Security Risk Management Specialist
Location: Remote
Compensation: To Be Discussed
Reviewed: Tue, Aug 18, 2026
This job expires in: 16 days
Job Summary
To support the scaling of Affirm's Third Party Risk Management program, a remote full-time Security Risk Management Specialist will evaluate third-party security assessments, automate governance workflows using modern coding tools, and collaborate with cross-functional teams to enhance security governance.
Key responsibilities
- Conduct third-party security assessments, reviewing vendor questionnaires and documenting risk findings
- Build and maintain automation to improve efficiency in governance, risk, and compliance workflows
- Partner with various departments to execute third-party risk reviews and develop reporting metrics
Required qualifications
- 3+ years of experience in Information Security, Risk Management, Compliance, or a related field
- Familiarity with agentic coding tools and working knowledge of Python for automation
- Experience with cloud environments (AWS, GCP, or Azure) and common cloud security concepts
- Knowledge of security frameworks and standards such as NIST, ISO 27001, SOC 2, and PCI DSS
- Professional certification such as CISSP, CISM, CISA, or CRISC, or equivalent practical experience
Complete Job Description
The complete job description is available to members. Premium membership includes:
Full access to 45,346 remote jobs from human-vetted companies, updated daily
Resume Builder - AI-powered tool to craft, enhance, and tailor your resume to a specific job
Twice-monthly live group coaching and the full Remote Career Center
20% member discount on Career Services
Backed by a 30-day money-back guarantee