Talent.com
Director of Cyber Third-Party Assurance

Director of Cyber Third-Party Assurance

MassMutualBoston, MA, United States
19 hours ago
Job type
  • Full-time
Job description

Full-Time, Boston, Springfield

The Opportunity

As the Director of the Cyber Third-Party Assurance team you will work in a fast-paced, collaborative environment overseeing the onboarding and continuous monitoring of Mass Mutual’s third-parties. The Director of Cyber Third-Party Assurance (CTPA) leads the enterprise’s vendor and supplier cybersecurity risk management function. This role is responsible for ensuring that third-party engagements meet Mass Mutual’s cybersecurity standards and comply with regulatory expectations. The position manages a team responsible for four critical verticals : onboarding new vendors, conducting risk-based assessments of returned questionnaires, actively monitoring critical vendors through continuous oversight and managing third-party risk questionnaires received when Mass Mutual serves as a vendor. This role ensures that there is a consistent, risk-driven approach to protecting the enterprise from supplier-related cyber threats.

Key Responsibilities

  • Vendor Onboarding & Due Diligence : Oversee the vendor onboarding process, beginning with inherent risk assessments and tailored due diligence questionnaires. Lead the review of questionnaire responses, assign risk scores, and determine requirements for follow-up remediation or reassessment. Partner with Procurement, Legal, and Governance to ensure contract language reflects cyber requirements.
  • Ongoing Vendor Monitoring : Direct continuous monitoring of critical and high-risk vendors using third-party risk intelligence tools (e.g., RiskRecon). Oversee periodic reassessments based on vendor tier, risk exposure, and regulatory requirements. Ensure supplier vulnerabilities and incident notifications are addressed and escalated appropriately.
  • Third-Party Questionnaire Responses : Manage the function that responds to cybersecurity questionnaires MassMutual receives as a third party to other organizations. Ensure responses are accurate, consistent, and aligned with enterprise security posture and regulatory expectations.
  • Governance, Reporting & Stakeholder Engagement : Provide executive-level reporting on third-party cyber risk posture, metrics, and emerging risks. Align with Governance, Enterprise Risk Management, and Internal Audit to ensure defensible oversight. Partner with BISOs, platform engineering, and security control owners to ensure vendor cyber risk is accurately identified and managed.

The Team

The Cyber Third-Party Assurance (CTPA) team plays a critical role in protecting Mass Mutual’s enterprise by managing cyber and operational risks across its vast supplier ecosystem. This team serves as a strategic partner to the business, providing assurance that our vendors and SaaS providers maintain the highest standards of security, compliance, and resilience. Leveraging advanced tools and regulatory expertise, CTPA delivers proactive risk insights, drives remediation of control gaps, and strengthens the organization’s ability to meet stringent expectations from regulators, clients and the board.

The Impact

  • Protects the enterprise from supplier-related cyber threats and regulatory exposure.
  • Strengthens resilience through proactive risk identification, monitoring, and remediation.
  • Enhances vendor trust and reputation through a mature, transparent, and defensible third-party cyber risk program.
  • Provides leadership with actionable intelligence to inform decision-making.
  • Qualifications

  • Minimum Qualifications : Bachelor’s degree in information technology, Cyber Security, or a related field. 8+ years of experience in cybersecurity, including 4+ years in a leadership role focused on third-party risk management, or vendor assurance. Authorized to work in the US without requiring sponsorship now and in the future.
  • Ideal Qualifications : Knowledge of regulatory frameworks (NIST CSF 2.0, CRI Profile, etc.). Strong analytical skills for measuring program effectiveness and driving continuous improvement. Demonstrated experience in managing risk assessments, due diligence, and continuous monitoring processes. Familiarity with vendor risk intelligence platforms (e.g., RiskRecon) and GRC tools (e.g., Archer, Process Unity). Excellent communication and stakeholder engagement skills, including executive-level reporting. CISSP, CTPRP, or related certifications preferred.
  • MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need.

    #J-18808-Ljbffr

    Create a job alert for this search

    Director Assurance • Boston, MA, United States

    Related jobs
    • Promoted
    Director of Security Engineering

    Director of Security Engineering

    VirtualVocationsLowell, Massachusetts, United States
    Full-time
    A company is looking for a Director of Cyber Defense Engineering.Key Responsibilities Lead the development and deployment of an AI-enhanced Security Operations Center (SOC) Define architecture f...Show moreLast updated: 30+ days ago
    • Promoted
    Sr. Director, Strategic Sourcing Enterprise Third Party Risk

    Sr. Director, Strategic Sourcing Enterprise Third Party Risk

    MedStar HealthBoston, MA, United States
    Full-time
    The Senior Director, Enterprise Third Party Risk Leader, will.Central Risk Management team and.The role will also maintain a comprehensive understanding of the company's business strategies, organi...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Director of Platform Operations

    Director of Platform Operations

    VirtualVocationsLowell, Massachusetts, United States
    Full-time
    A company is looking for a Director of Platform Operations - Infrastructure.Responsibilities Lead global operations for core infrastructure platforms, ensuring performance, reliability, and secur...Show moreLast updated: 10 hours ago
    • Promoted
    Technology and Cybersecurity Risk Governance, Managing Director

    Technology and Cybersecurity Risk Governance, Managing Director

    State StreetQuincy, MA, US
    Full-time
    Technology and Cyber Risk Governance Leader.It is an exciting time to join State Street Corporation (SSC) in the Enterprise Technology Risk Management (ETRM) organization.ETRM is responsible for th...Show moreLast updated: 12 days ago
    • Promoted
    • New!
    Complex Claims Director, Cyber

    Complex Claims Director, Cyber

    National African-American Insurance Association (NAAIA)Boston, MA, United States
    Full-time
    A strategic and trusted insurance partner, Berkshire Hathaway Specialty Insurance (BHSI), provides a broad range of commercial property, casualty and specialty insurance coverages and outstanding s...Show moreLast updated: less than 1 hour ago
    • Promoted
    Licensed Mental Health Therapist (LCSW, LICSW, LMHC, LMFT) - North Scituate, MA

    Licensed Mental Health Therapist (LCSW, LICSW, LMHC, LMFT) - North Scituate, MA

    LifeStance HealthNorth Scituate, MA, US
    Full-time +1
    At LifeStance Health, we believe in a truly healthy society where mental and physical healthcare are unified to make lives better. Our mission is to help people lead healthier, more fulfilling lives...Show moreLast updated: 30+ days ago
    • Promoted
    Sanitation Manager - Third Shift

    Sanitation Manager - Third Shift

    88 acres food incCanton, MA, US
    Full-time
    Sanitation Manager &nbs...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Director, Technology Infrastructure and Security Operations

    Senior Director, Technology Infrastructure and Security Operations

    ArdelyxWaltham, MA, United States
    Full-time
    Ardelyx is a publicly traded commercial biopharmaceutical company founded with a mission to discover, develop and commercialize innovative first-in-class medicines that meet significant unmet medic...Show moreLast updated: 17 days ago
    • Promoted
    Director of Technology Platforms & Applications

    Director of Technology Platforms & Applications

    CooleyBoston, MA, United States
    Full-time
    Director of Technology Platforms & Applications.Cooley is seeking a Director of Technology Platforms & Applications to join the Technology Platforms and Applications team.The Director of Technology...Show moreLast updated: 1 day ago
    • Promoted
    Senior Principal Systems Engineer - I&T Lead Onsite

    Senior Principal Systems Engineer - I&T Lead Onsite

    RaytheonAndover, Massachusetts, United States of America
    Full-time
    MA600 : Andover, MA 366 Lowell St 366 Lowell Street , Andover, MA, 01810-5423 USA.Person, or Immigration Status Requirements : . At Raytheon, the foundation of everything we do is rooted in our values...Show moreLast updated: 8 days ago
    • Promoted
    Psychiatric Nurse Practitioner (PMHNP) - Greenbush, MA

    Psychiatric Nurse Practitioner (PMHNP) - Greenbush, MA

    LifeStance HealthGreenbush, MA, US
    Full-time +1
    At LifeStance Health, we believe in a truly healthy society where mental and physical healthcare are unified to make lives better. Our mission is to help people lead healthier, more fulfilling lives...Show moreLast updated: 30+ days ago
    • Promoted
    Third-Party Risk Assurance Senior

    Third-Party Risk Assurance Senior

    VirtualVocationsDorchester, Massachusetts, United States
    Full-time
    A company is looking for a Third-Party Risk Assurance Senior.Key Responsibilities Lead and execute SOC 1, SOC 2, and related security readiness and audit engagements Evaluate and test informatio...Show moreLast updated: 1 day ago
    • Promoted
    Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA)

    Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA)

    Insulet Corporation, MA, United States
    Full-time
    Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA) page is loaded## Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA)locations : San Diego, California : Act...Show moreLast updated: 13 days ago
    • Promoted
    Director, Digital Platform Partnerships

    Director, Digital Platform Partnerships

    NESN LTDWatertown, MA, US
    Full-time
    Reporting to the Chief Marketing Officer, this individual will drive relationships with key partners across the digital, tech, and sports ecosystem. More specifically, this individual would lead rel...Show moreLast updated: 2 days ago
    • Promoted
    Director, Strategic Sourcing Enterprise Third-party Risk Process & Governance

    Director, Strategic Sourcing Enterprise Third-party Risk Process & Governance

    VertexBoston, MA, US
    Full-time
    Director, Strategic Sourcing Enterprise Third-Party Risk Process & Governance.As a key Team Manager and leader in the Strategic Sourcing function, the Director, Strategic Sourcing Enterprise Third-...Show moreLast updated: 20 days ago
    • Promoted
    Remote Finance Director - AI Trainer

    Remote Finance Director - AI Trainer

    Data AnnotationPawtucket, Rhode Island
    Remote
    Full-time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the q...Show moreLast updated: 28 days ago
    • Promoted
    Director of Software Engineering

    Director of Software Engineering

    CDS VisualWatertown, MA, United States
    Full-time
    CDS Visual, a Dover operating company, enables manufacturers to drive business value by unlocking their CAD assets to deliver dynamic interactive visual experiences that support the complete custom...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Director, Classified IT & Information Assurance

    Director, Classified IT & Information Assurance

    Draper LabsCambridge, MA, United States
    Full-time
    Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA.The 2,000+ employees of Draper tackle important national challenges with a promise of delivering ...Show moreLast updated: 20 hours ago