Upload Button Icon Add office photos
filter salaries All Filters

4 Black Duck Jobs

Black Duck - Third-Party Risk Analyst (6-8 yrs)

6-8 years

Black Duck - Third-Party Risk Analyst (6-8 yrs)

Black Duck

posted 2mon ago

Job Description

About the Role :

As a Third-Party Risk Analyst, you will play a crucial role in safeguarding our organization by managing and mitigating risks associated with third-party vendors.

You will work closely with internal stakeholders and external vendors to ensure compliance with security standards and regulations.

Key Responsibilities :

- Conduct thorough risk assessments of third-party vendors, including evaluating their security controls, data protection practices, and business continuity plans.

- Develop and maintain risk rating methodologies to prioritize risk treatments.

- Onboard and manage third-party vendors throughout their lifecycle, from initial assessment to termination.

- Monitor vendor performance and compliance.

- Enforce contractual obligations and security requirements.

- Identify and implement risk mitigation strategies, such as security controls, contractual terms, and monitoring activities.

- Work with vendors to address security vulnerabilities and compliance gaps.

- Ensure compliance with relevant regulations and industry standards, including ISO 27001, NIST SP 800-53, and GDPR.

- Stay informed about emerging threats and vulnerabilities.

- Develop and maintain key performance indicators (KPIs) to measure the effectiveness of the TPRM program.

- Generate regular reports on third-party risk exposure and compliance status.

- Respond to security incidents involving third-party vendors.

- Coordinate with internal and external teams to mitigate the impact of security breaches.

Qualifications :

- 5+ years of experience in Third-Party Risk Management.

- Strong understanding of information security principles and practices.

- Experience with risk assessment methodologies and frameworks.

- Familiarity with regulatory requirements (GDPR, HIPAA, PCI DSS).

- Excellent analytical and problem-solving skills.

- Strong communication and interpersonal skills.

- Ability to work independently and as part of a team.

- Certification in information security (CISSP, CISM, CRISC) is a plus


Functional Areas: Other

Read full job description

What people at Black Duck are saying

Black Duck Benefits

Free Transport
Child care
Gymnasium
Cafeteria
Work From Home
Free Food +6 more
View more benefits

Compare Black Duck with

TCS

3.7
Compare

Accenture

3.8
Compare

Wipro

3.7
Compare

Cognizant

3.8
Compare

Capgemini

3.7
Compare

HDFC Bank

3.9
Compare

Infosys

3.6
Compare

ICICI Bank

4.0
Compare

HCLTech

3.5
Compare

Tech Mahindra

3.5
Compare

Genpact

3.8
Compare

Teleperformance

3.9
Compare

Concentrix Corporation

3.8
Compare

Axis Bank

3.8
Compare

Amazon

4.1
Compare

iEnergizer

4.6
Compare

Jio

3.9
Compare

Reliance Retail

3.9
Compare

IBM

4.0
Compare

LTIMindtree

3.8
Compare

Similar Jobs for you

Assurance Analyst at Burgeon It Services Pvt Ltd

5-8 Yrs

₹ 18-29 LPA

Risk Management at MWIDM

4-6 Yrs

₹ 12-18 LPA

Compliance Professional at MNR Solutions

4-8 Yrs

₹ 18-28 LPA

Risk Management at Orbus International

4-7 Yrs

₹ 10-20 LPA

Security Auditor at Flairdeck consulting

3-5 Yrs

₹ 10-15 LPA

Technology Auditor at Adept Consulting Partners

4-7 Yrs

₹ 12-20 LPA

Compliance Manager at Northern Tool Equipment

5-7 Yrs

₹ 15-20 LPA

Manager Architect at HDFC CREDILA FINANCIAL SERVICES LIMITED

5-12 Yrs

₹ 17-22 LPA

Risk Management at Orbus International

4-9 Yrs

₹ 12-20 LPA

Cyber Security Specialist at SBS Global

4-8 Yrs

₹ 12-24 LPA

write
Share an Interview