1

Grc Third Party Risk Analyst Jobs in Irmo, SC (NOW HIRING)

Z/OS Mainframe Programmer

Columbia, SC

$51 - $64.75/hr

Z/OS OPERATION Z/OS SUPPORT INCLUDING PROBLEM ANALYSIS AND RESOLUTION PROVIDE TECHNICAL SUPPORT OF ... TSO l. 3RD PARTY SOFTWARE m. ASSEMBLER n. CATALOG MAINTENANCE II. PROGRAMMING SKILLS: a. SYSTEM ...

Senior Business Analyst

Columbia, SC

$85K - $110K/yr

... Third Party Liability (TPL) System Integration and Operations (SIOPS) Technology Framework ... Plan, elicit, capture, analyze and validate business, functional and technical requirements.

Performing P&L analysis * Controlling inventory Pay Rates Starting between: $43,888.00 - $59,050.00 ... Weekly Pay By clicking the link above or any third-party link within this posting, you are leaving ...

Performing P&L analysis * Controlling inventory Pay Rates Starting between: $43,888.00 - $59,050.00 ... Weekly Pay By clicking the link above or any third-party link within this posting, you are leaving ...

Showing results 21-40

Grc Third Party Risk Analyst information

See Irmo, SC salary details

$36.3K

$70.8K

$101.7K

How much do grc third party risk analyst jobs pay per year?

As of Aug 21, 2026, the average yearly pay for grc third party risk analyst in Irmo, SC is $70,785.00, according to ZipRecruiter salary data. Most workers in this role earn between $46,100.00 and $81,700.00 per year, depending on experience, location, and employer.

What is a GRC Third Party Risk Analyst?

A GRC Third Party Risk Analyst is a professional who assesses and manages the risks associated with an organization’s external vendors, suppliers, or partners. Their role involves evaluating third-party compliance with regulatory standards and internal policies, identifying potential risks such as data breaches or non-compliance, and recommending mitigation strategies. They use frameworks like GRC (Governance, Risk, and Compliance) to help ensure that third-party relationships do not compromise the organization's security or reputation. This role often collaborates with procurement, legal, and IT teams to maintain robust risk management processes.

What are some typical challenges a GRC Third Party Risk Analyst may encounter when assessing vendors?

As a GRC Third Party Risk Analyst, you may face challenges such as obtaining timely and complete responses from vendors, especially when dealing with large or international organizations. Navigating varying levels of vendor maturity in risk management practices can also be difficult. Additionally, balancing the need for thorough risk assessments with fast-paced business timelines requires strong communication and prioritization skills. Collaborating closely with procurement, legal, and IT teams is essential to ensure all risks are properly identified and managed.

What are the key skills and qualifications needed to thrive as a GRC Third Party Risk Analyst, and why are they important?

To thrive as a GRC Third Party Risk Analyst, you need a strong understanding of risk management frameworks, compliance regulations, and vendor risk assessment methodologies, typically supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (like Archer or ServiceNow), third-party risk management tools, and certifications such as CISA or CRISC is highly beneficial. Strong analytical thinking, attention to detail, and effective communication skills are essential soft skills for this role. These competencies ensure that organizations can accurately assess and mitigate third-party risks, maintaining compliance and protecting sensitive data.

What is the difference between Grc Third Party Risk Analyst vs Grc Vendor Risk Analyst?

AspectGrc Third Party Risk AnalystGrc Vendor Risk Analyst
CertificationsCertifications like CRISC, CISA often preferredSame certifications commonly required
Work EnvironmentFocuses on third-party relationships and risk assessmentsPrimarily evaluates vendor-specific risks and compliance
Industry UsageUsed across finance, healthcare, and tech sectorsCommonly found in industries with extensive vendor networks

The Grc Third Party Risk Analyst and Grc Vendor Risk Analyst roles overlap significantly in certifications and work environment. The main difference lies in scope: the Third Party Risk Analyst assesses overall third-party relationships, while the Vendor Risk Analyst concentrates specifically on individual vendors. Both roles are vital for managing third-party risks in various industries.

What are popular job titles related to Grc Third Party Risk Analyst jobs in Irmo, SC?

For Grc Third Party Risk Analyst jobs in Irmo, SC, the most frequently searched job titles are:

What job categories do people searching Grc Third Party Risk Analyst jobs in Irmo, SC look for?

The top searched job categories for Grc Third Party Risk Analyst jobs in Irmo, SC are:

What cities near Irmo, SC are hiring for Grc Third Party Risk Analyst jobs?

Cities near Irmo, SC with the most Grc Third Party Risk Analyst job openings:

Infographic showing various Grc Third Party Risk Analyst job openings in Irmo, SC as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 12% Part Time, and 3% Contract. Highlights an 85% Physical, 5% Hybrid, and 10% Remote job distribution, with an average salary of $70,785 per year, or $34 per hour.

Information Assurance Analyst

Infojini Inc

Columbia, SC

Full-time

Re-posted 5 days ago


Job description

Job Description

SCOPE OF THE PROJECT:
The SCDHHS Office of Information Assurance (OIA) is charged with ensuring the security and compliance of SCDHHS' information systems and data. OIA seeks experienced consultants to assist with the establishment, implementation, and/or enhancement of information system security and compliance efforts based on Federal, State, and Agency regulatory requirements, policies, standards, and guidelines.
Role Summary/Purpose
Overview:
The IA Analyst will report to the Office of Information Assurance and operate as an experienced information assurance consultant to SCDHHS leadership, business units, business partners, vendors, and other stakeholders.
Security Program Experience:
Demonstrated work experience and high degree of familiarity with FISMA or NIST Risk Management Framework-based programs is required. Experience and knowledge of MARS-E is preferred.
This experience should include documented success in the creation and maintenance of Risk Management Framework (RMF) and Assessment and Authorization (A&A) artifacts such as System Security Plans, Privacy Impact Assessments, Interconnection Security Agreements, Computer Matching Agreements, and Plans of Action and Milestones. Such experience will necessarily require excellent communication skills with the ability to interview staff and vendors, to review and analyze existing documentation and diagrams, and to create or collect other required supporting documents as appropriate.
Experience with integrating RMF and A&A tasks into the System Development Life Cycle (SDLC) is preferred.
Experience in security as related to Cloud services and vendor management is desirable for this position.
Technical Knowledge:
Although this is not a technical position, suitable candidates will have a good working knowledge of a broad range of information technologies such as IBM System 390/zSeries, Linux and Windows servers, database management systems, firewalls, IPS solutions, switching and routing infrastructure, data types and data classifications, and related information technologies and concepts.
General Duties and Responsibilities:
1. Assist in the development, implementation, and/or ongoing maturation of SCDHHS security and compliance initiatives.
2. Audit and assess internal agency systems as well as business partner, service provider, and vendor information system security controls.
3. Utilize the Microsoft Office software suite, eGRC system, Bizagi, Atlassian, and other products to document and report on information gathered during audit and assessment activities or other OIA efforts.
4. Participate in third-party audits and/or assessments of agency and business partner systems.
5. Collaborate with agency leadership, business partners, and other parties/stakeholders to provide recommendations for security and compliance risk mitigation efforts.
REQUIRED CERTIFICATION: ISC(2), ISACA, SANS GIAC, or other similar Information Security Certification is required.
EDUCATION PREFERRED: Bachelor's degree in computer science or similar discipline is preferred.

1. Strong working knowledge of FISMA, NIST, and HIPAA Security and Privacy requirements, standards, and guidelines.
2. 5+ years of experience working in the Information Technology field or auditing Information Technology systems or programs.
3. ISC(2), ISACA, SANS GIAC, or other similar Information Security Certification is required.
4. Documented experience in the creation and maintenance of Risk Management Framework (RMF) and Assessment and Authorization (A&A) artifacts such as System Security Plans, Privacy Impact Assessments, Interconnection Security Agreements, Computer Matching Agreements, and Plans of Action and Milestones.
5. Ability to work independently and as a member of a team.
6. Ability to multitask and prioritize tasks effectively in order to meet deadlines.
7. Ability to engage diverse audiences of varying technical and non-technical skill-levels to ensure effective alignment of technical requirements to business objectives.
8. Ability to collaborate and coordinate efforts among multiple teams and vendors.
9. Must have intermediate to advanced skills in Microsoft Office products (Word, Excel, PowerPoint, Visio) to include working with templates and style guidelines for branding consistency.
10. Keen attention to detail while maintaining the ability to see the big picture.
11. Ability to absorb, retain, and communicate complex processes.
12. Strong English language skills.
13. Demonstrable understanding of the rules of English grammar and usage.
14. Ability to accept changes and constructive criticism and to remain flexible in dealing with leadership and teams of varying technical and business knowledge.
Preferred Requirements/Skills:
1. Bachelor's degree in computer science or similar discipline.
2. Strong working knowledge of CMS MARS-E compliance requirements.
3. Prior experience working with an organization subject to CMS MARS-E requirements.
4. Experience and training with eGRC solutions.
5. Prior Health Information Technology experience.
6. Previous Medicaid experience.
7. Understanding of LEAN and Agile development practices.

Additional Information

All your information will be kept confidential according to EEO guidelines.


Infojini logo

About Infojini

Sourced by ZipRecruiter

Infojini Consulting is a full service IT consulting, services, and staffing firm with offices in Linthicum Heights ,Maryland, Washington, DC and Mumbai, India. Infojini Consulting is recognized as one of the fastest growing IT services and software development Companies. With a partnership of all major technology vendors, Infojini Consulting has built a strong Government and commercial customer base including fortune 100 companies and most state and federal agencies such as State of North Carolina, State of South Carolina, State of Maryland, State of California, State of Pennsylvania, State of Virginia, State of Washington and many others.

Industry

Recruiting and staffing services

Company size

51 - 200 Employees

Headquarters location

Columbia, MD, US

Year founded

2006