Talent.com
Third Party Governance, Risk, and Compliance (GRC) Analyst

Third Party Governance, Risk, and Compliance (GRC) Analyst

Act ConsultingLos Angeles, CA
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.permanent
job_description.job_card.job_description

ACT Consulting has an immediate need for a Third Party Governance, Risk, and Compliance (GRC) Analyst with our direct client. Please take a moment to review the job description. If this is something you are interested in, please send a copy of your resume to or contact us at for additional details.

Location : Los Angeles, CA

Duration : Direct Hire Title : Third Party Governance, Risk, and Compliance (GRC) Analyst Salary – up to $, / Annum + Benefits

Key Responsibilities :

The Analyst will facilitate activities across the GRC lifecycle, including due diligence, ongoing assessments, and monitoring of third-party vendors to ensure compliance with internal standards and regulatory requirements.

  • Support the full lifecycle of Third Party Risk Management from onboarding to offboarding
  • Conduct initial and ongoing risk assessments of third-party vendors to identify potential privacy and security risks
  • Request, track, and analyze vendor due diligence documentation (, SIG questionnaires, SOC reports, security policies)
  • Coordinate with internal stakeholders and vendors to identify, document, and monitor risk remediation efforts
  • Evaluate vendor cybersecurity controls and align with the organizations risk management framework
  • Collaborate with Contracts / Procurement teams on reviews related to vendor engagements
  • Assist in client compliance efforts including questionnaire responses and stakeholder coordination
  • Maintain key risk metrics and support risk reporting processes
  • Contribute to continuous improvement and automation of GRC processes
  • Stay current with regulatory developments (, GDPR, CCPA) and industry frameworks (, NIST CSF, ISO)
  • Provide training and guidance to cross-functional stakeholders on GRC procedures
  • Participate in various ad hoc projects and GRC program enhancements

Required Skills

  • Minimum years of experience in Third Party Risk Management, GRC, or related fields
  • Experience in highly regulated industries such as finance or consulting (Big experience a plus)
  • Strong knowledge of GRC domains including compliance, risk management, and supplier resiliency
  • Familiarity with privacy and security frameworks (, NIST, ISO, GDPR, CCPA)
  • Highly organized, detail-oriented, and able to work independently
  • Excellent communication and stakeholder engagement skills
  • Proficiency with tools such as Excel, Confluence, and risk assessment platforms
  • Thanks & Regards Paul Joseph ACT Consulting Talent Acquisition Lead Phone : Fax : Visit ACT Consulting at to view our open positions.

    serp_jobs.job_alerts.create_a_job

    Third Party Risk And • Los Angeles, CA