Demo

GRC- Third Party Risk Manager

Hamlyn Williams
New York, NY Full Time
POSTED ON 1/22/2025
AVAILABLE BEFORE 2/20/2025

The GRC Third Party Risk Manager will play a key role within the Information Security team, overseeing the Third Party Risk Management program while contributing to broader GRC initiatives. This role involves assessing and mitigating risks associated with vendor relationships, including initial due diligence and ongoing monitoring. The manager will evaluate third-party cybersecurity controls, ensuring alignment with the organization’s IT risk management standards and regulatory requirements. This is a remote role but candidates must live in either: NYC, Washington DC, Chicago, or Atlanta.

Key Responsibilities

  • Conduct comprehensive third-party risk assessments for onboarding and ongoing evaluation of vendor services, identifying privacy and security risks.
  • Review and analyze vendor-provided risk documentation, including risk assessment questionnaires (e.g., SIG), control audit reports (e.g., SOC Type II, SSAE18), and security policies.
  • Leverage expertise in industry standards (e.g., NIST CSF, ISO 27001/27002) and regulatory frameworks (e.g., GDPR, CCPA) to deliver thorough vendor risk evaluations.
  • Collaborate with vendors and internal stakeholders to identify, address, and monitor risks, ensuring effective remediation and tracking of identified issues.
  • Partner with InfoSec teams and other stakeholders to assess vendor security controls and associated risks.
  • Provide recommendations and guidance on vendor-related security risks, obtaining risk acceptance as needed before establishing contractual agreements.
  • Support Procurement in negotiating the organization’s Information Protection Addendum (IPA) and incorporate input from Privacy, InfoSec, and the Office of General Counsel (OGC).
  • Collaborate with Contract Administration and Procurement teams to review vendor contracts for both new and existing vendors.
  • Monitor and measure the progress of TPRM activities, ensuring the program evolves with industry best practices.

Core Competencies

  • Deep expertise in Third Party Risk Management.
  • Strong understanding of privacy and information security frameworks (e.g., NIST, ISO 27001/27002) and applicable regulations (e.g., GDPR, CCPA).
  • Excellent written and verbal communication skills.
  • Proven experience negotiating supplier resiliency and cybersecurity requirements.

Qualifications

  • Bachelor’s degree (required).
  • Minimum of 7 years of experience in third-party risk management or a related field.

This position is ideal for a seasoned professional passionate about safeguarding the organization through robust third-party risk management practices and contributing to the overall success of the GRC team.

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a GRC- Third Party Risk Manager?

Sign up to receive alerts about other jobs on the GRC- Third Party Risk Manager career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$122,325 - $159,127
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$176,392 - $248,211
Income Estimation: 
$163,962 - $219,201
Income Estimation: 
$122,325 - $159,127
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$176,392 - $248,211
Income Estimation: 
$163,962 - $219,201
Income Estimation: 
$74,367 - $98,680
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$99,138 - $133,641
Income Estimation: 
$94,973 - $125,755
Income Estimation: 
$96,228 - $129,772
Income Estimation: 
$163,962 - $219,201
Income Estimation: 
$206,263 - $314,884
Income Estimation: 
$194,536 - $271,268
Income Estimation: 
$96,228 - $129,772
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$121,926 - $164,179
Income Estimation: 
$124,413 - $154,875
Income Estimation: 
$87,128 - $112,557
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Hamlyn Williams

Hamlyn Williams
Hired Organization Address New York, NY Full Time
We are partnered with a SaaS Cybersecurity company that is looking for their next Senior Product Manager. In this strate...
Hamlyn Williams
Hired Organization Address New York, NY Full Time
Responsibilities: Manage time and attendance processes, including leave tracking, payroll preparation, and system mainte...
Hamlyn Williams
Hired Organization Address New York, NY Full Time
We are working with a large global financial group looking to add a Senior Audit Manager to their growing Internal Audit...
Hamlyn Williams
Hired Organization Address New York, NY Full Time
Our technology client seeks a talented, experienced Frontend Software Engineer to join their dynamic team. In this role,...

Not the job you're looking for? Here are some other GRC- Third Party Risk Manager jobs in the New York, NY area that may be a better fit.

Third Party Risk Manager

International Bank, New York, NY

IT Manager, Third Party Risk

Brookfield Properties (USA II) LLC, New York, NY

AI Assistant is available now!

Feel free to start your new journey!