Information Security Risk & Governance Specialist, Principal; Third party Risk
Listed on 2026-01-12
-
IT/Tech
Information Security, Cybersecurity
Overview
Your Role
This role supports Stellarus within the Ascendiun Family of Companies. The Risk Management & Controls Assurance team delivers actionable insights by quantifying IT and business risk to increase resilience while driving a security culture. We are seeking an Information Security Risk & Governance Specialist who will report to the Senior Manager. The successful candidate will be a seasoned and strategic professional who will lead the development, implementation, and oversight of our Third-Party Risk Management (TPRM) program.
This senior-level individual contributor will be responsible for identifying, assessing, and mitigating risks associated with third-party relationships across the enterprise, ensuring compliance with regulatory requirements and alignment with organizational risk tolerance.
Our leadership model is about developing great leaders at all levels and creating opportunities for our people to grow - personally, professionally, and financially. We are looking for leaders that are energized by creative and critical thinking, building and sustaining high-performing teams, getting results the right way, and fostering continuous learning.
ResponsibilitiesLead the development, implementation, and oversight of the Third-Party Risk Management (TPRM) program. Identify, assess, and mitigate risks associated with third-party relationships across the enterprise. Ensure compliance with regulatory requirements and alignment with organizational risk tolerance.
Qualifications- Requires a bachelor s degree or equivalent experience
- Requires at least 10 years of prior relevant experience
- Experience in portfolio management, preferably within an Agile or SAFe environment, JIRA experience a plus
- Experience partnering with all levels of management required
- Driven, energetic, team player with superior oral and written communication skills
- Strong analytical, organizational, and project management skills
- Requires deep understanding of IT control frameworks;
Artificial Intelligence experience is a plus - Desire one or more of the following:
CRISC (Certified in Risk and Information Systems Control),
CISM (Certified Information Security Manager),
CISA (Certified Information Systems Auditor),
CISSP (Certified Information Systems Security Professional)
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).