AF

Senior Manager, Security Risk Management

affirm· 172 open roles

Remote RemoteFull-time3 weeks ago
Salary
$250,000 - $300,000
Experience
Mid
Job Type
Full-time
Posted
3 weeks ago
Apply Now

Get more other jobs in your inbox

Verified daily — no ghost listings.

About This RoleAI processing…

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.

Key Responsibilities

  • 1
    Lead the Security TPRM function across vendor lifecycle: intake/onboarding, due diligence (IRQ/DDQ/SME reviews), contracting handoffs, ongoing monitoring, periodic reviews, and offboarding.
  • 2
    Ensure robust fourth-party oversight, including subprocessors, and manage remediation/QA cycles driven by Internal Audit and regulators.
  • 3
    Oversee high-risk vendor decisions and escalations; establish clear RACI for partnership contracts and security acceptance criteria.

Requirements

  • 7+ years in information security, risk management, or GRC roles, with a minimum of 3 years managing teams (or equivalent leadership experience).
  • Demonstrated ownership of a TPRM program or security governance program in a regulated or high-growth technology environment (fintech preferred).
  • Strong knowledge of security frameworks (NIST, ISO), compliance standards (SOC2, PCI), and vendor risk processes (IRQ/DDQ/SME assessments).
  • Hands-on familiarity with TPRM/GRC tooling and observability: AuditBoard (or equivalent), Jira, BI tools (Sigma/Tableau/Looker), and experience with integrations/APIs.
  • Excellent stakeholder management across legal, procurement, engineering, product, and executive leadership.
  • Proven experience translating audit findings into operational remediation plans and measurable outcomes.
  • Strong communication skills — able to present risk to technical and non-technical audiences and to influence decisions.
  • Certifications such as CISSP, CISM, CRISC, or similar.
  • Practical experience with threat-modeling approaches and third-party integration security (API, SSO/OAuth/SAML, TLS).
  • Experience scaling automation for GRC/TPRM programs and integrating security checks into CI/CD pipelines.
  • Prior experience in fintech or highly regulated industries.
  • Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
  • Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
  • Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
  • ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount

Perks & Benefits

Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
Pay Grade - Q Equity Grade - 10 Employees new to Affirm typically come in at the start of the pay range.

Apply to This Job in Minutes

Generate ATS-optimized resume + cover letter + interview prep with Jobease.ca AI. Complete your application faster.

Get Started Free

Similar Jobs

AS

Business Development Representative

asanaRemote
View
RE

Creative Strategist - Pharma

redditRemote
View
RE

Analytics Engineer

redditRemote
View