Third Party Risk Sr Analyst - Cybersecurity

CitizensJohnston, RI
$95,000 - $123,000Hybrid

About The Position

As the Third Party Risk Sr Analyst, you will manage vendor issues, complete quality assurance functions and execute Third Party Vendor Assessment reviews. This will include managing relationships with both business leaders and vendors, while providing robust and challenging insight on business risk and on the adequacy and effectiveness of the test control processes in place. The role holder delivers assessment review and provides opinion on the quality of the vendor control environment as is needed to meet Citizens policies including identifying issues and subsequently assisting the business to agree to any appropriate action plans to mitigate the risk. The Third-Party Vendor Assessment function adds value by providing specific business function assurance on vendors, in relation to customer, financial or reputational risk and bringing momentum to action plans to address risk and leveraging findings and best practice on a bank wide scale.

Requirements

  • Previous experience completing Third Party Vendor Assessments.
  • Understanding of Cyber Security controls.

Responsibilities

  • Collaborating with senior management to influence key decisions.
  • Evaluating third party vendors' control infrastructure effectiveness and obtaining evidence of controls.
  • Applying experience in audit, security and regulatory frameworks including ISO 27001, GLBA, SOX, PCI, HIPPA, States Privacy Regulation and FFIEC.
  • Assisting in Governance Risk and Compliance (GRC) program’s design, process reengineering or enhancements and tool and technology implementations as applicable.
  • Leading current risk assessments, continual risk assessments, and risk metrics and visualizations.
  • Performing quality assurance on vendor assessment and remediation activities.
  • Working directly with key business leaders to facilitate risk analysis and risk management processes, identifying acceptable levels of risk and establish roles and responsibilities with regards to risk management.
  • Maintaining and monitoring enterprise risk exception process to identify areas of noncompliance.
  • Supporting and participating in regulatory exam preparation and execution as well as remediation where applicable.
  • Coaching and mentoring junior analysts and clearly articulating Third Party Vendor Assessment program goals and objectives to the wider audience.
  • Producing Third Party Vendor Assessment reports that clearly articulate risks in order to speak to a varied audience.
  • Translating security risk and communicating effectively to business partners within the organization.
  • The ability to travel within the United States is required.

Benefits

  • comprehensive medical, dental and vision coverage
  • retirement benefits
  • maternity/paternity leave
  • flexible work arrangements
  • education reimbursement
  • wellness programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service