Bloomberg's Chief Risk Office (CRO) is seeking a Third Party Risk Oversight Lead to drive the design, implementation, and continuous improvement of Bloomberg's third-party risk framework. This role requires a strategic mindset, deep subject matter expertise, and the ability to translate complex risk concepts into actionable guidance for operational teams.
Requirements
- Bachelor's or Master's degree in Risk Management, Information Security, Business Administration, or equivalent industry experience
- Extensive experience in Risk Management, Information Security, Technology Audit, or related fields
- Strong understanding of third-party risk management principles and lifecycle processes
- Familiarity with key frameworks (NIST 800-53, ISO/IEC 27001/2, COBIT, HITRUST, PCI DSS, CSA, CIS CSC)
- Deep knowledge of Data Privacy regulations (GDPR, CCPA, HIPAA) and operational resilience regulations (DORA)
- Experience designing or implementing risk frameworks, governance models, or control standards
- Excellent written and verbal communication skills, including the ability to influence and advise senior stakeholders
- Industry certifications (CISSP, CISA, CISM, CTPRP, CIPT/CIPP, GIAC, etc.)
Benefits
- Paid holidays
- Paid time off
- Medical
- Dental
- Vision
- Short and long term disability benefits
- 401(k) +match
- Life insurance
- Wellness programs