Third Party Risk Senior Consultant
Job in
New York, New York County, New York, 10261, USA
Listed on 2026-07-17
Listing for:
Crowe-Global
Full Time
position Listed on 2026-07-17
Job specializations:
-
IT/Tech
Cybersecurity, IT Consultant, Information Security & Data Protection
Job Description & How to Apply Below
Your Journey at Crowe Starts Here:
At Crowe, you can build a meaningful and rewarding career. With real flexibility to balance work with life moments, you’re trusted to deliver results and make an impact. We embrace you for who you are, care for your well-being, and nurture your career. Everyone has equitable access to opportunities for career growth and leadership. Over our 80-year history, delivering excellent service through innovation has been a core part of our DNA across our audit, tax, and consulting groups.
That’s why we continuously invest in innovative ideas, such as AI-enabled insights and technology-powered solutions, to enhance our services. Join us at Crowe and embark on a career where you can help shape the future of our industry.
Job Description:
Third Party Senior Staff
Job Summary:
The position will be primarily responsible for assessing the information security posture of key clients’ third parties and coordinating the overall execution and delivery of assessments. The position will work within a Crowe team at a client or third party site and be responsible for leading the effort to identify key risks and information security gaps. Projects would be performed through interacting with the client’s IS and Business Unit leadership, as well as the client’s vendors, service providers, and partners.
Specific projects may include:
Conducting Third Party Risk Assessments by evaluating third party questionnaire responses, performing control validation, and assessment of documentation per established procedures and standards
Performing site visits to third-party facilities
Evaluating the effectiveness of security controls for compliance with applicable policies, security laws, and regulations
Assessing cloud technologies such as Software as a Service (SaaS) hosted applications, Platform as a Service (PaaS), and Infrastructure as a Service deployments (IaaS)
Documenting information security risk and compliance findings and recommendations for remediation
Perform quality assurance and review of assessments performed by other team members
Delivering high quality, thorough reports
Coordinating the schedules and assessments for key third party clients and overseeing all key deliverables
Our clients operate in and our team members work across the following industries:
Pharmaceutical Life Sciences Biotechnology Healthcare Manufacturing Financial Services Technology, Media and Telecomm
Minimum Qualifications:
Bachelor's Degree Information Technology and/or Cybersecurity background and/or experience, including 2-4 years IT experience with network, platform, and/or application technology
Willingness to obtain the Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), or Certified Third Party Risk Assessor (CTPRA) designations
Knowledge of security areas such as auditing, policy, database security, firewall design and implementation, risk analysis, identity management, access management, or web Working knowledge of at least one compliance framework, such as SOC2, ISO 27001, NIST, HIPAAExperience managing multiple projects, in a fast-paced environment
Proven ability to learn new technologies and systems, especially through independent research and self-study
Ability to communicate technical information verbally and through written documentation
Ability to manage project schedules and client expectations
Ability to travel domestically an average of 20%-50% per year
Preferred Qualifications:
Bachelors and/or advanced degree with a concentration in:
Cybersecurity, Risk Management, Computer Science, or Management Information Systems Any experience working with or assessing third party vendors is preferred but not required IT experience at a leading industry public company. This might include either IT auditing or being a member of an IT or Cybersecurity team
Experience with Archer, Process Unity, Service Now or other GRC/VRM tools
Experience with security ratings platforms
Bilingual
Open to remote
We expect the candidate to uphold Crowe’s values of Care, Trust, Courage, and Stewardship. These values define who we are. We expect all of our people to act ethically and with…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×