Third Party Risk Architect

Overview

On Site
Hybrid
USD 85.00 per hour
Full Time

Skills

IT Infrastructure
Software Architecture
ISO 9000
NIST SP 800 Series
Network Design
Data Security
Communication
Financial Services
MAS
Cloud Computing
Risk Assessment
Analytical Skill
Conflict Resolution
Problem Solving
Soft Skills
IT Architecture
Risk Management
High Availability
Failover
Data Integrity
Backup
SLA
Management
Finance
FFIEC
Reporting
Enterprise Architecture
Cyber Security
Business Continuity Planning
Disaster Recovery
Regulatory Compliance
Procurement
SaaS

Job Details

Date Posted: 11/17/2025

Hiring Organization: Rose International

Position Number: 493521

Industry: Financial Services

Job Title: Third Party Risk Architect

Job Location: Chicago, IL, USA, 60604

Work Model: Hybrid

Work Model Details: Three Times a Week is mandotary

Shift: 8 am to 5pm CST

Employment Type: Temporary

FT/PT: Full-Time

Estimated Duration (In months): 10

Min Hourly Rate($): 85.00

Max Hourly Rate($): 90.00

Must Have Skills/Attributes: Risk Analysis, SaaS, Third Party Risk Management (TPRM)

Experience Desired: 8 or more years of experience in IT infrastructure, application architecture, or cybersecurity (7 yrs)

Required Minimum Education: Bachelor's Degree

**C2C is not available**

Job Description
Required Education:
1.Bachelors Degree

Must-Have Qualifications
1.Experience: 8+ years in IT infrastructure, application architecture, or cybersecurity within a regulated industry (Financial Services is heavily implied).
2.Vendor Oversight: 5+ years directly overseeing critical third-party or SaaS vendors.
3.Regulatory Interaction: Direct, hands-on experience preparing for and participating in regulatory examinations (e.g., OCC, FFIEC).
4.Resiliency Frameworks: Strong, practical knowledge of frameworks like ISO 22301, NIST SP 800-34, and the FFIEC Business Continuity Handbook.
5.Technical Proficiency: Deep understanding of cloud, on-prem, network architecture, and data protection.
6.Communication: Excellent ability to explain complex technical issues to both technical teams and non-technical regulators/business leaders.

Nice-to-Have Qualifications
Proven experience conducting SaaS or cloud risk/resiliency assessments.
Experience working on both the financial services (buyer) and technology vendor (seller) sides.
Familiarity with a broader range of global regulators (MAS, OSFI, APRA).

Key Skills & Competencies
Technical: Public/Private Cloud & SaaS Well-Architected Frameworks (Resiliency Pillar), SaaS architectures, Vendor Risk Assessments (SLA, DR, BCP).
Analytical: Strong problem-solving, and the ability to create architectural diagrams.
Soft Skills: Influence without authority, translate tech-to-regulatory language, perform under high-pressure and high-visibility.

This is a senior-level, contract position for an Enterprise Architect specializing in Third-Party Technology Resiliency and Compliance. The core mission is to ensure that critical external vendors and SaaS providers meet stringent resiliency, disaster recovery, and regulatory standards. The role acts as a bridge between deep technical architecture, enterprise risk management, and global financial regulators. To oversee and assure the resiliency and compliance posture of the company's most critical third-party technology providers, ensuring they can withstand and recover from disruptions and satisfy regulatory scrutiny.

Key Responsibilities
Conduct Resiliency Assessments: Perform in-depth technical evaluations of vendor and SaaS architectures using Well-Architected Framework principles.
Evaluate & Create Architecture: Analyze or develop architectural diagrams for external solutions to validate alignment with internal resiliency and disaster recovery requirements.
Assess Vendor Preparedness: Scrutinize vendor capabilities for high availability, failover, data integrity, backup procedures, and SLA guarantees.
Manage Regulatory Compliance: Monitor, interpret, and ensure adherence to global financial regulations (OCC, FFIEC, DORA, FCA, etc.).
Document and Report: Clearly document findings, track remediation efforts, and report on vendor risk and compliance status to stakeholders.
Internal Teams: Enterprise Architecture, Cybersecurity, Business Continuity, Disaster Recovery, Legal, Compliance, Risk, and Procurement.
External Entities: Critical third-party technology and SaaS vendors, and potentially regulatory bodies.

  • **Only those lawfully authorized to work in the designated country associated with the position will be considered.**

  • **Please note that all Position start dates and duration are estimates and may be reduced or lengthened based upon a client's business needs and requirements.**


Benefits:
For information and details on employment benefits offered with this position, please visit here. Should you have any questions/concerns, please contact our HR Department via our secure website.


California Pay Equity:
For information and details on pay equity laws in California, please visit the State of California Department of Industrial Relations' website here.


Rose International is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, sexual orientation, gender (expression or identity), national origin, arrest and conviction records, disability, veteran status or any other characteristic protected by law. Positions located in San Francisco and Los Angeles, California will be administered in accordance with their respective Fair Chance Ordinances.

If you need assistance in completing this application, or during any phase of the application, interview, hiring, or employment process, whether due to a disability or otherwise, please contact our HR Department.

Rose International has an official agreement (ID #132522), effective June 30, 2008, with the U.S. Department of Homeland Security, U.S. Citizenship and Immigration Services, Employment Verification Program (E-Verify). (Posting required by OCGA 13/10-91.).
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.