Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
CB
Citizens Bank, N.A.
Third Party Risk Sr Analyst - Cybersecurity
Career Insights for Risk Consultant
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Rhode Island data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Risk Consultant helps clients to evaluate risk and recommends strategies to mitigate or offset risks that could result in financial losses for a company or organization. May analyze risk in investments, business operations or technology systems at a company. May provide risk management consulting for life insurance, health insurance or other types of insurance companies.
$82,609 / year median in Rhode Island
-8% projected decline
Job Description
Description As the Third Party Risk Sr Analyst , you will manage vendor issues, complete quality assurance functions and execute Third Party Vendor Assessment reviews. This will include managing relationships with both business leaders and vendors, while providing robust and challenging insight on business risk and on the adequacy and effectiveness of the test control processes in place. The role holder delivers assessment review and provides opinion on the quality of the vendor control environment as is needed to meet Citizens policies including identifying issues and subsequently assisting the business to agree to any appropriate action plans to mitigate the risk. The Third-Party Vendor Assessment function adds value by providing specific business function assurance on vendors, in relation to customer, financial or reputational risk and bringing momentum to action plans to address risk and leveraging findings and best practice on a bank wide scale. Primary responsibilities include Collaborating with senior management to influence key decisions. Evaluating third party vendors' control infrastructure effectiveness and obtaining evidence of controls. Applying experience in audit, security and regulatory frameworks including ISO 27001, GLBA, SOX, PCI, HIPPA, States Privacy Regulation and FFIEC. Assisting in Governance Risk and Compliance (GRC) program's design, process reengineering or enhancements and tool and technology implementations as applicable. Leading current risk assessments, continual risk assessments, and risk metrics and visualizations. Performing quality assurance on vendor assessment and remediation activities. Working directly with key business leaders to facilitate risk analysis and risk management processes, identifying acceptable levels of risk and establish roles and responsibilities with regards to risk management. Maintaining and monitoring enterprise risk exception process to identify areas of noncompliance. Supporting and participating in regulatory exam preparation and execution as well as remediation where applicable. Coaching and mentoring junior analysts and clearly articulating Third Party Vendor Assessment program goals and objectives to the wider audience. Producing Third Party Vendor Assessment reports that clearly articulate risks in order to speak to a varied audience. Translating security risk and communicating effectively to business partners within the organization. The ability to travel within the United States is required. Qualifications, Education, Certifications and/or Other Professional Credentials Required Qualifications Previous experience completing Third Party Vendor Assessments. Understanding of Cyber Security controls. Hours & Work Schedule Hours per