
GRC Analyst
Juniper Square
full-time
Posted on:
Location Type: Remote
Location: India
Visit company websiteExplore more
About the role
- Support the organisation's GRC program including the third-party risk management program
- Conduct vendor and contractor risk assessments during onboarding, adhering to a defined Service Level Agreement (SLA)
- Conduct annual vendor monitoring and re-assessment processes for existing vendors
- Maintain the vendor inventory and collaborate with vendors on an ongoing basis to reduce identified risks
- Triage incoming technical security requests for vendor application/system integrations and route to appropriate teams for input
- Help mature the classification and management framework for critical vendors
- Benchmark, identify, drive, and manage improvements to the vendor security risk management program
- Develop, maintain, and analyze reporting and metrics to provide leadership with clear visibility into the vendor and third-party risk posture
Requirements
- Bachelor's degree in information systems, engineering, business, risk management, or a related field
- 5+ years of security/GRC experience, including substantial experience with vendor security risk management and performing vendor security reviews/audits
- Proven experience in managing and improving vendor security risk programs, including familiarity with vendor security questionnaires for third-party assessments
- Direct experience, knowledge and understanding of major security frameworks, regulations, and standards such as SOC 2 and ISO 27001
- Experience working effectively with diverse teams to influence security and compliance outcomes across the organization (e.g., Procurement, IT, Security, Engineering, Legal)
- Experience developing and maintaining scalable GRC processes
- Ability to partner with stakeholders collaboratively to implement a scalable approach to TPRM
- Excellent communication and interpersonal skills
Benefits
- Fully remote experience
- Health Insurance
- Paid Time Off
- Professional Development Opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
vendor security risk managementvendor security reviewsvendor security questionnairesGRC processesrisk assessmentsreporting and metrics analysisthird-party risk managementsecurity frameworksSOC 2ISO 27001
Soft Skills
communication skillsinterpersonal skillscollaborative partnershipinfluencing outcomesorganizational skillsleadershipproblem-solvingteamworkstakeholder engagementadaptability