IT Governance/Third Party Risk Analyst
Listed on 2026-09-04
-
IT/Tech
IT Business Analyst, Information Security & Data Protection, IT Consultant
Third Party Risk Management Specialist
100% Remote in the 28 states - North Carolina, Alabama, Arizona, Arkansas, Colorado, Florida, Georgia, Idaho, Indiana, Iowa, Kansas, Kentucky, Louisiana, Maryland, Michigan, Mississippi, Missouri, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Virginia, Wisconsin, and Wyoming will be allowed to maintain their current residence and work remotely.
Top 3-4
Required Skills:
1. Has third party risk experience 2. Has owned the security compliance from start to finish
3. Strong communication skills Nice to have
Skills:
Audits, Experience using Prevalent Years of
Experience:
3-5
New vendors need to be assessed and reassessments have to be done. Need to be able to stay on top of vendors, they are given 14 days. Total process should take 30 days max. Be able to use the third party tool. Manage the app. From a reassessment standpoint they need to send out 10 a month. Looking at what's provided back and understanding what the team is asking for and helping fix the issues and send back to the vendors saying what is needed vs what is provided.
Description:Assists with the identification and assessment of risks associated with third-party vendors, suppliers, business partners, and outsourced service providers, with a strong focus on technology, cybersecurity, data privacy, and regulatory risks. Provides support to business owners and project teams to increase awareness and understanding of risks and controls and assist in the development, assessment and monitoring of mitigation plans for IT-related risks, to ensure they are managed to an acceptable level.
Identifies, evaluates and escalates issues that conflict with BCBSNC's risk tolerance. Consults on projects and other initiatives to ensure third party risks are considered and addressed appropriately. Assess the effectiveness of vendor control environments through review of audit reports, certifications, questionnaires, security assessments, and other risk artifacts. Recommend improvements to strengthen risk management practices and reduce exposure. Develop metrics, dashboards, and reporting materials that provide management and executive leadership with visibility into third-party risk exposure, emerging risks, remediation activities, and program effectiveness.
Deliver training, awareness sessions, and stakeholder guidance to promote a strong culture of third-party risk management and ensure consistent application of TPRM requirements across the organization.
Hiring Requirements
- Bachelor's degree or advanced degree (where required)
- 3+ years of experience in related field
- In lieu of degree, 5+ years of experience in related field
EEO: "Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans."
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).