk Program Manager jobs in the Virginia, VA area that may be a better fit.

Program Manager, Cybersecurity, Global

Vantage Data Centers, Virginia, VA

Cybersecurity Officer Lead (Supply Chain & Risk Mgmt.)

Washington Metroplitan Area Transit Authority, Virginia, VA

AI Assistant is available now!

Feel free to start your new journey!