Talent.com
Director of Cyber Third-Party Assurance

Director of Cyber Third-Party Assurance

MassMutualBoston, MA, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Full-Time, Boston, Springfield

The Opportunity

As the Director of the Cyber Third-Party Assurance team you will work in a fast-paced, collaborative environment overseeing the onboarding and continuous monitoring of Mass Mutual’s third-parties. The Director of Cyber Third-Party Assurance (CTPA) leads the enterprise’s vendor and supplier cybersecurity risk management function. This role is responsible for ensuring that third-party engagements meet Mass Mutual’s cybersecurity standards and comply with regulatory expectations. The position manages a team responsible for four critical verticals : onboarding new vendors, conducting risk-based assessments of returned questionnaires, actively monitoring critical vendors through continuous oversight and managing third-party risk questionnaires received when Mass Mutual serves as a vendor. This role ensures that there is a consistent, risk-driven approach to protecting the enterprise from supplier-related cyber threats.

Key Responsibilities

  • Vendor Onboarding & Due Diligence : Oversee the vendor onboarding process, beginning with inherent risk assessments and tailored due diligence questionnaires. Lead the review of questionnaire responses, assign risk scores, and determine requirements for follow-up remediation or reassessment. Partner with Procurement, Legal, and Governance to ensure contract language reflects cyber requirements.
  • Ongoing Vendor Monitoring : Direct continuous monitoring of critical and high-risk vendors using third-party risk intelligence tools (e.g., RiskRecon). Oversee periodic reassessments based on vendor tier, risk exposure, and regulatory requirements. Ensure supplier vulnerabilities and incident notifications are addressed and escalated appropriately.
  • Third-Party Questionnaire Responses : Manage the function that responds to cybersecurity questionnaires MassMutual receives as a third party to other organizations. Ensure responses are accurate, consistent, and aligned with enterprise security posture and regulatory expectations.
  • Governance, Reporting & Stakeholder Engagement : Provide executive-level reporting on third-party cyber risk posture, metrics, and emerging risks. Align with Governance, Enterprise Risk Management, and Internal Audit to ensure defensible oversight. Partner with BISOs, platform engineering, and security control owners to ensure vendor cyber risk is accurately identified and managed.

The Team

The Cyber Third-Party Assurance (CTPA) team plays a critical role in protecting Mass Mutual’s enterprise by managing cyber and operational risks across its vast supplier ecosystem. This team serves as a strategic partner to the business, providing assurance that our vendors and SaaS providers maintain the highest standards of security, compliance, and resilience. Leveraging advanced tools and regulatory expertise, CTPA delivers proactive risk insights, drives remediation of control gaps, and strengthens the organization’s ability to meet stringent expectations from regulators, clients and the board.

The Impact

  • Protects the enterprise from supplier-related cyber threats and regulatory exposure.
  • Strengthens resilience through proactive risk identification, monitoring, and remediation.
  • Enhances vendor trust and reputation through a mature, transparent, and defensible third-party cyber risk program.
  • Provides leadership with actionable intelligence to inform decision-making.
  • Qualifications

  • Minimum Qualifications : Bachelor’s degree in information technology, Cyber Security, or a related field. 8+ years of experience in cybersecurity, including 4+ years in a leadership role focused on third-party risk management, or vendor assurance. Authorized to work in the US without requiring sponsorship now and in the future.
  • Ideal Qualifications : Knowledge of regulatory frameworks (NIST CSF 2.0, CRI Profile, etc.). Strong analytical skills for measuring program effectiveness and driving continuous improvement. Demonstrated experience in managing risk assessments, due diligence, and continuous monitoring processes. Familiarity with vendor risk intelligence platforms (e.g., RiskRecon) and GRC tools (e.g., Archer, Process Unity). Excellent communication and stakeholder engagement skills, including executive-level reporting. CISSP, CTPRP, or related certifications preferred.
  • MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need.

    #J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Director Assurance • Boston, MA, United States

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    IT Director

    IT Director

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for an IT Director to oversee IT operations and engineering work to ensure security, productivity, and compliance. Key Responsibilities Lead IT operations including endpoint m...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Associate Director IT Business Solutions

    Associate Director IT Business Solutions

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for an Associate Director IT, Tech Business Analysis.Key Responsibilities Supervise and mentor a team of Technical Business Analysts, fostering professional development Defi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Senior Director, Technology Infrastructure and Security Operations

    Senior Director, Technology Infrastructure and Security Operations

    ArdelyxWaltham, MA, United States
    serp_jobs.job_card.full_time
    Ardelyx is a publicly traded commercial biopharmaceutical company founded with a mission to discover, develop and commercialize innovative first-in-class medicines that meet significant unmet medic...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Director of Infrastructure Security

    Director of Infrastructure Security

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Director, Infrastructure Security Services.Key Responsibilities Lead the design and implementation of enterprise-wide security capabilities to protect critical IT asset...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity Development Associate

    Cybersecurity Development Associate

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity Development Program Associate, Remote.Key Responsibilities Participate in a 2-week bootcamp followed by a 24-month development program with multiple rotat...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Director of Technical Operations

    Director of Technical Operations

    VirtualVocationsDorchester, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Director of Technology Operations.Key Responsibilities Lead and develop a global team of Technical Operations Engineers, establishing a customer-centric culture Overse...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Program Integrity Vice President

    Program Integrity Vice President

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Vice President, Program Integrity.Key Responsibilities Oversee the overall Program Integrity Program, including payment recoveries and avoidance of inappropriate paymen...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Director, Clinical Quality Assurance

    Director, Clinical Quality Assurance

    EisaiAndover, MA, United States
    serp_jobs.job_card.full_time
    At Eisai, satisfying unmet medical needs and increasing the benefits healthcare provides to patients, their families, and caregivers is Eisai's human health care (hhc) mission.We're a growing pharm...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cybersecurity CDM Team Lead

    Cybersecurity CDM Team Lead

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Continuous Diagnostics and Mitigation (CDM) Team Lead.Key Responsibilities Lead and manage the Continuous Diagnostics and Mitigation (CDM) program to enhance agency sec...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity Vice President

    Cybersecurity Vice President

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a VP of Cybersecurity.Key Responsibilities Develop and execute the organization's cybersecurity strategy aligned with business objectives Oversee security operations, in...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Director of AI Adoption

    Director of AI Adoption

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Director of AI Adoption & Enablement.Key Responsibilities Scale adoption through AI tools, automation, and inventive practices Drive interaction and consumption-based ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Account Director

    Account Director

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for an Account Director, Turkey / Dubai.Key Responsibilities Identify and pursue new business opportunities through various channels Manage and grow key enterprise accounts, d...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Arizona Licensed Privacy Director

    Arizona Licensed Privacy Director

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Privacy Director to lead and manage its privacy program.Key Responsibilities Direct, implement, and maintain compliance programs, policies, and procedures related to pr...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Security Infrastructure Team Lead

    Security Infrastructure Team Lead

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Infrastructure Support Team Lead to provide technical leadership and oversight for enterprise cybersecurity operations. Key Responsibilities : Lead and mentor a ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Cybersecurity Director

    Cybersecurity Director

    VirtualVocationsDorchester, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Director of Cybersecurity.Key Responsibilities Drive the cybersecurity posture and practice across delivery and client engagements Own CMMC program delivery, including...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Third Party Risk Management Lead

    Third Party Risk Management Lead

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Manager - Third Party Risk Management Lead.Key Responsibilities : Act as a liaison between central TPRM governance and business unit TPRM leads Develop and maint...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Director of Application Development

    Director of Application Development

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Director of Application Development (Remote).Key Responsibilities Lead and manage application development teams, providing guidance and mentorship for successful projec...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Associate Director, Discovery IT Portfolio Lead

    Associate Director, Discovery IT Portfolio Lead

    EisaiCambridge, MA, United States
    serp_jobs.job_card.full_time
    At Eisai, satisfying unmet medical needs and increasing the benefits healthcare provides to patients, their families, and caregivers is Eisai's human health care (hhc) mission.We're a growing pharm...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Director of Identity Management

    Director of Identity Management

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Director of Identity.Key Responsibilities Own all aspects of the identity business, including product line growth strategy and driving field success Report bi-weekly t...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Senior Director of Integrated Solutions

    Senior Director of Integrated Solutions

    VirtualVocationsLowell, Massachusetts, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Director Integrated Solutions & Sales Engineering.Key Responsibilities Lead solution design and executive presentations for strategic clients, establishing metho...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours