6 third party risk manager jobs at 5 companies in Boston, MA
3mo
Save
Mark Applied
Hide
3mo
Senior Director, Enterprise Third Party Risk
Boston, Massachusetts, United States
$220k-$330k/yrHybridFull Time
Vertex PharmaceuticalsNASDAQ: VRTX: Develops and sells prescription drugs for serious genetic diseases.
12+ YOELeads enterprise third-party risk management; 12+ years in risk; university degree in accounting/finance/risk; professional certifications preferred; experience in a multinational company; strong communication and governance skills.
Risk management software, CRM, General business analytics tools
WHOOP: Wearable technology for personalized health and performance tracking.
6+ YOE6+ years in GRC with AI/ML risk assessment, third-party risk management, policy development, audit coordination, and mapping controls to standards; bachelor’s degree in related field.
ISO/IEC 42001, NIST Cybersecurity Framework, NIST AI Risk Management Framework, EU AI Act, GDPR, PCI DSS, LLM
Assoc Dir, Information Security Governance Risk & Compliance
Boston, Massachusetts, United States
$179k-$212k/yrHybridFull Time
Servier: Independent global pharmaceutical group developing innovative treatments for patients.
8+ YOE3+ Mgmt8+ years in information security GRC or related discipline, 3+ years leadership, expertise with risk frameworks, audit readiness, third-party risk, and strong executive communication.
HealthDrive: Provides on-site medical services for residents in long-term care.
10+ YOEHands-on infrastructure and cloud security engineer with experience building and operating firewalls, endpoint/email protection, cloud security in Azure, vulnerability management, incident response, and third-party risk management.
Fortinet, Microsoft Active Directory, Microsoft 365, Azure, Palo Alto, Proofpoint, SecureWorks, Qualys, PowerShell, Python, Bash, Microsoft Sentinel, Okta
HealthDrive: Provides on-site healthcare services for long-term care facilities.
10+ YOEInfrastructure-focused security engineering for on-prem and Azure: firewalls, endpoint/email protection, cloud security, vulnerability management, incident detection/response, third-party risk and HIPAA compliance.
Fortinet, Microsoft Active Directory, Microsoft 365, Azure, Palo Alto, Proofpoint, SecureWorks, Qualys, PowerShell, Python, Bash, Microsoft Intune, Microsoft Sentinel, Okta