KeyStep

Senior Manager, Security Risk Management

Affirm
Remote US
24 days ago
full-timeremote

Skills & Technologies

QAISO 27001NISTRisk ManagementKPIsStrategyAuditComplianceInternal AuditIntegrationMakeOnboardingDue DiligenceAutomationLeadership

Job Description

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.

We’re hiring a Senior Manager to lead Security Governance and the Security Third-Party Risk Management (TPRM) function. This role owns program strategy, operational maturity, and stakeholder alignment for security governance, vendor risk, and third-party integration risk. The manager will drive policy and control frameworks, remediate audit findings, deliver measurable program KPIs, and grow a high-performing team that executes vendor diligence, monitoring, and governance at scale.

Our Security Governance and TPRM programs must move from tactical firefighting to predictable, measurable operations that scale with the business. This leader will set the security risk posture, tighten governance and fourth-party oversight, improve tooling and automation adoption, and ensure timely, actionable escalations so senior leadership can make the right business decisions.

What You'll Do

Program strategy & governance

Own Security Governance: maintain and evolve security policies, standards, and control frameworks (e.g., NIST CSF, ISO 27001), including mapping to controls and compliance requirements (SOC2, PCI, applicable regulations).

Lead program maturity planning, roadmaps, and cross-functional governance forums (e.g., security steering committee, risk council).

Define and enforce security risk appetite and decision criteria for third-party relationships and integrations.

Third-party risk management

Lead the Security TPRM function across vendor lifecycle: intake/onboarding, due diligence (IRQ/DDQ/SME reviews), contracting handoffs, ongoing monitoring, periodic reviews, and offboarding.

Ensure robust fourth-party oversight, including subprocessors, and manage remediation/QA cycles driven by Internal Audit and regulators.

Oversee high-risk vendor decisions and escalations; establish clear RACI for p

Company & Role Analysis

JobSeeker+
Likely perks
Private MedicalPension25+ Days HolidayStock OptionsLearning BudgetFlexible Hours
Culture & working style

Neutral 2–4 sentence summary of what working at this company is like, drawn from public reviews and press coverage. Tone, collaboration style, pace, benefits highlights.

Market salary range

£45,000 – £60,000 (Glassdoor, Levels.fyi, 2025)

Unlock the full analysis for this job
Sign in to unlock →

Similar roles

See more
Affirm
Remote US
Full-time
Remote
about 7 hours ago

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidd…

View Job
MongoDB
Gurugram
Full-time
about 14 hours ago

We are seeking a seasoned Senior Manager – Finance Technology to lead our India-based FinTech engineering organization supporting global Fin…

View Job
MongoDB
Dublin, Ireland
Full-time
about 14 hours ago

MongoDB’s Marketing Technology team is looking for a Senior Manager, Martech Transformation to support the implementation and ongoing optimi…

View Job
MongoDB
Gurugram
Full-time
about 17 hours ago

As the Sr. Manager of Marketplace Operations, you will own the end-to-end "Order-to-Cash" (OTC) strategy for MongoDB’s most critical growth…

View Job
MongoDB
Dublin, Ireland
Full-time
about 17 hours ago

MongoDB seeks a highly motivated individual to join our Global Deal Strategy function. This position will play a key role in enabling large,…

View Job
Vanta
Remote U.S.
$160K – $188K • Offers Equity • This role is also eligible for medical benefits, 401(k) plan, and other company perk programs.
Full-time
Remote
about 19 hours ago

At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, an…

View Job
Apply NowApply with CV Improver