VENDOR RISK ANALYST WHAT IS THE OPPORTUNITY? This position is part of CNB's Vendor Management Office and is responsible for enterprise wide third party risk evaluations and management services. This role will support third party risk assessments to ensure they are properly organized, conducted, reviewed, and documented. The role will also focus on tracking risk remediation plans to completion. CNB established the Vendor Management Office to support the third party risk management framework. WHAT WILL YOU DO?
- Facilitate third party risk assessments for initial due diligence and ongoing oversight of third party vendor services. This includes collection of documents and analysis, third party risk assessment questionnaire requirements, reviewing audited reports of controls (i.e. SSAE18, SOC Type II, PCI AoC / RoC) and other information to support full evaluation of any potential outsourcing risks.
- Partner and coordinate closely with internal stakeholder areas (i.e. Information Security, Enterprise Risk Management, Business Continuity Program Office, Credit Administration, and Compliance) to facilitate and evaluate 3rd party service providers.
- Document remediation efforts / projects for material supplier risks and track to completion
- Measure and monitor progress of supplier risk management activities, including issues tracking and risk remediation efforts, monthly and quarterly status reporting, key supplier metrics and periodic publishing of reports and metrics
- Support facilitation and documentation of various reports, such as vendor scorecards and ongoing monitoring artifacts
- Perform data analysis and draw conclusions as it related to vendor and contract data
- Maintain vendor and contract data in systems
- Champion the enterprise Vendor Management purpose throughout the organization; train and advise internal CNB staff on the vendor management processes
- Provide risk awareness and training to colleagues in support of CNB's Third Party Risk Management Policies and Procedures
- Escalate issues (delays; significant gaps; uncooperative parties; etc.) to management as required; work to resolve issues as needed
- Support various ad hoc projects supporting program enhancements, process improvements, and other functions
- Ad hoc duties, as assigned
WHAT DO YOU NEED TO SUCCEED? Required Qualifications
Minimum of 2 years of third party risk management experience in the financial services industry, conducting risk assessments, and reporting on KRIsMinimum of 2 years of experience in risk and controls identification, appropriately scoping assessments, and performing assurance testing.Minimum of 1 year working with a GRC system, incorporating continuous improvement for the system and processTHIS ROLE IS IN OFFICE Additional Qualifications
Comprehensive knowledge of third party risk management processes and methodologiesExperience using third party risk management / Governance, Risk and Compliance (GRC) systemsExperience with contracts, including master service agreements, statements of work, and license agreements.Industry recognized third party risk management or vendor management certificationSix Sigma certificationExperience assessing cloud servicing arrangementsStrong project management skills (organizing, planning, reporting, documenting, driving tasks to closure, etc.)Strong analytical skills, working with data and drawing conclusionsExcellent oral and written communication skills; ability to communicate with all levels of management; experience performing both detailed and executive-level documentationAdvanced knowledge of Microsoft Office tools; specifically, Excel and PowerPointWHAT'S IN IT FOR YOU? Compensation Starting base salary : $34.55 - $55.19 per hour. Exact compensation may vary based on skills, experience, and location. This job is eligible for bonus and / or commissions.
Benefits and Perks At City National, we strive to be the best at whatever we do, including the benefits and perks we offer our colleagues including :
Comprehensive healthcare coverage, including Medical, Dental and Vision plans, available the first of the month following start dateGenerous 401(k) company matching contributionCareer Development through Tuition Reimbursement and other internal upskilling and training resourcesValued Time Away benefits including vacation, sick and volunteer timeSpecialized health and family planning benefits including fertility benefits, and cancer, diabetes and musculoskeletal support programsCareer Mobility support from a dedicated recruitment teamColleague Resource Groups to support networking and community engagementGet a more detailed look at our
Benefits and Perks
ABOUT US Since day one we've always gone further than the competition to help our clients, colleagues and communities flourish. City National Bank was founded in 1954 by entrepreneurs for entrepreneurs and that legacy of integrity, community and unparalleled client relationships continues today. City National is a subsidiary of Royal Bank of Canada, one of North America's leading diversified financial services companies. To learn more about City National and our dynamic company culture, visit us at
About Us
INCLUSION AND EQUAL OPPORTUNITY EMPLOYMENT City National Bank fosters an inclusive environment where all forms of diversity are valued and leveraged to make us a better company and employer. We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sexual orientation, gender identity, national origin, disability, veteran status or other basis protected by law.
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Represents basic qualifications for the position. To be considered for this position, you must at least meet the required qualifications. accepts applications on an ongoing basis, until filled. Unless otherwise indicated as fully remote, reporting into a designated City National location is an essential function of the job.