IT Security Manager - Third-Party IT Risk Manager

Wolters KluwerCoppell, IL
Hybrid

About The Position

The Third-Party IT Risk Manager is responsible for leading and modernizing Wolters Kluwer’s global third-party cyber risk management capability. This role ensures third-party engagements align with the organization’s risk appetite, security standards, and regulatory expectations. The position leads the execution of a scalable, intelligence-led TPRM program that delivers meaningful and defensible assurance over third-party cyber risk, moving beyond traditional, questionnaire-centric models. The role partners closely with Global Supply Chain, Procurement, Legal, and Privacy teams to reduce fragmentation across markets by translating diverse, market-specific approaches into standardized enterprise agreements, security configurations, and control expectations. A core focus of this position is innovation: designing and implementing differentiated third-party assurance approaches that leverage automation, technical validation, and continuous monitoring to provide real-time insight into supplier risk rather than relying solely on static assessments.

Requirements

  • Bachelors degree in computer science, information security, management information systems or similar.
  • 12+ years of experience in cybersecurity, technology risk, or information security, including significant ownership of third party or supplier cyber risk management in large, complex enterprises.
  • 5+ years of leadership (direct managerial experience or functional delivery leading teams).
  • Proven experience designing and leading a global TPRM program across the full third party risk lifecycle.
  • Demonstrated success modernizing TPRM by implementing risk based approaches that integrate technical validation, automation, and continuous monitoring.
  • Demonstrated success owning decisions and outcomes at a senior level independently without formal authority.
  • Strong technical fluency across cloud platforms, APIs, identity, data flows, and integration architectures, with the ability to partner credibly with security architects and technical SMEs.
  • Experience overseeing advanced technical assessments for high risk or critical third parties, such as architecture reviews, vulnerability assessments, penetration testing, and threat modeling.
  • Ability to operate effectively in highly distributed, market driven environments.
  • Demonstrated leadership experience, including building high performing teams and influencing senior stakeholders across Technology, Procurement, Legal, Privacy, and Enterprise Risk Management.
  • Strong executive communication skills, with experience reporting third party cyber risk posture and trends to senior leadership.

Nice To Haves

  • Familiarity with systemic, concentration, and fourth‑party risk.
  • Working knowledge of NIST CSF, ISO 27001, GDPR, and CCPA.
  • Relevant certifications (e.g., CISSP, CISM, CTPRP, CRISC, CISA)

Responsibilities

  • Lead and evolve Wolters Kluwer’s global Third Party Risk Management (TPRM) program and operating model, ensuring it is scalable, risk based, and aligned with enterprise cyber risk governance.
  • Modernize TPITRM by shifting from a primarily questionnaire driven approach to a data driven program that incorporates technical validation, continuous monitoring, AI, and risk quantification.
  • Lead, whether functionally or formally – junior team members as a manager level leader across the TPRM function to drive successful outcomes across the entire TPRM unit.
  • Implement continuous monitoring capabilities to deliver near real time visibility into third party cyber posture, control performance, and emerging risk indicators.
  • Design and deploy innovative approaches—including automation and AI assisted techniques—for evidence collection, risk scoring, and exception management.
  • Continuously assess emerging tools, data sources, and assurance models to improve risk coverage, reduce assessment friction, and enhance signal quality beyond traditional questionnaires.
  • Strong skills in the development, review, and analysis of third party contracts to ensure Company requirements, principles, and assets are sufficiently protected in accordance with internal expectations.
  • Strong business acumen and ability to identify technical and functional requirements that do not align or meet Company needs, suggest enhancements, and have them accepted and implemented by the supplier.
  • Maintain a centralized, enterprise wide inventory of third party relationships, risk tiers, and risk treatment decisions.
  • Provide clear, concise reporting on third party cyber risk posture, trends, and concentration risk to senior leadership.
  • Build, lead, and develop a high performing team of third party risk professionals and technical reviewers.
  • Foster a culture of accountability, innovation, and constructive challenge consistent with Wolters Kluwer values and operating principles.

Benefits

  • Medical, Dental, & Vision Plans
  • 401(k)
  • FSA/HSA
  • Commuter Benefits
  • Tuition Assistance Plan
  • Vacation and Sick Time
  • Paid Parental Leave
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service