
Program Manager β Third Party Risk Management
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Florida, +3 more states.
β’ Take ownership of and manage the third-party risk program throughout the entire vendor lifecycle.
β’ Develop and uphold program timelines, milestones, and status reports.
β’ Identify gaps in processes and drive the continuous enhancement of program workflows.
β’ Assist in the implementation of the third-party risk program.
β’ Act as the main contact for third-party vendors.
β’ Coordinate the collection of vendor documentation, evidence, and remediation strategies.
β’ Monitor vendor responsiveness and escalate any delays or instances of non-compliance.
β’ Oversee and execute third-party risk assessments utilizing OneTrust.
β’ Evaluate assessment outcomes, determine risk levels and gaps, and outline remediation measures.
β’ Maintain vendor and assessment records within OneTrust.
β’ Create reports and dashboards in OneTrust for program reporting and audits.
β’ Ensure program documentation is accurate, complete, up-to-date, and ready for audits.
β’ Assist with both internal and external audits.
β’ Collaborate with Legal, Information Security, Privacy, Procurement, and business stakeholders.
β’ Communicate requirements, findings, and remediation needs to both technical and non-technical audiences.
β’ Serve as a liaison between vendors and internal teams to address issues and advance the program.
β’ A Bachelor's degree with 3+ years of experience in third-party/vendor risk management, program management, or compliance, preferably in healthcare or a regulated field.
β’ Alternatively, 5+ years of relevant experience may be considered in place of a degree.
β’ Preferred 5+ years of experience in third-party/vendor risk management, program management, or compliance without a Bachelor's degree.
β’ Practical experience with OneTrust or comparable GRC/risk management platforms.
β’ Familiarity with HIPAA, HITECH, and requirements for healthcare data privacy/security.
β’ Strong organizational abilities with the capacity to manage multiple vendors and assessments concurrently.
β’ Exceptional written and verbal communication skills, along with cross-functional experience.
β’ A certification in risk or compliance, such as CTPRP or CRISC, is preferred.
β’ Experience with vendor contract evaluations or working alongside Legal/Procurement is preferred.
β’ Knowledge of information security risk assessment frameworks like NIST or HITRUST is preferred.
β’ Medical, Dental, and Vision plans.
β’ Adoption, Fertility, and Surrogacy Reimbursement up to $10,000.
β’ Paid Time Off and Sick Leave.
β’ Paid Parental & Family Caregiver Leave.
β’ Emergency Backup Care.
β’ Long-Term, Short-Term Disability, and Critical Illness plans.
β’ Life Insurance.
β’ 401k/403B with Employer Match.
β’ Tuition Assistance β $5,250/year and discounted educational opportunities through Guild Education.
β’ Student Debt Pay Down β $10,000.
β’ Pet Insurance.
β’ Legal Resources Plan.
β’ Opportunity for an annual discretionary bonus if established system and employee eligibility criteria are met.
β’ Professional development.
β’ Continued employment philosophy.
Bart & Associates, Inc.
National Registry of Emergency Medical Technicians
Snowbird Agility, Inc.
IronArch Technology
Get handpicked remote jobs straight to your inbox weekly.