Third-Party Risk Management * Supplier Due Diligence * Risk Assessment & Analysis * Control Effectiveness Reviews * Cybersecurity & Information Security Risk * Compliance & Governance * Stakeholder ...
Third-Party Risk Management * Supplier Due Diligence * Risk Assessment & Analysis * Control Effectiveness Reviews * Cybersecurity & Information Security Risk * Compliance & Governance * Stakeholder ...
Principal Program Manager
Reston, VA · On-site
Third-Party Risk Program Ownership: Own and evolve the Cybersecurity third-party security risk ... Broader Risk Assessment and Analysis: Perform principal-level risk assessment activities beyond ...
Principal Program Manager
Reston, VA · On-site
Third-Party Risk Program Ownership: Own and evolve the Cybersecurity third-party security risk ... Broader Risk Assessment and Analysis: Perform principal-level risk assessment activities beyond ...
Enterprise Risk Analyst
Manassas, VA · On-site
$45.66/hr
Medical
Dental
Vision
Life
Retirement
PTO
... and third parties to facilitate enterprise risk analysis Ability to obtain and maintain a Public ... GRC) Experience with Assessment and Authorization (A&A) and eMASS Experience with Excel and Visio ...
Enterprise Risk Analyst
Manassas, VA · On-site
$45.66/hr
Medical
Dental
Vision
Life
Retirement
PTO
... and third parties to facilitate enterprise risk analysis Ability to obtain and maintain a Public ... GRC) Experience with Assessment and Authorization (A&A) and eMASS Experience with Excel and Visio ...
Enterprise Risk Analyst
Manassas, VA · On-site
$64.47/hr
Medical
Dental
Vision
Life
Retirement
PTO
... and third parties to facilitate enterprise risk analysis Ability to obtain and maintain a Public ... GRC) Experience with Assessment and Authorization (A&A) and eMASS Experience with Excel and Visio ...
Enterprise Risk Analyst
Manassas, VA · On-site
$64.47/hr
Medical
Dental
Vision
Life
Retirement
PTO
... and third parties to facilitate enterprise risk analysis Ability to obtain and maintain a Public ... GRC) Experience with Assessment and Authorization (A&A) and eMASS Experience with Excel and Visio ...
... oriented Risk Management professional with excellent analytical, planning, collaboration, and ... Advise lines of business, Third-Party Managers, and Contract Managers on compliance risks and ...
New
... oriented Risk Management professional with excellent analytical, planning, collaboration, and ... Advise lines of business, Third-Party Managers, and Contract Managers on compliance risks and ...
New
Senior Analyst, Cybersecurity Governance, Risk and Compliance
Washington, DC · On-site
Medical
Dental
Vision
Retirement
PTO
... Third Party Risk Management (TPRM) and Governance and Risk functions in conducting vendor due ... broader GRC efforts. This position is 100% Onsite and not open for Remote. Senior Analyst ...
Senior Analyst, Cybersecurity Governance, Risk and Compliance
Washington, DC · On-site
Medical
Dental
Vision
Retirement
PTO
... Third Party Risk Management (TPRM) and Governance and Risk functions in conducting vendor due ... broader GRC efforts. This position is 100% Onsite and not open for Remote. Senior Analyst ...
... third-party risk programs. * Assess adherence to the DUS Guide, program requirements, and ... Synthesize complex analyses from multiple stakeholders into concise, executive-ready ...
... third-party risk programs. * Assess adherence to the DUS Guide, program requirements, and ... Synthesize complex analyses from multiple stakeholders into concise, executive-ready ...
MF Risk - Risk Analysis - Lead Associate
Washington, DC · On-site
Medical
Life
... third-party risk programs. * Assess adherence to the DUS Guide, program requirements, and ... Synthesize complex analyses from multiple stakeholders into concise, executive-ready ...
MF Risk - Risk Analysis - Lead Associate
Washington, DC · On-site
Medical
Life
... third-party risk programs. * Assess adherence to the DUS Guide, program requirements, and ... Synthesize complex analyses from multiple stakeholders into concise, executive-ready ...
... third-party risk programs. * Assess adherence to the DUS Guide, program requirements, and ... Synthesize complex analyses from multiple stakeholders into concise, executive-ready ...
... third-party risk programs. * Assess adherence to the DUS Guide, program requirements, and ... Synthesize complex analyses from multiple stakeholders into concise, executive-ready ...
... topics: risk quantification, third-party risk, systemic risk, compliance, and cyber risk ... Five to seven years as a research analyst, consultant, or practitioner where you have led or been ...
... topics: risk quantification, third-party risk, systemic risk, compliance, and cyber risk ... Five to seven years as a research analyst, consultant, or practitioner where you have led or been ...
Security Governance Risk & Compliance (GRC) Analyst with Security Clearance
Washington, DC · On-site
$130K - $170K/yr
Medical
Dental
Vision
Retirement
PTO
As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include ... Facilitate the third-party vendor on-boarding and annual review process by evaluating the security ...
Security Governance Risk & Compliance (GRC) Analyst with Security Clearance
Washington, DC · On-site
$130K - $170K/yr
Medical
Dental
Vision
Retirement
PTO
As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include ... Facilitate the third-party vendor on-boarding and annual review process by evaluating the security ...
Work within the Logic Manager (GRC) platform * Support metrics and reporting focused on issues and ... Experience in working with all levels of staff, management, stakeholders, and third parties
Work within the Logic Manager (GRC) platform * Support metrics and reporting focused on issues and ... Experience in working with all levels of staff, management, stakeholders, and third parties
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
Security Governance Risk & Compliance (GRC) Analyst
$130K - $170K/yr
Medical
Dental
Vision
Retirement
PTO
As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include ... Facilitate the third-party vendor on-boarding and annual review process by evaluating the security ...
Security Governance Risk & Compliance (GRC) Analyst
$130K - $170K/yr
Medical
Dental
Vision
Retirement
PTO
As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include ... Facilitate the third-party vendor on-boarding and annual review process by evaluating the security ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Develop and maintain risk registers, risk heat maps, and third-party/vendor risk assessment ... Business analysis skills including requirements gathering, process mapping, gap analysis, and ...
Quick apply
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Develop and maintain risk registers, risk heat maps, and third-party/vendor risk assessment ... Business analysis skills including requirements gathering, process mapping, gap analysis, and ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Develop and maintain risk registers, risk heat maps, and third-party/vendor risk assessment ... Business analysis skills including requirements gathering, process mapping, gap analysis, and ...
Senior Consultant - IT Governance, Risk & Compliance (GRC)
Ashburn, VA · On-site
$90K - $139K/yr
Develop and maintain risk registers, risk heat maps, and third-party/vendor risk assessment ... Business analysis skills including requirements gathering, process mapping, gap analysis, and ...
Information Security Risk Management Specialist
$60 - $75/hr
Medical
Dental
Vision
Life
Retirement
PTO
Analyze emerging threats and incorporate threat intelligence into risk evaluations to identify ... Experience in Governance, Risk & Compliance (GRC) programs * Knowledge of third-party risk ...
Quick apply
Information Security Risk Management Specialist
$60 - $75/hr
Medical
Dental
Vision
Life
Retirement
PTO
Analyze emerging threats and incorporate threat intelligence into risk evaluations to identify ... Experience in Governance, Risk & Compliance (GRC) programs * Knowledge of third-party risk ...
Information Security Risk Management Specialist
$60 - $75/hr
Medical
Dental
Vision
Life
Retirement
PTO
Analyze emerging threats and incorporate threat intelligence into risk evaluations to identify ... Experience in Governance, Risk & Compliance (GRC) programs * Knowledge of third-party risk ...
Quick apply
Information Security Risk Management Specialist
$60 - $75/hr
Medical
Dental
Vision
Life
Retirement
PTO
Analyze emerging threats and incorporate threat intelligence into risk evaluations to identify ... Experience in Governance, Risk & Compliance (GRC) programs * Knowledge of third-party risk ...
Grc Third Party Risk Analyst information
What are some typical challenges a GRC Third Party Risk Analyst may encounter when assessing vendors?
What are the key skills and qualifications needed to thrive as a GRC Third Party Risk Analyst, and why are they important?
What is a GRC Third Party Risk Analyst?
What is the difference between Grc Third Party Risk Analyst vs Grc Vendor Risk Analyst?
| Aspect | Grc Third Party Risk Analyst | Grc Vendor Risk Analyst |
|---|---|---|
| Certifications | Certifications like CRISC, CISA often preferred | Same certifications commonly required |
| Work Environment | Focuses on third-party relationships and risk assessments | Primarily evaluates vendor-specific risks and compliance |
| Industry Usage | Used across finance, healthcare, and tech sectors | Commonly found in industries with extensive vendor networks |
The Grc Third Party Risk Analyst and Grc Vendor Risk Analyst roles overlap significantly in certifications and work environment. The main difference lies in scope: the Third Party Risk Analyst assesses overall third-party relationships, while the Vendor Risk Analyst concentrates specifically on individual vendors. Both roles are vital for managing third-party risks in various industries.
Other
Posted 9 days ago
Job description
About
Accelyst is an innovative AI Consultancy that leverages a unique catalog of industry-specific AI Agents and leading-edge AI platforms to deliver tangible, integrated, secure, and ROI-optimized solutions. We combine deep industry and technical expertise to enable rapid deployment of innovative AI-driven capabilities that augment and automate client workflows for employees, customers, prospects, and investors.
Why Accelyst?
Join Accelyst and become part of a high-performing team delivering enterprise-scale cybersecurity, cloud, and digital transformation initiatives. Our leadership team brings extensive consulting and technology expertise while fostering a collaborative, client-focused environment where innovation, professional growth, and technical excellence are valued. You''''ll work on complex enterprise security programs that strengthen organizational resilience while advancing your career in cybersecurity program delivery.
Supplier Risk Management (SRM) Assessor
Employment Type: Contract
Work Model: Onsite (5 Days/Week)
Start Date: Immediate
Position Overview
We are seeking a detail-oriented Supplier Risk Management (SRM) Assessor to evaluate and manage risks associated with third-party suppliers and vendors. The successful candidate will assess supplier controls across technology, cybersecurity, privacy, operational resilience, and compliance domains while identifying potential risks and recommending mitigation strategies.
This role requires strong analytical capabilities, risk assessment expertise, stakeholder management skills, and the ability to handle sensitive information in a fast-paced environment.
Key Responsibilities
Supplier Risk Assessments
- Conduct comprehensive supplier risk assessments across multiple domains, including:
- Technology Risk
- Information Security Risk
- Privacy Risk
- Cybersecurity Risk
- Operational Resilience Risk
- Business Continuity Risk
- Evaluate supplier controls and identify potential gaps, weaknesses, and areas of concern.
- Assess supplier compliance with organizational risk standards and policies.
Risk Analysis & Reporting
- Analyze findings and document risk assessment results.
- Prepare clear, comprehensive risk reports for stakeholders and management.
- Develop risk ratings and recommend appropriate mitigation strategies.
- Track remediation activities and monitor progress toward risk resolution.
Supplier Due Diligence
- Review financial, operational, and business information provided by suppliers.
- Conduct supplier research using public sources, questionnaires, documentation, and stakeholder interviews.
- Assess supplier capabilities, stability, and risk exposure.
Stakeholder Collaboration
- Collaborate with internal business, technology, security, compliance, and risk teams.
- Communicate assessment outcomes, risks, issues, and recommendations effectively.
- Escalate critical risks, concerns, or delays to leadership when necessary.
Process Improvement
- Support the enhancement and optimization of supplier risk management processes.
- Contribute to best practices for third-party risk assessment and governance.
- Assist with ongoing risk monitoring and program maturity initiatives.
Required Skills
Risk Management
- Supplier Risk Management (SRM)
- Third-Party Risk Management (TPRM)
- Enterprise Risk Management
- Operational Risk Management
- Technology Risk Assessment
- Information Security Risk
- Privacy Risk Assessment
- Cybersecurity Risk Assessment
- Business Resiliency & Continuity Risk
- Risk Analysis & Evaluation
- Control Assessment & Validation
- Risk Mitigation Planning
- Risk Documentation & Reporting
Technical Skills
- Microsoft Office Suite (Excel, Word, PowerPoint)
- Data Analysis and Data Entry
- Documentation and Reporting
- Internet and Supplier Research
- Risk Assessment Tools and Methodologies
Soft Skills
- Strong analytical and critical thinking abilities
- Excellent written and verbal communication skills
- Strong organizational and time management skills
- Attention to detail
- Problem-solving capabilities
- Stakeholder management and collaboration
- Ability to handle confidential information with discretion
- Ability to work independently and proactively
- Adaptability in a dynamic, fast-paced environment
Required Experience
- Experience in:
- Supplier Risk Management (SRM)
- Third-Party Risk Management (TPRM)
- Operational Risk Management
- Enterprise Risk Management
- Experience conducting risk assessments and control evaluations.
- Experience identifying, documenting, and reporting risk findings.
- Experience developing remediation recommendations and mitigation strategies.
- Experience working with sensitive financial and business information.
- Experience coordinating multiple assessments and priorities simultaneously.
- Project coordination or project management experience is preferred.
Preferred Qualifications
- Background in:
- Risk Management
- Information Security
- Cybersecurity
- Compliance
- Internal Audit
- Privacy
- Governance
- Experience performing vendor and supplier assessments.
- Understanding of third-party risk management frameworks.
- Knowledge of operational resilience and business continuity principles.
- Familiarity with enterprise risk management methodologies and industry best practices.
Key Competencies
- Third-Party Risk Management
- Supplier Due Diligence
- Risk Assessment & Analysis
- Control Effectiveness Reviews
- Cybersecurity & Information Security Risk
- Compliance & Governance
- Stakeholder Communication
- Reporting & Documentation
- Process Improvement
- Project Coordination
Interview Process
Round 1: Virtual Interview
Round 2: Technical/Panel Interview
Success Profile
The ideal candidate is a proactive risk professional who can independently drive supplier assessments from initiation through completion, communicate findings effectively, influence stakeholders, and help strengthen the organization''''s third-party risk management program.