Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Sr Staff, Security Third Party Risk Management image - Rise Careers
Job details

Sr Staff, Security Third Party Risk Management

Zscaler is seeking a Senior Staff Cybersecurity Third Party Risk Management professional passionate about enhancing cybersecurity practices. Join a collaborative environment to manage Third Party Risk Management programs.

Skills

  • Cybersecurity management
  • Risk assessment
  • Project management
  • Compliance knowledge
  • Stakeholder communication

Responsibilities

  • Manage enhancements to the cybersecurity Third-Party Risk Management (TPRM) program
  • Develop policies, procedures, controls, and vendor questionnaires
  • Monitor regulatory changes and ensure vendor due diligence
  • Prepare security risk rating metrics and periodic reports
  • Support the execution of third-party vendor risk assessments

Education

  • Bachelor's degree in IT, cybersecurity, or related field

Benefits

  • Various health plans
  • Time off for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
To read the complete job description, please click on the ‘Apply’ button

Average salary estimate

$165750 / YEARLY (est.)
min
max
$136500K
$195000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Sr Staff, Security Third Party Risk Management, Zscaler

At Zscaler, we're on the lookout for a Senior Staff, Security Third Party Risk Management professional to join our innovative cybersecurity team! With a mission to make the cloud a secure place for business, we're committed to protecting our customers through our cutting-edge technology and world-class solutions. As a part of our team, you will be working remotely from anywhere in the United States, reporting directly to the Director of Security Strategy, Transformation & Vendor Risk Management. In this role, your primary responsibilities will include enhancing our cybersecurity Third-Party Risk Management program, which requires defining and implementing streamlined processes and overseeing various related projects. You'll play a key role in developing policies, procedures, and vendor questionnaires while ensuring compliance with regulations and industry standards. Our agile environment means you'll be actively preparing security risk ratings, providing insightful reports, and addressing any potential issues. Your keen ability to assess cybersecurity controls and engage with stakeholders globally will help mitigate risks and ensure we maintain our commitment to security excellence. With over 7 years of experience in cybersecurity or IT roles, you will undoubtedly bring your expertise in program/project management and risk management to the table. This is a fantastic opportunity to harness your passion for cybersecurity and collaborate with some of the brightest minds in the industry. If you're ready to take your next step in a meaningful role, we would love to hear from you!

Frequently Asked Questions (FAQs) for Sr Staff, Security Third Party Risk Management Role at Zscaler
What are the primary responsibilities of a Senior Staff, Security Third Party Risk Management at Zscaler?

The Senior Staff, Security Third Party Risk Management at Zscaler is responsible for managing enhancements to the Third-Party Risk Management (TPRM) program. This includes defining processes, overseeing projects, developing policies and procedures, implementing vendor solutions, and ensuring compliance with regulatory and industry standards. They also prepare risk rating metrics and reports, engage in risk assessments, and contribute to incident response discussions.

Join Rise to see the full answer
What qualifications do I need for the Senior Staff, Security Third Party Risk Management position at Zscaler?

Candidates applying for the Senior Staff, Security Third Party Risk Management position at Zscaler should have at least 7 years of experience in cybersecurity or IT roles, including program management and risk assessments. Familiarity with frameworks such as NIST CSF, ISO 27001, and SOC2 is important, alongside proven abilities in managing global teams and strong problem-solving skills.

Join Rise to see the full answer
How does Zscaler foster diversity in the workplace for the Senior Staff, Security Third Party Risk Management role?

Zscaler is dedicated to creating an inclusive environment, celebrating diversity, and promoting equity within the workplace. The company actively encourages applications from individuals of all backgrounds to enrich its team and contribute to its mission. This commitment to diversity and belonging is evident in their policies and culture.

Join Rise to see the full answer
What benefits does Zscaler offer to Senior Staff, Security Third Party Risk Management employees?

Zscaler provides a comprehensive benefits program designed to support employees and their families at various life stages. This includes health plans, vacation and sick time off, parental leave options, retirement plans, education reimbursement, and various in-office perks, ensuring a balanced work-life environment.

Join Rise to see the full answer
What is the salary range for the Senior Staff, Security Third Party Risk Management position at Zscaler?

The salary range for the Senior Staff, Security Third Party Risk Management position at Zscaler is between $136,500 and $195,000 USD. This range takes into account various factors, including job-related skills, experience, and education. Keep in mind that this base pay does not include any potential bonuses or benefits.

Join Rise to see the full answer
Common Interview Questions for Sr Staff, Security Third Party Risk Management
How do you approach developing policies and procedures for Third Party Risk Management?

When approaching this, I start by assessing current policies and identifying gaps. Collaborating with stakeholders is crucial to ensure comprehensive coverage. I prioritize clear documentation and align policies with industry regulations to ensure compliance and operational effectiveness.

Join Rise to see the full answer
Can you outline your experience with cybersecurity frameworks relevant to the role?

I have extensive experience with frameworks such as NIST CSF and ISO 27001. I have utilized them to assess organizational security posture and guide compliance initiatives, ensuring that all third-party interactions align with these standards.

Join Rise to see the full answer
Describe a time you managed a significant security risk assessment.

In my previous role, I led a risk assessment project for a high-profile vendor. I coordinated with multiple teams, ensuring that we accurately identified vulnerabilities and implemented remediation plans. This resulted in improved security posture for our organization.

Join Rise to see the full answer
How do you stay updated with regulatory changes in cybersecurity?

I maintain current knowledge through continuous education, attending industry conferences, and following key regulatory bodies. I also engage in professional networks that focus on cybersecurity to discuss upcoming changes and best practices.

Join Rise to see the full answer
What metrics do you consider essential when preparing security risk reports?

Essential metrics include risk ratings, incident frequency, compliance status, and the effectiveness of implemented controls. I believe that a visual representation of these metrics can drive better insights during reporting.

Join Rise to see the full answer
Explain how you would lead a team through a cybersecurity incident.

Leading through a cybersecurity incident requires clear communication and a calm response. I would guide my team to follow our incident response plan, focusing on containment, eradication, and recovery, while keeping stakeholders informed throughout the process.

Join Rise to see the full answer
What challenges have you faced in vendor risk assessments, and how did you address them?

A common challenge is consistent communication with vendors. I've tackled this by implementing structured processes and checklists for assessments, streamlining expectations, and regular follow-ups to ensure that all parties are aligned.

Join Rise to see the full answer
Describe your experience working with global teams.

I have effectively managed global teams by embracing cultural differences and ensuring consistent communication. I've used collaboration tools and scheduled regular check-ins to facilitate alignment and knowledge sharing across time zones.

Join Rise to see the full answer
What is your process for evaluating existing cybersecurity controls?

I employ a layered approach, starting with a comprehensive review of existing documentation, followed by on-site evaluations and interviews with relevant personnel to ensure controls are effectively implemented and functioning as intended.

Join Rise to see the full answer
How do you handle non-compliance in vendor relationships?

Handling non-compliance begins with understanding the root cause. I collaborate with the vendor to develop a remediation plan, ensuring that corrective actions align with compliance requirements. Ongoing monitoring establishes accountability and maintains security standards.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 5 days ago

Elevate your career at Zscaler as a Senior Director of Product Management, driving innovative security solutions in a hybrid work environment.

Photo of the Rise User
Posted 6 days ago

Join Zscaler as a Regional Marketing Manager to craft and implement strategic marketing initiatives for the Rockies market in our innovative and collaborative team.

Fortune Brands Hybrid 520 Lake Cook Rd, Deerfield, IL 60015, USA
Posted 9 days ago

Fortune Brands is looking for a Senior Lead Applications Analyst to drive the implementation of Oracle Cloud EBS R12 solutions within a diverse and innovative team.

Photo of the Rise User
Santander Hybrid 1 Enterprise Drive-Quincy-Corp
Posted 2 days ago

Become a driving force at Santander as a Sr. Associate, Solution Architect, where your innovative designs will guide our enterprise's technological future.

Posted 8 days ago

As a Cybersecurity Operations Analyst II at CACI, you'll play a pivotal role in supporting national security through innovative IT solutions.

Photo of the Rise User

Join Link Solutions as a Senior Computer and Information Systems Manager to lead innovative military IT projects in a dynamic environment.

Photo of the Rise User
Crusoe Hybrid San Francisco
Posted 11 days ago

Join Crusoe as an Incident Manager and lead the charge in managing high-visibility incidents to drive customer satisfaction in a pioneering AI cloud infrastructure company.

Posted 13 days ago

As a Principal Network Engineer at Acumatica, you'll lead network design and operations in a collaborative, innovative environment.

PNC Remote ZZ - Remote Location
Posted yesterday

Join PNC's Technology team as a remote Security Analyst to improve our security measures and contribute to our customer-centric approach.

Photo of the Rise User

Seeking a Manager of ERP Systems to lead technology implementations and cultivate team performance in a hospital environment.

Zscaler: Securing your cloud transformation We are passionate about being the best; the best global security company that enables mobile and enterprise businesses to be more secure, safer, and faster.

1353 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
SALARY RANGE
$136,500/yr - $195,000/yr
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 3, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
C
Someone from OH, Middletown just viewed Operations Analyst at Core Specialty Insurance
Photo of the Rise User
12 people applied to IT Intern - Seasonal at Carowinds
Photo of the Rise User
47 people applied to IT Intern at USAA
A
Someone from OH, Strongsville just viewed Graphic Design Intern at Anvil NorthWest
W
Someone from OH, Uhrichsville just viewed Director Operations at WVUMedicine
Photo of the Rise User
Someone from OH, Cincinnati just viewed Game Director, Scripps Sports at The E.W. Scripps Company
Photo of the Rise User
Someone from OH, Lorain just viewed 3D Modeler / Graphic Designer - Freelance at Twine
o
Someone from OH, Oxford just viewed Digital Media & Marketing Student Intern at osu
Photo of the Rise User
8 people applied to Junior Security Engineer at Epic
Photo of the Rise User
Someone from OH, Beachwood just viewed Dispensary Tech at Ayr Wellness
Photo of the Rise User
56 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Springfield just viewed Front Desk Clerk at Marriott International
L
Someone from OH, Akron just viewed Junior Graphic Designer at Little Spoon
Photo of the Rise User
Someone from OH, Columbus just viewed Licensing and Regulatory Compliance Analyst at Sportradar
Photo of the Rise User
Someone from OH, Mansfield just viewed US_EN_Operations_Warehouse Loader (Part Time) at Red Bull
Photo of the Rise User
Someone from OH, Dublin just viewed Salesforce Administrator at Multiverse
Photo of the Rise User
Someone from OH, Pickerington just viewed Salesforce Solution Analyst at GoodLeap
S
Someone from OH, Pickerington just viewed Salesforce Project Manager at Studio Science
Photo of the Rise User
Someone from OH, Dayton just viewed Medical Receptionist at LifeStance Health
Photo of the Rise User
13 people applied to SOC Analyst at Prosegur
Photo of the Rise User
59 people applied to Cyber Crime Analyst at TEKsystems
Photo of the Rise User
12 people applied to IT Support Intern at SoundCloud
C
Someone from OH, Massillon just viewed RN Ambulatory - Outpatient Infusion Therapy at CCF
Photo of the Rise User
Someone from OH, Columbus just viewed HR Business Partner (Maternity Cover) at Marshmallow
Photo of the Rise User
Someone from OH, Columbus just viewed Community Outreach Canvasser $24/Hr at Confidential
Photo of the Rise User
Someone from OH, Cincinnati just viewed Email Marketing Coordinator at Creative Circle
Photo of the Rise User
Someone from OH, Columbus just viewed UX Researcher, Amazon Autos at Amazon
Photo of the Rise User
Someone from OH, Cincinnati just viewed AI training and enablement at Writer