Varo Bank Logo

Varo Bank

Third Party Risk Manager

Posted 3 Days Ago
Be an Early Applicant
In-Office or Remote
9 Locations
100K-150K Annually
Senior level
In-Office or Remote
9 Locations
100K-150K Annually
Senior level
The Third Party Risk Manager oversees the evaluation and management of third-party operational risks, ensuring adherence to policies, conducting risk assessments, and reporting to senior management.
The summary above was generated by AI
Varo is an entirely new kind of bank. All digital, mission-driven, FDIC insured and designed for the way our customers live their lives. A bank for all of us.

Varo is building out a world-class Third Party Risk Management (TPRM) team as part of the second line of defense. The TPRM Manager is a critical role at Varo and will be responsible for evaluating and managing third-party operational risks. The TPRM Manager will carry out ongoing reviews of all third parties, identify risks and requirements, and challenge and monitor third parties’ ability to perform within risk appetite.  This role will be acting as the liaison with first-line teams in order to enhance end to end business processes to maximize efficiencies and vendor oversight.

What you'll be doing

  • Manage and enhance Varo’s Third-Party Risk Management Framework to ensure it meets regulatory expectations and Varo’s risk appetite
  • Define and meet SLA expectations for Third Party Risk Assessments, vendor onboarding, proof of concept periods, and retirement
  • Oversee the implementation and adherence to Varo’s policy and procedures regarding third-party risk management, including training internal departments on requirements and managing third-party service providers/vendors on an ongoing basis
  • Collaborate with internal stakeholders to establish and maintain a comprehensive inventory of third-party relationships, applications, and associated risks
  • Work closely with all Varo departments and internal risk groups that are seeking third-party services/vendor relationships to assure that appropriate risk assessment and due diligence are conducted for any new third-party service
  • Collaborate with internal technology and security teams to develop incident response plans and procedures for addressing cybersecurity incidents involving third parties
  • Prepare and present comprehensive reports and recommendations to senior management regarding third-party risk exposures and mitigation strategies through performance assessments 
  • Partner with internal budget owners to deliver against budgets and work with appropriate stakeholders on contract negotiations for all managed third-party relationships
  • Track compliance with Varo’s third-party policies and procedures, analyze and report on any gaps, and provide recommendations for remediation of such gaps
  • Develop dashboard presentations and reports, and provide periodic updates to various Risk Committees on the status of the third-party risk management program
  • Act as TPRM Lead in any Regulatory and audit matters, including exams and meetings

You'll bring the following required skills and experiences

  • 5-7 years of leading third-party risk management experience with a financial institution, a fintech company, or a provider to the financial services business sector
  • Risk assessment and due diligence experience with a particular focus on identifying risks and identifying and implementing solutions to remediate these gaps
  • Ability to conduct and report on testing of applicable controls that are in place regarding third-party service providers
  • Experience designing systems and workflows that support effective prioritization of monitoring Third Parties and work for the team
  • Previous experience reporting to senior management, the Board, and/or Committees of the Board on the status of third-party risk management efforts
  • Experience implementing Third Party Management requirements to comply with various regulatory requirements and industry best practices
  • Knowledge of Business Continuity, Disaster Recovery, NIST CSF, PCI DSS compliance, SOC 2 Type 2, etc.
  • Experience with RSA Archer or similar GRC tools

We recognize not everyone will have all of these requirements. If you meet most of the criteria above and you’re excited about the opportunity and willing to learn, we’d love to hear from you!

About Varo
Varo launched in 2017 with the vision to bring the best of fintech into the regulated banking system. We’re a new kind of bank – all-digital, mission-driven, FDIC-insured, and designed around the modern American consumer. 

As the first consumer fintech to be granted a national bank charter in 2020, we make financial inclusion and opportunity for all a reality by empowering everyone with the products, insights, and support they need to get ahead. Through our core product offerings and suite of customer-first features, we aim to address a broad range of consumer needs while profitably serving underserved communities that have been historically excluded from the traditional financial system.

Learn more about Varo by following us:
Facebook - https://www.facebook.com/varomoney
Instagram - www.instagram.com/varobank
LinkedIn - https://www.linkedin.com/company/varobank

Varo is an equal opportunity employer. Varo embraces diversity and we are committed to building teams that represent a variety of backgrounds, perspectives, and skills. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.

Beware of fraudulent job postings!
Varo will never ask for payment to process documents, refer you to a third party to process applications or visas, or ask you to pay costs. Never send money to anyone suggesting they can provide work with Varo.  If you suspect you have received a phony offer, please e-mail [email protected] with the pertinent information and contact information.

CCPA Notice at Collection for California Employees and Applicants:
https://www.varomoney.com/privacy-legal/

Top Skills

Grc Tools
Nist Csf
Pci Dss Compliance
Rsa Archer
Soc 2 Type 2

Similar Jobs

5 Days Ago
Remote or Hybrid
USA
108K-120K
Mid level
108K-120K
Mid level
Fintech • Software
Manage the Third-Party Risk Management program at Octane, overseeing vendor relationships, ensuring compliance, and enhancing risk mitigation strategies.
Top Skills: ExcelPowerPoint
An Hour Ago
Remote or Hybrid
United States
80K-95K Annually
Senior level
80K-95K Annually
Senior level
Fintech • Marketing Tech • Professional Services • Financial Services
The Senior Accountant will manage month-end closing, prepare financial reports, ensure GAAP compliance, and support audits and financial analysis.
Top Skills: ExcelMS OfficeOracleOracle Fusion
An Hour Ago
Remote or Hybrid
USA
45K-138K
Junior
45K-138K
Junior
Machine Learning • Payments • Security • Software • Financial Services
Develop and implement software solutions, conduct testing, maintain and debug software, while ensuring customer satisfaction and risk management.
Top Skills: Software DevelopmentTechnical Documentation

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account