Overview
Third Party Cyber Security Risk Analyst at TEKsystems. The TPRM analyst evaluates and monitors third party risks, develops an understanding of client vendor relationships, and participates in monitoring, evaluating, and reporting on risk areas.
Responsibilities
- Manage vendor risks as defined by the Technology Vendor Risk Management processes and procedures.
- Perform daily tasks using governance, risk and compliance (GRC) toolsets.
- Audit the initial approval of new vendor relationships to ensure vendor approval policies are followed and to identify risks that should be monitored.
- Advise business division leaders and senior leadership to assist in monitoring and analysis of identified risks and performance metrics.
- Analyze operating statistics and portfolio quality / performance of vendor relationships and make recommendations to mitigate risks.
- Regularly monitor vendor performance to ensure compliance with vendor agreements and commitments.
- Perform periodic reviews of third-party vendors to confirm risk rating.
- Support the advancement of the cyber threat and vulnerability management program to ensure identification, analysis, response, and monitoring of cyber security threats, events, and vulnerabilities.
- Guide business units, application development teams, and third-party vendors to achieve program requirements while enabling the business.
- Apply knowledge of Quality System Controls to reviews of vendors' ability to perform, quality audits, review quality events, document control and training management.
- Participate in cross-team coordination to achieve defined security goals and meet technical requirements for security project implementations.
- Support management in developing strategies, policies and standards to protect information and technology assets.
Qualifications
Bachelor's degree in Information Security, Computer Science, or related field; or equivalent experience5+ years of experience in a relevant fieldSkills
Risk assessment, Third party risk, Vendor Risk, ServiceNow GRC, Cyber Security, Audit, Risk management, Information securityTop skills : Risk assessment, Third party risk, Vendor Risk, ServiceNow GRC, Cyber SecurityPreferred Experience & Additional Skills
Experience with ServiceNow Engage and / or other vendor management software for tracking and managing the vendor lifecycle.Understanding of procurement & risk processesAbility to multitask and meet tight deadlinesAbility to manage issues through to resolutionKnowledge of information security and risk controlsIn-depth knowledge of information security concepts, best practices and controlsCollaborate across departments to promote security practices and policiesExpertise in ISO 27001 / 2, SOC 2, HITRUST, FedRAMP, ISO 22301Experience with GRC toolsetsCISSP / CISM (or similar) and familiarity with ISO, SOX, BASEL II, EU DPD, HIPAA, PCI DSSExperience Level
Intermediate Level
Pay and Benefits
The pay range for this position is $45.00 - $50.00 / hr. Eligibility requirements apply to some benefits and may depend on job classification and length of employment. Benefits are subject to change.
Medical, dental & visionCritical Illness, Accident, and Hospital401(k) Retirement Plan – Pre-tax and Roth post-tax contributionsLife Insurance (Voluntary Life & AD&D for employee and dependents)Short and long-term disabilityHealth Spending Account (HSA)Transportation benefitsEmployee Assistance ProgramTime Off / Leave (PTO, Vacation or Sick Leave)Workplace Type
This is a hybrid position in Abbott Park, IL.
Application Deadline
This position is anticipated to close on Sep 30, 2025.
About TEKsystems
TEKsystems is an Allegis Group company. We are an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
J-18808-Ljbffr