Jobgether
Service Manager – Supplier Security Due Diligence & Monitoring Service
US
Sponsorship not specified$120k-$194kDetected 6 hours ago
CybersecurityComplianceStakeholder ManagementProcurementLeadershipCommunicationCollaborationCISSP
About the role
- This role operates at the intersection of cybersecurity, legal, procurement, supplier management, and enterprise risk teams.
- The successful candidate will oversee a specialized service that translates supplier risk assessments into practical contractual security decisions.
- Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company.
Requirements
- The ideal candidate brings strong experience in cybersecurity risk management, supplier governance, and operational leadership, with the ability to influence stakeholders across multiple business functions.
- 7+ years of experience in information security, technology risk, third-party risk management, supplier risk management, governance, contracting, procurement, or related fields.
- 3+ years of leadership experience managing teams, services, programs, or operational functions.
- Demonstrated ability to evaluate cybersecurity and technology risks using sound risk-based decision-making principles.
- Strong understanding of supplier risk management practices, security controls, governance frameworks, and risk mitigation strategies.
- Experience collaborating across Legal, Procurement, Business, Security, and Risk Management functions.
- Proven ability to interpret cybersecurity requirements and apply them within contractual and business contexts.
Nice to have
- Experience supporting supplier contract negotiations involving cybersecurity and privacy requirements preferred.
- Knowledge of third-party risk management programs and supplier security assessment methodologies preferred.
- Familiarity with cybersecurity frameworks and standards such as NIST Cybersecurity Framework, NIST 800-53, ISO 27001, CIS Controls, and SOC reporting preferred.
- Experience with enterprise risk management, governance processes, and risk acceptance workflows preferred.
- Professional certifications such as CISSP, CISM, CRISC, ITIL, PMP, or similar credentials are a plus.
Skills
- Review supplier security assessments and monitoring outcomes to guide contractual negotiations and risk decisions.
- Translate cybersecurity requirements into practical contractual positions, fallback language, and appropriate risk mitigation strategies.
- Ensure consistent application of enterprise security standards across supplier agreements and business engagements.
- Oversee documentation, tracking, and governance of contractual exceptions, security deviations, and risk accommodations.
- Escalate supplier security positions that exceed established risk tolerances through appropriate governance and approval processes.
- Establish service-level objectives, operational metrics, reporting frameworks, and quality management practices.
- Promote a service-oriented culture focused on responsiveness, collaboration, and operational excellence.
Compensation
- Competitive annual compensation range of $120,000 - $193,725, based on experience and qualifications.
Benefits
- Health, wellness, and employee support programs.
- Career growth opportunities through challenging projects, learning, and professional development.
- Monthly connectivity reimbursement for eligible remote employees.
Company info
- We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements.
- The final decision and next steps (interviews, assessments) are managed by their internal team.
- We appreciate your interest and wish you the best!
- Why Apply Through Jobgether?
- Opportunity to contribute to stronger security practices protecting customers and communities.
Apply directly at Jobgether →Create a free account for alerts like thisView Jobgether immigration profile
This listing is sourced directly from Jobgether's careers page and normalized into a canonical job model.