
Third Party Risk Management - TPRM/GRC, CRISC, ISO 27001, 27701, NIST 800-53, GDPR
Job Description
Scope:
- TPRM Risk Assessor role will conduct risk-based assessments of third-party vendors during onboarding, etc. by evaluating security controls and compliance.
What you’ll do:
- Deliver Third-Party Risk Management (TPRM) activities covering assessment, documentation and other engagement related activities
- Follow policies and procedures that support the successful implementation of TPRM operating models
- Assist stakeholders to ensure that the risks are tracked and approved from the outcome of vendor risk management.
- Oversee ongoing monitoring of third-party risk posture.
- Work as a team member, sharing responsibility, providing support and keeping the team updated on the progress.
- Partner with internal and external stakeholders for effective delivery of the program
- Contribute to the development and continuous improvement of TPRM policies, procedures, standards, and assessment frameworks.
- Participate in technology enhancement requirements such as Automation, Data Analytics, AI to support TPRM processes.
- Assist in producing dashboards, KRIs, and management reports.
- Support internal and external audits related to third-party risk.
What we are looking for:
- 8+ years’ experience, CRISC certification preferred
- Working knowledge and experience in third-party/vendor risk management
- Familiarity with ISO 27001, 27701, NIST 800-53, GDPR
- Hands-on experience with any GRC/TPRM platforms
- Dedicated team player as well as a proactive individual contributor
Our Values
If you want to know the heart of a company, take a look at their values. Ours unite us. They are what drive our success – and the success of our customers. Does your heart beat like ours? Find out here: Core Values
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.