The Challenge We are looking for a dynamic Senior Information Security GRC Analyst to support IT ... Execute risk assessments of third-party vendors * Mentor Junior Security Analysts, and work with ...
The Challenge We are looking for a dynamic Senior Information Security GRC Analyst to support IT ... Execute risk assessments of third-party vendors * Mentor Junior Security Analysts, and work with ...
Sr. Analyst - Third Party Risk
Alpharetta, GA · On-site
$85K/yr
Third-Party Risk Senior Analyst - First Century Bank First Century Bank has an exciting career opportunity available for a Third-Party Risk Sr. Analyst to join our team. The Bank is growing its ...
New
Sr. Analyst - Third Party Risk
Alpharetta, GA · On-site
$85K/yr
Third-Party Risk Senior Analyst - First Century Bank First Century Bank has an exciting career opportunity available for a Third-Party Risk Sr. Analyst to join our team. The Bank is growing its ...
New
This role will encompass Third Party Risk practices being deployed to manufacturing facilities with ... GRC system (OneTrust) * Perform data analysis for ongoing monitoring of control violations, risk ...
This role will encompass Third Party Risk practices being deployed to manufacturing facilities with ... GRC system (OneTrust) * Perform data analysis for ongoing monitoring of control violations, risk ...
The GRC Analyst will play a key role in supporting the firm's commitment to protecting client information, managing third-party risk, and maintaining strong governance practices. Duties ...
New
The GRC Analyst will play a key role in supporting the firm's commitment to protecting client information, managing third-party risk, and maintaining strong governance practices. Duties ...
New
Risk Management Analyst
Atlanta, GA · On-site
The Third-Party Lifecycle Management Program (TLMP) team is a second line of defense Third Party ... Working experience with GRC tools and system maintenance and improvement. * Strong attention to ...
Risk Management Analyst
Atlanta, GA · On-site
The Third-Party Lifecycle Management Program (TLMP) team is a second line of defense Third Party ... Working experience with GRC tools and system maintenance and improvement. * Strong attention to ...
Risk Management Analyst
Atlanta, GA · On-site
$89K/yr
The Third-Party Lifecycle Management Program (TLMP) team is a second line of defense Third Party ... Working experience with GRC tools and system maintenance and improvement. * Strong attention to ...
Risk Management Analyst
Atlanta, GA · On-site
$89K/yr
The Third-Party Lifecycle Management Program (TLMP) team is a second line of defense Third Party ... Working experience with GRC tools and system maintenance and improvement. * Strong attention to ...
The Third-Party Lifecycle Management Program (TLMP) team is a second line of defense Third Party ... Working experience with GRC tools and system maintenance and improvement. * Strong attention to ...
The Third-Party Lifecycle Management Program (TLMP) team is a second line of defense Third Party ... Working experience with GRC tools and system maintenance and improvement. * Strong attention to ...
The GRC Analyst will play a key role in supporting the firm's commitment to protecting client information, managing third-party risk, and maintaining strong governance practices. Duties ...
New
The GRC Analyst will play a key role in supporting the firm's commitment to protecting client information, managing third-party risk, and maintaining strong governance practices. Duties ...
New
... data protection, third-party risk, artificial intelligence, and regulatory compliance ... Risk, and Compliance (GRC) program. • Maintain the enterprise IT risk register, including ...
... data protection, third-party risk, artificial intelligence, and regulatory compliance ... Risk, and Compliance (GRC) program. • Maintain the enterprise IT risk register, including ...
GRC Analyst
Atlanta, GA · Remote
About the Role Merci Technologies is seeking a GRC Analyst to support the governance, risk, and ... Perform vendor and third-party risk assessments and document risk acceptance decisions * Build and ...
Quick apply
GRC Analyst
Atlanta, GA · Remote
About the Role Merci Technologies is seeking a GRC Analyst to support the governance, risk, and ... Perform vendor and third-party risk assessments and document risk acceptance decisions * Build and ...
Senior GRC Analyst
Atlanta, GA · On-site +1
PrizePicks is seeking an experienced and detail-oriented Senior GRC Analyst to join our expanding ... Third-Party Risk Management (TPRM): * Lead security risk assessments for new and renewing third ...
Senior GRC Analyst
Atlanta, GA · On-site +1
PrizePicks is seeking an experienced and detail-oriented Senior GRC Analyst to join our expanding ... Third-Party Risk Management (TPRM): * Lead security risk assessments for new and renewing third ...
PrizePicks is seeking an experienced and detail-oriented Senior GRC Analyst to join our expanding ... Third-Party Risk Management (TPRM): * Lead security risk assessments for new and renewing third ...
PrizePicks is seeking an experienced and detail-oriented Senior GRC Analyst to join our expanding ... Third-Party Risk Management (TPRM): * Lead security risk assessments for new and renewing third ...
The Senior Information Security Risk Analyst will support the assessment of information security risks across all of Warner Bros. Discovery's (WBD's) third party suppliers/vendors. This role requires ...
The Senior Information Security Risk Analyst will support the assessment of information security risks across all of Warner Bros. Discovery's (WBD's) third party suppliers/vendors. This role requires ...
The Senior Information Security Risk Analyst will support the assessment of information security risks across all of Warner Bros. Discovery's (WBD's) third party suppliers/vendors. This role requires ...
The Senior Information Security Risk Analyst will support the assessment of information security risks across all of Warner Bros. Discovery's (WBD's) third party suppliers/vendors. This role requires ...
Senior Manager - Cybersecurity & Governance, Risk & Compliance (GRC)
Atlanta, GA · On-site
$133K - $199K/yr
Lead third-party and vendor security risk assessments and due diligence activities. Compliance ... Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
Senior Manager - Cybersecurity & Governance, Risk & Compliance (GRC)
Atlanta, GA · On-site
$133K - $199K/yr
Lead third-party and vendor security risk assessments and due diligence activities. Compliance ... Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
Business Risk Analyst
Alpharetta, GA · Remote
$70K - $98K/yr
... GRC workflow, and risk management initiatives. This role will play a key part in maintaining ... third-party auditors and internal assessments * Maintain organized documentation for audit ...
Business Risk Analyst
Alpharetta, GA · Remote
$70K - $98K/yr
... GRC workflow, and risk management initiatives. This role will play a key part in maintaining ... third-party auditors and internal assessments * Maintain organized documentation for audit ...
Business Risk Analyst
Alpharetta, GA · On-site +1
$70K - $98K/yr
... GRC workflow, and risk management initiatives. This role will play a key part in maintaining ... third-party auditors and internal assessments * Maintain organized documentation for audit ...
Business Risk Analyst
Alpharetta, GA · On-site +1
$70K - $98K/yr
... GRC workflow, and risk management initiatives. This role will play a key part in maintaining ... third-party auditors and internal assessments * Maintain organized documentation for audit ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
Senior Analyst, Cybersecurity GRC
Atlanta, GA · On-site
$96K - $124K/yr
... Third Party Risk Management (TPRM) and Governance and Risk functions in conducting vendor due ... Senior Analyst, Cybersecurity GRC Responsibilities: - Review and understand current IT Risk ...
Senior Analyst, Cybersecurity GRC
Atlanta, GA · On-site
$96K - $124K/yr
... Third Party Risk Management (TPRM) and Governance and Risk functions in conducting vendor due ... Senior Analyst, Cybersecurity GRC Responsibilities: - Review and understand current IT Risk ...
Lead third-party and vendor security risk assessments and due diligence activities. Compliance ... Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
Lead third-party and vendor security risk assessments and due diligence activities. Compliance ... Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
Grc Third Party Risk Analyst information
What are some typical challenges a GRC Third Party Risk Analyst may encounter when assessing vendors?
What are the key skills and qualifications needed to thrive as a GRC Third Party Risk Analyst, and why are they important?
What is a GRC Third Party Risk Analyst?
What is the difference between Grc Third Party Risk Analyst vs Grc Vendor Risk Analyst?
| Aspect | Grc Third Party Risk Analyst | Grc Vendor Risk Analyst |
|---|---|---|
| Certifications | Certifications like CRISC, CISA often preferred | Same certifications commonly required |
| Work Environment | Focuses on third-party relationships and risk assessments | Primarily evaluates vendor-specific risks and compliance |
| Industry Usage | Used across finance, healthcare, and tech sectors | Commonly found in industries with extensive vendor networks |
The Grc Third Party Risk Analyst and Grc Vendor Risk Analyst roles overlap significantly in certifications and work environment. The main difference lies in scope: the Third Party Risk Analyst assesses overall third-party relationships, while the Vendor Risk Analyst concentrates specifically on individual vendors. Both roles are vital for managing third-party risks in various industries.

Other
Re-posted 11 hours ago
Job description
We are looking for a dynamic Senior Information Security GRC Analyst to support IT and InfoSec by performing various governance, risk, and compliance activities as part of the OneTrust InfoSec GRC team.
Your MissionThis role will support InfoSec by performing various governance, risk, and compliance activities as part of the OneTrust InfoSec GRC team. In addition, this role will collaborate with architecture, legal, compliance, and privacy as part of our TPRM (Third Party Risk Management) process. This role will help review risk assessments for customers/vendors, data flow diagrams, architecture diagrams, certifications, questionnaires, etc.
You AreThis a team player who can work well within the GRC team.
- Collaborate with IT, InfoSec, and within the GRC team to mature the compliance process
- Review vendor due diligence documentation, including SOC reports, ISO certifications, penetration testing reports, policies, and security questionnaires.
- Evaluate supplier control environments against established risk management standards and frameworks.
- Document risk findings and communicate recommendations to business stakeholders.
- Execute risk assessments of third-party vendors
- Mentor Junior Security Analysts, and work with them to evaluate and remediate complex security incidents
- Responsible for generation and continued delivery of relevant KPIs and metrics
- Provide feedback on solutions and processes to mature overall capabilities
- Impart expertise on the OneTrust environment and security best practices to others on the team
- BA/BS in Computer Science, Cybersecurity, Information assurance or related subject
- 5+ years, hands on experience in cybersecurity/risk management
- Experience reviewing SOC 1, SOC 2 reports & ISO 27001 certifications
- Experience reviewing security questionnaires, business continuity and disaster recovery plans as well as vendor contracts and security requirements
- Understanding of information security best practices around confidentiality, integrity and availability
- Cloud experience in at least one cloud provider
- Understanding of applicable laws and regulations, including but not limited to, GDPR, CCPA, PCI-DSS, SOC 2, ISO, and FedRAMP
- Understanding of the standards for the processing practice of third-party management
- Understanding of technology domains including governance, risk management, security, privacy, and information technology and business continuity
- Certifications: CRISC, Security+, CISSP, CISM, CCSP, CISA, Azure
- Knowledge of OneTrust security/GRC products.
About OneTrust
Sourced by ZipRecruiter
Industry
Software development
Company size
1,001 - 5,000 Employees
Headquarters location
Atlanta, GA, US
Year founded
2016