GRC Consultant Third party risk management

Hunt Valley, MD, US • Posted 2 hours ago • Updated 2 hours ago
Full Time
On-site
$120,000 - $150,000/yr
Fitment

Dice Job Match Score™

🎯 Assessing qualifications...

Job Details

Skills

  • GRC
  • Governance
  • Risk
  • Compliance
  • EMC RSA Archer
  • RSA Archer
  • Onspring
  • BitSight
  • UpGuard
  • Security Scorecard
  • ServiceNow
  • ISO/IEC 27001:2005
  • RSA
  • Security Controls
  • Security Engineering
  • Procurement
  • Security Operations
  • SAP GRC
  • Risk Management
  • Auditing
  • Cloud Computing
  • Cyber Security
  • Data Security
  • Reporting
  • Risk Assessment
  • Supply Chain Management
  • System On A Chip
  • Information Security
  • Collaboration
  • Communication
  • Computer Science
  • Continuous Improvement
  • SaaS
  • Documentation
  • Leadership
  • Legal
  • Management
  • Organized
  • Privacy
  • Articulate
  • SOC 2
  • ISO 27001

Summary

Job Role: GRC Consultant Third party risk management

Location: Hunt Valley, MD

Job Description:

Must Have Technical/Functional Skills

  • Individual who can independently assess vendor risk, evaluate control effectiveness, and align security practices with enterprise policies and cybersecurity best practices.
  • Aware of enterprise security policies, data protection standards, and frameworks such as SOC 2 and ISO 27001.
  • Experience with GRC and risk intelligence platforms such as RSA Archer, Onspring, BitSight, UpGuard, Security Scorecard, ServiceNow, or similar tools to manage risk lifecycle activities.
  • Operate independently in a fast-paced environment, managing multiple concurrent assessments while maintaining high-quality documentation and professional integrity.
  • Must be a strong, clear, and concise communicator that is self-starting and can remain organized when faced with multiple assignments that require granular-level tracking

Roles & Responsibilities

  • Lead and execute end-to-end third-party/vendor risk assessments across technology, supply chain, SaaS, and hybrid environments, identifying control gaps and recommending risk mitigation strategies.
  • Perform deep technical reviews of solution, application, and solution
  • architectures, security controls, and cloud solutions from a security engineering perspective, translating findings into actionable remediation guidance.
  • Conduct hands-on SOC 2 analysis, evaluate control design and operating effectiveness, and clearly articulate control gaps and risk impacts to stakeholders.
  • Ensure alignment of third-party assessments and internal practices with enterprise security policies, data protection standards, and frameworks such as SOC 2 and ISO 27001.
  • Leverage and administer GRC and risk intelligence platforms such as RSA Archer, Onspring, BitSight, UpGuard, Security Scorecard, ServiceNow, or similar tools to manage risk lifecycle activities.
  • Coordination with business partners such as Legal, Procurement, IT, Privacy, Audit, and Security Operations to drive timely assessment completion and remediation tracking.
  • Develop and report meaningful risk metrics and program insights to leadership, demonstrating effectiveness and continuous improvement of the TPRM program.
  • Contribute to the development, enhancement, and rationalization of information security policies, standards, and exception processes based on risk findings and industry best practices.
  • Communicate complex technical and risk concepts clearly to both technical and non-technical stakeholders; build trusted relationships across business units.

Generic Managerial Skills, If any

  • Good communication, reporting skills
  • Ability to communicate complex technical and risk concepts clearly to both technical and non-technical stakeholders; build trusted relationships across business units

Education

Bachelors Degree in Computer Science

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10217521
  • Position Id: 8930337
  • Posted 2 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Owings Mills, Maryland

Today

Full-time

USD 103,200.00 per year

Baltimore, Maryland

25d ago

Full-time

USD 155,000.00 - 160,000.00 per year

Baltimore, Maryland

16d ago

Full-time

USD 87,000.00 - 148,000.00 per year

Baltimore, Maryland

Today

Full-time

USD 155,000.00 - 260,000.00 per year

Search all similar jobs