Senior Analyst, Third Party Risk Management

Added
9 days ago
Type
Full time
Salary
Salary not provided

Related skills

gdpr iso 27001 servicenow pci dss soc 2
JobCopilot logo
Meet JobCopilot: Your Personal Al Job Hunter
Automatically Apply to Your Dream Jobs While You Sleep
Try it now →

📋 Description

  • Conduct security and risk assessments for new and existing vendors (SaaS, cloud, fintech, service
  • Evaluate vendor questionnaires and validate evidence (ISO 27001, SOC 2, PCI DSS, GDPR controls)
  • Perform inherent and residual risk scoring based on data sensitivity, access level, and vendor
  • Document risk findings and recommend remediation actions
  • Review security documentation including policies, architecture diagrams, pen test summaries, and
  • Identify control gaps and collaborate with vendors to track remediation

🎯 Requirements

  • 6–10 years of experience in Third Party Risk Management, GRC, IT Risk, or Information Security
  • Experience conducting vendor security assessments and due diligence
  • Strong understanding of ISO 27001, SOC 2, PCI DSS, and data protection fundamentals
  • Experience reviewing security documentation and audit artifacts
  • Ability to interpret vulnerability reports and pen test summaries
  • Experience working with GRC/TPRM tools (ServiceNow, OneTrust, Archer, Jira, etc.)
Share job

Meet JobCopilot: Your Personal AI Job Hunter

Automatically Apply to Engineering Jobs. Just set your preferences and Job Copilot will do the rest — finding, filtering, and applying while you focus on what matters.

Related Engineering Jobs

See more Engineering jobs →