Third-Party Risk Management Analyst IV

Added
15 days ago
Type
Full time
Salary
Upgrade to Premium to se...

Related skills

security vendor management iso 27001 grc qualitative methods

πŸ“‹ Description

  • Leading end-to-end third-party security risk assessments using qualitative and quantitative methods
  • Owning the vendor reassessment cadence and tracking remediation
  • Partnering with Legal, Procurement, and system owners on vendor contracts and onboarding
  • Escalating unresolved vendor risk
  • Supporting internal and external audits (ISO, SOC, FedRAMP)
  • Building and maintaining metrics, dashboards, and reporting

🎯 Requirements

  • 5+ years in third-party/vendor risk management, GRC, or information security compliance
  • Experience with automation, scripting, or low-code workflows
  • Hands-on experience with vendor security assessments and tiering program
  • Experience partnering with Legal and Procurement on contract security and privacy terms
  • Must reside in the US outside SF Bay, NYC, and DC metro areas
  • Familiarity with risk frameworks (NIST CSF, ISO 27001, SOC 2)

🎁 Benefits

  • Incentive stock units (ISUs)
  • Health benefits
  • Equity awards
  • Bonuses
Share job

Meet JobCopilot: Your Personal AI Job Hunter

Automatically Apply to Legal Jobs. Just set your preferences and Job Copilot will do the rest β€” finding, filtering, and applying while you focus on what matters.

Related Legal Jobs

See more Legal jobs β†’