(USA) Principal, Risk Expert - External Party Risk Management jobs in United States
cer-icon
Apply on Employer Site
company-logo

Walmart Canada · 13 hours ago

(USA) Principal, Risk Expert - External Party Risk Management

Walmart Canada is seeking a Principal, Risk Expert to lead the External Party Risk Management program. This role involves operational leadership, mentoring analysts, and ensuring effective execution of risk assessments and monitoring, while collaborating with global teams to enhance risk tools and processes.

DeliveryRetailShopping

Responsibilities

Provide operational leadership for the External Party Risk Management program, ensuring effective execution of assessments, issue management, and ongoing monitoring
Serve as a subject matter expert in External Party Risk Management and the latest NIST Cybersecurity Framework, advising stakeholders and leadership on standards and expectations
Enable and mentor analysts through clear processes, training, tooling alignment, and performance expectations
Drive consistency and standardization across External Party Risk Management workflows, methodologies, and documentation
Establish and manage prioritization of work to align risk efforts with business needs, regulatory requirements, and risk appetite
Partners with engineering and development teams use Agile DevOps practices to support and enhance tools that enable External Party Risk Management processes
Apply working knowledge of full-stack technologies, including cloud platforms, APIs, microservices, and data integrations, to effectively collaborate with technical teams and influence solutions
Translate External Party Risk Management and NIST cybersecurity requirements into practical, scalable operational and technical requirements
Collaborate across Walmart Global Tech to align and streamline risk processes and eliminate duplication
Extend External Party Risk Management support globally, ensuring consistent application of standards and processes across regions
Build and maintain strong relationships with organizational verticals and leadership to deliver mission-critical risk data for strategic decision making at the speed of business
Support the evolution toward more continuous, data-informed risk monitoring through the use of aggregated assessment data, attestations, and external data sources
Define and track key metrics to measure program effectiveness, efficiency, and outcomes

Qualification

External Party Risk ManagementNIST Cybersecurity FrameworkAgile DevOpsFull-stack technologiesCISSP certificationCybersecurity risk experienceAnalyst enablementOperational leadershipProcess optimizationCommunication skills

Required

Master's degree in information security, Risk Management, Cybersecurity, or a related field
Active CISSP (Certified Information Systems Security Professional) certification
Experience in External Party Risk Management or Third-party risk management
Demonstrated experience applying NIST cybersecurity controls in risk assessments and monitoring activities
Demonstrated ability to partner effectively with engineering teams using Agile DevOps practices
Working knowledge of full-stack technologies sufficient to influence design, integration, and delivery decisions
Proven ability to scale and mature risk operations in a global environment
Option 1: Bachelor's degree in computer science, information technology, engineering, information systems, cybersecurity, or related area and 5 years' experience in cybersecurity risk or related area at a technology, retail, or data-driven company
Option 2: 7 years' experience in cybersecurity risk or related area at a technology, retail, or data-driven company

Preferred

Certification in Security+, GISF, GSEC, CISA, CISSP, CCSP, or CISM
Master's degree in computer science, information technology, engineering, information systems, cybersecurity or related area and 3 years' experience leading information security or cybersecurity projects
Knowledge in implementing Web Content Accessibility Guidelines (WCAG) 2.2 AA standards, assistive technologies, and integrating digital accessibility seamlessly
Knowledge of accessibility best practices

Benefits

Health benefits include medical, vision and dental coverage.
Financial benefits include 401(k), stock purchase and company-paid life insurance.
Paid time off benefits include PTO (including sick leave), parental leave, family care leave, bereavement, jury duty, and voting.
Other benefits include short-term and long-term disability, company discounts, Military Leave Pay, adoption and surrogacy expense reimbursement, and more.
Live Better U is a Walmart-paid education benefit program for full-time and part-time associates in Walmart and Sam's Club facilities.

Company

Walmart Canada

company-logo
Walmart Canada is a subsidiary of Walmart that operates a chain of more than 400 stores nationwide. It is a sub-organization of Walmart.