Security Third Party Risk Management Lead
CloudFlareJob Description
📋 Description Own and drive the operational execution of our third party risk program — vendor risk assessments Serve as the subject matter expert for vendor security review methodology, tiering, and risk Lead vendor risk assessment process day to day across different engagements (cloud, contractor Identify inefficiencies in vendor security workflows and implement improvements for efficiency and Coordinate the team’s workload with check-ins to drive assessments, escalations, and projects. Mentor the team on assessment methodology, risk decisions, tooling, and best practices. 🎯 Requirements Experience typically 8+ years in Security GRC. Deep, hands-on expertise operating a third party / vendor risk program end to end. Subject-matter expertise across ISO 27001, SOC 2, PCI, NIST 800-53. Strong understanding of security contract terms and vendor negotiation support. Proven ability to mentor peers and provide technical guidance. Track record of identifying process inefficiencies and driving operational improvements. 🎁 Benefits We are an equal opportunity employer and value diversity and inclusion.