Skip to main content
TryApplyNow
Sentara Hospitals logo

Manager -Cyber Third Party Risk

Sentara Hospitals
Full Timesenior
Virginia, US$117k – $217kPosted 5 days ago

Role Overview

Sentara Hospitals is hiring a senior-level Manager -Cyber Third Party Risk. This is a full-time role in Virginia. Part of Sentara Hospitals's Risk hiring, posted 5 days ago. The posted range is $117k to $217k. Full responsibilities, required qualifications, and the apply link are listed in the description below.

Salary Context

This role offers $117k-$217k. The median for Senior-level Risk roles is $98k-$145k (based on 62 listings). 37% above median.

Resume Keywords to Include

Make sure these keywords appear in your resume to improve ATS scoring

HIPAAHITRUSTORPrincipleRisk ManagementCompensationBenefitsOnboarding

Job Description

City/State

Norfolk, VA

Work Shift

First (Days)

Overview

Overview

As a Cyber Third-Party Risk Manager, you will play a critical role developing, enhancing and executing the third-party risk management program including onboarding, maintenance and ongoing monitoring, and offboarding of third-party suppliers. Your primary responsibilities will include identifying and categorizing third party vendors based on risk, understanding and prioritizing the risks, establishing and enforcing key controls to mitigate the risk, perform continuous monitoring that tracks and reassesses third parties, and ensure third party contractual compliance with Sentara policy and standards. You will also be responsible for negotiating and maintaining the information security exhibit with the vendors through the contracting process.

Key Responsibilities

  • Regularly interact with all levels of management to present and discuss third-party risk management
  • Conduct comprehensive risk assessments of third-party vendors based on risk
  • Manage a team of assessors for performing vendor assessments and vendor contracts negotiations
  • Analyze and prioritize risks based on their potential impact on the organization’s operations, data, and reputation.
  • Develop and streamline the third-party risk management process.
  • Identify and assess vulnerabilities within vendor systems, networks, and applications.
  • Collaborate with cross-functional teams, including IT, security, and compliance, to develop and implement risk mitigation strategies.
  • Prepare detailed third-party risk assessment reports, including findings, recommendations, and mitigation plans, for presentation to management.
  • Maintain accurate and up-to-date documentation of third-party risk assessment activities, findings, and risk treatment plans.
  • Assist in audits and assessments to demonstrate compliance with cybersecurity standards.

Education

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field (preferred)

(OR)

  • Experience in lieu of Bachelor's Degree- 7+ years of experience in cybersecurity, with at least 3 years in risk management

Certification/Licensure

  • CISSP (Certified Information Systems Security Professional) (Preferred)
  • CISM (Certified Information Security Manager)(Preferred)
  • CRISC (Certified in Risk and Information Systems Control)(Preferred)
  • CISA (Certified Information Systems Auditor)(Preferred)

Experience

  • 5+ years of experience in cybersecurity, with at least 3 years in risk management with a degree (Required)
  • 7+ years of experience in cybersecurity, with at least 3 years in risk management without a degree) (Required)
  • Strong understanding of cybersecurity principles, risk assessment methodologies, and threat landscape analysis.
  • 3 years’ experience managing a third-party risk management program and team
  • Proficiency in performing third-party risk assessments and negotiating contractual security language
  • Knowledge of regulatory compliance requirements and industry standards.
  • Excellent analytical and problem-solving skills.
  • Effective communication and interpersonal abilities to collaborate with multidisciplinary teams.
  • Experience in healthcare or other highly regulated industries preferred
  • Deep understanding of cybersecurity frameworks (NIST CSF, NIST 800-53, ISO 27001, HITRUST)
  • Knowledge of healthcare regulations (HIPAA, HITECH) and their technical requirements
  • Familiarity with risk assessment methodologies and tools
  • Understanding of security technologies, controls, and best practices
  • Experience with GRC (Governance, Risk, and Compliance) platforms such as ServiceNOW, OneTrus

Keyword, Cybersecurity Risk, TPRM Talroo - IT

We provide market-competitive compensation packages, inclusive of base pay, incentives, and benefits. The base pay rate for Full Time employment is:$116,729.60-$216,777.60. Additional compensation may be available for this role such as shift differentials, standby/on-call, overtime, premiums, extra shift incentives, or bonus opportunities.

Benefits: Caring For Your Family and Your Career

  • Medical, Dental, Vision plans
  • Adoption, Fertility and Surrogacy Reimbursement up to $10,000
  • Paid Time Off and Sick Leave
  • Paid Parental & Family Caregiver Leave
  • Emergency Backup Care
  • Long-Term, Short-Term Disability, and Critical Illness plans
  • Life Insurance
  • 401k/403B with Employer Match
  • Tuition Assistance – $5,250/year and discounted educational opportunities through Guild Education
  • Student Debt Pay Down – $10,000
  • Reimbursement for certifications and free access to complete CEUs and professional development
  • Pet Insurance
  • Legal Resources Plan
  • Colleagues have the opportunity to earn an annual discretionary bonus if established system and employee eligibility criteria is met.

Sentara Health is an equal opportunity employer and prides itself on the diversity and inclusiveness of its close to an almost 30,000-member workforce. Diversity, inclusion, and belonging is a guiding principle of the organization to ensure its workforce reflects the communities it serves.

In support of our mission “to improve health every day,” this is a tobacco-free environment.

For positions that are available as remote work, Sentara Health employs associates in the following states:

Alabama, Delaware, Florida, Georgia, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, North Carolina, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Virginia, Washington, West Virginia, Wisconsin, and Wyoming.

About Sentara Hospitals

Sentara Hospitals logo

Sentara Hospitals

sentara.com

RiskOn-site

Frequently Asked Questions

How do I apply for the Manager -Cyber Third Party Risk position at Sentara Hospitals?

Use the Apply button above to submit your application directly to Sentara Hospitals. Most applications take less than 5 minutes if your resume and contact details are ready, and you'll be routed to the employer's official application system to finish.

Where is the Manager -Cyber Third Party Risk position at Sentara Hospitals located?

This position is based in Virginia. Sentara Hospitals has not indicated remote or hybrid options for this role, so candidates should plan for on-site work.

How much does the Manager -Cyber Third Party Risk role at Sentara Hospitals pay?

Sentara Hospitals has posted a compensation range of $117k to $217k for this position. Final offers typically vary based on candidate experience, location, and internal salary bands.

When was the Manager -Cyber Third Party Risk role at Sentara Hospitals posted?

This role was posted on June 22, 2026 (5 days ago). It's still listed as actively hiring; we re-confirm openings against the source system multiple times per day and remove closed roles.

How much experience does the Manager -Cyber Third Party Risk role at Sentara Hospitals require?

This is a senior-level position. Most senior roles call for 5+ years of directly relevant experience. Sentara Hospitals lists their specific requirements in the description below, so review the must-have qualifications closely before applying.

AI-powered job search

Get every job scored to your resume

Upload your resume and get jobs ranked, your resume tailored, and employee contacts found automatically.

Get Started Free

No credit card to start