Third Party Risk Analyst
Core
Perform due diligence risk assessments of new and existing business and technology third-party service providers to assess control structures and alignment with regulatory guidelines.
Role type
Senior Third Party Risk Analyst
Builds
Risk assessments and documentation for third-party vendor engagements
Domain
Banking / Financial Services / Regulatory Compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
complex risk assessment, regulatory requirement interpretation (CFPB, OCC, Federal Reserve), vendor performance monitoring, documentation management, project coordination, risk gap resolution, report generation
Preferred skills
SOC 1/2 audit review experience, remote/on-site vendor audit experience, RSA Archer eGRC proficiency, multi-tasking in fast-paced environments
Technologies
RSA Archer eGRC
Responsibilities
Perform complex risk assessments of current and prospective third-party providers; manage timely completion of requests and follow-ups for documentation; partner with internal business units to inventory services and risk assessments; coordinate due diligence with internal subject matter experts; complete written assessments detailing inherent risks and gaps; report findings through formalized reviews and exception reporting; oversee resolution of identified risk gaps; contribute to departmental third-party management projects
Seniority
Senior, hands-on IC