Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Manager, Security Risk Management

$250k - $300k

Affirm

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest. We’re hiring a Senior Manager to lead Security Governance and the Security Third-Party Risk Management (TPRM) function. This role owns program strategy, operational maturity, and stakeholder alignment for security governance, vendor risk, and third‑party integration risk. The manager will drive policy and control frameworks, remediate audit findings, deliver measurable program KPIs, and grow a high‑performing team that executes vendor diligence, monitoring, and governance at scale. Our Security Governance and TPRM programs must move from tactical firefighting to predictable, measurable operations that scale with the business. This leader will set the security risk posture, tighten governance and fourth‑party oversight, improve tooling and automation adoption, and ensure timely, actionable escalations so senior leadership can make the right business decisions. What You’ll Do Program strategy & governance Own Security Governance: maintain and evolve security policies, standards, and control frameworks (e.g., NIST CSF, ISO 27001), including mapping to controls and compliance requirements (SOC2, PCI, applicable regulations). Lead program maturity planning, roadmaps, and cross‑functional governance forums (e.g., security steering committee, risk council). Define and enforce security risk appetite and decision criteria for third‑party relationships and integrations. Third‑party risk management Lead the Security TPRM function across vendor lifecycle: intake/onboarding, due diligence (IRQ/DDQ/SME reviews), contracting handoffs, ongoing monitoring, periodic reviews, and offboarding. Ensure robust fourth‑party oversight, including subprocessors, and manage remediation/QA cycles driven by Internal Audit and regulators. Oversee high‑risk vendor decisions and escalations; establish clear RACI for partnership contracts and security acceptance criteria. Operational excellence & tooling Own program KPIs, dashboards, and reporting (Jira STPRM Ops, AuditBoard, Sigma/BI, MetricStream). Drive improvements in throughput, turnaround, backlog age, and remediation velocity. Partner with Automation/TPRM Ops to operationalize threat‑modeling outputs, integration inventories, pre‑integration gates, and CI/CD checks; prioritize automations that reduce manual work and surface strategic escalations. Implement and maintain QA processes (quarterly QA), runbooks, SOPs for ticket ownership, and evidence standards. People & stakeholder leadership Build, coach, and scale the Governance and TPRM teams: hiring, performance management, career development, and team morale. Act as the primary security contact for Legal, Procurement, Privacy, Product, and Engineering on vendor risk and governance matters. Represent Security in executive forums, audit meetings, and regulatory engagements; own remediation commitments and timelines. Audit, compliance & risk reporting Serve as the security liaison for Internal Audit and external assessments; ensure timely remediation of findings and demonstrable progress. Produce regular program health reporting for senior leadership and board‑level stakeholders. Success metrics (examples) Vendors reviewed per month and % of critical vendors reviewed on schedule. Average review turnaround time and backlog age distribution. % of tickets with clear owner and SLA met. Time to remediate Internal Audit findings and completion rate. Implementation count of automated checks/runbooks and pre‑integration gates. Team engagement / retention and time‑to‑productivity for new hires. What We Look For 7+ years in information security, risk management, or GRC roles, with a minimum of 3 years managing teams (or equivalent leadership experience). Demonstrated ownership of a TPRM program or security governance program in a regulated or high‑growth technology environment (fintech preferred). Strong knowledge of security frameworks (NIST, ISO), compliance standards (SOC2, PCI), and vendor risk processes (IRQ/DDQ/SME assessments). Hands‑on familiarity with TPRM/GRC tooling and observability: AuditBoard (or equivalent), Jira, BI tools (Sigma/Tableau/Looker), and experience with integrations/APIs. Excellent stakeholder management across legal, procurement, engineering, product, and executive leadership. Proven experience translating audit findings into operational remediation plans and measurable outcomes. Strong communication skills — able to present risk to technical and non‑technical audiences and to influence decisions. Certifications such as CISSP, CISM, CRISC, or similar. Practical experience with threat‑modeling approaches and third‑party integration security (API, SSO/OAuth/SAML, TLS). Experience scaling automation for GRC/TPRM programs and integrating security checks into CI/CD pipelines. Prior experience in fintech or highly regulated industries. Pay Grade: Q Equity Grade: 10 Base pay is part of a total compensation package that may include equity rewards, monthly stipends for health, wellness and tech spending, and benefits (including 100% subsidized medical coverage, dental and vision for you and your dependents). For U.S. states CA, WA, NY, NJ, CT the range is $250,000 – $300,000 per year; for all other U.S. states it is $223,000 – $273,000 per year. Affirm is proud to be a remote‑first company! The majority of our roles are remote and you can work almost anywhere within the country of employment. Roles may occasionally require working out of an assigned office. Benefits Health care coverage – Affim covers all premiums for all levels of coverage for you and your dependents. Flexible Spending Wallets – generous stipends for spending on technology, food, various lifestyle needs, and family‑forming expenses. Time off – competitive vacation and holiday schedules allowing you to take time off to rest and recharge. ESPP – An employee stock purchase plan enabling you to buy shares of Affim at a discount. We believe It’s On Us to provide an inclusive interview experience for all, including people with disabilities. We are happy to provide reasonable accommodations to candidates in need of individualized support during the hiring process. For U.S. positions that could be performed in Los Angeles or San Francisco: Pursuant to the San Francisco Fair Chance Ordinance and Los Angeles Fair Chance Initiative for Hiring Ordinance, Affim will consider for employment qualified applicants with arrest and conviction records. #J-18808-Ljbffr Affirm

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Senior Manager, Security Risk Management in Salt Lake City, UT vacancy
  •  ...manufacturing and services worldwide. What You’ll Do As a Sr. Manager of Risk and Insurance Global, you will partner with operations,...  ...exposure and enhancing the quality of risk insights provided to senior leadership. Evaluate operational risk exposures and loss scenarios... 
    Senior
    Worldwide

    Risk & Insurance Management Society Inc

    Salt Lake City, UT
    4 days ago
  •  ...domains in the interest of national security. Job Title: Sr. Manager, Information Security Systems Engineer...  ...Security Systems Engineering (ISSE) Senior Manager to lead a team in developing...  ...and compliance Experience with risk management framework based on NIST 8... 
    Senior
    Local area
    Remote work

    L3Harris Technologies

    Salt Lake City, UT
    4 days ago
  • Sr. Manager, Information Security Systems Engineer Job Code: 37198 Job Location: Salt Lake City, UT Job...  ...Information Security Systems Engineering (ISSE) Senior Manager to lead a team in developing...  ...and compliance. Experience with risk management framework based on NIST 800... 
    Senior
    Local area
    Remote work

    Harris Geospatial Solutions

    Salt Lake City, UT
    4 days ago
  • $96.3k - $180.1k

    Ernst & Young Oman is seeking a Quality and Risk Manager - Independence in Salt Lake City, Utah. The role focuses on independence monitoring, compliance with policies, and risk management analysis. Ideal candidates will have over 7 years of experience including external... 
    Senior

    Ernst & Young Oman

    Salt Lake City, UT
    2 days ago
  • Zions Bancorporation is looking for a Technology and Operations Risk Manager responsible for 2nd Line oversight within the Data, Technology and Cyber Risk Management Organization. The role requires over 10 years of risk management experience with strengths in cybersecurity... 
    Senior

    Zions Bancorporation

    Midvale, UT
    3 days ago
  • Merit Medical Systems is seeking a Supplier Quality Manager in South Jordan, UT. The role involves establishing and maintaining quality...  ...must have at least six years of experience in supplier quality and risk management. The position offers various benefits, including... 
    Senior

    Merit Medical Systems

    South Jordan, UT
    23 hours ago
  • A global leader in commercial explosives is seeking a Sr. Manager for Risk and Insurance in Salt Lake City, Utah. The role involves managing operational risks and ensuring effective risk governance. Candidates should possess a Bachelor’s degree in relevant fields, extensive... 
    Senior

    RPMGlobal

    Salt Lake City, UT
    4 days ago
  • A cryptocurrency exchange and technology firm is looking for a Program Manager in Salt Lake City to lead security initiatives and manage risks related to protecting customer data. The ideal candidate will have over 5 years of experience in program management and security... 

    Coinbase

    Salt Lake City, UT
    2 days ago
  • Fortis Bank is seeking an SBA Portfolio Administrator in Midvale, UT. The role focuses on servicing and risk management of SBA loan portfolios, primarily SBA 7(a). Responsibilities include managing loans, monitoring performance, ensuring compliance with SBA guidelines,... 

    Fortis Bank

    Midvale, UT
    1 day ago
  • Soteria Reinsurance Ltd. is looking for a Senior Manager of Operations based in Salt Lake City, UT. This role involves overseeing a team of...  ...The ideal candidate should have over 8 years of experience in risk management, compliance, and operations, alongside demonstrated... 
    Senior
    Full time

    Soteria Reinsurance Ltd.

    Salt Lake City, UT
    23 hours ago
  • The Technology and Operations Risk Manager is a self‑starter responsible for the following: Zions Bancorporation is one of the nation’s premier financial services companies operating as a collection of great banks under local brands and management teams in high-growth... 
    Senior
    Work experience placement
    Work at office
    Local area
    Flexible hours

    Zions Bancorporation

    Midvale, UT
    3 days ago
  • Senior Manager of Operations page is loaded## Senior Manager of Operationslocations: Westlake...  ...demonstrated proficiency in the areas of Risk Management, Compliance, Marketing, and...  ...is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers... 
    Senior
    Seasonal work
    Shift work

    Soteria Reinsurance Ltd.

    Salt Lake City, UT
    23 hours ago
  • $170.6k - $390k

     ...to grow your career in information security! The opportunity The Senior Network Security Architect is a strategic...  ...align with business objectives, risk tolerance, and regulatory...  ...Join our dynamic team as a Senior Manager in Cybersecurity Engineering, where... 
    Senior
    Full time
    Summer holiday
    Remote work
    Flexible hours

    EY

    Salt Lake City, UT
    1 day ago
  •  ...operational servicing functions for credit cards, secured cards, and installment loans. We service...  ..., IVR, live agent, and external agency management.**Position Summary:**We are seeking an...  ...security framework.* Conduct and oversee risk‐based assessments of in‐scope programs to... 
    Temporary work

    CardWorks, Inc.

    South Jordan, UT
    23 hours ago
  •  ...Head of Credit Risk About the Company Promising financial institution Industry Banking Type Privately Held About...  ...approving transactions, and collaborating with trading, lending, and senior leadership. The Head of Credit Risk will be expected to have a... 

    Confidential

    Salt Lake City, UT
    4 days ago
  • $201.37k - $236.9k

     ...supported. Coinbase’s Physical Security (PhySec) team protects...  ...spans: Executive Protection (at-risk individuals, travel, residential...  ...) Intelligence (threat management, strategic intelligence, backgrounds...  ...S&P and the company The Senior Strategic Operations Manager,... 
    Senior
    Local area

    Coinbase

    Salt Lake City, UT
    4 days ago
  • $97k - $114k

    SOC LLC seeks a Security Operations Supervisor to oversee day-to-day operations at Camp Williams, UT. The role includes supervising access control and security personnel, handling incident responses, and ensuring compliance with security standards. Candidates must have... 
    Senior

    SOC LLC

    Salt Lake City, UT
    3 days ago
  • $96.3k - $180.1k

    Location: Anywhere in Country Quality and Risk Manager - Independence The opportunity As part of the US Independence Risk and Controls team, you’ll provide support across teams involving regulatory matters and independence monitoring activities including the audit quality... 
    Work experience placement
    Summer holiday
    Local area
    Flexible hours

    Ernst & Young Oman

    Salt Lake City, UT
    4 days ago
  • $86.4k

     ...SUMMARY This job is responsible for developing plans and managing activities in support of Risk Adjustment and Quality/HEDIS. Directs the daily...  ...Practices and Privacy Policies and Procedures as well as data security guidelines established within the Company’s Handbook of... 
    For contractors
    Work at office
    Local area
    Remote work

    Highmark Health

    Salt Lake City, UT
    3 days ago
  • $175k - $225k

    Job Overview - Head of Credit Risk Compensation: $175,000 - $225,000/year + bonus Location...  ...partnering with trading, lending, and senior leadership. This role requires strong financial...  ...Appetite & Portfolio Oversight: Define, manage, and monitor credit risk appetite across... 
    Work at office
    Monday to Friday

    Atlantic Group

    Salt Lake City, UT
    1 day ago
  •  ...lead innovation in banking through cloud-based solutions. You will collaborate with teams to design and implement intelligent risk management products using cutting-edge technologies like AI and machine learning. This role demands strong expertise in software and solution... 
    Senior
    Remote work

    Capital One

    Salt Lake City, UT
    8 days ago
  • A leading global investment banking firm in Salt Lake City is seeking a Senior Vice President to lead Wealth Management Client Onboarding. This role involves strategic influence and risk management to enhance operational efficiency. Candidates should have over 7 years... 
    Senior

    Goldman Sachs Group, Inc.

    Salt Lake City, UT
    23 hours ago
  • A global consulting firm is seeking a Data Protection & Privacy Senior Associate in Salt Lake City, Utah. You will support ethical, compliance, and risk management by conducting data protection due diligence, interpreting laws, and developing compliance measures. Candidates... 
    Senior

    Ernst & Young Oman

    Salt Lake City, UT
    1 day ago
  • Director, Enterprise Risk Management page is loaded## Director, Enterprise Risk Managementlocations: Sandy, UTtime type: Full timeposted on...  ...line functions to deliver clear, decision‐ready insights for senior leadership and governance forums.* Design and oversee... 
    Work at office
    Remote work
    Work from home
    2 days per week
    3 days per week

    Mountain America Credit Union

    Sandy, UT
    23 hours ago
  •  ...servicing functions for credit cards, secured cards, and installment loans....  ...agent, and external agency management.**Position Summary:**The Director of Enterprise Risk Management (Bank Origination)...  ...This role partners closely with senior management and key stakeholders... 
    Temporary work

    CardWorks, Inc.

    South Jordan, UT
    1 day ago
  • A leading financial services company in Salt Lake City is looking for a Senior Manager, Commercial Credit Administration. This role oversees credit assessments and risk management for for-profit school partners, ensuring compliance and supporting growth. The ideal candidate... 
    Senior
    Flexible hours

    Sallie Mae

    Salt Lake City, UT
    3 days ago
  • A leading engineering firm is seeking a construction manager to lead project oversight and field management in Salt Lake City, UT. The ideal...  ...leadership skills and experience in contract negotiation and risk management. This is a full-time role with growth opportunities... 
    Senior
    Full time
    Contract work

    HNTB Corporation

    Salt Lake City, UT
    3 days ago
  •  ...Lake City seeks an experienced Director, Treasury & Market Risk to oversee risk management activities within the Treasury function. Responsibilities...  ...the opportunity to lead a Market Risk team and collaborate with senior management. #J-18808-Ljbffr Zions Bancorporation

    Zions Bancorporation

    Salt Lake City, UT
    4 days ago
  • CardWorks, Inc. is searching for a Director of Enterprise Risk Management to enhance risk management practices at Merrick Bank. This role...  ...and effective communication skills to present risk insights to senior management. The position is based in South Jordan, Utah and... 

    CardWorks, Inc.

    South Jordan, UT
    1 day ago
  • Mountain America Credit Union seeks a Director of Enterprise Risk Management in Sandy, Utah. This full-time position involves governing and executing the ERM program, ensuring enterprise risks are identified and assessed. Candidates should have over 5 years of leadership... 
    Full time
    Work at office

    Mountain America Credit Union

    Sandy, UT
    23 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Manager, Security Risk Management. Be the first to apply!