GRC Analyst executing third-party risk assessments for a global fintech leader. Collaborating with teams to ensure compliance and security standards are met.
Responsibilities
Assist in executing the third-party risk assessment program to ensure compliance with organizational and regulatory requirements.
Collaborate with cross-functional teams such as legal, compliance, IT, and business units to support risk assessment activities.
Perform detailed risk assessments, evaluating third parties' security policies, procedures, and controls for compliance with company standards.
Analyze third-party solutions for compatibility with the organization’s infrastructure, APIs, and data handling practices.
Identify and document potential risks, proposing mitigation strategies and coordinating with internal teams and third parties to address gaps.
Monitor third parties’ cybersecurity practices to ensure alignment with organizational expectations and industry standards.
Support ongoing improvement efforts by contributing insights to enhance the third-party risk management program.
Maintain accurate records of assessments, findings, and recommendations within risk management tools and systems.
Assist in third-party lifecycle management, including due diligence during onboarding and periodic risk reviews.
Prepare reports and summaries of findings for internal stakeholders to inform decision-making processes.
Requirements
A seasoned professional with 4+ years of progressive experience in IT security
Proven expertise in managing timelines and deliverables effectively.
Strong leadership skills with the ability to inspire and guide a team of security professionals.
Excellent communication and interpersonal skills, with the ability to engage effectively with all levels of the organization and external partners.
Able to work independently and enjoy a high degree of interaction with team members
Ability to contribute to a collaborative environment by consistently demonstrating teamwork, high motivation, positive behavior and effort to achieve goals and objectives
Self-motivated and driven
Maintain a sense of urgency and ability to work with and meet deadlines
Demonstrate effective written and verbal communication, including the ability actively listen, and problem solve with minimal assistance
Demonstrates excellent time management and prioritization skills
Attention to detail and commitment to a high level of accuracy
The ability to multi task, prioritize, work independently, and use discretion surrounding sensitive information
Ability to maintain a professional demeanor and positive attitude
Candidates should be comfortable with an on-site presence to support collaboration, team leadership, and cross-functional partnership.
Benefits
Competitive compensation
Generous vacation policy, paid holidays, and paid sick time
Medical Insurance, Dental Insurance, and Vision Insurance (employee-paid)
Company-paid Short-Term and Long-Term Disability Insurance
Company-paid Group Life insurance
Company-paid Employee Assistance Program (EAP) and Calm App subscription
Employee-paid Pet Insurance and optional supplemental insurance coverage
Vested 401(k) with company match and financial wellness programs
Flexible Spending Account (FSA), Health Savings Account (HSA) and commuter benefits options
Paid maternity leave, paid paternity leave, and fertility benefits
Career growth and learning opportunities
...and so much more!
Job title
Governance, Risk, and Compliance (GRC) Analyst – Integrations and Third-Party Risk
Manager Regulatory Affair at Capgemini Engineering coordinating activities for the US market. Preparing submissions to the FDA and collaborating with internal teams for regulatory compliance.
Engineer IT Compliance responsible for compliance activities in regulated IT systems. Building partnerships with IT functions and ensuring regulatory alignment in pharmaceutical industry.
Regulatory Affairs Associate for managing new drug registrations and preparing documentation in the India Market. Collaborating with stakeholders and supporting compliance in bulk drug registration.
Senior Tech Compliance Analyst at Syneos Health responsible for global Technology Disaster Recovery efforts, collaborating with various teams and service providers.
Chief Nuclear Officer serving as the nuclear safety authority for BaRupOn's SMR/MMR programs. Establishing safety frameworks and ensuring regulatory compliance within the organization.
International Trade Compliance Manager overseeing compliance with international trade regulations at Northrop Grumman. Leading a team and managing compliance initiatives across multiple locations in the US.
Compliance Manager leading Autodesk's Enterprise Compliance program. Ensuring compliance with SOX, PCI regulations and overseeing security controls across teams.
Compliance Student supporting compliance and risk management activities for individual insurance at iA Financial Group. Involves monitoring processes, collaborating with teams, and assisting with compliance tasks.
Nurse Licensure & Compliance Coordinator managing multi - state nurse licensure and compliance inquiries while ensuring a positive nurse experience. Advocating for nurses and maintaining regulatory adherence at the organization.
508 Compliance Specialist working with the Office of the Inspector General for the DoD. Responsible for ensuring electronic accessibility for compliance with Section 508 regulations.