Senior Manager, Security Risk Management

Affirm Payments

Remote
Base: $250,000 - $300,000 (ca, wa, ny, nj, ct); $2...
**
Security governance and tprm
Policy and control frameworks
Vendor diligence and monitoring
** Affirm Payments is seeking a Senior Manager for Security Risk Management to lead their Security Governance and Third-Party Risk Management (TPRM) functions. The ideal candidate will have extensive experience in information security, risk management, and team leadership, particularly within regulated industries like fintech. **

Job Summary

  • This role owns program strategy, operational maturity, and stakeholder alignment for security governance, vendor risk, and third-party integration risk.
  • The manager will drive policy and control frameworks, remediate audit findings, deliver measurable program KPIs, and grow a high-performing team that executes vendor diligence, monitoring, and governance at scale.
  • Affirm focuses on providing a simple and transparent pay structure which is based on a variety of factors, including location, experience and job-related skills.

Matching Summary

Match Score: 75

** Affirm Payments is seeking a Senior Manager for Security Risk Management to lead their Security Governance and Third-Party Risk Management (TPRM) functions. The ideal candidate will have extensive experience in information security, risk management, and team leadership, particularly within regulated industries like fintech. **

Salary

Base: $250,000 - $300,000 (CA, WA, NY, NJ, CT); $223,000 - $273,000 (all other U.S. states); Equity: Grade 10; Benefits: 100% subsidized medical coverage, dental, vision, stipends

Skills & Requirements

Must-have

  • Security Governance and TPRM
  • policy and control frameworks
  • vendor diligence and monitoring
  • fourth-party oversight
  • tooling and automation adoption
  • stakeholder management

Nice-to-have

  • predictable, measurable operations
  • high-performing team
  • strategic escalations

Key Requirements

  • 7+ years in information security, risk management, or GRC
  • 3 years managing teams
  • Demonstrated ownership of a TPRM program
  • Strong knowledge of security frameworks
  • Hands-on familiarity with TPRM/GRC tooling
  • Certifications such as CISSP, CISM, CRISC

Work Rights

Not specified

Tailored Resume

Cover Letter