Develop and execute a transformational third-party risk strategy integrating cybersecurity, privacy, resiliency, and AI risks into enterprise goals.
Design policies, standards, and scalable processes to streamline third party intake, risk assessments, and continuous monitoring.
Establish meaningful KRIs, KPIs, dashboards, and management routines to demonstrate program effectiveness and reduce third-party risk.
HealthEquity is a healthcare technology company with a mission to save and improve lives by empowering healthcare consumers. The company is a large, publicly traded organization with a culture of innovation, collaboration, and continuous improvement.
Build and own the Trust & Safety function to protect the field workforce of phlebotomists entering members' homes alone.
Run discovery to surface major risks, author policies, and deploy safety solutions such as body cameras and panic buttons.
Partner with Legal, People, and Field Operations to establish incident response workflows and field education programs.
Getlabs is a leading platform for at-home diagnostics, enabling healthcare organizations to send mobile phlebotomists to patients' homes for lab collections and advanced diagnostics. The company has raised $50M from strategic investors including Labcorp and Quest, and was acquired by Function Health in 2026 to create a comprehensive preventive health platform.
Own the vision, strategy, and roadmap for AI Security Governance across five control pillars.
Architect and deploy hands-on security controls for AI detection, data protection, and agent permissions.
Drive AI-automated workflows and author risk narratives for CISO, board, and Audit Committee audiences.
ServiceNow is the AI control tower for business reinvention, helping 85% of the Fortune 500 work smarter. The company fosters an AI-native culture where technology and talent are unstoppable together.
Drive the strategy and systems for fraud detection, credit risk assessment, and compliance automation across the customer lifecycle.
Build proactive, automated risk controls using AI and platform-oriented solutions to scale without proportional manual effort.
Partner with Risk, Compliance, Treasury, Legal, Collections, and Engineering to deliver high-throughput, high-ROI product improvements.
Remote is a global HR platform that enables businesses to recruit, pay, and manage international teams compliantly. The company has a fully remote, asynchronous work culture with employees across 6 continents, emphasizing innovation and automation.
Lead bespoke customer engagements end-to-end, from discovery to solution architecture and configuration of tailored Risk Cloud solutions.
Leverage AI and automation to accelerate delivery, optimize processes, and provide strategic GRC advisory to enterprise customers.
Manage project scope, timelines, and account health while mentoring junior consultants and collaborating cross-functionally.
LogicGate is the leading AI GRC platform for the enterprise, helping governance, risk, and compliance teams manage uncertainty and drive business value. The company is recognized as a top workplace and fosters a culture of ownership, impact, and inclusion, with a commitment to employee growth and community involvement.
Own the Trust & Safety operating model end-to-end, including fraud prevention, identity verification, investigations, and moderation.
Drive down fraud losses and platform risk by defining and tracking key metrics, and translate threats into executive-ready reporting.
Partner with Product and Engineering to ship fraud detection and moderation tooling, and manage vendor relationships for fraud and identity tools.
An established, fast-scaling two-sided marketplace in flexible housing, connecting hundreds of thousands of property owners with renters needing month-plus stays. Profitable, over a decade in business, and recently recognized as a category leader in its space.
Lead customer security reviews, RFPs, RFIs, and questionnaires to keep deals moving.
Own SOC 2 Type II program management and the customer-facing trust portal.
Author security policies and manage AI compliance frameworks.
Sparkrock helps social benefit organizations like nonprofits, school boards, and government agencies reach their full potential through technology. They are a best-in-class, 100% remote organization with a focus on culture and growth, serving over 150,000 users.
Lead and advance governance, risk management, compliance, and information security programs to support organizational objectives and regulatory requirements.
Manage vulnerability management, third-party risk, security governance, policy development, and AI governance initiatives.
Partner with leaders to foster a culture of accountability, risk awareness, and continuous improvement.
Ultimate Medical Academy is a non-profit healthcare educational institution with a national presence, headquartered in Tampa, Florida and founded in 1994. The organization offers online and on-campus programs and fosters a culture of integrity, student success, and team member development.
Act as a trusted advisor to business leaders, bridging security risks and business priorities.
Lead security assessments, risk reviews, and remediation planning for new products and enterprise changes.
Maintain clear visibility of security risk, control health, metrics, and dashboards, escalating when needed.
Experian is a global data and technology company, powering opportunities for people and businesses around the world. With a team of 25,200 people in 32 countries, they foster an inclusive, purpose-driven culture and have been recognized as a World's Best Workplace in 2025.
Lead the strategy, development, and operational excellence of critical risk and trust infrastructure.
Drive the evolution toward AI-powered and autonomous fraud prevention solutions.
Champion scalable, secure, and observable architectures designed for multi-tenant environments.
Our partner is a company focused on building secure payment infrastructure and AI-driven commerce solutions. They operate globally with a remote-first culture, emphasizing autonomy and innovation.
Lead the GRC strategy, shifting from bureaucratic to strategic enabler focused on real business risk.
Manage cyber risk quantification, third-party risk, and continuous compliance programs.
Oversee information security governance, AI governance, and IAM governance, reporting to the CISO.
Grupo QuintoAndar is the largest real estate ecosystem in Latin America, covering all phases of the housing journey. The company is valued at over USD 5.1 billion, with a culture of innovation, collaboration, and high performance working with top professionals.
Lead large-scale technical programs across Product, Engineering, Architecture, UX, Data, Governance, and Operations teams.
Translate strategic objectives into structured execution plans with milestones, dependencies, risks, and measurable outcomes.
Establish governance frameworks using metrics, readiness indicators, and outcome-based measurements to drive delivery.
Our partner is a technology-driven organization focused on enterprise transformation, connecting AI-driven workflows and platform capabilities. The company fosters an inclusive culture that values teamwork, transparency, integrity, and bold innovation.
Take ownership of building and scaling comprehensive security, privacy, and compliance programs that protect customer data.
Lead compliance initiatives such as SOC 2 Type 2 audits and evaluate additional frameworks like ISO 27001 and HIPAA.
Build scalable automated security processes by replacing manual tasks with scripts, APIs, and AI-powered solutions.
Our partner is a technology company focused on building secure, scalable systems. They operate with a remote, collaborative culture emphasizing ownership, transparency, and continuous improvement, with around 50–300 employees.
Operate as a trusted advisor to executive teams, guiding them through complex cybersecurity challenges and building security programs.
Develop enterprise security strategies, roadmaps, and governance frameworks, translating technical risks into business impact.
Lead risk assessments, incident response planning, and compliance initiatives aligned with NIST, CIS, and ISO frameworks.
DYOPATH simplifies technology for clients while investing deeply in its people. Recognized as a Great Place to Work for five consecutive years, the company prides itself on building exceptional teams to deliver secure solutions.
Define and drive the technical architecture for AI, data, and platform initiatives supporting Anomali's product strategy.
Translate product strategy and customer outcomes into scalable architecture and implementation plans, balancing near-term delivery with long-term maintainability.
Partner closely with Product Management, Engineering, Data Science, and UX to ensure technical decisions align with the five-level maturity model.
Anomali delivers the first Intelligence-Native Agentic SOC Platform, unifying a security data lake, threat intelligence, and agentic AI into a single experience. The company is headquartered in Silicon Valley and fosters a culture of innovation and security.
Lead the governance, risk, and compliance function across security policies, standards, risk management, audits, and third-party risk.
Own audit readiness and ongoing compliance programs across frameworks such as SOC 2, ISO 27001, GovRAMP, PCI DSS, HIPAA, NIST CSF, and more.
Manage third-party and supply chain risk management, including vendor security reviews, due diligence, and remediation tracking.
Accela provides government software solutions to improve efficiency, increase citizen engagement, and enable thriving communities. They have been an industry leader for nearly 20 years and are committed to diversity, equity, and inclusion.
Leads, mentors, and inspires a team of Product Managers and Analysts, fostering collaboration and continuous improvement.
Establishes clear expectations for AI use throughout the SDLC, including research, discovery, delivery, and evaluation.
Champions rapid prototyping using AI-enabled tools and communicates product vision across the organization.
Origami Risk delivers single-platform SaaS solutions for risk, insurance, compliance, and safety management. Founded by industry veterans, the company offers award-winning software with a singular focus on client success and has a diverse, inclusive workforce.
Establish secure by design standards and target state security architecture across product development, covering threat modeling, secure design review, and vulnerability management.
Build a formal vulnerability management program encompassing traditional and AI-specific threats like prompt injection, model manipulation, and data exfiltration.
Provide senior technical leadership and build trusted partnerships across Product, Engineering, and Security teams.
Semperis is a cybersecurity company on a mission to be a Force for Good, protecting identity and data. We are one of America's fastest-growing cybersecurity companies and have been recognized as a top workplace.
Organizing programs and activities to support strategic direction and long-term goals.
Fulfilling Miratech commitments to clients profitably and identifying client needs for up-sale.
Managing delivery risks, developing teams, and ensuring customer satisfaction.
Miratech helps visionaries change the world. They are a global IT services and consulting company with nearly 1000 full-time professionals and a 99% project success rate.
Lead the risk and compliance function, building frameworks to protect data and meet regulatory standards.
Collaborate cross-functionally to identify and mitigate operational, IT, and privacy risks.
Manage audits, incident response, and training to promote a strong culture of data security.
BIS Safety Software is a SaaS company that builds software to help organizations manage safety training, learning, and compliance. The company has been growing since 2006 and offers a collaborative culture with an Employee Stock Ownership Plan, valuing humility and ownership.