<div class="content-intro"><p>RxSense is a leading healthcare technology company delivering innovative solutions for pharmacy benefits and prescription savings. Our enterprise platform brings transparency, flexibility, and efficiency to pharmacy benefit management, helping clients streamline operations and enabling consumers to save on prescriptions. By integrating intelligence across the pharmacy ecosystem, RxSense makes cost-effective healthcare more accessible. Whether for PBMs, pharmacies, or individuals, our solutions help modernize operations, reduce costs, and improve outcomes. </p><p>RxSense also owns and operates <a href="https://www.singlecare.com/">SingleCare</a>, a free prescription savings service that offers consumers access to consistently low prices on prescription drugs. Through its partnerships with the country’s largest pharmacies and grocers, including CVS, Walgreens, Walmart, Kroger and Albertsons, SingleCare improves access and adherence to affordable medications and has helped millions of Americans save over $11 billion on their medications. </p><p>RxSense is a great place to work! Our company has earned several prestigious awards, including Fast Company’s Most Innovative Companies, Forbes’ Top Startup Employers, Modern Healthcare's Best Places to Work in Healthcare, and Inc’s Best in Business and Best Workplaces.</p></div><p><strong>Position Summary:</strong></p><p>We are seeking a highly motivated and self-driven Third-Party Risk Management Specialist with a strong background in Third-Party Risk Management (TPRM) to join our Information Security team. This role will play a key part in our Governance, Risk, and Compliance (GRC) function, with a specific focus on TPRM. The ideal candidate will have a passion for information security and risk reduction, as well as experience working with industry-standard frameworks.</p><p>As a member of the Information Security team, you will play an important role in safeguarding the privacy, confidentiality, integrity, and availability of information and systems across the organization. Your primary focus will be conducting vendor assessments and identifying third-party risks and recommending appropriate mitigation strategies. Must be aware of and comply with all aspects of the RxSense Information Security Program and the policies contained therein. Must always understand the importance of maintaining Information Security.</p><p> </p><p><strong>Responsibilities:</strong></p><ul><li>Lead and manage third-party risk assessments, ensuring vendors meet security and compliance standards</li><li>Evaluate and monitor third-party controls to identify potential risks and recommend mitigation strategies</li><li>Collaborate with legal, IT and business units to align vendor onboarding and risk processes</li><li>Maintain compliance with SOC1, SOC2, HIPAA, HITRUST and ISO 27001</li><li>Assist in the development and maintenance of policies, procedures, and standards related to third-party security</li><li>Maintain inventory of third parties</li><li>Track remediation efforts for identified vendor risks and ensure timely resolution</li><li>Collaborate with the GRC Manager to continuously enhance and mature the TPRM Program</li><li>Support audits and compliance initiatives related to vendor management and security</li><li>Develop relationships within the team and across departments to encourage cooperation, communication, and respect</li></ul><p><strong>Requirements:</strong></p><ul><li>2 + plus year of experience with all aspects of TPRM</li><li>Must maintain a clean and presentable appearance and work environment for video calls</li><li>Excellent verbal and written communication skills</li><li>Customer service orientation (e.g., patience, positive customer-friendly attitude, active listening, empathy, professionalism, etc.)</li><li>Strong attention to detail</li><li>Ability to manage multiple responsibilities and competing priorities, constantly reprioritizing based on new information or shifting deadlines</li><li>Strong desire to learn new technologies, frameworks, and standards</li><li>Maintain current skills and strive to acquire new knowledge based on current industry trends</li><li>Highly motivated self-starter & independent worker who can produce high level results consistently with minimal supervision</li><li>Must work well in a team environment and participate in working meetings over Zoom (or equivalent)</li><li>Capable of analyzing data to evaluate risk and compliance</li><li>Ability to travel when required for audits</li></ul><p><strong>Education:</strong></p><ul><li>Bachelor’s degree or equivalent years of industry experience</li><li>Security Certifications a plus</li><li>Governance, Risk, and Compliance (GRC) experience a plus</li><li>Basic Knowledge of information security frameworks (e.g., ISO 27001, HITRUST, and SOC 2) and regulatory requirements such as HIPAA a plus</li></ul><p>Salary Range: 85,000 - 105,000</p><div class="content-conclusion"><p>RxSense believes that a diverse workforce is a more talented and productive workforce. As such, we are an Equal Opportunity and Affirmative Action employer. Our recruitment process is free from discriminatory hiring practices and all qualified applicants are considered for employment without regard to race, color, religion, sex, gender, sexual orientation, gender identity, ancestry, age, or national origin. Neither will qualified applicants be discriminated against on the basis of disability or protected veteran status. We believe in the strength of the collaboration, creativity and sense of community a diverse workforce brings. </p></div>