Sr Third Party Risk Management Consultant
Dallas, TX, TX, US • Posted 2 hours ago • Updated 2 hours ago

Software Guidance & Assistance
Dice Job Match Score™
👤 Reviewing your profile...
Job Details
Skills
- Technical Support
- Issue Tracking
- Reporting
- Dashboard
- Process Flow
- Procurement
- Continuous Monitoring
- Cadence
- Documentation
- Roadmaps
- Information Security
- Risk Management
- Security Controls
- HIPAA
- NIST 800-53
- Payment Card Industry
- ISO/IEC 27001:2005
- Workflow
- ServiceNow
- CISSP
- CISM
- ISACA
- Health Care
- Artificial Intelligence
- Cloud Computing
- SaaS
- Risk Assessment
- SAP GRC
- MEAN Stack
- Customer Service
- Training And Development
- SAP BASIS
Summary
3-6 month contract
90% remote
Responsibilities :
We are seeking a senior level Third Party Risk Management consultant with strong experience designing and building enterprise vendor risk programs, ideally within a healthcare or highly regulated environment. This person should have hands on experience creating risk tiering models, assessment methodologies, governance reporting, and integrating TPRM into procurement and contract processes. We are not looking for an operational analyst or technical support resource, but a strategic program lead who can design, mature, and operationalize a comprehensive TPRM framework and engage confidently with executive stakeholders.
- Design and formalize a scalable Third-Party Risk Management program.
- Develop or refine:
o Vendor risk tiering methodology
o Inherent and residual risk scoring models
o Assessment playbooks and control validation standards
o Issue tracking and remediation workflows - Align TPRM processes with applicable frameworks (e.g., NIST CSF, NIST 800-53, HIPAA, PCI, TX-RAMP, ISO 27001)
- Develop standardized assessment questionnaires and evidence review processes.
- Establish governance and reporting mechanisms (dashboards, executive metrics)
- Design process flow to integrate TPRM into procurement and contract lifecycle processes.
- Analyze the current vendor list and tier vendors based on the criteria.
- Execute few sample assessments for critical tier vendors.
- Define continuous monitoring strategy and vendor reassessment cadence.
- Support development of vendor security requirements and minimum control expectations.
- Provide executive-ready documentation and maturity improvement roadmap.
- 8 plus years of experience in Information Security, Risk Management, or GRC
- Proven experience building or significantly maturing a Third Party Risk Management program
- Strong understanding of the full third party risk lifecycle
- Experience developing vendor risk tiering and inherent versus residual risk scoring models
- Experience designing assessment methodologies and validating security controls
- Knowledge of continuous vendor monitoring practices
- Familiarity with healthcare regulatory requirements such as HIPAA
- Experience aligning programs to frameworks such as NIST CSF, NIST 800 53, PCI, ISO 27001, TX RAMP
- Experience implementing or optimizing workflows in GRC platforms such as ServiceNow, AuditBoard, or Arche
Preferred Skills:
- CISSP, CISM, CRISC, or similar certification
- Experience in healthcare or academic medical center environments
- Experience with risk quantification methodologies
- Experience assessing AI vendors
- Experience conducting cloud and SaaS vendor risk assessments
- Experience governing mission critical vendors
- Experience working with state regulated institutions such as Texas DIR or TX RAMP
- Deep hands on experience with enterprise GRC platforms
SGA is a technology and resource solutions provider driven to stand out. We are a women-owned business. Our mission: to solve big IT problems with a more personal, boutique approach. Each year, we match consultants like you to more than 1,000 engagements. When we say let's work better together, we mean it. You'll join a diverse team built on these core values: customer service, employee development, and quality and integrity in everything we do. Be yourself, love what you do and find your passion at work. Please find us at .
SGA is an Equal Opportunity Employer and does not discriminate on the basis of Race, Color, Sex, Sexual Orientation, Gender Identity, Religion, National Origin, Disability, Veteran Status, Age, Marital Status, Pregnancy, Genetic Information, or Other Legally Protected Status. We are committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, and our services, programs, and activities. Please visit our company to request an accommodation or assistance regarding our policy.
#LI-JM1
- Dice Id: sgainc
- Position Id: 26-00511
- Posted 2 hours ago
Company Info
About Software Guidance & Assistance
Founded in 1981, SGA is a technology and resource solutions provider with a national footprint and headquartered in the shadow of Wall Street. We’re a certified women-owned business. We provide contingent staffing, direct placement, and professional and managed services to transform businesses and evolve careers. We’re small enough to tailor our services to each client and big enough to deliver for some of the world’s largest employers. Our professionals are experts in areas such as IT, finance, accounting, risk, and clinical.
SGA provides contingent staffing, direct placement, and professional and managed services nationwide for Fortune 500 companies, mid-size businesses and select startups.
Our core skillsets include all areas of technology – business & data analysis, cyber & network security, database administration, development & architecture, infrastructure, program & project management, quality assurance & testing. We also deliver talent across professional business functions such as finance, accounting, risk, and clinical.
Our Professional & Managed Services team delivers IT projects through onshore, offshore and hybrid delivery models. We develop software products, modernize applications, add features, and integrate and maintain systems. Our scope covers, among others, complex application suites, data management and visualizations, machine learning and mobile applications.


Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs