×
Register Here to Apply for Jobs or Post Jobs. X

Program Manager – Third Party Risk Management

Job in Norfolk, Virginia, 23500, USA
Listing for: Sentara Health Plans
Full Time position
Listed on 2026-08-13
Job specializations:
  • Security
    Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 106080 - 176820.8 USD Yearly USD 106080.00 176820.80 YEAR
Job Description & How to Apply Below
Program Manager – Third Party Risk Management Skip to main content#Program Manager – Third Party Risk Management page is loaded## Program Manager – Third Party Risk Management Apply remote type:
Remote locations:
Norfolk, VA:
Remote - NV:
Remote - FL:
Remote - WV:
Remote - DEtime type:
Full time posted on:
Posted Todayjob requisition :
JR-104441
** City/State
** Norfolk, VA
** Work Shift
** First (Days)
** Overview:**#
** Overview
* * The Third-Party Risk Program Manager is responsible for the end-to-end management of the organization’s third-party risk management program within a healthcare environment. This individual contributor role owns the program lifecycle — from vendor onboarding and risk assessment through ongoing monitoring, documentation, and offboarding — ensuring third party relationships comply with applicable healthcare regulations (e.g., HIPAA, HITECH) and internal policy. The role requires close collaboration with vendors and cross-functional partners including Legal, Information Security, Privacy, Procurement, and Compliance to ensure full program coverage and audit readiness
** Key Responsibilities
**** Program Management
*** Own and drive the third-party risk program end-to-end, ensuring consistent execution across the vendor lifecycle
* Establish and maintain program timelines, milestones, and status reporting for leadership and stakeholders
* Identify process gaps and drive continuous improvement of program workflows
* Be a part of the team and support the execution of the program
** Vendor Management
*** Serve as the primary point of contact for third-party vendors throughout the assessment and management process
* Coordinate with vendors to gather required documentation, evidence, and remediation plans
* Track vendor responsiveness and escalate delays or non-compliance issues appropriately
** Risk Assessments (One Trust)
*** Manage and execute third-party risk assessments using One Trust, including assessment creation, distribution, tracking, and completion
* Analyze assessment results to identify risk levels, gaps, and required remediation actions
* Maintain accurate, up-to-date vendor and assessment records within One Trust
* Generate reports and dashboards from One Trust to support program reporting and audits
** Documentation & Compliance
*** Ensure all program documentation (policies, procedures, assessment records, contracts, remediation plans) is accurate, complete, and current
* Maintain audit-ready documentation in alignment with healthcare regulatory requirements (HIPAA, HITECH, and other applicable frameworks)
* Support internal and external audits by providing timely and accurate documentation
** Cross-Functional Collaboration
*** Partner with Legal, Information Security, Privacy, Procurement, and business owners to ensure comprehensive risk coverage
* Communicate program requirements, risk findings, and remediation needs clearly to non-technical and technical stakeholders alike
* Act as a liaison between vendors and internal teams to resolve issues and keep the program moving forward#
** Education
* ** Bachelor Level Degree (Preferred)
* * 5+ years relevant experience may be accepted in lieu of degree*# #
** Certification/Licensure
*** Certification in risk, or compliance (e.g., CTPRP, CRISC)   preferred#
** Experience
* *** Required
* ** Bachelor’s degree with 3+ years of experience in third-party/vendor risk management, program management, or compliance, ideally within healthcare or a regulated industry
* 5+  years of experience in third-party/vendor risk management, program management, or compliance, ideally within healthcare or a regulated industry  without a Bachelor's degree preferred.
* Hands-on experience with One Trust or similar GRC/risk management platforms
* Working knowledge of HIPAA, HITECH, and healthcare data privacy/security requirements
* Strong organizational skills with the ability to manage multiple vendors and assessments simultaneously
* Excellent written and verbal communication skills, with experience working cross functionally
** Preferred
* ** Certification in risk, or compliance (e.g., CTPRP, CRISC)
* Experience with vendor contract review or working alongside Legal/Procurement
*…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary