Demo

GRC - Third Party Risk Manager

LHH
Los Angeles, CA Full Time
POSTED ON 1/27/2025
AVAILABLE BEFORE 4/24/2025
  • Must be local to Los Angeles, CA or Orange County, CA regions
  • We are looking for a GRC – Third Party Risk Manager to join our InfoSec team. This role involves executing the Third Party Risk Management (TPRM) function and supporting the broader GRC team. The responsibilities include identifying and addressing risks related to vendor relationships, conducting initial due diligence, and performing ongoing risk assessments and monitoring throughout the vendor relationship. The manager will coordinate the review of cybersecurity controls of third-party vendors and their hardware, software, and services in alignment with current IT risk management standards.

    In this role, the GRC – Third Party Risk Manager will :

    • Conduct third-party risk assessments for initial due diligence and ongoing evaluation of vendor services to identify potential privacy and security-related risks.
    • Manage distribution and review required vendor cyber risk documents, such as third-party risk assessment questionnaires (e.g., SIG), audited reports of controls (i.e., SSAE18, SOC Type II, etc.), vendor security policies, and other information to support the identification and evaluation of potential outsourcing risks.
    • Use a strong knowledge of industry standards (such as NIST CSF, ISO27001 / 27002) and the regulatory landscape (such as GDPR) to provide a comprehensive assessment of the vendor’s security risk.
    • Work with third parties and internal stakeholders to identify and remediate risks and track and report identified issues and risk remediation efforts.
    • Coordinate with InfoSec (e.g., Security Engineering, Risk Management) and other stakeholders to evaluate the vendor’s security controls and identify associated risks.
    • Report vendor-related security risk recommendations and guidance and obtain risk acceptance prior to entering into contractual relationships with vendors.
    • Negotiate and support the Procurement team in negotiating the Information Protection Addendum (IPA) and obtain appropriate input from Privacy, InfoSec, and the OGC.
    • Work with Contract Administration / Procurement to support contractual reviews for new and existing vendors.
    • Measure and monitor progress of TPRM activities, including evolving the program in accordance with industry practices.
    • Stay informed about the latest developments in the vendor risk management field.
    • Support various ad hoc projects supporting program enhancements, process improvements, and other GRC functions.
    • Additionally, the GRC – Third Party Risk Manager should have :

    • Expert knowledge in Third Party Risk Management.
    • Strong knowledge of privacy and information security frameworks (e.g., NIST, ISO) and relevant regulatory requirements (e.g., GDPR, CCPA).
    • Strong knowledge of security trends and potential risk exposure.
    • Strong written and verbal communication skills.
    • Experience negotiating supplier resiliency requirements.
    • Qualifications :

    • Bachelor’s degree (required).
    • 7 years of experience in third-party risk management or related experience.
    • Employees will be provided with an excellent career opportunity in a collaborative environment, in addition to a generous total compensation package with the opportunity to earn bonuses based on individual contribution and firm profitability.

      The salary wage range for this position is a minimum of $122,700 and a maximum of $160,000 annually. The actual pay wage may vary based on experience or other relevant factors.

    Salary : $160,000

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a GRC - Third Party Risk Manager?

    Sign up to receive alerts about other jobs on the GRC - Third Party Risk Manager career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $122,325 - $159,127
    Income Estimation: 
    $131,676 - $196,560
    Income Estimation: 
    $176,392 - $248,211
    Income Estimation: 
    $163,962 - $219,201
    Income Estimation: 
    $122,325 - $159,127
    Income Estimation: 
    $131,676 - $196,560
    Income Estimation: 
    $176,392 - $248,211
    Income Estimation: 
    $163,962 - $219,201
    Income Estimation: 
    $74,367 - $98,680
    Income Estimation: 
    $131,676 - $196,560
    Income Estimation: 
    $99,138 - $133,641
    Income Estimation: 
    $94,973 - $125,755
    Income Estimation: 
    $96,228 - $129,772
    Income Estimation: 
    $163,962 - $219,201
    Income Estimation: 
    $206,263 - $314,884
    Income Estimation: 
    $194,536 - $271,268
    Income Estimation: 
    $96,228 - $129,772
    Income Estimation: 
    $131,676 - $196,560
    Income Estimation: 
    $121,926 - $164,179
    Income Estimation: 
    $124,413 - $154,875
    Income Estimation: 
    $87,128 - $112,557
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at LHH

    LHH
    Hired Organization Address Portland, OR Contractor
    Job Title: Data Entry Specialist Location: Onsite in Portland, OR Pay: $18 - $20 per hour Duration: Temp (Approximately ...
    LHH
    Hired Organization Address Phoenix, AZ Temporary
    LHH has teamed up with our client who is currently seeking a detail-oriented and experienced Billing Specialist with exp...
    LHH
    Hired Organization Address Phoenix, AZ Full Time
    LHH Recruitment Solutions is working with a construction based organization in Downtown Phoenix. This company is in sear...
    LHH
    Hired Organization Address Phoenix, AZ Full Time
    LHH is partnering with its premier client in the logistics and construction space to add to their growing audit group in...

    Not the job you're looking for? Here are some other GRC - Third Party Risk Manager jobs in the Los Angeles, CA area that may be a better fit.

    GRC - Third Party Risk Manager

    Paul Hastings LLP, Los Angeles, CA

    Risk Management Third Party Lead - BIS

    City National Bank, Los Angeles, CA

    AI Assistant is available now!

    Feel free to start your new journey!