Overview The GRC, Third-Party Risk, Vulnerability Management Analyst performs established governance, risk, compliance, vendor risk, and vulnerability management activities with increasing ...
Overview The GRC, Third-Party Risk, Vulnerability Management Analyst performs established governance, risk, compliance, vendor risk, and vulnerability management activities with increasing ...
Security Analyst, Third-Party Ecosystem Risk Management
New York, NY · On-site
$118K - $175K/yr
Team: The Security Governance, Risk, and Compliance (GRC) team is part of Plaid's security ... Third-party ecosystem risk is a core part of how we keep Plaid safe-we vet the security of both the ...
Security Analyst, Third-Party Ecosystem Risk Management
New York, NY · On-site
$118K - $175K/yr
Team: The Security Governance, Risk, and Compliance (GRC) team is part of Plaid's security ... Third-party ecosystem risk is a core part of how we keep Plaid safe-we vet the security of both the ...
Maintain vendor inventory and workflows within the TPRM/GRC platform; monitor changes in vendor ... Strong analytical, communication, and stakeholder management skills. * Ability to operate ...
Maintain vendor inventory and workflows within the TPRM/GRC platform; monitor changes in vendor ... Strong analytical, communication, and stakeholder management skills. * Ability to operate ...
While fulfilling this mission, RQA provides quantitative analysis and evidence-based insights to ... Third Party Risk Third Party Risk Management works with internal and external business and risk ...
While fulfilling this mission, RQA provides quantitative analysis and evidence-based insights to ... Third Party Risk Third Party Risk Management works with internal and external business and risk ...
While fulfilling this mission, RQA provides quantitative analysis and evidence-based insights to ... Third Party Risk Third Party Risk Management works with internal and external business and risk ...
While fulfilling this mission, RQA provides quantitative analysis and evidence-based insights to ... Third Party Risk Third Party Risk Management works with internal and external business and risk ...
Role summary As a Senior Third-Party Risk Specialist , you will be responsible for identifying ... Strong analytical and problem-solving abilities. * Ability to work collaboratively across technical ...
Role summary As a Senior Third-Party Risk Specialist , you will be responsible for identifying ... Strong analytical and problem-solving abilities. * Ability to work collaboratively across technical ...
Use Your Power for Purpose Our Global Governance, Risk, and Compliance (GRC) team provides ... Strong strategic thinking, analytical, and problem-solving capabilities with the ability to ...
Use Your Power for Purpose Our Global Governance, Risk, and Compliance (GRC) team provides ... Strong strategic thinking, analytical, and problem-solving capabilities with the ability to ...
Sr. GRC Analyst (Hybrid)
Short Hills, NJ · On-site
Overview The Sr. GRC Analyst performs established governance, risk, compliance, vendor risk, and ... Third-Party Risk Management * Coordinate vendor assessment intake, due diligence requests, follow ...
Sr. GRC Analyst (Hybrid)
Short Hills, NJ · On-site
Overview The Sr. GRC Analyst performs established governance, risk, compliance, vendor risk, and ... Third-Party Risk Management * Coordinate vendor assessment intake, due diligence requests, follow ...
Sr. GRC Analyst (Hybrid)
Short Hills, NJ · On-site
Overview The Sr. GRC Analyst performs established governance, risk, compliance, vendor risk, and ... Third-Party Risk Management * Coordinate vendor assessment intake, due diligence requests, follow ...
Sr. GRC Analyst (Hybrid)
Short Hills, NJ · On-site
Overview The Sr. GRC Analyst performs established governance, risk, compliance, vendor risk, and ... Third-Party Risk Management * Coordinate vendor assessment intake, due diligence requests, follow ...
Third Party Risk Manager
New York, NY · On-site
... analysis, identity management, access management, cloud security, or web security * Working ... Experience with Archer, ProcessUnity, ServiceNow, OneTrust, or other GRC/VRM platforms * Experience ...
Third Party Risk Manager
New York, NY · On-site
... analysis, identity management, access management, cloud security, or web security * Working ... Experience with Archer, ProcessUnity, ServiceNow, OneTrust, or other GRC/VRM platforms * Experience ...
Third Party Risk Manager
New York, NY · On-site
... analysis, identity management, access management, cloud security, or web security * Working ... Experience with Archer, ProcessUnity, ServiceNow, OneTrust, or other GRC/VRM platforms * Experience ...
Third Party Risk Manager
New York, NY · On-site
... analysis, identity management, access management, cloud security, or web security * Working ... Experience with Archer, ProcessUnity, ServiceNow, OneTrust, or other GRC/VRM platforms * Experience ...
... analysis, identity management, access management, or web * Working knowledge of at least one ... Experience with Archer, Process Unity, ServiceNow or other GRC/VRM tools * Experience with security ...
... analysis, identity management, access management, or web * Working knowledge of at least one ... Experience with Archer, Process Unity, ServiceNow or other GRC/VRM tools * Experience with security ...
Cybersecurity and Third-Party Risk Manager
Jersey City, NJ · On-site
$95 - $110/hr
Maintain vendor inventory and workflows within the TPRM/GRC platform; monitor changes in vendor ... Strong analytical, communication, and stakeholder management skills. * Ability to operate ...
Cybersecurity and Third-Party Risk Manager
Jersey City, NJ · On-site
$95 - $110/hr
Maintain vendor inventory and workflows within the TPRM/GRC platform; monitor changes in vendor ... Strong analytical, communication, and stakeholder management skills. * Ability to operate ...
Cybersecurity and Third-Party Risk Manager
Jersey City, NJ · On-site
$121K - $164K/yr
Maintain vendor inventory and workflows within the TPRM/GRC platform; monitor changes in vendor ... Strong analytical, communication, and stakeholder management skills. * Ability to operate ...
Cybersecurity and Third-Party Risk Manager
Jersey City, NJ · On-site
$121K - $164K/yr
Maintain vendor inventory and workflows within the TPRM/GRC platform; monitor changes in vendor ... Strong analytical, communication, and stakeholder management skills. * Ability to operate ...
... analysis. Include but are not limited to Third Party Risk Management Framework * Establish and ... enhance the Third Party Risk Framework, ensure it consists of appropriate components to effectively ...
... analysis. Include but are not limited to Third Party Risk Management Framework * Establish and ... enhance the Third Party Risk Framework, ensure it consists of appropriate components to effectively ...
... analysis. Responsibilities Include but are not limited to Third Party Risk Management Framework ... Establish and enhance the Third Party Risk Framework, ensure it consists of appropriate components ...
... analysis. Responsibilities Include but are not limited to Third Party Risk Management Framework ... Establish and enhance the Third Party Risk Framework, ensure it consists of appropriate components ...
Operational Risk Management Department-Third Party Risk Management AVP/Associate
Manhattan, NY · On-site
$42K - $150K/yr
... analysis. Responsibilities Include but are not limited to Third Party Risk Management Framework ... Establish and enhance the Third Party Risk Framework, ensure it consists of appropriate components ...
Operational Risk Management Department-Third Party Risk Management AVP/Associate
Manhattan, NY · On-site
$42K - $150K/yr
... analysis. Responsibilities Include but are not limited to Third Party Risk Management Framework ... Establish and enhance the Third Party Risk Framework, ensure it consists of appropriate components ...
Use Your Power for Purpose Our Global Governance, Risk, and Compliance (GRC) team provides ... Strong strategic thinking, analytical, and problemsolving capabilities with the ability to ...
Use Your Power for Purpose Our Global Governance, Risk, and Compliance (GRC) team provides ... Strong strategic thinking, analytical, and problemsolving capabilities with the ability to ...
Audit Manager - Third Party Risk
Manhattan, NY · On-site
$89K - $150K/yr
... Third-Party Risk Management. The colleague will support audit engagements, leading planning and ... Analyze / review audit results and documentation to evaluate effectiveness and efficiency ...
Audit Manager - Third Party Risk
Manhattan, NY · On-site
$89K - $150K/yr
... Third-Party Risk Management. The colleague will support audit engagements, leading planning and ... Analyze / review audit results and documentation to evaluate effectiveness and efficiency ...
Cybersecurity and Third-Party Risk Manager
Jersey City, NJ · On-site
$120 - $180/hr
Third-Party risk management * Execute the full TPRM lifecycle: onboarding, due diligence, risk ... Maintain vendor inventory and workflows within the TPRM/GRC platform; monitor changes in vendor ...
Cybersecurity and Third-Party Risk Manager
Jersey City, NJ · On-site
$120 - $180/hr
Third-Party risk management * Execute the full TPRM lifecycle: onboarding, due diligence, risk ... Maintain vendor inventory and workflows within the TPRM/GRC platform; monitor changes in vendor ...
Grc Third Party Risk Analyst information
See Edison, NJ salary details
$46.1K - $53.6K
9% of jobs
$60.1K is the 25th percentile. Wages below this are outliers.
$53.6K - $61.1K
18% of jobs
$61.1K - $68.7K
0% of jobs
$68.7K - $76.2K
6% of jobs
$76.2K - $83.7K
2% of jobs
$83.7K - $91.2K
4% of jobs
$91.2K - $98.8K
2% of jobs
The median wage is $99.9K / yr.
$98.8K - $106.3K
52% of jobs
$106.3K - $113.8K
6% of jobs
$113.8K - $121.4K
0% of jobs
$121.4K - $128.9K
0% of jobs
$46.1K
$89.7K
$128.9K
How much do grc third party risk analyst jobs pay per year?
What is a GRC Third Party Risk Analyst?
What are some typical challenges a GRC Third Party Risk Analyst may encounter when assessing vendors?
What are the key skills and qualifications needed to thrive as a GRC Third Party Risk Analyst, and why are they important?
What is the difference between Grc Third Party Risk Analyst vs Grc Vendor Risk Analyst?
| Aspect | Grc Third Party Risk Analyst | Grc Vendor Risk Analyst |
|---|---|---|
| Certifications | Certifications like CRISC, CISA often preferred | Same certifications commonly required |
| Work Environment | Focuses on third-party relationships and risk assessments | Primarily evaluates vendor-specific risks and compliance |
| Industry Usage | Used across finance, healthcare, and tech sectors | Commonly found in industries with extensive vendor networks |
The Grc Third Party Risk Analyst and Grc Vendor Risk Analyst roles overlap significantly in certifications and work environment. The main difference lies in scope: the Third Party Risk Analyst assesses overall third-party relationships, while the Vendor Risk Analyst concentrates specifically on individual vendors. Both roles are vital for managing third-party risks in various industries.
What are popular job titles related to Grc Third Party Risk Analyst jobs in Edison, NJ?
For Grc Third Party Risk Analyst jobs in Edison, NJ, the most frequently searched job titles are:
What job categories do people searching Grc Third Party Risk Analyst jobs in Edison, NJ look for?
The top searched job categories for Grc Third Party Risk Analyst jobs in Edison, NJ are:
What cities near Edison, NJ are hiring for Grc Third Party Risk Analyst jobs?
Cities near Edison, NJ with the most Grc Third Party Risk Analyst job openings:
Vulnerability Management Specialist- GRC (Hybrid)
Short Hills, NJ • On-site
Full-time
Medical, Retirement, PTO
Posted 12 days ago
Selective Insurance rating
8.7
Based on 5 frontline employees who took The Breakroom Quiz
71st of 310 rated insurance
Job description
At Selective, we don't just insure uniquely, we employ uniqueness.
Selective is a midsized U.S. domestic property and casualty insurance company with a history of strong, consistent financial performance for nearly 100 years. Selective's unique position as both a leading insurance group and an employer of choice is recognized in a wide variety of awards and honors, including listing in Forbes Best Midsize Employers in 2025 and certification as a Great Place to Work® in 2025 for the sixth consecutive year.
Employees are empowered and encouraged to Be Uniquely You by being their true, unique selves and contributing their diverse talents, experiences, and perspectives to our shared success. Together, we are a high-performing team working to serve our customers responsibly by helping to mitigate loss, keep them safe, and restore their lives and businesses after an insured loss occurs.
Overview
The GRC, Third-Party Risk, Vulnerability Management Analyst performs established governance, risk, compliance, vendor risk, and vulnerability management activities with increasing independence. This role is designed for a developing risk professional who can execute risk assessments, analyze control evidence, support regulatory and audit requirements, coordinate remediation tracking, and produce clear reporting for stakeholders. The role applies working knowledge of cybersecurity controls, risk frameworks, third-party due diligence, vulnerability governance, and issue management to support consistent, defensible risk decisions.
Responsibilities
GRC Program Execution
- Execute assigned GRC activities, including risk documentation, control mapping, exception tracking, and assessment record maintenance.
- Support policy, standard, and procedure lifecycle activities by coordinating updates, collecting input, and validating evidence of approvals.
- Prepare materials for governance forums, risk reviews, audit discussions, and compliance reporting using established templates and data sources.
Third-Party Risk Management
- Coordinate vendor assessment intake, due diligence requests, follow-ups, and stakeholder communications through closure.
- Review vendor questionnaires, SOC reports, ISO certifications, penetration test summaries, vulnerability information, business continuity documentation, and other due diligence artifacts for completeness and risk relevance.
- Document assessment conclusions, remediation items, missing evidence, and residual risk considerations in alignment with defined TPRM procedures.
Vulnerability Management Governance
- Support vulnerability governance activities by tracking remediation status, exception requests, risk acceptance documentation, and aging issues.
- Partner with technology and risk stakeholders to validate ownership, required evidence, and remediation progress for identified vulnerabilities or control gaps.
- Contribute to recurring metrics and reporting related to vulnerability trends, overdue remediation, exception volume, and issue closure.
Audit and Compliance Support
- Collect, organize, and validate audit evidence in accordance with defined control objectives and regulatory expectations.
- Assist with remediation tracking for audit findings, control gaps, risk acceptances, and compliance action items.
- Maintain documentation aligned to frameworks and requirements such as NIST CSF, NIST 800-53, NYDFS, GLBA, SOX, SOC reporting, and ISO 27001.
Metrics and Continuous Improvement
- Maintain and enhance routine metrics for risk assessment volume, vendor status, vulnerability remediation, open issues, and documentation completeness.
- Identify opportunities to improve templates, procedures, evidence requests, stakeholder instructions, and process consistency.
- Support process improvement efforts by documenting pain points, recommending practical updates, and helping implement approved changes.
Qualifications
Required
- Working understanding of cybersecurity, risk management, compliance, vulnerability management, audit, or third-party risk concepts.
- Ability to evaluate common security evidence, identify incomplete or inconsistent information, and escalate potential risk concerns.
- Strong attention to detail, documentation discipline, and ability to manage multiple assessment or remediation activities concurrently.
- Clear written and verbal communication skills, including the ability to summarize technical or control information for business stakeholders.
- Proficiency with Microsoft Office; experience with GRC, vendor risk, vulnerability management, ticketing, or reporting tools is preferred.
Preferred
- 3-5 years of experience in GRC, cybersecurity, third-party risk, vulnerability management, audit, compliance, procurement risk, or vendor management.
- Experience contributing to audits, regulatory compliance activities, control testing, risk assessments, or vendor due diligence reviews.
- Familiarity with frameworks and regulations such as NIST CSF, NIST 800-53, NYDFS, GLBA, SOX, SOC reporting, ISO 27001, or related standards.
- Relevant certification or progress toward a certification such as CRISC, CISA, Security+, CDPSE, CTPRP, or similar is a plus.
Total Rewards
Selective Insurance offers a total rewards package that includes a competitive base salary, incentive plan eligibility at all levels, and a wide array of benefits designed to help you and your family stay healthy, achieve your financial goals, and balance the demands of your work and personal life. These benefits include comprehensive health care plans, retirement savings plan with company match, discounted Employee Stock Purchase Program, tuition assistance and reimbursement programs, and 20 days of paid time off. Additional details about our total rewards package can be found by visiting our benefits page.
The actual base salary is based on geographic location, and the range is representative of salaries for this role throughout Selective's footprint. Additional considerations include relevant education, qualifications, experience, skills, performance, and business needs.
Pay Range
USD $116,000.00 - USD $157,000.00 /Yr.
Additional Information
Selective is an Equal Employment Opportunity employer. That means we respect and value every individual's unique opinions, beliefs, abilities, and perspectives. We are committed to promoting a welcoming culture that celebrates diverse talent, individual identity, different points of view and experiences - and empowers employees to contribute new ideas that support our continued and growing success. Building a highly engaged team is one of our core strategic imperatives, which we believe is enhanced by diversity, equity, and inclusion. We expect and encourage all employees and all of our business partners to embrace, practice, and monitor the attitudes, values, and goals of acceptance; address biases; and foster diversity of viewpoints and opinions.
For Massachusetts Applicants
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
What Selective Insurance employees say
Pay
Hours and flexibility
Workplace
Get the full story on Breakroom
About Selective Insurance
Sourced by ZipRecruiter
Industry
Insurance services
Company size
1,001 - 5,000 Employees
Headquarters location
Branchville, NJ, US
Year founded
1926