Third Party Risk Analyst

Posted 11 Days Ago
Be an Early Applicant
Winston-Salem, NC
Mid level
Fintech • Information Technology • Analytics
The Role
The Third Party Risk Analyst will assess and manage cyber risks associated with third-party vendors, conduct risk assessments, perform vendor due diligence, develop risk mitigation strategies, review contracts, monitor vendor security postures, assist in incident response, and educate employees on risk management.
Summary Generated by Built In

Position Summary:

Inmar Intelligence is seeking a skilled and detail-oriented Third Party Risk Analyst to join our team. As a Third Party Risk Analyst, you will play a critical role in safeguarding our organization by assessing and managing the cyber risks associated with our third-party vendors and suppliers. You will work closely with various departments to identify, evaluate, and mitigate potential vulnerabilities and threats.

Responsibilities:

  • Risk Assessment: Conduct thorough assessments of third-party vendors and suppliers to identify potential cyber risks, including data breaches, unauthorized access, and other security incidents.
  • Vendor Due Diligence: Perform due diligence on prospective vendors, evaluating their security practices, incident response plans, and compliance with relevant regulations (e.g., HIPAA,General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), etc.)
  • Supply Chain Risk Management: Assess and manage risks associated with the use of 3rd party software, hardware, and services, with focus on full-stack Bill of Materials (BOM) analysis.
  • Risk Mitigation: Develop and implement risk mitigation strategies to address identified vulnerabilities, such as requiring specific security controls or certifications from vendors.
  • Contract Review: Review contracts with third-party vendors to ensure that appropriate security clauses and indemnification provisions are in place.
  • Monitoring and Reporting: Continuously monitor the cyber security posture of third-party vendors and report on any significant changes or risks to management.
  • Incident Response: Assist in coordinating incident response efforts when a security breach occurs involving a third-party vendor.
  • Awareness and Training: Educate employees on the importance of third-party risk management and provide training on how to identify and report potential security threats.
  • Stay Updated: Stay informed about emerging cyber threats, industry best practices, and regulatory requirements related to third-party risk management.

Qualifications:

  • Bachelor's degree in computer science, information security, or a related field.
  • 3+ years of experience in cyber security or risk management.
  • Strong understanding of cyber security principles, including network security, application security, and data privacy.
  • Experience with vendor risk assessment frameworks and methodologies.
  • Knowledge of industry standards and regulations (e.g., ISO 27001, NIST Cybersecurity Framework).
  • Excellent analytical and problem-solving skills.
  • Strong communication and interpersonal skills.
  • Ability to work independently and as part of a team.

Preferred Qualifications:

  • Certification in cyber security, such as Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), or Certified Information Systems Auditor (CISA).
  • Experience with security information and event management (SIEM) tools.
  • Familiarity with cloud security and infrastructure as a service (IaaS).
  • Experience with BOM tools, such as OWASP CycloneDX. 

Additional Notes:

  • This position may require occasional travel to meet with vendors or attend industry conferences.
  • The candidate must be able to work in a fast-paced environment and adapt to changing priorities.

By joining our team as a Cyber Third-Party Risk Analyst, you will have the opportunity to make a significant impact on our organization's security posture and protect our valuable assets.

Individual Competencies:

  • Integrity: Gains the trust of others by taking responsibility for your own actions and telling the truth.
  • Teamwork: Builds relationships and works cooperatively with others, inside and outside the organization, to accomplish objectives to build and maintain mutually-beneficial partnerships, leverage information and achieve results.
  • Adaptable: Responds to change with a willingness to learn new ways to accomplish work objectives with a positive attitude.
  • Innovative: Ability to develop, sponsor, or support the introduction of new and improved methods, products, procedures or technologies.
  • Curious: A desire to inquire and learn, to seek new knowledge and wisdom, and to listen to the contributions of others with a genuine interest to better self, the team, and the organization.
  • Analytical and Critical Thinking: Ability to tackle a problem by using a logical, systematic, sequential approach.
  • Problem Solving: Gathers and analyzes information to generate and evaluate potential solutions to problems, issues and challenges while weighing the accuracy and relevance of the facts, data and information.

While performing the duties of this job, the associate is:

  • Regularly required to use hands to finger, handle or feel objects, tools or controls, and reach with hands or arms.
  • Regularly required to talk or hear and read instructions on a computer monitor and/or printed on paper.
  • Regularly required to view items at an extremely close range and must be able to adjust and readjust focus.


As an Inmar Associate, you:

  • Put clients first and consistently display a positive attitude and behaviors that demonstrate an awareness and willingness to listen and respond to clients in order to meet their short-term and long-term needs, requirements and exceed their expectations. 
  • Treat clients and teammates with courtesy, consideration and tact; you also have the ability to perceive the needs of internal and external clients and communicate effectively with the objective of delighting and retaining the client. 
  • Build collaborative relationships and work cooperatively with others, inside and outside the organization, to accomplish objectives, develop and maintain mutually-beneficial partnerships, leverage information to achieve results. 
  • Set and attain achievable, yet aggressive, goals with a sense of urgency and accountability. 
  • Understand that results are important and focus on turning mission into action to achieve results following the principles of Flawless Execution while consistently complying with quality, service and productivity standards to meet deadlines and exceed expectations by giving our clients the best possible outcome.

We are an Equal Opportunity Employer, including disability/vets.

Top Skills

Cyber Security
The Company
HQ: Winston-Salem, NC
2,044 Employees
On-site Workplace
Year Founded: 1980

What We Do

We reimagine everyday business challenges through advanced analytics, technology-enabled and market-driven solutions built to solve some of industries’ biggest obstacles to growth. Inmar Intelligence’s customer-centric approach is evident through our success helping companies dynamically engage audiences, build brand loyalty, create efficiencies and drive profitable growth.

We help leading Fortune 500 companies and emerging brands stay relevant and propel growth while providing their consumers with personalized and precision-driven tools to save money, improve health and safety, and more conveniently go about their lives.

For more than 35 years, we have served retailers, manufacturers, healthcare providers, government and employers as their trusted intermediary and helped them redefine innovation.

Similar Jobs

General Motors Logo General Motors

Sr. Data Engineer (Motorsports)

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Charlotte, NC, USA
165000 Employees

PwC Logo PwC

Fraud Technologist - Data and Analytics - Sr Associate

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
Charlotte, NC, USA
364000 Employees
84K-202K Annually

PwC Logo PwC

Fraud Technologist - Data and Analytics - Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
Charlotte, NC, USA
364000 Employees
100K-232K Annually

PwC Logo PwC

Data Architect- Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
Greensboro, NC, USA
364000 Employees
100K-232K Annually

Similar Companies Hiring

Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
357 Employees
Jobba Trade Technologies, Inc. Thumbnail
Software • Professional Services • Productivity • Information Technology • Cloud
Chicago, IL
45 Employees
InCommodities Thumbnail
Renewable Energy • Machine Learning • Information Technology • Energy • Automation • Analytics
Austin, TX
234 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account