Cyber Security Operations Manager Manager

9 hours ago


Noida, India R1 RCM Full time

R1 is a leading provider of technology-driven solutions that help hospitals and health systems to manage their financial systems and improve patients’ experience. R1 is a place where we think boldly to create opportunities for everyone to innovate and grow. A place where we partner with purpose through transparency and inclusion. We are a global community of engineers, front-line associates, healthcare operators, and RCM experts that work together to go beyond for all those we serve. This is our second consecutive recognition on this prestigious Best Workplaces list, building on the Top 50 recognition we achieved in 2023. Our focus on employee wellbeing and inclusion and diversity is demonstrated through prestigious recognitions with R1 India being ranked amongst Best in Healthcare, Top 100 Best Companies for Women by Avtar & Seramount, and amongst Top 10 Best Workplaces in Health & Wellness. We are committed to transform the healthcare industry with our innovative revenue cycle management services. Our goal is to ‘make healthcare work better for all’ by enabling efficiency for healthcare systems, hospitals, and physician practices. Manager – Cybersecurity (Third-Party Cyber Risk Management) Shift Timing: 2 PM to 11 PM We are seeking an experienced Sr. Manager – Third party Cyber Risk Management to lead our Third-party Cybersecurity risk and governance efforts for India/Philippines market of R1 RCM. The Senior Manager – Third-Party Cyber Risk Management is responsible for leading and executing the organization’s cybersecurity oversight of vendors, suppliers, partners, and other external entities. This role ensures that all third-party relationships align with enterprise security policies, regulatory obligations, and risk tolerance levels. The individual will own the third-party risk management (TPRM) lifecycle — from onboarding and due diligence to continuous monitoring and remediation — and will serve as the subject matter expert on vendor security governance. Design, implement, and mature the Third-Party Cyber Risk Management Program aligned with frameworks such as NIST CSF, ISO 27001, HIPAA, CIS Controls, and SOC2. Develop and maintain policies, standards, and procedures governing vendor security due diligence, onboarding, monitoring, and offboarding. Lead governance committees or working groups to discuss vendor risk posture, key issues, and remediation progress with business, procurement, and legal teams. Define and track Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs) for vendor risk and present them to leadership and risk committees. Vendor Risk Assessment & Due Diligence Oversee end-to-end third-party risk assessments including questionnaires, evidence review, and validation of security controls. Manage inherent and residual risk scoring models to prioritize vendors based on business impact and data sensitivity . Perform or oversee onsite or virtual vendor audits for high-risk vendors and ensure timely closure of identified gaps. Work closely with Procurement and Legal to integrate cybersecurity clauses and right-to-audit provisions in vendor contracts. Continuous monitoring and remediation: Implement and manage continuous monitoring tools and processes (e.g., Coordinate periodic reassessments of critical and high-risk vendors to verify ongoing compliance. Manage escalation processes for non-compliant or high-risk vendors , including executive reporting and remediation oversight. Partner with Business Units, Procurement, Legal, Privacy, and IT Security teams to ensure security risk is addressed in all third-party engagements. Collaborate with Legal, Compliance to support external audits and regulatory reviews involving third-party risk. Maintain a vendor risk register and ensure accurate documentation of risk decisions, exceptions, and compensating controls. Prepare executive dashboards and periodic reports summarizing vendor risk trends, findings, and remediation status. Support board-level reporting on supply chain and vendor cyber risks. Experience, Skills & Knowledge :- ~7-10 years of total experience in information security, risk, or compliance roles. ~ At least 5+ years of direct experience in third-party or vendor cyber risk management. ~ Strong understanding of supply chain security, cloud vendor assessments, data privacy, and regulatory compliance (HIPAA, PCI DSS, GDPR, etc.). ~ Experience using GRC and vendor risk management platforms (e.g., Proven track record of leading remediation governance and cross-functional collaboration across business, IT, and legal teamsProven experience managing third-party cybersecurity risk and audit programs at scale. ~ Excellent communication skills, with ability to interface with clients, vendors, operational, legal, and IT leadership. Certified Information Security Manager (CISM) Certified in Risk and Information Systems Control (CRISC)



  • Noida, India R1 RCM Full time

    R1 is a leading provider of technology-driven solutions that help hospitals and health systems to manage their financial systems and improve patients’ experience. We are the one company that combines the deep expertise of a global workforce of revenue cycle professionals with the industry's most advanced technology platform, encompassing sophisticated...

  • Cyber Security Manager

    10 hours ago


    Noida, India R1 RCM Full time

    R1 is a leading provider of technology-driven solutions that help hospitals and health systems to manage their financial systems and improve patients’ experience. We are the one company that combines the deep expertise of a global workforce of revenue cycle professionals with the industry's most advanced technology platform, encompassing sophisticated...


  • Noida, India R1 RCM Full time

    R1 is a leading provider of technology-driven solutions that help hospitals and health systems to manage their financial systems and improve patients’ experience. We are the one company that combines the deep expertise of a global workforce of revenue cycle professionals with the industry's most advanced technology platform, encompassing sophisticated...


  • Noida, India R1 RCM Full time

    R1 is a leading provider of technology-driven solutions that help hospitals and health systems to manage their financial systems and improve patients’ experience. We are the one company that combines the deep expertise of a global workforce of revenue cycle professionals with the industry's most advanced technology platform, encompassing sophisticated...


  • Noida, Uttar Pradesh, India DIEVAS Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Company DescriptionDievas Technologies, founded in 2016, is a leading Managed Security Service Provider (MSSP) with a global footprint including the USA, Netherlands, Australia, and India. Our mission is to provide unparalleled Cyber Security Services that protect organizations from evolving threats. We specialize in services such as Cyber Security...


  • Noida, India Seccure Operations & AI Pvt. Ltd. Full time

    Company Description SECCURE Operations & AI Pvt. Ltd. is a next-generation cybersecurity and digital forensic command center that combines advanced technologies with deep domain expertise to protect digital ecosystems. Backed by over 15 years of cybersecurity and digital forensic experience and more than 4,000 successful global engagements, SECCURE's highly...


  • Noida, Uttar Pradesh, India R1 RCM Global Private Limited (Formerly known as A Full time ₹ 15,00,000 - ₹ 30,00,000 per year

    Position Summary : We are seeking an experienced Sr. Manager Third party Cyber Risk Management to lead our Third-party Cybersecurity risk and governance efforts for India/Philippines market of R1 RCM. The Senior Manager Third-Party Cyber Risk Management is responsible for leading and executing the organizations cybersecurity oversight of vendors,...


  • Noida, Uttar Pradesh, India GE VERNOVA Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    **Summary****As a Cyber Security Engineer at GE Vernova Grid Solutions, you will play a crucial role in designing, implementing, and optimizing the cybersecurity requirement for EHV/HV substations (AIS/GIS/HVDC/FACTS/STATCOM/Onshore/Offshore/Renewable/etc.,) considering the safety/quality/Cost/time delivery criteria. In this role, you will be reporting...

  • Senior Manager

    3 weeks ago


    Noida, India Iris Software Inc. Full time

    Primary Responsibilities: Create, implement, and maintain an enterprise cybersecurity strategy and IT risk management program by implementing technology, policy, and process-based solutions. Implement and manage Security Operations Centre (SOC), while driving the effective implementation of various security technology solutions in multi-tenant environment...

  • Senior Manager

    3 weeks ago


    Noida, India Iris Software Inc. Full time

    Primary Responsibilities:- Create, implement, and maintain an enterprise cybersecurity strategy and IT risk management program by implementing technology, policy, and process-based solutions.- Implement and manage Security Operations Centre (SOC), while driving the effective implementation of various security technology solutions in multi-tenant environment...