Cybersecurity Third Party Risk Management Analyst
Job
Insight Global
Remote
$93,600 Salary, Full-Time
Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
97
out of 100
Average of individual scores
Skill Insights
Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
Job Description Insight Global is seeking a Third Party Risk Management Analyst to join a cybersecurity team at one of our large healthcare clients. The ideal individual will work fully remote (in the approved states) and will be responsible for ensuring the organization effectively manages risks associated with third-party vendors and partners throughout the entire third-party lifecycle, including vendor selection, contract negotiation, ongoing monitoring, and termination. This involves not only identifying and evaluating risks but also collaborating with various teams, particularly Legal and Procurement, to embed risk mitigation strategies into contractual agreements. Key responsibilities
To learn more about how we collect, keep, and process your private information, please review
- Vendor Risk Assessment (VRA): o Conduct thorough risk assessments for potential and existing vendors, focusing on various risk types, including cybersecurity, operational, financial, and compliance risks.
Contract Negotiation:
o Partner with Legal and Procurement teams during contract negotiations to ensure security, privacy, and other relevant risk clauses are adequately addressed. o Provide expert guidance on acceptable and unacceptable contract terms related to risk management, service level agreements (SLAs), and data protection. o Work to define and include clear performance standards, due diligence requirements, and exit strategies within contracts.- TPRM program development and maintenance: o Support the development, maintenance, and enhancement of the organization's Third-Party Risk Management program and framework.
- Stakeholder collaboration and communication: o Build and maintain strong relationships with internal stakeholders across departments such as Legal, Procurement, Information Security, and Business Units.
- Ongoing monitoring and remediation: o Track identified risks associated with third parties and ensure timely reviews are performed.
Compensation:
$35/hr - $55/hr We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review
Insight Global's Workforce Privacy Policy:
https://insightglobal.com/workforce-privacy-policy/. Skills and Requirements- Minimum of 2-5 years of experience in risk-based roles, with a focus on third-party risk management, IT audit, or IT risk.
- Strong understanding of Third-Party Risk Management (TPRM) principles, concepts, and best practices.
- Experience in conducting vendor risk assessments and evaluating internal controls, potentially leveraging frameworks like
ISO 27001/2, NIST 800-53, NIST CSF, SOC1/SOC2, CSA
CCM, and Shared Assessments SIG.- Working knowledge of contract management principles and practices, including contract negotiation and analysis.
- Excellent communication skills, both written and verbal, with the ability to effectively articulate security control requirements, assessment results, and risk considerations to diverse audiences.
- Strong analytical, critical thinking, and problem-solving skills, with the ability to digest and analyze complex information with attention to detail and accuracy.
- Ability to work collaboratively in a cross-functional environment and build strong relationships with internal and external partners.
- Proficiency in Microsoft Office Suite (Excel, PowerPoint, Word) and potentially GRC (Governance, Risk, and Compliance) tools like OneTrust (highly desirable), Archer, or ServiceNow.
- CISA, CRISC, CISM, CISSP, or other relevant certifications are often preferred.
- Bachelor's degree in a relevant field such as Business, Finance, Information Technology, or a related discipline.
- Past experience spearheading and building out a Third Party Risk Management program and providing leadership to junior analysts.
Similar remote jobs
Volkswagen Group DE
Ashburn, VA
Posted2 days ago
Updated20 hours ago
Similar jobs in Norfolk, VA
PRIME TIME HEALTHCARE
Norfolk, VA
Posted2 days ago
Updated20 hours ago
Domino's
Norfolk, VA
Posted2 days ago
Updated20 hours ago
Similar jobs in Virginia
Amazon
Arlington, VA
Posted2 days ago
Updated20 hours ago