CT Consulting has an immediate need for a Third Party Governance, Risk, and Compliance (GRC) Analyst with our direct client. Please take a moment to review the job description. If this is something you are interested in, please send a copy of your resume to paul@act-info.com or contact us at 860-924-1755 for additional details.
Location : Los Angeles, CA
Duration : Direct Hire
Title : Third Party Governance, Risk, and Compliance (GRC) Analyst
Salary - up to $120,000 / Annum + Benefits
Key Responsibilities :
The Analyst will facilitate activities across the GRC lifecycle, including due diligence, ongoing assessments, and monitoring of third-party vendors to ensure compliance with internal standards and regulatory requirements.
- Support the full lifecycle of Third Party Risk Management from onboarding to offboarding
- Conduct initial and ongoing risk assessments of third-party vendors to identify potential privacy and security risks
- Request, track, and analyze vendor due diligence documentation (e.g., SIG questionnaires, SOC reports, security policies)
- Coordinate with internal stakeholders and vendors to identify, document, and monitor risk remediation efforts
- Evaluate vendor cybersecurity controls and align with the organizations risk management framework
- Collaborate with Contracts / Procurement teams on reviews related to vendor engagements
- ssist in client compliance efforts including questionnaire responses and stakeholder coordination
- Maintain key risk metrics and support risk reporting processes
- Contribute to continuous improvement and automation of GRC processes
- Stay current with regulatory developments (e.g., GDPR, CCPA) and industry frameworks (e.g., NIST CSF, ISO)
- Provide training and guidance to cross-functional stakeholders on GRC procedures
- Participate in various ad hoc projects and GRC program enhancements
Required Skills
Minimum 3 years of experience in Third Party Risk Management, GRC, or related fieldsExperience in highly regulated industries such as finance or consulting (Big 4 experience a plus)Strong knowledge of GRC domains including compliance, risk management, and supplier resiliencyFamiliarity with privacy and security frameworks (e.g., NIST, ISO, GDPR, CCPA)Highly organized, detail-oriented, and able to work independentlyExcellent communication and stakeholder engagement skillsProficiency with tools such as Excel, Confluence, and risk assessment platformsThanks & Regards
Paul Joseph
CT Consulting
Talent Acquisition Lead
Phone : 860-924-1755
Fax : 860-371-2177
paul@act-info.com
Visit ACT Consulting at jobseekers.html to view our open positions.