SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
iCapital seeks an experienced cybersecurity risk professional to serve as Assistant Vice President, Third-Party Risk & Client Assurance Manager. This role leads a team of approximately five professionals across two complementary cybersecurity risk functions: Third-Party Risk Management (TPRM) and Client Assurance.
The ideal candidate is a hands-on leader who can effectively manage, mentor, and develop team members while possessing the technical knowledge and practical experience to perform either function when needed. Key responsibilities include leading and mentoring the team, providing day-to-day direction and coaching, establishing clear expectations and accountability, reviewing team deliverables for accuracy and completeness, serving as an escalation point for complex assessments and client inquiries, and maintaining the ability to work directly on assessments when business needs require.
Additional responsibilities encompass identifying process improvement opportunities, developing metrics and reporting to communicate workload, performance, and program effectiveness to management, and supporting the organization's clients and prospective clients with timely, accurate responses to cybersecurity due diligence requests while ensuring third-party vendor risks are appropriately identified, assessed, documented, and escalated.
Required qualifications include 10+ years of relevant professional experience in cybersecurity, information security risk management, technology risk, TPRM, client assurance, or related disciplines. Candidates must demonstrate experience completing or reviewing cybersecurity due diligence questionnaires, performing vendor cybersecurity risk assessments, and leading or mentoring cybersecurity or risk professionals. Strong working knowledge of cybersecurity controls (IAM, vulnerability management, incident response, data protection, cloud security, etc.), experience reviewing assurance documentation (SOC 1/2, ISO 27001, penetration testing reports), excellent analytical and written communication skills, and the ability to manage multiple concurrent priorities in a fast-paced environment are essential.