Third Party Risk Manager

Posted Yesterday
Be an Early Applicant
4 Locations
In-Office
105K-214K Annually
Senior level
Consulting
The Role
Lead and manage third-party information security assessments, validate controls, perform site visits, evaluate cloud and vendor security, document risks and remediation, deliver executive reports, oversee teams and QA, coordinate client engagements, and support business development and staff mentoring.
Summary Generated by Built In

Your Journey at Crowe Starts Here:

At Crowe, you can build a meaningful and rewarding career. With real flexibility to balance work with life moments, you’re trusted to deliver results and make an impact. We embrace you for who you are, care for your well-being, and nurture your career. Everyone has equitable access to opportunities for career growth and leadership. Over our 80-year history, delivering excellent service through innovation has been a core part of our DNA across our audit, tax, and consulting groups. That’s why we continuously invest in innovative ideas, such as AI-enabled insights and technology-powered solutions, to enhance our services. Join us at Crowe and embark on a career where you can help shape the future of our industry.

Job Description:

Manager – Third Party Risk

The position will be primarily responsible for managing and leading the assessment of the information security posture of key clients’ third parties while overseeing the overall execution, quality, and delivery of assessments. The position will work within a Crowe team at a client or third-party site and be responsible for leading teams in identifying key risks, information security gaps, and remediation strategies. This role will also serve as a trusted advisor to client leadership and provide mentorship and oversight to junior team members. Projects would be performed through interacting with the client’s Information Security and Business Unit leadership, as well as the client’s vendors, service providers, and partners.

Specific projects and responsibilities may include:

  • Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards
  • Managing and overseeing assessment teams, project timelines, and client deliverables across multiple engagements
  • Performing and overseeing site visits to third-party facilities
  • Evaluating the effectiveness of security controls for compliance with applicable policies, security laws, regulations, and industry standards
  • Assessing cloud technologies such as Software as a Service (SaaS) hosted applications, Platform as a Service (PaaS), and Infrastructure as a Service (IaaS) deployments
  • Documenting information security risk and compliance findings, presenting recommendations for remediation, and communicating results to client leadership
  • Performing quality assurance reviews of assessments completed by team members to ensure consistency and accuracy
  • Delivering high-quality, executive-level reports and presentations
  • Coordinating schedules, resource allocation, and assessment activities for key third-party clients while overseeing all key deliverables
  • Supporting business development initiatives, client relationship management, and practice growth efforts
  • Mentoring, coaching, and developing staff and senior consultants within the practice

Our clients operate in and our team members work across the following industries:

  • Pharmaceutical
  • Life Sciences
  • Biotechnology
  • Healthcare
  • Manufacturing
  • Financial Services
  • Technology, Media and Telecommunications

Basic Qualifications

  • Bachelor’s Degree
  • Information Technology and/or Cybersecurity background and/or experience, including 5–8+ years of IT, cybersecurity, risk management, or third-party risk experience with network, platform, and/or application technology
  • One or more of the following certifications required:
    • Certified Information Systems Security Professional (CISSP)
    • Certified Information Systems Auditor (CISA)
    • Certified Third Party Risk Assessor (CTPRA)
    • Certified in Risk and Information Systems Control (CRISC) preferred
  • Strong knowledge of security domains such as auditing, policy, database security, firewall design and implementation, risk analysis, identity management, access management, cloud security, or web security
  • Working knowledge of one or more compliance frameworks such as SOC 2, ISO 27001, NIST, HIPAA, PCI DSS, or HITRUST
  • Experience managing multiple projects and teams in a fast-paced consulting environment
  • Demonstrated leadership experience overseeing project execution, client relationships, and team performance
  • Proven ability to learn new technologies and systems, especially through independent research and self-study
  • Strong verbal and written communication skills with the ability to present technical information to both technical and executive audiences
  • Ability to manage project schedules, budgets, staffing, and client expectations
  • Ability to travel domestically an average of 20%–50% per year

Preferred Qualifications

  • Bachelor’s and/or advanced degree with a concentration in Cybersecurity, Risk Management, Computer Science, Management Information Systems, or related field
  • Experience working with or assessing third-party vendors and service providers
  • IT or cybersecurity experience at a leading public company, consulting firm, or regulated industry organization
  • Experience with Archer, ProcessUnity, ServiceNow, OneTrust, or other GRC/VRM platforms
  • Experience with security ratings platforms and continuous monitoring solutions
  • Experience leading teams and mentoring junior professionals in a consulting or advisory environment
  • Bilingual capabilities preferred
  • Open to remote work arrangements

We expect the candidate to uphold Crowe’s values of Care, Trust, Courage, and Stewardship. These values define who we are. We expect all of our people to act ethically and with integrity at all times.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire. Crowe is not sponsoring for work authorization at this time.

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Crowe, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $104,500.00 - $213,800.00 per year.

Our Benefits:
Your exceptional people experience starts here. At Crowe, we know that great people are what makes a great firm. We care about our people and offer employees a comprehensive total rewards package. Learn more about what working at Crowe can mean for you!
How You Can Grow:
We will nurture your talent in an inclusive culture that values diversity. You will have the chance to meet on a consistent basis with your Career Coach that will guide you in your career goals and aspirations. Learn more about where talent can prosper!
More about Crowe:
Crowe (www.crowe.com) is one of the largest public accounting, consulting and technology firms in the United States. Crowe uses its deep industry expertise to provide audit services to public and private entities while also helping clients reach their goals with tax, advisory, risk and performance services. Crowe is recognized by many organizations as one of the country's best places to work. Crowe serves clients worldwide as an independent member of Crowe Global, one of the largest global accounting networks in the world. The network consists of more than 200 independent accounting and advisory services firms in more than 130 countries around the world.
Crowe LLP provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, sexual orientation, gender identity or expression, genetics, national origin, disability or protected veteran status, or any other characteristic protected by federal, state or local laws.

Crowe LLP does not accept unsolicited candidates, referrals or resumes from any staffing agency, recruiting service, sourcing entity or any other third-party paid service at any time. Any referrals, resumes or candidates submitted to Crowe, or any employee or owner of Crowe without a pre-existing agreement signed by both parties covering the submission will be considered the property of Crowe, and free of charge.

Crowe will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws.

Please visit our webpage to see notices of the various state and local Ban-the-Box laws and Fair Chance Ordinances, where applicable.

We are committed to a merit-based hiring process, evaluating all candidates consistently using objective, job-related criteria such as relevant experience, demonstrated skills, measurable impact, and alignment with the role’s responsibilities, and making employment decisions in a fair and inclusive manner free from discrimination.

If you are interested in applying for employment with Crowe and are in need of an accommodation or require special assistance to navigate our website or to complete your application, please visit our Applicant Assistance and Accommodations page for more information: https://careers.crowe.com/crowe-applicant-assistance-and-accommodation

Skills Required

  • Bachelor's degree
  • 5-8+ years of IT, cybersecurity, risk management, or third-party risk experience with network, platform, and/or application technology
  • One or more certifications: CISSP, CISA, or CTPRA required (CRISC preferred)
  • Strong knowledge of security domains (auditing, policy, database security, firewall design and implementation, risk analysis, identity and access management, cloud security, web security)
  • Working knowledge of compliance frameworks such as SOC 2, ISO 27001, NIST, HIPAA, PCI DSS, or HITRUST
  • Experience managing multiple projects and teams in a fast-paced consulting environment
  • Demonstrated leadership overseeing project execution, client relationships, and team performance
  • Proven ability to learn new technologies and systems independently
  • Strong verbal and written communication skills; ability to present to technical and executive audiences
  • Ability to manage project schedules, budgets, staffing, and client expectations
  • Ability to travel domestically an average of 20%-50% per year
  • Advanced degree in Cybersecurity, Risk Management, Computer Science, MIS, or related field
  • Experience with Archer, ProcessUnity, ServiceNow, OneTrust, or other GRC/VRM platforms
  • Experience with security ratings platforms and continuous monitoring solutions
  • Bilingual capabilities
  • Open to remote work arrangements
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, New York
17 Employees

What We Do

YOUR GLOBAL ALTERNATIVE FOR M&A, TRANSACTION SUPPORT AND VALUATION Global Corporate Advisors (GCA) is a coordinated group of legally independent member firms with specialized competencies in cross-border M&A advisory, transaction support and integration consulting services. We add value to your deal team through our: Seamless global connectivity Single point of contact for each assignment Local country competence Understanding of cross-border business issues GCA is a niche specialty of Crowe Global, the eighth largest global network of accounting and consulting firms, with offices in 129 countries and over 35k partners, professionals and staff.

Similar Jobs

In-Office
3 Locations
17 Employees
105K-214K Annually
In-Office
Chicago, IL, USA
51885 Employees
74K-138K Annually

PwC Logo PwC

Tax Innovation - Solution Architecture - Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
Chicago, IL, USA
370000 Employees
99K-266K Annually

PwC Logo PwC

Cloud Engineer

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
6 Locations
370000 Employees
77K-202K Annually

Similar Companies Hiring

Quantum Rise Thumbnail
Software • Professional Services • Natural Language Processing • Machine Learning • Consulting • Automation • Artificial Intelligence
Chicago, Illinois
20 Employees
Northslope Thumbnail
Artificial Intelligence • Information Technology • Software • Analytics • Consulting • Generative AI
London, GB
100 Employees
Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account