ACT Consulting has an immediate need for a Third Party Governance, Risk, and Compliance (GRC) Analyst with our direct client. Please take a moment to review the job description. If this is something you are interested in, please send a copy of your resume to or contact us at for additional details.
Location : Los Angeles, CA
Duration : Direct Hire Title : Third Party Governance, Risk, and Compliance (GRC) Analyst Salary – up to $, / Annum + Benefits
Key Responsibilities :
The Analyst will facilitate activities across the GRC lifecycle, including due diligence, ongoing assessments, and monitoring of third-party vendors to ensure compliance with internal standards and regulatory requirements.
- Support the full lifecycle of Third Party Risk Management from onboarding to offboarding
- Conduct initial and ongoing risk assessments of third-party vendors to identify potential privacy and security risks
- Request, track, and analyze vendor due diligence documentation (, SIG questionnaires, SOC reports, security policies)
- Coordinate with internal stakeholders and vendors to identify, document, and monitor risk remediation efforts
- Evaluate vendor cybersecurity controls and align with the organizations risk management framework
- Collaborate with Contracts / Procurement teams on reviews related to vendor engagements
- Assist in client compliance efforts including questionnaire responses and stakeholder coordination
- Maintain key risk metrics and support risk reporting processes
- Contribute to continuous improvement and automation of GRC processes
- Stay current with regulatory developments (, GDPR, CCPA) and industry frameworks (, NIST CSF, ISO)
- Provide training and guidance to cross-functional stakeholders on GRC procedures
- Participate in various ad hoc projects and GRC program enhancements
Required Skills
Minimum years of experience in Third Party Risk Management, GRC, or related fieldsExperience in highly regulated industries such as finance or consulting (Big experience a plus)Strong knowledge of GRC domains including compliance, risk management, and supplier resiliencyFamiliarity with privacy and security frameworks (, NIST, ISO, GDPR, CCPA)Highly organized, detail-oriented, and able to work independentlyExcellent communication and stakeholder engagement skillsProficiency with tools such as Excel, Confluence, and risk assessment platformsThanks & Regards Paul Joseph ACT Consulting Talent Acquisition Lead Phone : Fax : Visit ACT Consulting at to view our open positions.