Skip to main content
CareerCircle Home
Log in
Join
Search for and find Third Party Cyber Security Risk Analyst jobs and TEKsystems jobs at CareerCircle.com
TEKsystems jobs, learn more at CareerCircle.com

Third Party Cyber Security Risk Analyst

TEKsystems

Posted Monday, September 22, 2025

Posting ID: JP-005560552

Abbott Park, IL
Share:
FacebookTwitterLinkedin

Description

We Are Looking to Add a Key Member to Our Technology Risk Management Team!

The TPRM analyst is a member of the team that evaluates and monitors third party risks. The selected candidate will develop a deep understanding of the clients vendor relationships (including completing reviews of material vendor relationships/programs consistent with policy), as well as participate in monitoring, evaluating, and reporting on other risk areas that could potentially impact them.


Core Job Responsibilities

• Manage vendor risks as defined by the Technology Vendor Risk Management process and procedures

• Perform daily tasks using operational GRC toolsets (Governance Risk and Compliance)

• Audit the initial approval of new vendor relationships to ensure vendor approval policies are being followed and to identify specific risks that should be monitored.

• Act as a resource to Business Division Leaders and Senior Leadership to assist in the monitoring and analysis of identified risks and performance metrics.

• Analysis of operating statistics and portfolio quality/performance of vendor relationships making recommendations to mitigate risks.

• Regular monitoring of vendor performance to ensure compliance with vendor agreements and commitments.

• Perform periodic reviews of Third Party vendors to confirm risk rating

• Support the advancement of the cyber threat and vulnerability management program to ensure consistent identification, analysis, response, and monitoring of cyber security threats, events, and vulnerabilities.

• Guide business units, application development teams, and third-party vendors to achieve program requirements while enabling the business.

• Apply technical knowledge of Quality System Controls to reviews vendors ability to perform, quality audits, review quality events, document control and training management.

• Participate in cross-team coordination to achieve defined security goals as well as meet technical requirements in support of detailed implementation plans for security projects.

• Support management in the development of strategies, policy and standards to protect information and technology assets.

Position Accountability / Scope


Minimum Education/Experience

• Bachelor's degree in Information Security, Computer Science, or related field; or equivalent experience

• 5+ years of experience in relevant field


Skills

Risk assessment, Third party risk, Vendor Risk, ServiceNow GRC, Cyber Security, Audit, Risk management, Risk analysis, Information security

Top Skills Details

Risk assessment,Third party risk,Vendor Risk,ServiceNow GRC,Cyber Security

Additional Skills & Qualifications

Preferred Experience

• Demonstrated experience with ServiceNow Engage and/or other vendor management software for tracking and managing the vendor management lifecycle.

• Understanding of procurement & risk processes is an added advantage

• Ability to multitask and to complete difficult assignments within tight deadlines

• Skilled at managing issues through to resolution

• Knowledge of information security and risk control

• Demonstrated in-depth knowledge of concepts, best practices and controls in a breadth of information security areas/domains

• Collaborate across multi-departments to promote industry best practices and strategic organizational security efforts the development of our IT security policies

• Possess expertise in valuing and implementing industry standards such as the ISO 27001/2, SOC 2, HITRUST and FedRAMP Information Security standard and the ISO 22301 Business Continuity Standard.

• Experience with implementation and operational use of GRC toolsets (Governance Risk and Compliance)

• Possess CISSP/CISM certification (or similar) and be knowledge of national and international regulatory compliances and frameworks such as ISO, SOX, BASEL II, EU DPD, HIPAA, and PCI DSS.

• Lead Auditor Training for ISO 13485, or ISO 9001 (ASQ), or relevant experience, for Quality Systems/GxP-impacting assessments and audits

Experience Level

Intermediate Level

Compensation:$50

Contact Information

Recruiter: Dulcie Church

Phone: +13096614003

Email: duchurch@teksystems.com

The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
On-Site
Coordinating
Auditing
Leadership
Management
Multitasking
Accountability
Governance
IT Security
Cyber Security
Certified Information Systems Security Professional
Risk Management
Vendor Management
Risk Control
Computer Science
Health Insurance Portability And Accountability Act (HIPAA) Compliance
Sarbanes-Oxley Act (SOX) Compliance
Governance Risk Management And Compliance
Procurement
ServiceNow
Performance Metric
Quality Management Systems
Risk Analysis
Business Continuity
Business Metrics
ISO 13485 Standard
Vendor Relationship Management
Cyber Threat Intelligence
Statistics
American Society For Quality (ASQ) Certified
Compliance Auditing
Application Development
Document Control
Quality Auditing
ISO 9000 Series
Certified Information Security Manager
Payment Card Industry (PCI) Data Security Standards
ISO/IEC 27001
Vulnerability Management
FedRAMP
Industry Standards
Audit Risk
Technical Requirements

Blog