Company

Rapid7See more

addressAddressBoston, MA
type Form of workFull-Time
CategoryInformation Technology

Job description

The Opportunity:
Rapid7 is seeking an experienced, self-motivated, and strategic Third Party Senior Risk Analyst to revamp and grow our Third Party Risk Program. This will be a trusted strategic advisor within the Information Security team, and work alongside Senior Leadership to develop and establish an industry best practice TPRM program. The ideal candidate will effectively collaborate with stakeholders in Procurement, IT, Legal, and others across the organization to drive a global program that effectively manages the risk assessment and due diligence processes, both at on-boarding and throughout the lifecycle of third-parties.
The Team:
Rapid7's Trust & Security Governance team functions within the Information Security department and plays a crucial role in supporting the organization's mission. We ensure we meet our duty of care to our customers, employees, and shareholders by creating effective governance for upholding internal security policies, identifying and managing security risk, distributing foundational security expertise across every department to create an exceptional security culture, and bolstering customer and community trust by providing accessible and transparent information about our internal security program. This role partners closely with other InfoSec teams, Legal, Procurement, and many other teams at Rapid7.
In this role you will:
  • Develop and Manage the end-to-end Third-Party Risk Management Program within Rapid7 which includes managing business, security, compliance, and contractual risks associated with working with third-parties.
  • Administer and manage the distribution of due diligence questionnaires to the suppliers, review submitted questionnaires for completeness, ensure Risk stakeholders finalize reviews and determine overall residual risk rating.
  • Partner with business Stakeholders, including Senior Leadership, Third-party vendors and Subject Matter Experts (security, compliance, legal, etc.) to ensure programs and processes are successfully executed.
  • Partner with a cross functional team supporting pre- and post-contract supplier due diligence efforts including inherent risk triage, administration of appropriate security assessments, continuous monitoring and issue management/remediation and escalation.
  • Manage a consistently growing portfolio of vendors to help maintain visibility into the risk landscape of the organization's most critical third parties.
  • Identify, prioritize and pursue opportunities to enhance and streamline Rapid7's TPRM processes.
  • Contribute to the development of detailed procedural documents and ensure alignment of TPRM with applicable regulatory requirements globally.
  • Review contracts identifying and making sure that requirements relevant to Rapid7 are properly addressed by Rapid7 vendors.
  • Help to monitor and attend during 3rd Party Breaches.

In return you will bring:
  • 5+ years of relevant Third Party Risk management experience.
  • Experience with third-Party Risk tools. Experience with OneTrust is a plus.
  • Excellent written and verbal communication skills, with focus on producing reports and documentation that will be presented to senior management, internal audit, and regulators.
  • Proven ability to operate effectively in a fast-paced, entrepreneurial company in which cross-functional teamwork and initiative is a must.
  • Knowledge of risk management governance standards and other standardized practices for 3rd Party Risk Management (e.g. Shared Information Gathering).
  • Bachelors in Business Administration, Finance, Economics, Computer Science or related fields.
  • CTPRP (Certified Third Party Risk Professional) is a plus.
  • Experience with 3rd Party Risk intelligence tools is a plus.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or any other status protected by applicable national, federal, state or local law.
Refer code: 8980149. Rapid7 - The previous day - 2024-04-11 16:28

Rapid7

Boston, MA
Popular Senior Risk Analyst jobs in top cities
Jobs feed

MRI Tech - Pittsburgh, PA - Travel or Local - 3,000 Weekly Gross

Intellapro

Pittsburgh, PA

$3,000/week

Psychiatric Nurse Practitioner

Elite Dna Behavioral Health

Gainesville, FL

Chief Financial Officer

The Salvation Army Central Territory

Chicago, IL

$143K - $181K a year

Shift Supervisor

Red Robin International

Wareham, MA

Platform Partnerships Lead

Prime

Bodega Bay, CA

Food and Beverage Director

Kisco Senior Living

Gaithersburg, MD

$72K - $91.2K a year

Psychiatric Nurse Practitioner

Elite Dna Behavioral Health

Port Charlotte, FL

Lodge Manager (Food and Beverage Manager)

Allen Marine Inc

Juneau, AK

$25 - $30 an hour

Share jobs with friends

Related jobs

Senior Third Party Risk Analyst

Senior Data Security Risk Analyst

Cargurus

Cambridge, MA

4 weeks ago - seen

Senior Operational Risk Analyst

Federal Home Loan Bank Of Boston

Boston, MA

3 months ago - seen

Senior Enterprise Risk Management Analyst

Circle

$112,500 - $145,000 a year

Boston, MA

3 months ago - seen

Senior Risk Analyst

DraftKings, Inc.

Boston, MA

4 months ago - seen

Senior Financial Risk Analyst

Circle

Boston, MA

4 months ago - seen

Senior Security Risk Analyst

IT Avalon

Newton, MA

4 months ago - seen

Senior Governance Risk and Compliance Analyst

Keolis Transit America

Boston, MA

4 months ago - seen

Enterprise Risk Management - Senior Analyst

Brown Brothers Harriman & Co.

Boston, MA

4 months ago - seen

Senior IT Risk Assessment Analyst - Remote available

TJX Companies, Inc.

Marlborough, MA

4 months ago - seen

Senior Risk Management Analyst, Full-Time, Marlboro or Chelmsford, Hybrid

Digital Federal Credit Union

Chelmsford, MA

4 months ago - seen

Senior Governance, Risk and Compliance (GRC) Analyst

Dynamo Software

Boston, MA

5 months ago - seen