TPRM - Third Party Risk Assessment

Full–time

Posted on: 6 days ago

As a Cybersecurity Risk Assessor at eSec Forte Technologies, your role will involve conducting cybersecurity risk assessments of third-party vendors and service providers. You will be responsible for evaluating the security posture of third parties using industry-standard frameworks such as NIST, ISO 27001, SOC 2, and CIS. Your key responsibilities will include performing periodic reassessments and continuous monitoring of vendor security and compliance controls.

Additionally, you will be required to coordinate with legal, procurement, compliance, and business units during onboarding and contract review processes. You will also play a crucial role in assisting in the development and enhancement of Third-Party Risk Management (TPRM) policies, procedures, and tools. Tracking and managing vendor risk remediation plans to ensure timely closure of findings will be a vital part of your responsibilities.

It is essential for you to maintain up-to-date knowledge of cybersecurity threats, emerging risks, and regulatory changes that may impact third-party relationships. By staying informed about the evolving landscape of cybersecurity, you will contribute significantly to the overall security posture of the organization.

Qualifications required for this role include:

- 2-4 years of experience in cybersecurity risk assessments and third-party risk management.
- Strong understanding of industry-standard frameworks such as NIST, ISO 27001, SOC 2, and CIS.
- Excellent communication and coordination skills to work effectively with various internal stakeholders.
- Proven ability to track and manage vendor risk remediation plans.
- Up-to-date knowledge of cybersecurity threats, emerging risks, and regulatory changes.

Join eSec Forte Technologies and be a part of a team dedicated to enhancing cybersecurity practices and ensuring the security of third-party relationships. As a Cybersecurity Risk Assessor at eSec Forte Technologies, your role will involve conducting cybersecurity risk assessments of third-party vendors and service providers. You will be responsible for evaluating the security posture of third parties using industry-standard frameworks such as NIST, ISO 27001, SOC 2, and CIS. Your key responsibilities will include performing periodic reassessments and continuous monitoring of vendor security and compliance controls.

Additionally, you will be required to coordinate with legal, procurement, compliance, and business units during onboarding and contract review processes. You will also play a crucial role in assisting in the development and enhancement of Third-Party Risk Management (TPRM) policies, procedures, and tools. Tracking and managing vendor risk remediation plans to ensure timely closure of findings will be a vital part of your responsibilities.

It is essential for you to maintain up-to-date knowledge of cybersecurity threats, emerging risks, and regulatory changes that may impact third-party relationships. By staying informed about the evolving landscape of cybersecurity, you will contribute significantly to the overall security posture of the organization.

Qualifications required for this role include:

- 2-4 years of experience in cybersecurity risk assessments and third-party risk management.
- Strong understanding of industry-standard frameworks such as NIST, ISO 27001, SOC 2, and CIS.
- Excellent communication and coordination skills to work effectively with various internal stakeholders.
- Proven ability to track and manage vendor risk remediation plans.
- Up-to-date knowledge of cybersecurity threats, emerging risks, and regulatory changes.

Join eSec Forte Technologies and be a part of a team dedicated to enhancing cybersecurity practices and ensuring the security of third-party relationships.