Senior Manager, Cyber Strategy and Risk Advisory, TPRM
AI summary of the role
Senior Manager role in Kroll's Cyber Advisory practice, focused on Third-Party Risk Management (TPRM) and cyber risk advisory.
What you’ll do
- Lead delivery of TPRM and managed TPRM engagements across industries
- Design and optimize TPRM operating models, governance, and risk-tiering methodologies
- Conduct cyber risk assessments, due diligence for M&A, and framework-based evaluations
- Develop executive reporting, KRIs, and dashboards translating technical findings to business impact
What you’ll bring
- Significant experience in cybersecurity consulting, TPRM, or technology risk advisory
- Experience designing, implementing, or managing TPRM programs and managed services
- Working knowledge of NIST CSF, ISO 27001, CIS Controls, SOC 2, NYDFS, and other regulations
- Experience leading project teams and mentoring junior staff
Technologies
ServiceNow · Archer · OneTrust · ProcessUnity · Panorays · Black Kite · BitSight · Interos.AI · NIST CSF · ISO 27001 · CIS Controls · SOC 2
Source and classification
Deployment team leadership · Evidence for this classification:
design, transactional due-diligence, data-driven framework design and assessments, expert testimony, privacy program building and a myriad of other advisory efforts. Kroll's Cyber Advisory practice is seeking a Senior Manager to support the continued growth of our Cyber Advisory business, with a primary focus on Third-Party Risk Management (TPRM), cyber risk assessments, governance, resilience, and security program advisory services. The successful candidate will be a trusted advisor to clients, leading TPRM and cyber risk engagements, supporting executive stakeholders, delivering high-quality advisory services, and helping clients strengthen their security posture, resilience, and regulatory readiness. This role combines client delivery, project leadership, people management, service development and business development support within Kroll's broader Cyber Advisory practice.
More from the job description
In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answers - in all areas of business. We value the diverse backgrounds and perspectives that enable us to think globally. As part of One team, One Kroll, you’ll contribute to a supportive and collaborative work environment that empowers you to excel. Through a combination of subject matter expertise, global research capabilities and flexible technology tools, Kroll helps clients take a risk-based approach toward meeting obligations or remediating failures regarding cybersecurity, privacy program maturity and related regulatory mandates. Our engagements include Virtual CISO, regulatory and compliance assessments, strategies and security program design, transactional due-diligence, data-driven framework design and assessments, expert testimony, privacy program building and a myriad of other advisory efforts. Kroll's Cyber Advisory practice is seeking a Senior Manager to support the continued growth of our Cyber Advisory business, with a primary focus on Third-Party Risk Management (TPRM), cyber risk assessments, governance, resilience, and security program advisory services. The successful candidate will be a trusted advisor to clients, lea [... source excerpt omitted ...] executive stakeholders, delivering high-quality advisory services, and helping clients strengthen their security posture, resilience, and regulatory readiness. This role combines client delivery, project leadership, people management, service development and business development support within Kroll's broader Cyber Advisory practice. RESPONSIBILITIES: Kroll’s Cyber Risk team works on over 3,000 cases a year, including some of the most complex and highest profile matters in the world. With experts based around the world, supported by ground-breaking technology, we help protect our client’s data, people, operations and reputation with innovative assessments, investigations and [... source excerpt omitted ...] lience. We are looking for bright, inquisitive minds who are experienced in and passionate about cybersecurity consulting and advisory services. Our Advisory team responds to our clients’ needs and provide leadership and strategic guidance when and where it is needed the most. Own delivery and operational performance for managed TPRM programs, including assessment throughput, service level adherence, quality assurance, remediation tracking, client satisfaction, and continuous improvement initiatives. Support the delivery of high-quality cybersecurity consulting advice and services to a portfolio of clients of varying sectors, size, scope, and complexity. Lead delivery of cy
Employer postings · Data from · Sources