Sr Staff, Security Third Party Risk Management

1 Month ago • 7 Years + • Risk Management

Job Summary

Job Description

As a Senior Staff, Cybersecurity Third Party Risk Management professional, you will be responsible for conducting risk assessments of third-party vendors, ensuring their cybersecurity posture and data protection practices align with regulations. You will collaborate with various teams to perform due diligence on vendors, monitor third-party security, and improve the TPRM program. You'll analyze regulatory changes and generate reports on risk assessments and mitigation plans. You should have at least 7 years of experience in cybersecurity, including risk management and vendor risk assessments, and understand various security best practices and frameworks.
Must have:
  • 7+ years experience in cybersecurity roles
  • Understanding of security best practices
  • Experience with security frameworks like NIST
Good to have:
  • Familiarity with GRC platforms
  • Knowledge of cloud security and AI/ML
Perks:
  • Various health plans
  • Time off for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks

Job Details

About Zscaler

Serving thousands of enterprise customers around the world including 40% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world’s largest security cloud, Zscaler accelerates digital transformation so enterprises can be more agile, efficient, resilient, and secure. The pioneering, AI-powered Zscaler Zero Trust Exchange™ platform, which is found in our SASE and SSE offerings, protects thousands of enterprise customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.

Named a Best Workplace in Technology by Fortune and others, Zscaler fosters an inclusive and supportive culture that is home to some of the brightest minds in the industry. If you thrive in an environment that is fast-paced and collaborative, and you are passionate about building and innovating for the greater good, come make your next move with Zscaler. 

Our Engineering team built the world's largest cloud security platform from the ground up, and we keep building. With more than 100 patents and big plans for enhancing services and increasing our global footprint, the team has made us and our multitenant architecture today's cloud security leader, with more than 15 million users in 185 countries. Bring your vision and passion to our team of cloud architects, software engineers, security experts, and more who are enabling organizations worldwide to harness speed and agility with a cloud-first strategy.

We’re looking for a Senior Staff, Cybersecurity Third Party Risk Management professional to join our growing cybersecurity team, operating remotely within Costa Rica. Reporting to the Director of Security Strategy, Transformation & Vendor Risk Management, you will be responsible for:

  • Conducting comprehensive risk assessments of third-party vendors to evaluate their cybersecurity posture, data protection practices, and compliance with relevant regulations, including managing the vendor intake process, collecting all necessary information and reviewing required evidence
  • Partnering with procurement, legal, compliance, IT, and other functions to ensure due diligence is performed on vendors and partners prior to contract signing
  • Monitoring and assessing the security of third parties and supporting the response and remediation of cybersecurity incidents involving vendors, ensuring steps are taken to reduce exposure
  • Evaluating and implementing improvements to the TPRM program, including policies, procedures, templates, questionnaires, technical security standards and AI governance; analyzing regulatory and standards changes impacting vendor due diligence requirements
  • Generating security risk rating metrics and creating reports summarizing risk assessments, issues, and mitigation plans while escalating potential risks or non-responses

What We’re Looking for (Minimum Qualifications)

  • Minimum 7+ years of experience in one or more of the following cybersecurity roles: risk management, vendor risk assessments, incident response, security operations, security engineering, or network security
  • Understanding of a broad set of security best practices including application security, secure software development lifecycles, risk management, data protection, encryption, identity and access management, security governance, and network security
  • Experience with common cybersecurity frameworks and standards such as NIST, ISO 27001, SOC2, and GDPR
  • Experience in collaborating and communicating with stakeholders across all levels and teams in multiple geographies.
  • Strong problem-solving skills and ability to handle complex risk assessment, threat modeling scenarios, and remediation of vulnerabilities

What Will Make You Stand Out (Preferred Qualifications)

  • Familiarity with GRC platforms and tools for vendor risk management or incident response
  • Knowledge of cloud security, third-party services (e.g., SaaS, PaaS), and AI/ML

#LI-Remote 

#LI-YC2

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws.

See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Similar Jobs

Britive - SOFTWARE ENGINEER

Britive

California, United States (Remote)
6 Months ago
PwC - Senior Associate GenAI S/W Engineer

PwC

Bengaluru, Karnataka, India (On-Site)
1 Week ago
Domo - Deal Desk Analyst

Domo

Tokyo, Japan (On-Site)
1 Week ago
Coupa - Sr. Software Engineer

Coupa

Hyderabad, Telangana, India (Hybrid)
1 Week ago
NCR Voyix - PM Backfill

NCR Voyix

Tokyo, Japan (On-Site)
2 Days ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Sailpoint - Enterprise Account Executive

Sailpoint

New York, United States (Remote)
3 Weeks ago
Autodesk - Korea Territory CSA

Autodesk

Seoul, South Korea (On-Site)
2 Weeks ago
Imanage - Senior AI Software Engineer

Imanage

Chicago, Illinois, United States (Hybrid)
3 Months ago
Workato - Senior Solutions Consultant

Workato

London, England, United Kingdom (On-Site)
1 Month ago
Tide - Senior Data Analytics Engineer - Marketing

Tide

Bulgaria (Remote)
3 Weeks ago
Reltio - Senior SDET

Reltio

Bengaluru, Karnataka, India (Hybrid)
3 Days ago
attentive - Lead Product Manager, Data Monetization

attentive

United States (Remote)
1 Week ago
Sailpoint - IT Operations Project Manager

Sailpoint

United States (Remote)
5 Days ago
Hudl - Account Executive - Competitive (High School)

Hudl

Lincoln, Nebraska, United States (On-Site)
1 Month ago
NCR Voyix - Senior Golang Developer

NCR Voyix

Hyderabad, Telangana, India (On-Site)
2 Weeks ago

Get notifed when new similar jobs are uploaded

Jobs in Costa Rica

Granicus - Payroll Administrator (Global)

Granicus

Costa Rica (Remote)
5 Days ago
Single Store - Paralegal

Single Store

Costa Rica (Remote)
1 Month ago
Granicus - Senior Accountant

Granicus

Costa Rica (Remote)
1 Month ago
Hitachi - Software Engineer

Hitachi

San José Province, Costa Rica (On-Site)
7 Months ago
Veeam Software - Sales Development Representative

Veeam Software

Costa Rica (On-Site)
1 Month ago
Granicus - Digital Advertising Support Specialist

Granicus

Costa Rica (Remote)
4 Months ago
Survay Monkey - Software Engineer II

Survay Monkey

Heredia, Costa Rica (Remote)
1 Month ago
Zuora - Technical Account Manager

Zuora

Costa Rica (Remote)
3 Weeks ago
Granicus - Customer Success Consultant - Strategic Accounts

Granicus

Costa Rica (Remote)
1 Week ago
Critical mass - 3D Animator

Critical mass

San José Province, Costa Rica (Remote)
1 Week ago

Get notifed when new similar jobs are uploaded

Risk Management Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Zscaler enables the world’s leading organizations to securely transform their networks and applications for a mobile and cloud first world. Its flagship services, Zscaler Internet Access and Zscaler Private Access, create fast, secure connections between users and applications, regardless of device, location, or network. Zscaler services are 100% cloud-delivered and offer the simplicity, enhanced security, and improved user experience that traditional appliances or hybrid solutions are unable to match. Used in more than 185 countries, Zscaler operates the world’s largest cloud security platform, protecting thousands of enterprises and government agencies from cyberattacks and data loss.



Stay Connected:

LinkedIn: https://www.linkedin.com/company/zscaler

Twitter: https://www.twitter.com/zscaler

Facebook: https://www.facebook.com/Zscaler/

Ramat Gan, Tel Aviv District, Israel (Hybrid)

Sahibzada Ajit Singh Nagar, Punjab, India (Hybrid)

United States (Remote)

San Jose, California, United States (Hybrid)

Bellevue, Washington, United States (On-Site)

Bengaluru, Karnataka, India (Hybrid)

Tokyo, Japan (Hybrid)

View All Jobs

Get notified when new jobs are added by Zscaler

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug