IT Risk and Compliance Analyst
On-siteMiramar, Florida, United States
Job Summary
IT Risk and Compliance Analyst in Miramar (hybrid) leads the firm’s third-party risk management program by developing, monitoring, and assessing risks related to vendor and partner relationships. Responsibilities include completing vendor risk assessments and responding to client RFPs and security questionnaires, performing information security due diligence on third-party vendors, aligning client needs with security concerns, developing and updating third-party risk policies and procedures, and collaborating with the security team to inform internal and external stakeholders. The role entails tracking vendor mitigation progress, developing KPI/KRI for the program, and contributing to continuous improvement and automation of the program to align with business objectives and risk tolerance.
Required Qualifications
- Bachelor’s degree in information technology, Information Systems, Information Security, Business Administration, or Risk Management (or equivalent experience) or 3+ years of work experience in relevant information risk position in lieu of degree
- 1-3 years of experience in implementing and/or supporting IT risk management processes
- 1-3 years of experience in responding to vendor IT risk assessments
Desired Qualifications
- Experience in IT risk management
- Third-party risk management experience
- Information security and compliance knowledge
- Vendor risk assessment and due diligence experience
- RFP response and questionnaire handling
- Security controls assessment
- Regulatory and compliance awareness
- KPI and KRI development
- BCP/DR awareness
- Project management and documentation skills
- Strong communication skills
- Bachelor’s degree in IT/IS/Security/Risk Management or equivalent experience
- Certifications in information security or risk management (preferred)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.