2

Remote Security Risk Assessment Jobs in Oregon (NOW HIRING)

Partner with Legal, Compliance, Information Security, Affiliate Risk, and business stakeholders to ... Experience leading a third-party risk management program, including risk assessments, due diligence ...

Information Security Analyst

Salem, OR ยท On-site +1

$46 - $51/hr

Conduct formal risk assessments on partner and vendor connections * Validate data sharing arrangements and agreements * Review third-party SOC reports and security documentation * Establish risk ...

Senior Security Analyst

OR ยท Remote

$95K - $125K/yr

... Remote Opportunity Why This Role Matters Job Summary The Senior Security Analyst (Healthcare) is ... Participate in security risk assessments, gap analyses, and audits (internal and external ...

Senior Security Analyst

OR ยท Remote

$95K - $125K/yr

... Remote Opportunity Why This Role Matters Job Summary The Senior Security Analyst (Healthcare) is ... Participate in security risk assessments, gap analyses, and audits (internal and external ...

System security assessments * Vulnerability management * Security risk management * Experience with ... Remote

Manager, Treasury Risk

OR ยท On-site +1

... security risk, and compliance risk. We partner with first-line business functions, senior and ... assessment, monitoring, reporting, and control of material risks, in alignment with OCC, FDIC, and ...

This position is anticipated to be majority remote, but with the ability to travel and visit the ... Conduct security risk assessments and oversee vulnerability scanning and penetration testing ...

Security Analyst I

$70K - $116K/yr

... thirdparty risk management, including vendor security assessments and documentation review ... Remote

... security, or risk certifications Position location: This role is available in the following locations: Remote Travel requirements: As a digital first company, the majority of your work can be ...

Security Architect

$65 - $84/hr

Remote work requires a high level of trust in our employees, and we strictly adhere to the details ... Proven ability to assess and evaluate enterprise security postures and identify impacts from new ...

... security risks uncovered throughout the assessment lifecycle. * Stay ahead of emerging risks ... Wellness program incentives Onboarding & Travel This is a remote role, with an in-person onboarding ...

Proven background in threat modeling, risk assessment, and security architecture design * Advanced ... Remote, US Minimum Salary Rate$77,800.00Median Salary Rate$85,341.00Working at DMI DMI is a diverse ...

Credit Risk Manager

OR ยท On-site +1

Develop and maintain credit risk monitoring frameworks that assess portfolio performance relative ... Remote (United States) Time zone requirements The team operates on the East/West coast time zones.

Oversee Vulnerability Management program including vulnerability assessments, risk scoring and ... Experience acting as technical lead to distributed teams consisting largely of remote engineers.

next page

Showing results 1-20

Remote Security Risk Assessment information

What are the key skills and qualifications needed to thrive as a Remote Security Risk Assessor, and why are they important?

To thrive as a Remote Security Risk Assessor, you need expertise in cybersecurity principles, risk analysis, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like vulnerability scanners, security information and event management (SIEM) systems, and risk assessment frameworks (e.g., NIST, ISO 27001) is essential. Strong analytical thinking, communication skills, and attention to detail help in accurately identifying and communicating risks to stakeholders. These skills and qualities are vital to ensure organizations can proactively mitigate threats and maintain robust security postures in remote or distributed environments.

What is the difference between Remote Security Risk Assessment vs Cybersecurity Analyst?

AspectRemote Security Risk AssessmentCybersecurity Analyst
CredentialsCertifications like CISSP, CISA, CISMCertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentRemote or on-site, focusing on risk evaluationRemote or on-site, focusing on security monitoring and incident response
Industry UsageUsed in risk management, compliance, and audit contextsUsed in security operations, threat analysis, and incident handling

Remote Security Risk Assessments and Cybersecurity Analysts both require security certifications and often work in similar environments. However, risk assessors focus on evaluating vulnerabilities and compliance, while analysts handle ongoing security monitoring and incident response. Understanding these differences helps organizations assign the right roles for their security needs.

What is a Remote Security Risk Assessment?

A Remote Security Risk Assessment is a process where security professionals evaluate an organization's security risks, vulnerabilities, and threats without being physically present on-site. This assessment is typically conducted through virtual meetings, digital questionnaires, and remote access to systems and documentation. The goal is to identify potential security gaps and recommend improvements to protect sensitive data and systems from cyber threats. Remote assessments have become increasingly popular due to their flexibility, cost-effectiveness, and ability to serve organizations regardless of location.

What are some common challenges faced by professionals in remote security risk assessment roles?

Professionals in remote security risk assessment often encounter challenges such as limited on-site visibility, reliance on digital communication, and the need to assess complex IT environments from afar. Effective collaboration with on-site staff and stakeholders is essential to gather accurate information and implement recommendations. Additionally, staying up-to-date with evolving cybersecurity threats and maintaining clear documentation are vital for success in this role.
What are popular job titles related to Remote Security Risk Assessment jobs in Oregon? For Remote Security Risk Assessment jobs in Oregon, the most frequently searched job titles are:
What job categories do people searching Remote Security Risk Assessment jobs in Oregon look for? The top searched job categories for Remote Security Risk Assessment jobs in Oregon are:
What cities in Oregon are hiring for Remote Security Risk Assessment jobs? Cities in Oregon with the most Remote Security Risk Assessment job openings:
Manager, Third Party Risk Management

Manager, Third Party Risk Management

Upstart

OR โ€ข On-site, Remote

Other

Posted 29 days ago


Job description

The Team:ย 

Upstart's Risk team is building its second line of defense function in support of its application to establish Upstart Bank, N.A., a de novo national bank. The team is responsible for Upstart's enterprise risk management program and risk governance, providing independent oversight and credible challenge across key risk categories including operational risk, third-party risk, technology and information security risk, treasury risk, and compliance risk. The Risk team partners closely with business leaders, executive management, and the Board to ensure material risks are effectively identified, assessed, monitored, and governed in alignment with OCC, FDIC, and interagency regulatory expectations.

As the Manager, Third Party Risk Management at Upstart, you will lead the day-to-day execution of the bank's third-party risk management program and oversee a team responsible for risk assessments, due diligence, ongoing monitoring, and vendor oversight activities. You will play a key role in ensuring the program remains scalable, exam-ready, and aligned with evolving regulatory expectations while supporting the growth of Upstart Bank.

How you'll make an impact

  • Lead execution of the bank's end-to-end third-party risk management program, including risk-tiered due diligence, onboarding risk assessments, ongoing monitoring, and offboarding activities across all vendor tiers.
  • Manage and develop the Third-Party Risk Management team by setting priorities, providing coaching, and ensuring consistent, high-quality risk assessments and oversight activities.
  • Serve as the primary second-line escalation point for elevated or complex third-party risk matters, providing risk-based recommendations and ensuring issues are appropriately documented, tracked, and resolved.
  • Maintain and enhance third-party risk management frameworks, risk tiering methodologies, assessment templates, and governance processes to support a scalable, risk-based program.
  • Partner with Legal, Compliance, Information Security, Affiliate Risk, and business stakeholders to ensure consistent application of third-party risk standards throughout the vendor lifecycle.
  • Lead regulatory examination readiness and support responses to OCC, FDIC, internal audit, and external audit inquiries related to third-party risk management.

Minimum Qualificationsย 

  • Bachelor's degree or equivalent practical experience.
  • 6+ years of experience in third-party risk management, compliance, audit, operational risk, or a related risk discipline within a banking or financial services environment.
  • Experience leading a third-party risk management program, including risk assessments, due diligence reviews, ongoing monitoring, and issue management across a multi-vendor portfolio.
  • Knowledge of OCC, FDIC, and interagency guidance related to third-party relationships and risk management, including the 2023 Interagency Guidance on Third-Party Relationships: Risk Management.
  • Experience assessing and managing risks associated with multiple third-party relationship types, including suppliers, lending partners, affiliates, and technology service providers.

Preferred Qualifications

  • Direct experience supporting OCC or FDIC regulatory examinations related to third-party risk management.
  • Experience leading or developing risk, compliance, audit, or third-party risk professionals.
  • Knowledge of affiliate risk oversight requirements, including Regulation W and related regulatory expectations.
  • Experience operating within a fintech, digital banking, or technology-intensive environment, including oversight of cloud, SaaS, and other technology service providers.
  • Experience using governance, risk, and compliance (GRC) platforms to support third-party risk assessments, issue management, workflow automation, and ongoing monitoring activities.

Position location This role is available in the following locations: Remoteย 

Time zone requirements The team operates on the East/West coast time zones.ย 

Travel requirements As a digital first company, the majority of your work can be accomplished remotely. The majority of our employees can live and work anywhere in the U.S but are encouraged to to still spend high quality time in-person collaborating via regular onsites. The in-person sessions' cadence varies depending on the team and role; most teams meet once or twice per quarter for 2-4 consecutive days at a time.

#LI-REMOTE

#LI-MidSenior --> use for L5, L6