TPRM Lead: Cybersecurity Vendor Risk & AI Governance

Relha LLC

Reston (VA)

Hybrid

USD 171,000 - 256,000

Full time

11 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Workday seeks a Third-Party Security Risk Management (TPRM) Lead in Reston, VA to own and evolve the cybersecurity vendor risk program. You will partner with Security, IT, Legal, and Procurement to identify gaps, assess risk, and drive remediation with leadership visibility.

The role blends strategic ownership with hands-on risk assessment and continuous improvement, including automation and AI-enabled tooling to scale risk operations responsibly.

Qualifications

  • Extensive experience leading GRC initiatives and maintaining compliant programs.
  • Proven ability to implement modern GRC tools for automation and monitoring.
  • Strong understanding of third-party risk across the lifecycle and governance frameworks.

Responsibilities

  • Own and mature the Cybersecurity third-party risk program strategy.
  • Lead risk assessments for critical vendors and monitor ongoing due diligence.
  • Translate risk into business impact and drive remediation plans.
  • Engage stakeholders across Legal, Procurement, Security, Privacy, and Compliance.
  • Develop metrics, dashboards, and ODMs to show program progress.

Skills

GRC leadership
TPRM expertise
Risk analysis
Stakeholder management

Education

BS/MS in CS/InfoSec/MIS

Tools

ServiceNow GRC
OneTrust
Archer
LogicGate

Job description

Workday seeks a Third-Party Security Risk Management (TPRM) Lead in Reston, VA to own and evolve the cybersecurity vendor risk program. You will partner with Security, IT, Legal, and Procurement to identify gaps, assess risk, and drive remediation with leadership visibility.

The role blends strategic ownership with hands-on risk assessment and continuous improvement, including automation and AI-enabled tooling to scale risk operations responsibly.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

TPRM Lead: Strategic Cyber Risk & Vendor Oversight
TPRM Lead: Strategic Cyber Risk & Vendor Oversight

Workday • Reston (VA)

Hybrid
USD 171,000 - 256,000
Senior TPRM & AI Security Analyst
Senior TPRM & AI Security Analyst

DoorDash • San Francisco (CA)

On-site
USD 132,000 - 195,000
401(k) with employer matching
Paid parental leave
Wellness benefits
+7
TPRM Strategy Lead: AI-Driven Risk & Compliance
TPRM Strategy Lead: AI-Driven Risk & Compliance

TikTok USDS Joint Venture • Washington

On-site
USD 132,000 - 337,000
Medical, dental, and vision insurance
401(k) with company match
Paid parental leave
+2
Remote Senior Analyst, TPRM & AI Security
Remote Senior Analyst, TPRM & AI Security

DoorDash USA • United States

Hybrid
USD 132,000 - 195,000
401(k) plan
Parental leave (16 weeks)
Wellness benefits
+4
Director, 3rd-Party Risk & AI Governance
Director, 3rd-Party Risk & AI Governance

HealthEquity • Draper (UT)

On-site
USD 151,500 - 200,500
Medical, dental, and vision
HSA contribution and match
Dependent care FSA match
+3
Director, Third-Party IT Risk & Automation
Director, Third-Party IT Risk & Automation

Wolters Kluwer • Riverwoods (IL)

On-site
USD 118,000 - 208,000
Medical, Dental, & Vision Plans
401(k)
FSA/HSA
+2
TPRM Program Lead — Risk & GRC
TPRM Program Lead — Risk & GRC

CrowdStrike • United States

On-site
USD 130,000 - 150,000
Market leader in compensation and equity awards
Comprehensive wellness programs
Paid parental and adoption leaves
Senior TPRM Security Analyst
Senior TPRM Security Analyst

DoorDash • Chicago (IL)

On-site
USD 132,000 - 195,000
401(k) matching
Paid parental leave
Wellness benefits
+4
Senior TPRM & AI Security Analyst
Senior TPRM & AI Security Analyst

DoorDash • New York (NY)

On-site
USD 132,000 - 195,000
Third-Party Security Risk Management (TPRM) Lead
Third-Party Security Risk Management (TPRM) Lead

Workday • Reston (VA)

Hybrid
USD 171,000 - 256,000