Experience with third-party risk programs * Familiarity with GRC tools (Vanta, Drata, LogicGate ... Flexible remote work policy * 10 Paid Holidays * Wide array of wellbeing offerings * Pre-tax ...
Experience with third-party risk programs * Familiarity with GRC tools (Vanta, Drata, LogicGate ... Flexible remote work policy * 10 Paid Holidays * Wide array of wellbeing offerings * Pre-tax ...
Third Party Reviewer
Somerville, MA · Remote
$19.81 - $28.30/hr
Strong analytical skills and attention to detail, with the ability to review and interpret complex ... Remote Work requires secure, stable, quiet, compliant work area and free of dependent care * M-F ...
Third Party Reviewer
Somerville, MA · Remote
$19.81 - $28.30/hr
Strong analytical skills and attention to detail, with the ability to review and interpret complex ... Remote Work requires secure, stable, quiet, compliant work area and free of dependent care * M-F ...
Third Party Reviewer
Somerville, MA · On-site +1
$19.81 - $28.30/hr
Strong analytical skills and attention to detail, with the ability to review and interpret complex ... Remote Work requires secure, stable, quiet, compliant work area and free of dependent care * M-F ...
Third Party Reviewer
Somerville, MA · On-site +1
$19.81 - $28.30/hr
Strong analytical skills and attention to detail, with the ability to review and interpret complex ... Remote Work requires secure, stable, quiet, compliant work area and free of dependent care * M-F ...
Risk Analyst
Boston, MA · Remote
$50 - $60/hr
We are looking for a Risk Analyst to join our team to help train the next generation of AI while enjoying the flexibility of remote work and the freedom to set your own schedule. This role is ...
Risk Analyst
Boston, MA · Remote
$50 - $60/hr
We are looking for a Risk Analyst to join our team to help train the next generation of AI while enjoying the flexibility of remote work and the freedom to set your own schedule. This role is ...
Senior GRC Analyst
Boston, MA · On-site +1
$95K - $110K/yr
ABOUT BLACK KITE Black Kite is the global leader in third-party cyber risk intelligence, trusted by ... THE OPPORTUNITY The Senior GRC Analyst reports to the Director of Information Security and owns ...
Senior GRC Analyst
Boston, MA · On-site +1
$95K - $110K/yr
ABOUT BLACK KITE Black Kite is the global leader in third-party cyber risk intelligence, trusted by ... THE OPPORTUNITY The Senior GRC Analyst reports to the Director of Information Security and owns ...
Third Party Reviewer
Somerville, MA · On-site +1
$19.81 - $28.30/hr
... analysts to advance our mission. As a not-for-profit, we support patient care, research, teaching ... Remote Type Remote Work Location 399 Revolution Drive Scheduled Weekly Hours 40 Employee Type ...
Third Party Reviewer
Somerville, MA · On-site +1
$19.81 - $28.30/hr
... analysts to advance our mission. As a not-for-profit, we support patient care, research, teaching ... Remote Type Remote Work Location 399 Revolution Drive Scheduled Weekly Hours 40 Employee Type ...
Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional ...
Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional ...
Third Party Reviewer
Somerville, MA · Remote
$19.81 - $28.30/hr
... analysts to advance our mission. As a not-for-profit, we support patient care, research, teaching ... Remote Type Remote Work Location 399 Revolution Drive Scheduled Weekly Hours 40 Employee Type ...
Third Party Reviewer
Somerville, MA · Remote
$19.81 - $28.30/hr
... analysts to advance our mission. As a not-for-profit, we support patient care, research, teaching ... Remote Type Remote Work Location 399 Revolution Drive Scheduled Weekly Hours 40 Employee Type ...
Technical Business Analyst - Remote
Boston, MA · Remote
$50 - $52/hr
Serve as liaison between business units, technology teams, and third-party vendors. Track project ... Strong understanding of banking/insurance processes (core banking, payments, risk & compliance ...
Quick apply
Technical Business Analyst - Remote
Boston, MA · Remote
$50 - $52/hr
Serve as liaison between business units, technology teams, and third-party vendors. Track project ... Strong understanding of banking/insurance processes (core banking, payments, risk & compliance ...
Director, Vendor Management Office
Boston, MA · On-site +1
$124K - $186K/yr
Remote candidates must be able to come into the CT or NJ office as business needs arise ... Partner with Third-Party Risk Management (TPRM) to integrate risk considerations into vendor ...
Director, Vendor Management Office
Boston, MA · On-site +1
$124K - $186K/yr
Remote candidates must be able to come into the CT or NJ office as business needs arise ... Partner with Third-Party Risk Management (TPRM) to integrate risk considerations into vendor ...
Account Executive, Mid-Market - California (Remote)
Boston, MA · On-site +1
$160K - $200K/yr
Come join the leader in cyber third-party risk intelligence! Black Kite gives organizations a comprehensive, real-time view into cyber ecosystem risk so they can make informed risk decisions and ...
Account Executive, Mid-Market - California (Remote)
Boston, MA · On-site +1
$160K - $200K/yr
Come join the leader in cyber third-party risk intelligence! Black Kite gives organizations a comprehensive, real-time view into cyber ecosystem risk so they can make informed risk decisions and ...
Account Executive, Mid-Market - California (Remote)
Boston, MA · Remote
$160K - $200K/yr
Come join the leader in cyber third-party risk intelligence! Black Kite gives organizations a comprehensive, real-time view into cyber ecosystem risk so they can make informed risk decisions and ...
Account Executive, Mid-Market - California (Remote)
Boston, MA · Remote
$160K - $200K/yr
Come join the leader in cyber third-party risk intelligence! Black Kite gives organizations a comprehensive, real-time view into cyber ecosystem risk so they can make informed risk decisions and ...
Cyber Manager - ServiceNow
Boston, MA · On-site +1
$120.60K - $163K/yr
... Third-Party Risk Management workstreams in partnership with architects and product owners ... Experience with Performance Analytics, Predictive Intelligence, Now Assist, or generative ...
Cyber Manager - ServiceNow
Boston, MA · On-site +1
$120.60K - $163K/yr
... Third-Party Risk Management workstreams in partnership with architects and product owners ... Experience with Performance Analytics, Predictive Intelligence, Now Assist, or generative ...
Account Executive, Mid-Market - California (Remote)
Boston, MA · Remote
$160K - $200K/yr
Come join the leader in cyber third-party risk intelligence! Black Kite gives organizations a comprehensive, real-time view into cyber ecosystem risk so they can make informed risk decisions and ...
Account Executive, Mid-Market - California (Remote)
Boston, MA · Remote
$160K - $200K/yr
Come join the leader in cyber third-party risk intelligence! Black Kite gives organizations a comprehensive, real-time view into cyber ecosystem risk so they can make informed risk decisions and ...
Senior Security Compliance Analyst
Burlington, MA · On-site +1
$140K - $180K/yr
You will own risk management initiatives-including third-party risk, control testing, and audit ... gap analysis. * Drive audit readiness and execution, coordinating evidence collection and ...
Senior Security Compliance Analyst
Burlington, MA · On-site +1
$140K - $180K/yr
You will own risk management initiatives-including third-party risk, control testing, and audit ... gap analysis. * Drive audit readiness and execution, coordinating evidence collection and ...
... budgets, and 3rd party vendor management. They are committed to creating more renewable ... and project risk assessments that could impact the cost/performance over the life of the asset ...
... budgets, and 3rd party vendor management. They are committed to creating more renewable ... and project risk assessments that could impact the cost/performance over the life of the asset ...
Remote Type: Contract / Hourly (Part-Time or As-Needed Basis) Reports To: Head of M&A / Corporate ... or third-party risk assessments. Strong working knowledge of security frameworks: NIST CSF, ISO ...
Remote Type: Contract / Hourly (Part-Time or As-Needed Basis) Reports To: Head of M&A / Corporate ... or third-party risk assessments. Strong working knowledge of security frameworks: NIST CSF, ISO ...
Remote Type: Contract / Hourly (Part-Time or As-Needed Basis) Reports To: Head of M&A / Corporate ... or third-party risk assessments. Strong working knowledge of security frameworks: NIST CSF, ISO ...
Remote Type: Contract / Hourly (Part-Time or As-Needed Basis) Reports To: Head of M&A / Corporate ... or third-party risk assessments. Strong working knowledge of security frameworks: NIST CSF, ISO ...
The Catastrophe Risk Analyst opportunity is in our Boston, MA location and reports to the Catastrophe Risk Manager. Responsibilities: * * Perform statewide and countrywide peril-specific reviews ...
The Catastrophe Risk Analyst opportunity is in our Boston, MA location and reports to the Catastrophe Risk Manager. Responsibilities: * * Perform statewide and countrywide peril-specific reviews ...
Senior Sales Engineer (Hybrid, Boston)
Boston, MA · On-site +1
$140K - $170K/yr
... third-party cyber risk management programs in an increasingly complex digital environment. Our work has earned consistent recognition from customers and industry analysts alike. WHY BLACK KITE We're ...
Senior Sales Engineer (Hybrid, Boston)
Boston, MA · On-site +1
$140K - $170K/yr
... third-party cyber risk management programs in an increasingly complex digital environment. Our work has earned consistent recognition from customers and industry analysts alike. WHY BLACK KITE We're ...
Third Party Risk Analyst Remote information
See Boston, MA salary details
$16.71 - $21.70
3% of jobs
$21.70 - $26.69
7% of jobs
$26.69 - $31.67
12% of jobs
$32.65 is the 25th percentile. Wages below this are outliers.
$31.67 - $36.66
15% of jobs
$36.66 - $41.64
13% of jobs
The median wage is $41.81 / hr.
$41.64 - $46.63
16% of jobs
$46.63 - $51.61
8% of jobs
$52.24 is the 75th percentile. Wages above this are outliers.
$51.61 - $56.60
11% of jobs
$56.60 - $61.58
6% of jobs
$61.58 - $66.57
6% of jobs
$66.57 - $71.56
3% of jobs
$16
$43
$71
How much do third party risk analyst remote jobs pay per hour?
What are the key skills and qualifications needed to thrive as a Third Party Risk Analyst (Remote), and why are they important?
How does a Third Party Risk Analyst collaborate with other departments in a remote work setting?
What does a Third Party Risk Analyst do?
What is the difference between Third Party Risk Analyst Remote vs Vendor Risk Analyst?
| Aspect | Third Party Risk Analyst Remote | Vendor Risk Analyst |
|---|---|---|
| Credentials | Certifications like CRISC, CISA often preferred | Similar certifications, often including CRISC, CISA |
| Work Environment | Remote, primarily online collaboration | Remote or on-site, depending on company policy |
| Industry Usage | Financial, healthcare, technology sectors | Financial, retail, manufacturing sectors |
| Job Focus | Assessing third-party risks and compliance | Evaluating vendor security and operational risks |
The main difference is that a Third Party Risk Analyst Remote focuses on assessing risks posed by third-party entities across various industries, often working remotely. A Vendor Risk Analyst typically concentrates on evaluating specific vendors' security and operational risks, which may involve more direct vendor interactions. Both roles require similar certifications and work environments, but their scope and focus differ slightly.
Other
Medical, Dental, Vision, Life, Retirement, PTO
This job post has expired today. Applications are no longer accepted.
Job description
Senior Governance, Risk & Compliance (GRC) Analyst
Location: Boston/Marlborough Hybrid (3 days) or Remote US
Role Overview
Nasuni is seeking a Senior GRC Analyst to strengthen and scale our governance, risk, and compliance programs across a fast-growing, AI-ready SaaS platform. This role owns critical audit, risk, and policy initiatives that directly impact customer trust, regulatory posture, and business scalability.
You'll operate at the intersection of security, engineering, legal, and operations-ensuring our controls are effective, auditable, and continuously improving.
This role is ideal for someone who has led audit and risk programs end-to-end, not just supported them, and who is motivated to modernize GRC through automation and intelligent tooling.
Level & Scope Definition
- Owns execution and continuous improvement of core GRC programs
- Operates independently across multiple compliance frameworks
- Influences cross-functional stakeholders without direct authority
- Balances execution (audits, controls) with program optimization
- Contributes to scalable, automation-driven GRC operations
Responsibilities
Audit & Compliance
- Lead SOC 1, SOC 2, ISO 27001 audits end-to-end (planning evidence remediation)
- Partner with auditors and internal teams to ensure timely, accurate audit delivery
- Track and drive remediation of control gaps with accountable owners
Policy & Governance
- Own lifecycle of security policies, standards, and control documentation
- Align policies to evolving regulatory and business requirements
- Facilitate cross-functional policy reviews and approvals
Enterprise Risk Management
- Conduct enterprise risk assessments and maintain risk register
- Partner with business leaders to prioritize and mitigate risk
- Deliver risk insights and reporting to leadership for decision-making
Third-Party Risk Management
- Own vendor risk assessments, onboarding, and periodic reviews
- Build scalable due diligence and monitoring processes
- Partner with procurement and legal on vendor risk decisions
Security Awareness
- Lead security awareness and training programs (phishing, compliance training)
- Measure effectiveness and continuously improve engagement
GRC Operations & AI Enablement
- Manage GRC platforms (e.g., Vanta, Drata, OneTrust)
- Identify and implement automation opportunities in evidence collection, risk tracking, and reporting
- Leverage AI tools to improve control monitoring, audit readiness, and workflow efficiency
Qualifications
Must-Have
- 5-9 years in GRC, security compliance, or risk within SaaS/cloud environments
- Direct ownership of SOC 2 and/or ISO 27001 audits
- Experience managing control frameworks and audit evidence lifecycle
- Strong understanding of risk assessment methodologies
- Proven ability to drive remediation across cross-functional teams
Preferred
- Experience with third-party risk programs
- Familiarity with GRC tools (Vanta, Drata, LogicGate, OneTrust)
- Experience in high-growth SaaS or PE-backed environments
Ideal
- Certifications: CISA, CISM, CISSP, CRISC, ISO 27001 Lead
- Experience scaling GRC programs or implementing automation
- Exposure to HIPAA, GDPR, or NIST frameworks
Experience Guidelines
- 5-9 years total experience
- 2+ years directly owning audits or compliance programs
- Experience operating in environments with multiple concurrent audits
About Nasuni & Why Work Here (US Boston/Marlborough / Remote)
Nasuni is the unstructured data foundation for enterprise teams-and the AI that supports them. As a Vista-backed SaaS data infrastructure company, we help organizations manage, protect, and activate massive volumes of file data-transforming it into secure, AI-ready assets for innovation and growth.
Our unified File Data Platform eliminates infrastructure silos and enables global collaboration, resilience, and intelligent automation at scale.
At Nasuni, you'll work at the intersection of cloud, security, and AI-solving complex challenges alongside a team that values ownership, innovation, and impact. Whether based remotely or in our Boston-area offices, you'll contribute to a platform trusted by enterprises worldwide while growing your expertise in modern, AI-enabled data infrastructure.
Why work at Nasuni?
As part of our commitment to your well-being, we are pleased to offer comprehensive benefits packages to employees across the US. Benefits packages generally include:
- Best in class employee onboarding and training
- "Take What You Need" paid time off policy
- Comprehensive health, dental and vision plans
- Company-paid life and disability insurance
- 401(k) and Roth IRA retirement plan
- Generous employee referral bonuses
- Flexible remote work policy
- 10 Paid Holidays
- Wide array of wellbeing offerings
- Pre-tax savings accounts with company contributions
- Great team culture and social activities
- Collaborative workspaces
- Free on-site fitness centers and stocked kitchens in select office locations
- Professional development resources
Compensation Transparency:
In accordance with U.S. pay transparency laws, Nasuni is committed to providing visibility into compensation for all U.S.-based roles. Click HERE to view our compensation ranges by job grade. Actual compensation will be based on a variety of factors, including a candidate's experience, skills, education, and work location.
To all recruitment agencies: Nasuni does not accept agency resumes. Please do not forward resumes to our job boards, Nasuni employees or any other company location. Nasuni is not responsible for any fees related to unsolicited resumes.
Nasuni is an equal opportunity employer. The equal employment opportunity policy at Nasuni protects employees and job applicants from discrimination on the bases of race, religion, color, sex (including pregnancy, gender identity, and sexual orientation), parental status, national origin, age, disability, family medical history or genetic information, political affiliation, military service, or other non-merit based factors. These protections extend to all management practices and decisions, including recruitment and hiring practices, appraisal systems, promotions, and training and career development programs.
About Nasuni
Sourced by ZipRecruiter
Industry
It services
Company size
201 - 500 Employees
Headquarters location
Boston, MA, US
Year founded
2009