The Third-Party Risk Management Analyst II helps ensure compliance with SECU's Third-Party Risk ... IT GRC, etc.) to review the third-party risk management lifecycle and implement changes where ...
The Third-Party Risk Management Analyst II helps ensure compliance with SECU's Third-Party Risk ... IT GRC, etc.) to review the third-party risk management lifecycle and implement changes where ...
The Third-Party Risk Management Analyst II helps ensure compliance with SECU's Third-Party Risk ... IT GRC, etc.) to review the third-party risk management lifecycle and implement changes where ...
The Third-Party Risk Management Analyst II helps ensure compliance with SECU's Third-Party Risk ... IT GRC, etc.) to review the third-party risk management lifecycle and implement changes where ...
... GRC) team. The ideal candidate will focus on Third-Party (TP) Cybersecurity & Risk Management. In ... Risk Management • Risk Analysis: Analyze and assess third-party cybersecurity risks. • ...
... GRC) team. The ideal candidate will focus on Third-Party (TP) Cybersecurity & Risk Management. In ... Risk Management • Risk Analysis: Analyze and assess third-party cybersecurity risks. • ...
Senior GRC Analyst
Cary, NC · Hybrid
Overview The Sr. Analyst, Governance, Risk, and Compliance (GRC) plays an important role in the GRC ... Contribute subject matter expertise through third party risk assessment process * Identify and ...
Senior GRC Analyst
Cary, NC · Hybrid
Overview The Sr. Analyst, Governance, Risk, and Compliance (GRC) plays an important role in the GRC ... Contribute subject matter expertise through third party risk assessment process * Identify and ...
Risk Analysis
Raleigh, NC · On-site
... and third-party risks. - Support governance, risk, and compliance (GRC) initiatives, policy reviews, audit readiness, issue management, control monitoring, and reporting for senior leadership ...
Quick apply
Risk Analysis
Raleigh, NC · On-site
... and third-party risks. - Support governance, risk, and compliance (GRC) initiatives, policy reviews, audit readiness, issue management, control monitoring, and reporting for senior leadership ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Experience with ServiceNow GRC/IRM, Archer, OneTrust, ProcessUnity, Coupa, Ariba, Prevalent, BitSight, SecurityScorecard, UpGuard, or similar third-party risk platforms. * Knowledge of NIST CSF 2.0 ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Experience with ServiceNow GRC/IRM, Archer, OneTrust, ProcessUnity, Coupa, Ariba, Prevalent, BitSight, SecurityScorecard, UpGuard, or similar third-party risk platforms. * Knowledge of NIST CSF 2.0 ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Experience with ServiceNow GRC/IRM, Archer, OneTrust, ProcessUnity, Coupa, Ariba, Prevalent, BitSight, SecurityScorecard, UpGuard, or similar third-party risk platforms. * Knowledge of NIST CSF 2.0 ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Experience with ServiceNow GRC/IRM, Archer, OneTrust, ProcessUnity, Coupa, Ariba, Prevalent, BitSight, SecurityScorecard, UpGuard, or similar third-party risk platforms. * Knowledge of NIST CSF 2.0 ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Experience with ServiceNow GRC/IRM, Archer, OneTrust, ProcessUnity, Coupa, Ariba, Prevalent, BitSight, SecurityScorecard, UpGuard, or similar third-party risk platforms. * Knowledge of NIST CSF 2.0 ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Experience with ServiceNow GRC/IRM, Archer, OneTrust, ProcessUnity, Coupa, Ariba, Prevalent, BitSight, SecurityScorecard, UpGuard, or similar third-party risk platforms. * Knowledge of NIST CSF 2.0 ...
Risk Analysis
Raleigh, NC · On-site
$100K - $120K/yr
Risk Analysis Must Have Technical/Functional Skills • Risk identification, assessment, mitigation ... third-party risks. • Experience supporting governance, risk, and compliance (GRC) initiatives ...
Risk Analysis
Raleigh, NC · On-site
$100K - $120K/yr
Risk Analysis Must Have Technical/Functional Skills • Risk identification, assessment, mitigation ... third-party risks. • Experience supporting governance, risk, and compliance (GRC) initiatives ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
Security Analyst III
Raleigh, NC · On-site +1
As a Security Analyst at Lucid Software, you will protect our corporate assets, world-class web ... day GRC (Governance, Risk, and Compliance) operations, third-party risk assessments, and ...
Security Analyst III
Raleigh, NC · On-site +1
As a Security Analyst at Lucid Software, you will protect our corporate assets, world-class web ... day GRC (Governance, Risk, and Compliance) operations, third-party risk assessments, and ...
Security Analyst III
Raleigh, NC · On-site
As a Security Analyst at Lucid Software, you will protect our corporate assets, world-class web ... day GRC (Governance, Risk, and Compliance) operations, third-party risk assessments, and ...
Security Analyst III
Raleigh, NC · On-site
As a Security Analyst at Lucid Software, you will protect our corporate assets, world-class web ... day GRC (Governance, Risk, and Compliance) operations, third-party risk assessments, and ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
The Senior Consultant - Technology Third Party Risk Management (TPRM) role offers an opportunity to ... Enrolled Agent * CBAP - Certified Business Analysis Professional * Certified in Risk and ...
Risk Management Analyst
Raleigh, NC · On-site
... third-party risks. * Support governance, risk, and compliance (GRC) initiatives, policy adherence reviews, audit readiness, issue management, control monitoring, and risk reporting for senior ...
Risk Management Analyst
Raleigh, NC · On-site
... third-party risks. * Support governance, risk, and compliance (GRC) initiatives, policy adherence reviews, audit readiness, issue management, control monitoring, and risk reporting for senior ...
Security Analyst
Raleigh, NC · On-site
As a security analyst at Lucid you will be helping to protect corporate assets, including our world ... years experience with third party risk management, GRC, customer due diligence, etc.
Security Analyst
Raleigh, NC · On-site
As a security analyst at Lucid you will be helping to protect corporate assets, including our world ... years experience with third party risk management, GRC, customer due diligence, etc.
Security Analyst
Raleigh, NC · On-site +1
As a security analyst at Lucid you will be helping to protect corporate assets, including our world ... years experience with third party risk management, GRC, customer due diligence, etc.
Security Analyst
Raleigh, NC · On-site +1
As a security analyst at Lucid you will be helping to protect corporate assets, including our world ... years experience with third party risk management, GRC, customer due diligence, etc.
... internal and 3rd party risk management. The ideal candidate will combine expertise in both ... Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
... internal and 3rd party risk management. The ideal candidate will combine expertise in both ... Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
... internal and 3rd party risk management. The ideal candidate will combine expertise in both ... Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
... internal and 3rd party risk management. The ideal candidate will combine expertise in both ... Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
... internal and 3rd party risk management. The ideal candidate will combine expertise in both ... Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
... internal and 3rd party risk management. The ideal candidate will combine expertise in both ... Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
IT Governance Analyst
Chapel Hill, NC · On-site
$81K - $129K/yr
The IT Governance Analyst assists in the identification, assessment, monitoring, and risk mitigation associated with third-party vendors and suppliers. This role serves as a trusted advisor to ...
IT Governance Analyst
Chapel Hill, NC · On-site
$81K - $129K/yr
The IT Governance Analyst assists in the identification, assessment, monitoring, and risk mitigation associated with third-party vendors and suppliers. This role serves as a trusted advisor to ...
Grc Third Party Risk Analyst information
See Raleigh, NC salary details
$43.3K - $50.3K
9% of jobs
$56.5K is the 25th percentile. Wages below this are outliers.
$50.3K - $57.4K
18% of jobs
$57.4K - $64.5K
0% of jobs
$64.5K - $71.5K
6% of jobs
$71.5K - $78.6K
2% of jobs
$78.6K - $85.7K
4% of jobs
$85.7K - $92.7K
2% of jobs
The median wage is $93.8K / yr.
$92.7K - $99.8K
52% of jobs
$99.8K - $106.9K
6% of jobs
$106.9K - $114K
0% of jobs
$114K - $121K
0% of jobs
$43.3K
$84.3K
$121K
How much do grc third party risk analyst jobs pay per year?
What are some typical challenges a GRC Third Party Risk Analyst may encounter when assessing vendors?
What are the key skills and qualifications needed to thrive as a GRC Third Party Risk Analyst, and why are they important?
What is a GRC Third Party Risk Analyst?
What is the difference between Grc Third Party Risk Analyst vs Grc Vendor Risk Analyst?
| Aspect | Grc Third Party Risk Analyst | Grc Vendor Risk Analyst |
|---|---|---|
| Certifications | Certifications like CRISC, CISA often preferred | Same certifications commonly required |
| Work Environment | Focuses on third-party relationships and risk assessments | Primarily evaluates vendor-specific risks and compliance |
| Industry Usage | Used across finance, healthcare, and tech sectors | Commonly found in industries with extensive vendor networks |
The Grc Third Party Risk Analyst and Grc Vendor Risk Analyst roles overlap significantly in certifications and work environment. The main difference lies in scope: the Third Party Risk Analyst assesses overall third-party relationships, while the Vendor Risk Analyst concentrates specifically on individual vendors. Both roles are vital for managing third-party risks in various industries.

Full-time
Re-posted 13 days ago
State Employees' Credit Union (North Carolina) rating
8.2
Based on 23 frontline employees who took The Breakroom Quiz
Job description
Position Overview:
The Third-Party Risk Management (TPRM) program provides strategic direction for TPRM governance & oversight, due diligence lifecycle execution, monitoring & reporting, and program management across SECU, in support of the Operational Risk Management framework. The program objective is to support business efforts to engage Third Parties to provide services to the membership.
The Third-Party Risk Management Analyst II helps ensure compliance with SECU's Third-Party Risk Management Program. This includes assisting with due diligence lifecycle execution, monitoring & reporting, and program management on request.
Essential Responsibilities:
- 60% - Due Diligence Lifecycle Execution. Work closely with assigned business lines to execute third-party risk management lifecycle activities in coordination with key internal stakeholders. Ensure timely analysis of due diligence documentation in consultation with third-party relationship owners, subject matter experts, and external partners. Ensure SECU due diligence requirements and documentation requests are effectively communicated to third parties. Ensure the adequacy of contingency plans for critical third parties, which outline strategies for transitioning away from a critical third-party, if needed.
- 10% - Monitoring & Reporting. Ensure ongoing monitoring requirements of existing third parties are sufficient to manage risks identified in the planning and due diligence phases. Support management reporting regarding performance issues, identifiable risk, exceptions, and risk mitigation plans
- 10% - Program Management. Support maintenance of third-party relationship inventory, files, program software, due diligence artifacts, and related documentation. Work with key internal stakeholders (e.g., Project Management, Privacy, Procurement, Compliance, Accounting, Legal Services, IT GRC, etc.) to review the third-party risk management lifecycle and implement changes where needed. Support communications with internal and external auditors during third-party risk management audits and examinations.
- 15% - TPRM Subject Matter Expertise. Develop and maintain a working knowledge of regulatory requirements and guidance along with industry best practices related to third-party risk management.
- 5% - TPRM Framework Management Support. Support the development, implementation, refinement and sustainability of SECU's third-party risk management governance framework.
Required Education & Experience (Knowledge, Skills, & Abilities):
- Associates degree via the North Carolina College Transfer Program (NC-CTP)
- Third-Party regulatory exposure including NCUA, FFIEC, CFPB, OCC, & FDIC
- 2 direct years of TPRM program experience
- Operational Risk Management program execution experience working across organization levels.
Preferred Education & Experience (Knowledge, Skills, & Abilities):
- Four-year degree
- CCUE Certification
- 5+ years direct years of TPRM program experience
- Demonstrated ability to work independently
- Credit Union risk management experience
Job Environment & Physical Requirements:
- The position has a Hybrid schedule with at least 2 days / week in the Salisbury Street or Creedmoor Road offices
SECU provides equal employment opportunity to all qualified persons regardless of race, color, religion, age, sex, sexual orientation, gender identity, national origin, genetic information, disability, veteran status, or other classification protected by law.
Disclaimer
State Employees' Credit Union reserves the right to fill this role at a higher/lower level based on business need.
What State Employees' Credit Union (North Carolina) employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom