Talent.com
Third-Party Risk Management (TPRM) Analyst
Third-Party Risk Management (TPRM) AnalystVancity • Vancouver, British Columbia, Canada
No longer accepting applications
Third-Party Risk Management (TPRM) Analyst

Third-Party Risk Management (TPRM) Analyst

Vancity • Vancouver, British Columbia, Canada
30+ days ago
Job type
  • Full-time
  • Permanent
Job description

Our Story & Purpose :

Were Vancity a member-owned credit union built on the principles of inclusion and social justice. Since 1946 our relentless commitment to these values has helped us challenge the status quo and break down barriers. Weve made bold commitments to become net-zero by 2040 across all mortgages and loans and were actively pursuing strategies in Indigenous banking and financial resilience for our members.

As the largest private sector Living Wage Employer in Canada were proud to be consistently recognized as one of the countrys Top Employers. If youre ready to join our team of 2700 diverse individuals access competitive rewards and benefits and be part of a greater movement apply today!

Your Role in Supporting Our Members :

Join our IT Governance Risk and Compliance (IT-GRC) team as a Third-Party Risk Management (TPRM) this role you shall perform TPRM and vendor risk assessments and will work closely with internal stakeholders and vendors to ensure that security and compliance risks are identified assessed and managed effectively in line with internal policies regulatory requirements and industry best practices.

This is a Full-time Permanent role based at Vancity head office. This role will enjoy hybrid working arrangements which can be fulfilled primarily from the Vancity head office location and your Lower Mainland based home office. Periodically youll be required to attend in-person activities or events. This role reports to the Senior Manager of IT GRC.

How Youll Make an Impact :

  • Conducting third-party risk assessments to evaluate vendor security and compliance controls by reviewing vendor documentation engaging with internal stakeholders to understand business requirements and identifying security and compliance gaps
  • Reviewing vendor security documentation including SOC reports web application penetration test results and security risk assessments
  • Reviewing and providing opinion on vendor provided SoWs contracts and MSAs
  • Maintaining and improving third-party risk management processes tools and workflows to streamline risk assessments audit procedures and reporting
  • Working with procurement vendor management legal and other business teams to perform due diligence on new vendors and ensure security and compliance requirements are met before onboarding
  • Evaluating third-party security incidents or breaches or vulnerabilities and coordinating investigation efforts with internal teams and vendors
  • Performing other tasks and responsibilities as assigned

What Youll Bring to the Team :

  • Bachelors in Information Technology Risk Management Business or a related field
  • 25 years of related experience in IT Governance Risk and Compliance (GRC) Third-Party Risk Management or Information Security
  • A solid understanding of relevant cyber security standards and frameworks such as NIST ISO 27001 AICPA SOC reports PCI-DSS OSFI PIPEDA
  • Prior working knowledge in reviewing SOC1 SOC2 PCI (AoC) and ISO 27001 reports and attestations
  • Experience reviewing vendor security controls evaluating compliance artifacts and analyzing security risks
  • Strong attention to detail and analytical thinking to identify vendor security risks and assist in remediation tracking
  • Excellent communication and stakeholder management skills to engage with vendors and internal teams
  • A proactive mindset with the ability to work independently and manage multiple priorities in a fast-paced environment
  • Extra Skills That Set You Apart :

  • Experience in IT Audit Risk Management Information Security or a combination of these
  • Information Security related certifications and training such as CISA CRISC and CISM
  • An undergraduate degree (preferably in Cyber Security Computer Science Engineering or highly related field)
  • Youll Thrive Here If You Are :

  • Detail-Oriented : You have a sharp eye for identifying security gaps and areas of improvement in vendor security practices
  • Analytical : You can balance business needs with risk considerations and provide pragmatic recommendations
  • Proactive & Adaptable : You anticipate challenges and take action to address them before they escalate
  • Collaborative : You work effectively with cross-functional teams including Procurement Legal and IT Security
  • A Clear Communicator : You can translate technical risk concepts into business-friendly language for stakeholders
  • Driven by Continuous Improvement : You are always looking for ways to refine processes and enhance risk management effectiveness
  • We value lived experience so if you are interested in this role we encourage you to apply even if you feel your skills dont perfectly align with those listed.

    What Youll Earn :

    This role offers a salary range of $75700 to $93500 per annum . The base pay offered may vary depending on factors such as relevant qualifications skills previous experience and internal equity. As part of our total rewards package employees may also be eligible for our annual incentive program subject to program eligibility requirements.

    Why Youll Love Working Here :

    A career at Vancity is more than just a job youre joining a tradition of change-makers who are creating lasting change for our communities. Beyond base pay we offer a comprehensive total rewards package to ensure our employees are empowered to thrive :

  • Living Wage Employer : Were the largest private-sector Living Wage Employer in Canada and consistently ranked among Canadas Top Employers
  • Customizable Benefits : Permanent employees receive flexible benefit packages that can be tailored annually to meet evolving needs
  • Generous Vacation : New employees start with 34 weeks of vacation per year with additional days earned over time
  • Extra Stat Holidays : In addition to BCs 11 statutory holidays we offer 2 extra days plus care days for personal or family illness
  • Immediate Health Coverage : Health and dental benefits begin on your hire date with three levels of coverage to choose from
  • Defined Benefit Pension : Our retirement plan provides a guaranteed income for life recognizing that retirement looks different for everyone
  • Vancity Talent Programs :

    Vancity supports an inclusive hiring process for candidates who self-identify as Indigenous Black or Trans. With special permission from the BC Human Rights Commissioner this initiative provides access to career development opportunities prioritized job screening and feedback. Any information you choose to share will be stored securely and used only for recruitment and career development connected to this initiative in line with the BC Personal Information Protection Act (PIPA). For details please see our dedicated Talent Programs job posting.

    This role is an open vacancy and our hiring process is grounded in fairness transparency and inclusion. We are also committed to an inclusive barrier-free and accessible recruitment experience for all candidates. If you require any accommodations or support at any stage of the recruitment process (including the application stage) we encourage you to let us know by contacting our Talent Acquisition team at Were here to work with you to ensure your needs are met promptly and effectively. All requests will be handled with the utmost respect and confidentiality so you can participate fully in the process.

    Required Experience :

    IC

    Key Skills

    ISO 27001,Microsoft Access,Risk Management,Financial Services,PCI,Risk Analysis,Analysis Skills,COBIT,NIST Standards,SOX,Information Security,Data Analysis Skills

    Employment Type : Full-Time

    Experience : years

    Vacancy : 1

    Yearly Salary Salary : 75700 - 93500

    Create a job alert for this search

    Risk Analyst • Vancouver, British Columbia, Canada

    Similar jobs
    Change Analyst

    Change Analyst

    Delta Intelligent Building Technologies (Canada) Inc. • Surrey, BC, Canada
    Full-time +1
    About Delta Intelligent Building Technologies (Canada) Inc.Delta Intelligent Building Technologies (Canada) Inc.For over three decades, we have provided innovative building automation solutions for...Show more
    Last updated: 30+ days ago • Promoted
    Senior Manager, Digital Asset Business - Risk Consulting - delta

    Senior Manager, Digital Asset Business - Risk Consulting - delta

    KPMG in the Cayman Islands • delta, bc, ca
    Full-time
    Please note : this is an on-site role and can be based in The Cayman Islands, Bermuda, The Bahamas or the Crown Dependencies and relocation is required. At KPMG our goal is to be the Clear Choice for...Show more
    Last updated: 7 hours ago • Promoted • New!
    Manager, Credit & Fraud Analytics

    Manager, Credit & Fraud Analytics

    Mogo Finance Technology Inc. • Vancouver (or remote), BC, CA
    Remote
    Full-time
    Quick Apply
    Manager, Credit & Fraud Analytics Location : Remote (Canada) Department : Risk & Decision Science Base Salary for the role : $100,000 - $130,000 About the Role Mogo is on a mission to help our...Show more
    Last updated: 30+ days ago
    Change Management Manager - Raise

    Change Management Manager - Raise

    Raise • delta, bc, ca
    Temporary
    Job Opening : Manager, Change Management.Cyber Security Team | 8-Month Contract.Ottawa or Toronto (1 Dundas West) – Hybrid (2 days onsite). This role supports a large-scale transformation that will i...Show more
    Last updated: 6 hours ago • Promoted • New!
    Manager, Systems Integration (Security Systems Division)

    Manager, Systems Integration (Security Systems Division)

    SSRG • Burnaby, BC, Canada
    Full-time
    We are seeking a Manager, Systems Integration!.The Manager, Systems Integration is responsible for the business and operational aspects of the Security Systems Division. This role provides leadershi...Show more
    Last updated: 3 days ago • Promoted
    Fraud Analytics Project Associate

    Fraud Analytics Project Associate

    Deloitte • Vancouver, British Columbia, Canada
    Full-time
    On-Site 2 / 3 days per week (as directed by the client).At Deloitte, our Purpose is to make an impact that matters.We exist to inspire and help our people, organizations, communities, and countries...Show more
    Last updated: 3 days ago • Promoted
    Loss Prevention Asset Protection Manager

    Loss Prevention Asset Protection Manager

    London Drugs Limited • Richmond, BC, Canada
    Full-time
    Youll experience them all at London Drugs.As one of Canadas most successful retail chains, we know what it takes to build a satisfying career. We are seeking innovative, customer focused people to j...Show more
    Last updated: 15 days ago • Promoted
    Project Management Officer (PMO) - delta

    Project Management Officer (PMO) - delta

    Dexian • delta, bc, ca
    Full-time
    Role : Project Management Officer (PMO).Location : Mississauga, ON (Hybrid).Duration 6+ months (Possible Extension / Conversion). PMO required to assist with delivery of Markets Transformation programs....Show more
    Last updated: 7 hours ago • Promoted • New!
    Principal Consultant, Auditor – EHS Regulatory Compliance and Management Systems

    Principal Consultant, Auditor – EHS Regulatory Compliance and Management Systems

    ERM : Environmental Resources Management • Vancouver, Metro Vancouver Regional District, Canada
    Full-time
    Principal Consultant, Auditor – EHS Regulatory Compliance and Management Systems.Safe and Sustainable Operations team in. Western Canada (Vancouver or Calgary).ERM delivers a wide range of services ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Business Analyst Cybersecurity (Remote) - delta

    Senior Business Analyst Cybersecurity (Remote) - delta

    Amaris Consulting • delta, bc, ca
    Remote
    Full-time
    Le candidat idéal aura une solide connaissance des écosystèmes AWS, des concepts de cybersécurité et des meilleures pratiques de l’industrie, avec une expérience dans le secteur des assurances en t...Show more
    Last updated: 7 days ago • Promoted
    IP Core PM (Wireline)

    IP Core PM (Wireline)

    Yochana • richmond, bc, ca
    Full-time
    Position Name – IP Core PM (Wireline).Location – Brampton, ON (100% onsite).We are looking to hire IP Core PM who has experience in Wireline Core, Telco & is PMP certified.Need experience in capaci...Show more
    Last updated: 11 hours ago • Promoted • New!
    R&D Manager - richmond

    R&D Manager - richmond

    Blue Signal Search • richmond, bc, ca
    Full-time
    Hybrid, Ottawa ON (Canada) – three days a week on-site, two remote.Our confidential client is a global trailblazer in cloud-delivered cyber-defense. They are expanding a flagship threat-detection pl...Show more
    Last updated: 7 hours ago • Promoted • New!
    Agile Delivery Manager

    Agile Delivery Manager

    UniSysTech Consulting • delta, bc, ca
    Full-time
    Scrum / Kanban), leading ceremonies and driving execution.PPM tool) for planning and reporting.Project / Program interdependency management. Clear communication and reporting.Large scale – complex int...Show more
    Last updated: 12 hours ago • Promoted • New!
    Junk Removal Specialist

    Junk Removal Specialist

    Pro-Claim Group • Richmond, BC, Canada
    Full-time
    Platinum Pro-Claim Restoration (PPCR).With over 30 years of industry leadership, we proudly set the standard for sustainability and innovation in Canada’s restoration industry.When disaster s...Show more
    Last updated: 1 day ago • Promoted
    Risk and Regulatory Compliance Associate - delta

    Risk and Regulatory Compliance Associate - delta

    RSM US LLP • delta, bc, ca
    Full-time
    RSM is the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their ful...Show more
    Last updated: 7 days ago • Promoted
    Manager, AML Compliance

    Manager, AML Compliance

    Aviso Wealth • Vancouver, BC, CA
    Full-time
    Quick Apply
    At Aviso, we are dedicated to improving the financial well-being of Canadians.As a leading wealth management organization, we are committed to leadership, innovation, partnership, responsibility, a...Show more
    Last updated: 2 days ago
    Asset Management Program Analyst

    Asset Management Program Analyst

    Co-operative Housing Federation BC • Vancouver, BC, Canada
    Full-time
    CHFBC is a non-profit organization and the parent company that serves as the umbrella organization for this group of related enterprises, i. COHO Management Services and Community Land Trust (CLT).O...Show more
    Last updated: 3 days ago • Promoted
    Project Manager, People Analytics and HR Systems - delta

    Project Manager, People Analytics and HR Systems - delta

    LeverageTek Staffing Solutions • delta, bc, ca
    Permanent +1
    Project Manager, People Analytics and HR Systems.LeverageTek is actively seeking a BI / Data Analytics Reporting Lead (People Analytics and HR Systems) for a 36-month Term with its Ottawa-based cus...Show more
    Last updated: 11 hours ago • Promoted • New!