CrawlJobs Logo

Third-Party Risk Analyst

https://www.roberthalf.com Logo

Robert Half

Location Icon

Location:
United States , Baltimore

Category Icon
Category:

Job Type Icon

Contract Type:
Employment contract

Salary Icon

Salary:

Not provided

Job Description:

As a Third-Party Risk Analyst, you will be responsible for evaluating, monitoring, and managing the risks associated with third-party vendors, suppliers, and service providers that have access to our client's data, systems, or facilities. You will play a vital role in assessing the security, privacy, compliance, and operational risks posed by third parties and implementing risk mitigation strategies to safeguard company interests.

Job Responsibility:

  • Conduct comprehensive risk assessments of third-party vendors and service providers
  • Review and analyze third-party contracts, agreements, and security documentation
  • Develop and implement risk mitigation strategies and action plans
  • Monitor and track third-party risk indicators
  • Collaborate with internal audit, compliance, and information security teams
  • Collaborate with procurement, legal, and business units
  • Conduct periodic reviews and audits of third-party vendors
  • Provide regular reporting and updates to senior management, the board of directors, and other stakeholders
  • Stay informed about industry trends, emerging risks, and best practices in third-party risk management

Requirements:

  • Bachelor's Degree in Risk, Business, Business Technology, Cybersecurity, or a related field
  • 2+ years of experience in third-party risk management, vendor management, procurement, internal audit
  • Strong understanding of third-party risk management principles, methodologies, and best practices
  • Detail-oriented and organized, with the ability to manage multiple priorities and deadlines in a fast-paced environment
  • Proficiency in using risk management tools, software, and technologies to support third-party risk assessment and monitoring activities
  • Excellent analytical, problem-solving, and critical-thinking skills, with the ability to assess complex situations and make informed risk-based decisions
  • Effective communication and interpersonal skills, with the ability to collaborate with stakeholders at all levels of the organization
What we offer:
  • Medical, vision, dental, and life and disability insurance
  • Eligibility to enroll in company 401(k) plan

Additional Information:

Job Posted:
March 23, 2025

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Third-Party Risk Analyst

Senior Third-Party Security Risk Analyst

As a Senior Third-Party Security Risk Specialist at Ledger, you will contribute ...
Location
Location
France , Paris
Salary
Salary:
Not provided
https://www.ledger.com Logo
Ledger
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master degree in Information Security, Cybersecurity, or a related field
  • 5+ years of progressive experience in third-party risk management, with a strong background in audit, risk management, compliance, or a related control function within a complex organization
  • Proven project management skills with the ability to manage complex, cross-functional projects and maintain comprehensive documentation
  • In-depth knowledge of security frameworks and standards (e.g., ISO 27001, NIST Cybersecurity Framework) and experience in applying them to third-party risk management and regulatory requirements
  • Excellent analytical and problem-solving skills with a focus on identifying root causes and developing effective solutions
  • Strong communication and interpersonal skills, including the ability to influence and negotiate with vendors and stakeholders at all levels.
Job Responsibility
Job Responsibility
  • Conduct comprehensive security assessments of third-party vendors, including reviewing their security policies, procedures, and controls
  • Proactively identify and evaluate potential security/privacy risks associated with a particular focus on those that could impact Ledger's reputation, financial stability, and customer trust
  • Develop and implement risk mitigation strategies to address identified vulnerabilities
  • Lead the collaboration with vendors to remediate security gaps and ensure compliance with Ledger's stringent security requirements
  • Establish and maintain a robust vendor security monitoring program, driving continuous improvement in vendor security posture and compliance
  • Develop, implement, and continuously improve Ledger's third-party security risk management program, including policies, standards, procedures, and tools
  • Prepare reports and presentations on vendor security risks and mitigation efforts to senior management, stakeholders, and the Comex
  • Participate in audits as part of the Privacy audit program according to the agreed annual audit plan.
What we offer
What we offer
  • Equity: Employees are the foundation of our success, and we award stock options so you can share in that success as we grow
  • Flexibility: A hybrid work policy
  • Social: Annual company outing for Ledgerdary Days, plus frequent social events, snacks and drinks
  • Medical: Comprehensive health insurance policy offering extensive medical, dental and vision care coverage
  • Well-being: Personal development, coaching & fitness with our dedicated partners
  • Vacation: Five weeks of paid leave per year, in addition to national holidays and rest & relaxation (RTT) days
  • High tech: Access to high performance office equipment and gadgets
  • Transport: Ledger reimburses part of your preferred means of transportation
  • Discounts: Employee discount on all our products.
  • Fulltime
Read More
Arrow Right

Third Party Risk Management Intermediate Analyst

Opportunity to work in a dynamic team that supports every business and functions...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2-5 years relevant experience working on project management activities including regulatory change and remediation work
  • Good at stakeholder management and working collaboratively with partnering teams to achieve an outcome
  • Good Excel and Powerpoint skills
  • Bachelor’s/University degree
Job Responsibility
Job Responsibility
  • Ensure effective adherence to local and global third-party risk management regulations, policies, and standards
  • Provide active support to Cluster and Country Third Party Governance Forums, facilitating communication and collaboration
  • Collaborate closely with stakeholders across the Europe Cluster, including country-level teams, to ensure alignment with the TPM framework and address any compliance gaps
  • Proactively identify and escalate potential risks and compliance issues to relevant stakeholders, including In-Business Risk, Third Party Officers, and Business Activity Owners
  • Continuously monitor Key Risk Indicators (KRIs) to identify emerging third-party risks
  • Conduct thorough root cause analyses to understand underlying issues and develop effective mitigation strategies
  • Critically evaluate existing TPM practices and identify opportunities for improvement
  • Lead initiatives to enhance standards, procedures, controls, and governance processes, ensuring the ongoing sustainability and optimization of the TPRM program in Malaysia
  • Provide expert guidance and support to country business teams on interpreting and implementing Third Party Risk Management policies, regulations, and local procedures
  • Collaborate with internal and external stakeholders, including Independent Operational Risk Management, Compliance, Internal Audit, and Regulators, to facilitate audits, regulatory examinations, and information requests
  • Fulltime
Read More
Arrow Right

Senior Third-Party Security Risk Analyst

As a Senior Third-Party Security Risk Specialist at Ledger, you will play a vita...
Location
Location
France , Paris
Salary
Salary:
Not provided
https://www.ledger.com Logo
Ledger
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master degree in Information Security, Cybersecurity, or a related field
  • 5+ years of progressive experience in third-party risk management, with a strong background in audit, risk management, compliance, or a related control function within a complex organization
  • Proven project management skills with the ability to manage complex, cross-functional projects and maintain comprehensive documentation
  • In-depth knowledge of security frameworks and standards (e.g., ISO 27001, NIST Cybersecurity Framework) and experience in applying them to third-party risk management and regulatory requirements
  • Excellent analytical and problem-solving skills with a focus on identifying root causes and developing effective solutions
  • Strong communication and interpersonal skills, including the ability to influence and negotiate with vendors and stakeholders at all levels
Job Responsibility
Job Responsibility
  • Conduct comprehensive security assessments of third-party vendors, including reviewing their security policies, procedures, and controls
  • Proactively identify and evaluate potential security/privacy risks associated with a particular focus on those that could impact Ledger's reputation, financial stability, and customer trust
  • Develop and implement risk mitigation strategies to address identified vulnerabilities
  • Lead the collaboration with vendors to remediate security gaps and ensure compliance with Ledger's stringent security requirements
  • Establish and maintain a robust vendor security monitoring program, driving continuous improvement in vendor security posture and compliance
  • Develop, implement, and continuously improve Ledger's third-party security risk management program, including policies, standards, procedures, and tools
  • Prepare reports and presentations on vendor security risks and mitigation efforts to senior management, stakeholders, and the Comex
  • Participate in audits as part of the Privacy audit program according to the agreed annual audit plan
What we offer
What we offer
  • Equity: Employees are the foundation of our success, and we award stock options so you can share in that success as we grow
  • Flexibility: A hybrid work policy
  • Social: Annual company outing for Ledgerdary Days, plus frequent social events, snacks and drinks
  • Medical: Comprehensive health insurance policy offering extensive medical, dental and vision care coverage
  • Well-being: Personal development, coaching & fitness with our dedicated partners
  • Vacation: Five weeks of paid leave per year, in addition to national holidays and rest & relaxation (RTT) days
  • High tech: Access to high performance office equipment and gadgets
  • Transport: Ledger reimburses part of your preferred means of transportation
  • Discounts: Employee discount on all our products
  • Fulltime
Read More
Arrow Right

Cybersecurity Third-Party Risk Analyst

We are seeking a detail-oriented and security-conscious Cybersecurity Third-Part...
Location
Location
United States , Tempe
Salary
Salary:
Not provided
https://www.circlek.com Logo
Circle K
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in cybersecurity, information technology, risk management, or a related field
  • 2-4 years of experience in cybersecurity risk assessment, vendor risk management, or a similar role
  • Strong understanding of cybersecurity frameworks (e.g., NIST, ISO 27001, SOC 2, CIS, GDPR, HIPAA)
  • Familiarity with third-party risk management platforms and security assessment tools
  • Ability to analyze security reports and communicate risk findings effectively
  • Strong problem-solving skills and attention to detail
  • Excellent verbal and written communication skills.
Job Responsibility
Job Responsibility
  • Conduct comprehensive security assessments of third-party vendors to identify potential risks and vulnerabilities
  • Evaluate vendor security policies, procedures, and controls to ensure compliance with company and industry standards
  • Develop and maintain third-party cybersecurity risk management (TPCRM) frameworks, policies, and procedures
  • Work closely with procurement, legal, and cybersecurity compliance teams to integrate security requirements into vendor contracts
  • Monitor vendor security performance using automated tools, questionnaires, and periodic audits
  • Stay updated on cybersecurity threats, regulatory requirements, and best practices for third-party risk management
  • Collaborate with internal teams to address security concerns related to third-party vendors
  • Maintain foundational documentation related to the third-party process
  • Provide recommendations and remediation guidance to vendors with identified security gaps.
Read More
Arrow Right

Program Management Analyst

The Program Management Analyst - C10 will be responsible for executing day-to-da...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 8 years of working experience in Financial services / Banking industry with strong knowledge of banking regulatory requirements
  • Preferred 3+ years of direct, relevant experience in third-party risk identification and management, operational risk management, compliance and/or audit
  • Knowledge of third-party management risk and control methodologies and best practices
  • Bachelor’s degree required
  • Master’s degree or any other equivalent is preferred
Job Responsibility
Job Responsibility
  • Facilitate Citi businesses’ ongoing compliance with Third Party Management requirements outlined in Citi policies and standards
  • Providing process guidance and support to Third Party Officers (TPOs), Business Activity Owners (BAOs), and other business stakeholders on end-to-end Third Party Management requirements and set up periodical review meetings
  • Execute various third-party risk assessment controls as identified by the Third Party Risk Assessment Process and provide guidance to TPU Process Analysts on process execution
  • Verify if all critical data fields are captured accurately while onboarding the suppliers into Master supplier database and Payment systems
  • Ensure that all suppliers are screened against the Negative/SDN list on a periodic basis and escalate any positive matches to senior management
  • Verify if third parties’ policies and procedures are compliant with Citi’s policies and procedures and report gaps to senior management
  • Partner with Sourcing and Business and provide approval to sign contracts once all due diligence activities are completed and gaps are remediated
  • Undertake onsite Reviews and Video conferencing sessions with Third Parties to perform Risk Management activities
  • Review the contractual terms and conditions agreed between Citi and third party and perform controls checks
  • Perform Quality Check on the control assessments performed by TPU Risk Analysts and provide guidance
What we offer
What we offer
  • Equal opportunity employer
  • Accessibility accommodations for persons with disabilities
  • Fulltime
Read More
Arrow Right

Third Party Risk Analyst

Team/Role Overview: Individuals in Operational Risk establish and manage operati...
Location
Location
United Kingdom , Belfast
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Knowledge in risk management, particularly Resilience and Third-Party Risk Management
  • Understanding of Third-Party Management policy and procedures
  • Familiarity with risk governance structures and risk appetite parameters
  • Ability to create, apply, and analyse reports
  • Background in the implementation of third-party and resilience risk processes across various sectors and regions
  • Experience in conducting comprehensive third-party and resilience risk management reviews
  • Knowledge of relevant regulations and standards related to risk management, and ability to ensure compliance
  • Adapt to work across a diverse organisation, managing various sectors and regions
  • Utilise strong analytical skills to interpret complex data and present it in a clear and understandable manner
  • Identify and address potential risks, ensuring adherence to regulatory standards
Job Responsibility
Job Responsibility
  • Represent business leadership in Third-Party Risk Management activities coordination and facilitation
  • Evaluate market conditions and provide insight into trends that could impact the business
  • Verify third-party compliance to required policies and controls and advise on third-party risk assessments and reassessments
  • Partner with operations and tech teams for on-site visits of third parties when necessary
  • Maintain and update Exit Strategy Plans as required
  • Address escalations of non-performance and contractual issues with third parties when necessary
  • Monitor third-party performance and service level agreements
  • Ensure proper execution and upload of third-party contracts in Contract Management System
  • Review, prioritise, assess, and act on third-party risk management assessments results
  • Facilitate remediation of issues or gaps identified during ongoing monitoring
  • Fulltime
Read More
Arrow Right

Program Management Analyst

The Third Party Management Program Execution provides operational support, proce...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 8+ years of working experience in financial services / Banking industry
  • Preferred 3+ years of direct, relevant experience in third-party risk management or operational risk management or Audit related work
  • Knowledge of third-party management risk and control methodologies and best practices
  • Team management skills preferred
  • Supply chain management experience preferred
  • Bachelor’s degree required
  • Master’s Degree preferred
  • Professional Qualifications including CA/ICWA/ACS etc
Job Responsibility
Job Responsibility
  • Execute day-to-day activities in support of Citi’s Third-Party Management Program
  • Implement key, standardized processes related to compliance with Citi’s policies and standards
  • Guide internal stakeholders
  • Monitor the timely and effective completion of activities related to Third Party lifecycle
  • Ensure data accuracy for the reporting of third-party related metrics
  • Improve current processes and share best practices with management team
  • Participate in team meetings to analyze documentation and processes
  • Assist management group in gathering data and information
  • Provide guidance to junior TPU analysts
  • Verify third parties’ policies and procedures compliance
  • Fulltime
Read More
Arrow Right

Program Management Analyst

The Third Party Management Program Execution provides operational support, proce...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 8+ years of working experience in financial services / Banking industry
  • Preferred 3+ years of direct, relevant experience in third-party risk management or operational risk management or Audit related work
  • Knowledge of third-party management risk and control methodologies and best practices
  • Team management skills preferred
  • Supply chain management experience preferred
  • Bachelor’s degree required
  • Master’s Degree preferred
  • Professional Qualifications including CA/ICWA/ACS etc
Job Responsibility
Job Responsibility
  • Execute day-to-day activities in support of Citi’s Third-Party Management Program
  • Implement key, standardized processes related to compliance with Citi’s policies and standards
  • Guide internal stakeholders
  • Monitor the timely and effective completion of activities related to Third Party lifecycle
  • Ensure data accuracy for the reporting of third-party related metrics
  • Improve current processes and share best practices with management team
  • Participate in team meetings to analyze documentation and processes
  • Assist management in gathering data and information
  • Provide guidance to junior TPU analysts
  • Verify third parties’ policies and procedures compliance
What we offer
What we offer
  • Best-in-class benefits
  • Equal opportunity and affirmative action employer
  • Fulltime
Read More
Arrow Right