Director, Third-Party Risk Management
Job in
Clearwater, Pinellas County, Florida, 34623, USA
Listed on 2026-05-31
Listing for:
Amerilife Group, LLC
Full Time
position Listed on 2026-05-31
Job specializations:
-
IT/Tech
-
Management
Job Description & How to Apply Below
Job Summary
Reporting to the Senior Director of IT Risk, the Director of Third-Party Risk is a senior role responsible for the administration of the organization’s Third-Party Risk Management (TPRM) program. This position ensures that all vendors and third-party service providers meet the company’s information security, compliance, and risk standards. The Director will drive vendor risk assessments, manage the third-party risk lifecycle, ensure regulatory compliance, and facilitate collaboration with key internal stakeholders to protect the enterprise’s interests.
Key Responsibilities- TPRM Program Leadership:
Develop and maintain a comprehensive third-party risk management program, including policies, procedures, and governance frameworks to manage risks throughout the vendor lifecycle. - Vendor Risk Assessments:
Lead and oversee the risk assessment and due diligence process for new and existing vendors/partners, evaluating security controls, data protection practices, financial stability, and compliance postures. - Third-Party Lifecycle Management:
Manage the end-to-end third-party lifecycle, from vendor selection and onboarding through ongoing monitoring, performance review, and offboarding. - Stakeholder
Collaboration:
Collaborate with cross-functional teams (including IT, Information Security, Legal, Compliance, Procurement, and Affiliates) to integrate third-party risk considerations into contracts, procurement processes, and ongoing vendor management activities. - Risk Monitoring & Reporting:
Responsible for the continuous optimization of all TPRM procedures and Key Risk Indicators (KRIs), including enhanced utilization of the firm’s TPRM software platform to maximize automation and effectiveness. - Team Leadership:
Build and lead a small team of risk analysts, providing direction, mentorship, and performance management to ensure effective execution of the TPRM program. Foster a risk-aware culture and high standards of professionalism within the team and across stakeholder groups.
- TPRM Program Leadership:
Develop and maintain a comprehensive third-party risk management program, including policies, procedures, and governance frameworks to manage risks throughout the vendor lifecycle. - Vendor Risk Assessments:
Lead and oversee the risk assessment and due diligence process for new and existing vendors/partners, evaluating security controls, data protection practices, financial stability, and compliance postures. - Third-Party Lifecycle Management:
Manage the end-to-end third-party lifecycle, from vendor selection and onboarding through ongoing monitoring, performance review, and offboarding. - Stakeholder
Collaboration:
Collaborate with cross-functional teams (including IT, Information Security, Legal, Compliance, Procurement, and Affiliates) to integrate third-party risk considerations into contracts, procurement processes, and ongoing vendor management activities. - Risk Monitoring & Reporting:
Responsible for the continuous optimization of all TPRM procedures and Key Risk Indicators (KRIs), including enhanced utilization of the firm’s TPRM software platform to maximize automation and effectiveness. - Team Leadership:
Build and lead a small team of risk analysts, providing direction, mentorship, and performance management to ensure effective execution of the TPRM program. Foster a risk-aware culture and high standards of professionalism within the team and across stakeholder groups.
- Certifications:
Professional certifications such as CISM, CISA, CRISC, or Certified Third Party Risk Professional (CTPRP). - Industry
Experience:
Experience in a highly-regulated industry (e.g., financial services, insurance, healthcare) or within a large enterprise environment is highly desirable. - Program Development:
Demonstrated experience designing or maturing a third-party risk management program, including implementing vendor risk management tools or technologies. - Additional
Skills:
Familiarity with risk management software (e.g., GRC/Service Now platforms) and advanced data analysis or reporting tools is a plus.
- A comprehensive benefits package that includes PTO, medical,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×