Client Assurance & TPRM Manager - Assistant Vice President
About the Role
iCapital is seeking an experienced cybersecurity risk professional to serve as Assistant Vice President, Third-Party Risk & Client Assurance Manager. This individual will lead a team of approximately five professionals across two complementary cybersecurity risk functions: Third-Party Risk Management (TPRM) and Client Assurance.
The ideal candidate will be a hands-on leader who can effectively manage, mentor, and develop team members while also possessing the technical knowledge and practical experience necessary to perform the work of either function, when needed. This role requires strong cybersecurity risk assessment skills, excellent written and verbal communication, sound judgment, and the ability to manage competing priorities and relationships with internal stakeholders, third-party vendors, clients and prospective clients.
This individual will be responsible for supporting organization's clients and prospective clients by providing timely, accurate, and consistent responses to cybersecurity due diligence and assurance requests while also ensuring that third-party (vendor) cybersecurity risks are appropriately identified, assessed, documented, and escalated.
Responsibilities
- Lead, manage, and mentor a team of approximately five professionals supporting Third-Party Risk and Client Assurance activities.
- Provide day-to-day directions, coaching, technical guidance, and professional development to team members.
- Establish clear expectations, priorities, and accountability across both functions.
- Review team deliverables to ensure assessments and client responses are accurate, complete, consistent, and appropriately supported.
- Serve as an escalation point for complex cybersecurity risk assessments, client inquiries, vendor issues, and competing business priorities.
- Maintain the ability to work directly on assessments and client assurance requests when workload, complexity, or business needs require additional support.
- Identify opportunities to improve team processes, documentation, quality, efficiency, and scalability.
- Develop and monitor appropriate metrics and reporting to communicate workload, performance, risk trends, and program effectiveness to management.
Qualifications
- 10 years of relevant professional experience, with significant experience in cybersecurity, information security risk management, technology risk, third-party risk management, client assurance, or related disciplines
- Demonstrated experience completing or reviewing cybersecurity due diligence questionnaires and responding to client or customer security inquiries
- Demonstrated experience performing cybersecurity risk assessments of third-party vendors
- Prior experience leading, mentoring, or managing cybersecurity, risk, or assurance professionals
- Able to manage multiple concurrent assessments, client requests, deadlines, and priorities in a fast-paced environment
- Ability to operate effectively, including independently managing responsibilities, exercising sound judgment, influencing stakeholders, and escalating material issues appropriately
- Strong working knowledge of cybersecurity controls and concepts, including identity and access management, vulnerability and patch management, security monitoring and incident response, data protection and encryption, network and infrastructure security, cloud security, secure software development, business continuity and disaster recovery, and security governance and risk management
- Experience reviewing cybersecurity assurance documentation such as SOC 1/SOC 2 reports, ISO 27001 certifications, penetration testing reports, security policies, and related control evidence
- Strong analytical skills and the ability to distinguish meaningful cybersecurity risks from lower-impact observations
- Excellent written communication skills, including the ability to translate complex technical concepts into clear, concise language appropriate for clients, vendors, business stakeholders, and senior management
- Strong interpersonal skills and the ability to work effectively with both technical and non-technical stakeholders
- Bachelor's degree in cybersecurity, information technology, computer science, risk management, or related discipline, or equivalent professional experience is preferred and master’s degree in the same is a plus
- Relevant professional certifications such as CISSP, CISM, CRISC, CISA, or equivalent is a plus
- Experience within financial services or another highly regulated industry is a plus
- Experience with third-party risk management, GRC, questionnaire automation, or client assurance platforms is a plus
- Experience developing metrics, reporting, procedures, and governance processes for cybersecurity risk or assurance programs is a plus
Benefits
The base salary range for this role is $100,000 to $140,000. iCapital offers a compensation package which includes salary, equity for all full-time employees, and an annual performance bonus.
Employees also receive a comprehensive benefits package that includes an employer matched retirement plan, generously subsidized healthcare with 100% employer paid dental, vision, telemedicine, and virtual mental health counseling, parental leave, and unlimited paid time off (PTO).
We believe the best ideas and innovation happen when we are together. Employees in this role will work in the office Monday-Thursday, with the flexibility to work remotely on Friday.
For additional information on iCapital, please visit
Twitter: @icapitalnetwork | LinkedIn: https://www.linkedin.com/company/icapital-network-inc | Awards Disclaimer: https://www.icapitalnetwork.com/about-us/recognition/
iCapital is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender, sexual orientation, gender identity, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
As published by greenhouse
First Name, Last Name, Email, Phone, Resume/CV, Cover Letter, Location
- Preferred First Name
- What is your LinkedIn profile URL? If applicable, please share the link. optional
- What is your personal website or online portfolio? If applicable, please share the link. optional
- What is your full legal name?
- Are you legally eligible to work in the country where this role is located? choose one
- What is your desired base salary expectation? Please specify the amount and currency.
- What is your desired total annual compensation when considering an equity award? Please specify the amount and currency.
- How did you hear about this job? choose one
- If "Employee Referral" was selected for "How did you hear about this job?" please type the full name of the referring employee. If not, please type in "N/A".
- Are you subject to any form of Garden Leave or a Non-Compete Agreement? If yes, please provide detail below.
- iCapital is an office-first culture, as such all employees are required to work in the office Monday-Thursday, with the flexibility to work remotely on Friday, depending on the department. Please review the job description before applying, to identify the specified location/s for the role. choose any
- Do you currently require any type of visa sponsorship for employment? choose one
- Do you require any type of visa sponsorship for employment in the future (i.e. student visa transfer to H1B, etc)? choose one
- What is your desired bonus expectation? Please specify the amount and currency.
- What forms of deferred compensation do you currently have (e.g., unpaid or deferred bonus, equity, or other long‑term incentive plans)? Please provide as much detail as possible. If no form of deferred compensation exists, please input N/A for this question. written answer