Senior Risk Analyst
Virtual Vocations Inc
Maintaining and maturing the enterprise-wide third-party risk program, the full-time Senior Third-Party Risk Analyst will evaluate vendor risk, oversee compliance with cybersecurity frameworks, and support audit requirements while working remotely. Key Responsibilities Maintain the global inventory of third-party providers and lead vendor cybersecurity assessments Provide evidence and documentation for SOC 2 Type II and PCI DSS audits, ensuring alignment with regulatory requirements Collaborate with the Threat & Vulnerability Management team to support client communications regarding cybersecurity vulnerabilities Required Qualifications 5+ years of experience in cybersecurity, risk management, audit, or compliance Deep understanding of regulatory requirements including PCI DSS, SOC 2, and GDPR Experience evaluating cloud technologies such as AWS, GCP, or Azure Strong knowledge of application cybersecurity and network cybersecurity concepts Ability to assess vendor controls and articulate risk to non-technical stakeholders
Reference: WJ-2926_4797040