Third Party Risk Manager at Crowe Advisory LLC | Charlotte, NC, US | Rezi

Third Party Risk Manager at Crowe Advisory LLC

Third Party Risk Manager

Crowe Advisory LLC · Charlotte, NC, US

Yesterday

Third Party Risk Manager

Crowe Advisory LLC · Charlotte, NC, US

2 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

Consulting at Crowe is a dynamic business focused on solving client problems and serving core markets through innovative solutions. As technology and AI reshape the consulting landscape, we seek curious, adaptable individuals eager to learn. Consultants build technical and transferable skills, think critically, and use technology to solve business problems. In this role, you will continuously learn, collaborate, and explore how tools, including AI, can improve efficiency, insights, and client outcomes.

Responsibilities

  • Manage and lead the assessment of the information security posture of key clients’ third parties.
  • Oversee the overall execution, quality, and delivery of assessments.
  • Lead teams in identifying key risks, information security gaps, and remediation strategies.
  • Serve as a trusted advisor to client leadership.
  • Provide mentorship and oversight to junior team members.
  • Interact with client’s Information Security and Business Unit leadership, as well as the client’s vendors, service providers, and partners.
  • Lead Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation.
  • Manage and oversee assessment teams, project timelines, and client deliverables across multiple engagements.
  • Perform and oversee site visits to third-party facilities.
  • Evaluate the effectiveness of security controls for compliance with applicable policies, security laws, regulations, and industry standards.
  • Assess cloud technologies such as SaaS, PaaS, and IaaS deployments.
  • Document information security risk and compliance findings, present recommendations for remediation, and communicate results to client leadership.
  • Perform quality assurance reviews of assessments completed by team members.
  • Deliver high-quality, executive-level reports and presentations.
  • Coordinate schedules, resource allocation, and assessment activities for key third-party clients.
  • Support business development initiatives, client relationship management, and practice growth efforts.
  • Mentor, coach, and develop staff and senior consultants within the practice.

Requirements

  • Bachelor’s Degree
  • Information Technology and/or Cybersecurity background and/or experience
  • 5–8+ years of IT, cybersecurity, risk management, or third-party risk experience with network, platform, and/or application technology
  • One or more of the following certifications required: CISSP, CISA, CTPRA, CRISC (preferred)
  • Strong knowledge of security domains such as auditing, policy, database security, firewall design and implementation, risk analysis, identity management, access management, cloud security, or web security
  • Working knowledge of one or more compliance frameworks such as SOC 2, ISO 27001, NIST, HIPAA, PCI DSS, or HITRUST
  • Experience managing multiple projects and teams in a fast-paced consulting environment
  • Demonstrated leadership experience overseeing project execution, client relationships, and team performance
  • Proven ability to learn new technologies and systems, especially through independent research and self-study
  • Strong verbal and written communication skills with the ability to present technical information to both technical and executive audiences
  • Ability to manage project schedules, budgets, staffing, and client expectations
  • Ability to travel domestically an average of 20%–50% per year
  • Uphold Crowe’s values of Care, Trust, Courage, and Stewardship.
  • Act ethically and with integrity at all times.
  • Verify identity and eligibility to work in the United States and complete the required employment eligibility verification form upon hire.
  • Bachelor’s and/or advanced degree with a concentration in Cybersecurity, Risk Management, Computer Science, Management Information Systems, or related field (preferred)
  • Experience working with or assessing third-party vendors and service providers (preferred)
  • IT or cybersecurity experience at a leading public company, consulting firm, or regulated industry organization (preferred)
  • Experience with Archer, ProcessUnity, ServiceNow, OneTrust, or other GRC/VRM platforms (preferred)
  • Experience with security ratings platforms and continuous monitoring solutions (preferred)
  • Experience leading teams and mentoring junior professionals in a consulting or advisory environment (preferred)
  • Bilingual capabilities preferred
  • Open to remote work arrangements (preferred)

Skills

  • Information Technology
  • Cybersecurity
  • Risk Management
  • Third-Party Risk
  • Network Technology
  • Platform Technology
  • Application Technology
  • Security Auditing
  • Policy Development
  • Database Security
  • Firewall Design and Implementation
  • Risk Analysis
  • Identity Management
  • Access Management
  • Cloud Security
  • Web Security
  • SOC 2
  • ISO 27001
  • NIST
  • HIPAA
  • PCI DSS
  • HITRUST
  • Project Management
  • Team Leadership
  • Client Relationship Management
  • Technical Communication
  • Executive Presentation
  • GRC/VRM Platforms
  • Security Ratings Platforms
  • Continuous Monitoring Solutions

Location

  • Onsite (client or third-party site)

Work Type

  • Full-time
  • Hybrid
  • Remote

Experience Level

  • 5-8+ years of IT, cybersecurity, risk management, or third-party risk experience
  • Leadership experience

Education Level

  • Bachelor’s Degree
  • Bachelor’s and/or advanced degree with a concentration in Cybersecurity, Risk Management, Computer Science, Management Information Systems, or related field (preferred)

Salary/Compensations

  • $101,100.00 - $206,700.00 per year

Benefits

  • Comprehensive total rewards package
  • Career Coach guidance
  • Inclusive culture that values diversity

About the Company

  • Crowe provides professional services through Crowe LLP (audit and attest) and Crowe Advisory LLC (tax, advisory, consulting, and other nonattest services).
  • The Crowe Global network consists of more than 300 independent accounting and advisory services firms in more than 150 countries.
  • Crowe LLP and Crowe Advisory LLC serve clients worldwide as independent members of Crowe Global.

Equal Opportunity

  • Crowe LLP and Crowe Advisory LLC provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, sexual orientation, gender identity or expression, genetics, national origin, disability or protected veteran status, or any other characteristic protected by federal, state or local laws.
  • Crowe will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws.
  • We are committed to a merit-based hiring process, evaluating all candidates consistently using objective, job-related criteria such as relevant experience, demonstrated skills, measurable impact, and alignment with the role’s responsibilities, and making employment decisions in a fair and inclusive manner free from discrimination.