1

Grc Third Party Risk Analyst Jobs in Alabama (NOW HIRING)

Familiarity with supplier risk, third-party risk, or vendor assessment processes Why Exiger: Exiger ... risk analytics, and deliver insights that directly impact national security decision-making. Why ...

Familiarity with supplier risk, third-party risk, or vendor assessment processes Why Exiger: Exiger ... risk analytics, and deliver insights that directly impact national security decision-making. Why ...

... Third-party technology dependencies AI and emerging technology risks Oversees development of risk scenarios, loss-event libraries, threat intelligence inputs, and control effectiveness analyses to ...

Data Privacy & 3rd Risk Analyst FTC | Hybrid | Birmingham - 45k - 55k We're recruiting a Data Privacy analyst who has experience mapping out data sharing, usage and processing, PII usage across a ...

... Security Operations, Third-Party Risk Management, and ServiceNow AI Control Tower use cases ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

... Security Operations, Third-Party Risk Management, and ServiceNow AI Control Tower use cases ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ... Proven experience with ServiceNow Security and GRC modules, with a strong understanding of platform ...

Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ... Proven experience with ServiceNow Security and GRC modules, with a strong understanding of platform ...

next page

Showing results 1-20

Grc Third Party Risk Analyst information

What are some typical challenges a GRC Third Party Risk Analyst may encounter when assessing vendors?

As a GRC Third Party Risk Analyst, you may face challenges such as obtaining timely and complete responses from vendors, especially when dealing with large or international organizations. Navigating varying levels of vendor maturity in risk management practices can also be difficult. Additionally, balancing the need for thorough risk assessments with fast-paced business timelines requires strong communication and prioritization skills. Collaborating closely with procurement, legal, and IT teams is essential to ensure all risks are properly identified and managed.

What are the key skills and qualifications needed to thrive as a GRC Third Party Risk Analyst, and why are they important?

To thrive as a GRC Third Party Risk Analyst, you need a strong understanding of risk management frameworks, compliance regulations, and vendor risk assessment methodologies, typically supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (like Archer or ServiceNow), third-party risk management tools, and certifications such as CISA or CRISC is highly beneficial. Strong analytical thinking, attention to detail, and effective communication skills are essential soft skills for this role. These competencies ensure that organizations can accurately assess and mitigate third-party risks, maintaining compliance and protecting sensitive data.

What is a GRC Third Party Risk Analyst?

A GRC Third Party Risk Analyst is a professional who assesses and manages the risks associated with an organization’s external vendors, suppliers, or partners. Their role involves evaluating third-party compliance with regulatory standards and internal policies, identifying potential risks such as data breaches or non-compliance, and recommending mitigation strategies. They use frameworks like GRC (Governance, Risk, and Compliance) to help ensure that third-party relationships do not compromise the organization's security or reputation. This role often collaborates with procurement, legal, and IT teams to maintain robust risk management processes.

What is the difference between Grc Third Party Risk Analyst vs Grc Vendor Risk Analyst?

AspectGrc Third Party Risk AnalystGrc Vendor Risk Analyst
CertificationsCertifications like CRISC, CISA often preferredSame certifications commonly required
Work EnvironmentFocuses on third-party relationships and risk assessmentsPrimarily evaluates vendor-specific risks and compliance
Industry UsageUsed across finance, healthcare, and tech sectorsCommonly found in industries with extensive vendor networks

The Grc Third Party Risk Analyst and Grc Vendor Risk Analyst roles overlap significantly in certifications and work environment. The main difference lies in scope: the Third Party Risk Analyst assesses overall third-party relationships, while the Vendor Risk Analyst concentrates specifically on individual vendors. Both roles are vital for managing third-party risks in various industries.

What are popular job titles related to Grc Third Party Risk Analyst jobs in Alabama? For Grc Third Party Risk Analyst jobs in Alabama, the most frequently searched job titles are:
What cities in Alabama are hiring for Grc Third Party Risk Analyst jobs? Cities in Alabama with the most Grc Third Party Risk Analyst job openings:
Infographic showing various Grc Third Party Risk Analyst job openings in Alabama as of August 2026, with employment types broken down into 3% Internship, 90% Full Time, and 7% Part Time. Highlights an 90% In-person, 7% Hybrid, and 3% Remote job distribution.

Supply Chain Risk Analyst

Exiger

Huntsville, AL • On-site

Full-time

Medical, Dental, Vision

Re-posted 19 days ago


Job description

Who We Are:
Exiger transforms supply chains into a strategic advantage, advancing our mission to make the world a safer and more transparent place to succeed. Our AI platform, 1Exiger, delivers instant visibility into complex supplier ecosystems, leveraging proprietary data and advanced AI to surface risk, automate compliance, and unlock efficiencies and cost savings to strengthen long-term resilience. Trusted by 550+ global customers, including Fortune 500 companies and U.S. government agencies, Exiger is a recognized, award-winning leader in supply chain AI and a FedRAMP® authorized provider to the federal government.
Supply Chain Risk Analyst
Location: Huntsville, Alabama
Work Environment: Hybrid
Clearance: Active Secret required at minimum
Role Summary
Exiger is seeking a Supply Chain Risk Analyst to support Department of Defense and national security customers in identifying, assessing, and mitigating supply chain risks impacting mission-critical programs. This role combines supply chain analysis, supplier risk assessment, data-driven research, and operational support to help government stakeholders make informed decisions regarding resilience, sourcing strategies, and mission assurance. Reporting to Government Delivery leadership, the analyst will work with proprietary and government-furnished data to evaluate supplier networks, identify vulnerabilities, assess potential impacts, and support development of actionable mitigation strategies.
What You'll Do:
  • Conduct supply chain risk assessments across critical technologies, suppliers, and programs
  • Analyze supplier networks to identify vulnerabilities, dependencies, and potential points of failure
  • Research supplier ownership structures, geographic exposure, and foreign influence risks
  • Support development of risk mitigation recommendations and alternate sourcing strategies
  • Analyze supply chain disruptions and assess operational impacts
  • Validate and maintain supply chain data from multiple sources
  • Produce recurring reports, briefings, and decision-support products for government stakeholders
  • Track risk mitigation activities and support action management processes
  • Support onboarding and enrichment of new supply chain datasets
  • Document methodologies, findings, and supporting evidence in accordance with program requirements
What You Need:
  • Strong analytical and problem-solving skills
  • Experience working with data and conducting structured research
  • Proficiency with Excel and familiarity with SQL, Python, Tableau, Power BI, or similar analytical tools
  • Ability to communicate complex findings clearly to technical and non-technical audiences
  • Strong attention to detail and ability to manage multiple priorities
Professional Experience Required:
  • 2-5+ years of experience in supply chain analysis, logistics, intelligence analysis, operations research, risk analysis, or related fields
  • Experience analyzing structured datasets and producing analytical reports
  • Experience supporting government, defense, aerospace, intelligence, or highly regulated environments
  • Active Secret clearance required
  • Ability to obtain and maintain additional clearances as required
Preferred Qualifications:
  • Experience with supply chain risk management (SCRM)
  • Familiarity with defense acquisition, logistics, sustainment, or industrial base programs
  • Knowledge of CAGE codes, NSNs, DLA, GIDEP, SAM.gov, or related defense data sources
  • Experience with OSINT research methodologies
  • Familiarity with supplier risk, third-party risk, or vendor assessment processes
Why Exiger:
Exiger is transforming how governments understand and manage supply chain risk. In this role, you will support mission-critical programs, work alongside experts in AI and risk analytics, and deliver insights that directly impact national security decision-making.
Why You'll Love Working at Exiger:
  • High-performance culture rooted in accountability, collaboration, and a shared commitment to excellence
  • Discretionary Time Off with no maximum limits
  • Industry-leading health, vision, and dental benefits
  • Competitive compensation package
  • 16 weeks of fully paid parental leave
  • Flexible, hybrid approach to working
  • Wellness stipends and employee health programming
  • Career development support and certification reimbursement

#Li-Hybrid
Exiger is named a Leader in the Gartner® Magic Quadrant™ for Supplier Risk Management, twice selected as one of Fast Company's 'Brands That Matter,' and recipient of the Third Party Risk Association's Innovator Award, Exiger's technology has been recognized by leading analyst evaluations and 50+ awards. Learn more at Exiger.com and follow Exiger on LinkedIn.
At Exiger, our values define how we work and why we lead. We are mission-inspired, imagination-driven, trust-anchored, and compassion-focused-committed to building technology that makes the world safer, more transparent, and more resilient.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Exiger's hybrid work policy is periodically reviewed and adjusted to align with evolving business needs.