Third Party and Supplier Cybersecurity Risk * Administer and support the third party risk management program by collecting, reviewing, and assessing supplier cybersecurity compliance information ...
Third Party and Supplier Cybersecurity Risk * Administer and support the third party risk management program by collecting, reviewing, and assessing supplier cybersecurity compliance information ...
Third Party and Supplier Cybersecurity Risk * Administer and support the third party risk management program by collecting, reviewing, and assessing supplier cybersecurity compliance information ...
Quick apply
Third Party and Supplier Cybersecurity Risk * Administer and support the third party risk management program by collecting, reviewing, and assessing supplier cybersecurity compliance information ...
GRC Risk Manager
Los Angeles, CA ยท On-site
... into third-party engagements. * Prepare risk assessment reports to inform risk treatment decisions. * Track and monitor remediation and risk management activities. * Maintain a current and ...
GRC Risk Manager
Los Angeles, CA ยท On-site
... into third-party engagements. * Prepare risk assessment reports to inform risk treatment decisions. * Track and monitor remediation and risk management activities. * Maintain a current and ...
GRC Risk Manager
Los Angeles, CA ยท On-site
... into third-party engagements. * Prepare risk assessment reports to inform risk treatment decisions. * Track and monitor remediation and risk management activities. * Maintain a current and ...
GRC Risk Manager
Los Angeles, CA ยท On-site
... into third-party engagements. * Prepare risk assessment reports to inform risk treatment decisions. * Track and monitor remediation and risk management activities. * Maintain a current and ...
Enterprise Risk Analyst
Long Beach, CA ยท On-site
Enterprise Risk Management (ERM) and Third-Party Vendor Risk Management (TPVRM). Reporting to the Senior Enterprise Risk Manager, you will play a hands-on role in executing risk assessments ...
Enterprise Risk Analyst
Long Beach, CA ยท On-site
Enterprise Risk Management (ERM) and Third-Party Vendor Risk Management (TPVRM). Reporting to the Senior Enterprise Risk Manager, you will play a hands-on role in executing risk assessments ...
Partnerships Manager
San Francisco, CA ยท Hybrid
$97K - $97K/yr
This hybrid role combines strategic partnership/network expansion with rigorous vendor management and third-party risk governance. In this position, you will be responsible for sourcing, building ...
Partnerships Manager
San Francisco, CA ยท Hybrid
$97K - $97K/yr
This hybrid role combines strategic partnership/network expansion with rigorous vendor management and third-party risk governance. In this position, you will be responsible for sourcing, building ...
Partnerships Manager
San Francisco, CA ยท On-site
$97K - $97K/yr
This hybrid role combines strategic partnership/network expansion with rigorous vendor management and third-party risk governance. In this position, you will be responsible for sourcing, building ...
Partnerships Manager
San Francisco, CA ยท On-site
$97K - $97K/yr
This hybrid role combines strategic partnership/network expansion with rigorous vendor management and third-party risk governance. In this position, you will be responsible for sourcing, building ...
Lead the Third-Party Risk Management program, establishing scalable, risk-based processes for vendor assessment, monitoring, and governance, and providing clear visibility into third-party risk ...
Lead the Third-Party Risk Management program, establishing scalable, risk-based processes for vendor assessment, monitoring, and governance, and providing clear visibility into third-party risk ...
Lead the Third-Party Risk Management program, establishing scalable, risk-based processes for vendor assessment, monitoring, and governance, and providing clear visibility into third-party risk ...
Lead the Third-Party Risk Management program, establishing scalable, risk-based processes for vendor assessment, monitoring, and governance, and providing clear visibility into third-party risk ...
Lead the Third-Party Risk Management program, establishing scalable, risk-based processes for vendor assessment, monitoring, and governance, and providing clear visibility into third-party risk ...
Lead the Third-Party Risk Management program, establishing scalable, risk-based processes for vendor assessment, monitoring, and governance, and providing clear visibility into third-party risk ...
Lead the Third-Party Risk Management program, establishing scalable, risk-based processes for vendor assessment, monitoring, and governance, and providing clear visibility into third-party risk ...
Lead the Third-Party Risk Management program, establishing scalable, risk-based processes for vendor assessment, monitoring, and governance, and providing clear visibility into third-party risk ...
GRC Risk Management Analyst
San Jose, CA ยท On-site
$68 - $72/hr
Experience: 1-4 years in enterprise risk, third-party risk, GRC, information security, or a related ... Strong analytical, organizational, stakeholder-management, and written and verbal communication ...
Quick apply
GRC Risk Management Analyst
San Jose, CA ยท On-site
$68 - $72/hr
Experience: 1-4 years in enterprise risk, third-party risk, GRC, information security, or a related ... Strong analytical, organizational, stakeholder-management, and written and verbal communication ...
About the Team The Internal Controls function sits within the broader Finance Risk Management (FRM ... third-party dependencies, systems, and other high-risk workflows. We work closely with ...
About the Team The Internal Controls function sits within the broader Finance Risk Management (FRM ... third-party dependencies, systems, and other high-risk workflows. We work closely with ...
... third-party risk management โ Disaster recovery planning and documentation alongside IT โ Building and delivering security awareness and training material, including new hire orientation โ ...
... third-party risk management โ Disaster recovery planning and documentation alongside IT โ Building and delivering security awareness and training material, including new hire orientation โ ...
Governance, Risk Management and Compliance, Senior Director
San Jose, CA ยท On-site
$225K - $250K/yr
Lead third-party and vendor risk management, ensuring appropriate due diligence and ongoing oversight * Establish clear risk appetite, metrics, and escalation paths across business functions
Governance, Risk Management and Compliance, Senior Director
San Jose, CA ยท On-site
$225K - $250K/yr
Lead third-party and vendor risk management, ensuring appropriate due diligence and ongoing oversight * Establish clear risk appetite, metrics, and escalation paths across business functions
... third-party risk management, cloud security, incident readiness, and managed risk services ... The salary range (or starting rate for interns and associates) for this role represents numerous ...
... third-party risk management, cloud security, incident readiness, and managed risk services ... The salary range (or starting rate for interns and associates) for this role represents numerous ...
... third-party risk management, cloud security, incident readiness, and managed risk services ... The salary range (or starting rate for interns and associates) for this role represents numerous ...
... third-party risk management, cloud security, incident readiness, and managed risk services ... The salary range (or starting rate for interns and associates) for this role represents numerous ...
Third-Party Risk Management: o Own and maintain Third-Party Risk Management evaluation practices to ensure effective risk management * Policy Management: o Maintain and update information security ...
Third-Party Risk Management: o Own and maintain Third-Party Risk Management evaluation practices to ensure effective risk management * Policy Management: o Maintain and update information security ...
Project Management Specialist
San Diego, CA ยท On-site
Bachelor's degree Nice If You Have: * 2+ years of experience supporting cybersecurity risk management, CSCRM, third-party risk management, information assurance, or cybersecurity activities in a DoD ...
Project Management Specialist
San Diego, CA ยท On-site
Bachelor's degree Nice If You Have: * 2+ years of experience supporting cybersecurity risk management, CSCRM, third-party risk management, information assurance, or cybersecurity activities in a DoD ...
Project Management Specialist
San Diego, CA ยท On-site
... third-party risk management, information assurance, or cybersecurity activities in a DoD or federal environmentExperience supporting enterprise software agreement implementationExperience in ...
Project Management Specialist
San Diego, CA ยท On-site
... third-party risk management, information assurance, or cybersecurity activities in a DoD or federal environmentExperience supporting enterprise software agreement implementationExperience in ...
Internship Third Party Risk Management information
What is an internship in third party risk management?
What does an internship in third party risk management involve?
What are the key skills and qualifications needed for an internship in third party risk management?
What is the difference between Internship Third Party Risk Management vs Third Party Risk Analyst?
| Aspect | Internship Third Party Risk Management | Third Party Risk Analyst |
|---|---|---|
| Credentials | Typically pursuing or recent graduate, no formal certification required | Bachelor's degree often required; certifications like CTPRP beneficial |
| Work Environment | Internship setting, supervised, entry-level tasks | Full-time professional role, analytical and risk assessment tasks |
| Employer & Industry Usage | Internship programs in finance, banking, or corporate sectors | Financial institutions, corporations, and consulting firms |
Internship Third Party Risk Management is an entry-level, supervised role for students or recent graduates gaining exposure to third-party risk processes. In contrast, a Third Party Risk Analyst is a full-time professional responsible for analyzing and managing third-party risks, often requiring relevant education and certifications. Both roles are essential in risk management but differ in experience level and responsibilities.
What are the most commonly searched types of Third Party Risk Management jobs in California?
The most popular types of Third Party Risk Management jobs in California are:
What are popular job titles related to Internship Third Party Risk Management jobs in California?
For Internship Third Party Risk Management jobs in California, the most frequently searched job titles are:
What job categories do people searching Internship Third Party Risk Management jobs in California look for?
The top searched job categories for Internship Third Party Risk Management jobs in California are:
What cities in California are hiring for Internship Third Party Risk Management jobs?
Cities in California with the most Internship Third Party Risk Management job openings:

Cybersecurity Risk Manager - Supply Chain
Poway, CA โข On-site
Full-time
Posted 11 days ago
Job description
Opportunity to join a leading Space and Defense manufacturing organization in Poway, CA. Our client is looking for a Project Manager to responsible for assessing and mitigating supplier cybersecurity and supply chain risks that may impact program execution, compliance, and mission assurance. This role serves as a liaison between the supply chain organization, program management, engineering, cybersecurity, and external suppliers to address third party cyber risk, supply chain risk, operational resilience, and regulatory compliance concerns.
The position continually reviews supplier and product line risk posture, assesses emerging issues, and develops mitigation strategies to support production, quality, schedule, and customer requirements. Decisions made in this role directly influence program outcomes, supplier performance, and the organization's overall compliance posture.
This position sits at the intersection of cybersecurity compliance and supply chain management. Applications are welcomed from candidates whose background is primarily in third party risk management, cybersecurity compliance, information assurance, or governance and risk, as well as from candidates with a supply chain background. Preference will be given to applicants who bring both.
DUTIES AND RESPONSIBILITIES:
Third Party and Supplier Cybersecurity Risk
- Administer and support the third party risk management program by collecting, reviewing, and assessing supplier cybersecurity compliance information, including SOC 2 reports, Supplier Performance Risk System (SPRS) scores, and CMMC certification and compliance artifacts.
- Evaluate supplier cybersecurity posture against applicable DFARS flow down requirements, identify compliance gaps, and track supplier remediation to closure.
- Interface directly with suppliers to communicate cybersecurity risk findings, understand root causes, and coordinate remediation activities, including support to suppliers working to close cybersecurity gaps and strengthen compliance with contractual and regulatory requirements.
- Work closely with cybersecurity, compliance, and legal teams to ensure supplier risk is accurately documented, monitored, escalated, and reflected in supplier onboarding, qualification, and ongoing performance review.
- Develop and maintain processes that align supply chain risk management practices with NIST SP 800-161 and applicable Department of Defense (DoD) cybersecurity requirements, integrating cybersecurity supply chain risk management into existing supply chain and governance workflows.
- Monitor changes to defense industrial base cybersecurity regulations, including CMMC implementation milestones, and update supplier assessment criteria, processes, and flow down practices accordingly.
- Ensure sensitive and proprietary information, including Controlled Unclassified Information (CUI), is properly identified and handled in accordance with contractual, regulatory, and company requirements.
Supply Chain Risk and Program Support
- Conduct structured supply chain risk assessments for assigned product lines, evaluating supplier criticality, single points of failure, operational resilience, and cybersecurity posture.
- Develop and implement mitigation strategies that address identified risks, and support program and supply chain leadership in risk informed decision making.
- Research, identify, and validate supply chain risk signals using internal data sources, supplier information, and external intelligence tools, and translate those signals into actionable recommendations.
- Serve as the primary point of coordination between supply chain organizations and program offices, ensuring alignment on risk priorities, mitigation plans, and program requirements.
- Interpret and administer policies, processes, and procedures that impact supply chain risk management activities.
- Prepare and deliver progress reports, risk assessments, briefings, and presentations to internal stakeholders and customers, communicating risk status, trends, and mitigation strategies to both technical and non-technical audiences.
General
- Maintain the strict confidentiality of sensitive information.
- Responsible for observing all laws, regulations, and other applicable obligations wherever and whenever business is conducted on behalf of the Company.
- Responsible for ensuring work is accomplished in a safe manner in accordance with established operating procedures and practices.
- Other duties as assigned or required.
Job Qualifications
- Typically requires a Bachelor's degree in business, supply chain, cybersecurity, engineering, or a related discipline and eleven or more years of progressively complex experience in supply chain, risk management, cybersecurity, or defense related program support, with at least five of those years in supply chain. Equivalent experience may be substituted in lieu of education.
- Must demonstrate a working knowledge of cybersecurity requirements within the defense industrial base, including DFARS clauses 252.204-7012, 252.204-7020, and 252.204-7021, NIST SP 800-171, and the Cybersecurity Maturity Model Certification (CMMC) framework.
- CISSP, CompTIA Security+, CISA, or CMMC certification, such as Certified Professional (CCP) or Certified Assessor (CCA), is highly desirable.
- Preference will be given to applicants with demonstrated experience in third party or vendor risk management, and to applicants with direct supply chain, procurement, or subcontracts experience.
- Preference will be given to applicants familiar with supply chain risk management principles and NIST SP 800-161.
- Must possess the ability to identify and assess risk, analyze and interpret data, and develop practical mitigation strategies for complex and non-routine issues. Strong analytical, communication, documentation, presentation, and interpersonal skills are required.
- Must demonstrate the ability to work independently, lead cross functional efforts, and influence stakeholders across organizational boundaries. Experience interfacing directly with suppliers and supporting remediation activities is preferred.
- Familiarity with enterprise and risk management tools such as SAP, Optro (formerly AuditBoard), Altana, Bitsight, Resilinc, and Microsoft Office applications is desired.
- Applicant must be a U.S. citizen and must either have, or be eligible to obtain, a Secret clearance.
- Must be able to work extended hours and travel as required. Travel is expected to be less than 25 percent.
About Talentcore
Sourced by ZipRecruiter
Industry
Recruiting and staffing services
Company size
11 - 50 Employees
Headquarters location
Alameda, CA, US