... and Coverbase is a plus. * Professional certifications in Information Security or Risk Management (e.g. CISA, CISM, CISSP, CRISC) is a plus. Employee Benefits: At LanceSoft, full-time regular ...
3 Coverbase Full Time Jobs Hiring Near You
... and Coverbase is a plus. * Professional certifications in Information Security or Risk Management (e.g. CISA, CISM, CISSP, CRISC) is a plus. Employee Benefits: At LanceSoft, full-time regular ...
... and Coverbase is a plus. * Professional certifications in Information Security or Risk Management (e.g. CISA, CISM, CISSP, CRISC) is a plus. Employee Benefits: At LanceSoft, full-time regular ...
... and Coverbase is a plus. * Professional certifications in Information Security or Risk Management (e.g. CISA, CISM, CISSP, CRISC) is a plus. Employee Benefits: At LanceSoft, full-time regular ...
... and Coverbase is a plus. * Professional certifications in Information Security or Risk Management (e.g. CISA, CISM, CISSP, CRISC) is a plus. Employee Benefits: At LanceSoft, full-time regular ...
... and Coverbase is a plus. * Professional certifications in Information Security or Risk Management (e.g. CISA, CISM, CISSP, CRISC) is a plus. Employee Benefits: At LanceSoft, full-time regular ...
Coverbase Jobs Information

Full-time
Medical, Dental, Vision, Life, Retirement
Posted yesterday
Job description
While your primary responsibility will be Third-Party Risk Management, you will also collaborate on other cybersecurity risk management initiatives. Building strong cross-functional relationships across the company is a key component of this role. To excel, you must showcase exceptional leadership, communication, and decision-making skills, and have a proven track record in managing third-party risk, vendor governance, or related domains.
Responsibilities:
- Lead and conduct comprehensive risk assessments of new and existing third-party vendors and service providers, focusing on cybersecurity, and regulatory compliance.
- Evaluate third-party security questionnaires, audit reports (e.g., SOC 2, ISO 27001), and risk documentation.
- Coordinate with vendors to request and verify security controls, remediation plans, and ongoing compliance.
- Oversee facilitation of risk remediation efforts agreed upon with suppliers, ensuring timely resolution.
- Collaborate during supplier contract development, reviewing deviations from security requirements and offering subject matter expertise on risk remediation.
- Classify vendors according to risk tiers and maintain a comprehensive database of vendor risk profiles.
- Participate in continuous security monitoring of existing suppliers to track changing risk profiles.
- Partner with Procurement, Legal, Privacy, and InfoSec teams to improve supplier security management processes.
- Identify opportunities to automate parts of the assessment process, thereby reducing manual work and enhancing efficiency.
- Keep abreast of emerging risks, industry standards, and regulatory requirements affecting third-party vendors.
- Contribute to broader cybersecurity risk management initiatives, including identifying, assessing, and tracking information security risks beyond the third-party domain.
- Provide guidance and knowledge transfer to team members, supporting a collaborative team environment.
- Bachelor’s degree in Computer Science, Information Security, Cybersecurity, Risk Management, or a related field.
- 6-8 years of professional experience in third-party risk assessment within cybersecurity or information risk management.
- Understanding of relevant information security frameworks, including related regulatory compliance requirements, such as ISO 27001/2 (including ISO 27017 & 18), FedRAMP, SOC 2 Trust Services Criteria, PCI DSS, NIST CSF.
- Solid understanding of risk assessment methodologies and best practices.
- Ability to synthesize and communicate complex risk findings to both technical and non-technical audiences.
- Detail-oriented, process-driven, and capable of managing multiple vendor assessments concurrently.
- Experience with tools such as Coupa, OneTrust, JIRA and Coverbase is a plus.
- Professional certifications in Information Security or Risk Management (e.g. CISA, CISM, CISSP, CRISC) is a plus.
At LanceSoft, full-time regular employees who work a minimum of 30 hours a week or more are entitled to the following benefits:
• Four options of medical Insurance
• Dental and Vision Insurance
• 401k Contributions
• Critical Illness Insurance
• Voluntary Permanent Life Insurance
• Accident Insurance
• Other Employee Perks
EEO Employer
LanceSoft is a certified Minority Business Enterprise (MBE) and an equal-opportunity employer. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristic as outlined by federal, state, or local laws.
This policy applies to all employment practices within our organization, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. LanceSoft makes hiring decisions based solely on qualifications, merit, and business needs at the time.
About LanceSoft
Sourced by ZipRecruiter
Established in 2000, LanceSoft is a Certified MBE and Woman-Owned organization. Lancesoft Inc. is one of the highest rated companies in the industry. We have been recognized as one of the Largest Staffing firms and ranked in the top 50 fastest Growing Healthcare Staffing firms in 2022. Lancesoft offers short- and long-term contracts, permanent placements, and travel opportunities to credentialed and experienced professionals throughout the United States. We pride ourselves on having industry leading benefits. We understand the importance of partnering with an expert who values your needs, which is why we're 100% committed to finding you an assignment that best matches your career and lifestyle goals. Our team of experienced career specialists takes the time to understand your needs and match you with the right job Lancesoft has been chosen by Staffing Industry Analysts as one of the Best Staffing Firms to Work for.LanceSoft specializes in providing Registered Nurses, Nurse Practitioners, LPNs/LVNs, Social Workers, Medical Assistants, and Certified Nursing Assistants to work in Acute Care Centers, Skilled Nursing Facilities, Long-Term Care centers, Rehab Facilities, Behavioral Health Centers, Drug & Alcohol Facilities, Home Health & Community Health, Urgent Care Clinics, and many other provider-based facilities.
Industry
Recruiting and staffing services
Company size
1,001 - 5,000 Employees
Headquarters location
Herndon, VA, US
Year founded
2000