Job Search and Career Advice Platform

Enable job alerts via email!

TPRM Analyst

Trades Workforce Solutions

Greater London

Hybrid

GBP 55,000 - 70,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading organisation in London is seeking a TPRM Analyst to strengthen their third-party risk management program. This role involves assessing and monitoring the security posture of vendors, ensuring compliance with risk frameworks. Responsibilities include conducting risk assessments, reviewing vendor security documentation, and collaborating with various teams for effective risk mitigation. Ideal candidates should have experience in third-party risk management and excellent communication skills. The position offers a hybrid work model with 3 days onsite and 2 days remote.

Qualifications

  • Experience in Third‑Party Risk Management or Vendor Risk Assessment.
  • Familiarity with NIST, ISO 27001, or SIG questionnaires.
  • Strong analytical and problem‑solving skills with attention to detail.

Responsibilities

  • Conduct third-party risk assessments focusing on cybersecurity and compliance requirements.
  • Review vendor security documentation and identify gaps.
  • Support onboarding and continuous monitoring of third‑party vendors.
  • Maintain accurate risk records and provide reporting for governance forums.

Skills

Third‑Party Risk Management
Vendor Risk Assessment
Analytical Skills
Problem-Solving
Communication Skills

Tools

Archer
ServiceNow
JIRA
Job description

Title: TPRM Analyst

Salary: £55,000 - £70,000 + Bonus

Location: London (3 days a week onsite, 2 days remote)

Unfortunately no sponsorship is available with this role.

About the Role

I’m working on behalf of a leading organisation to recruit a TPRM Analyst who will play a key role in strengthening their third‑party risk management program. In this position, you’ll assess and monitor the security posture of vendors and partners, ensuring compliance with the company’s risk framework and regulatory requirements. You’ll collaborate with Procurement, Legal, and InfoSec teams to identify, evaluate, and mitigate risks associated with third‑party relationships.

Key Responsibilities
  • Conduct third-party risk assessments, focusing on cybersecurity and compliance requirements.
  • Review vendor security documentation (e.g., SOC reports, ISO certifications) and identify gaps.
  • Support onboarding and continuous monitoring of third‑party vendors.
  • Maintain accurate risk records and provide reporting for governance forums.
  • Collaborate with internal stakeholders to ensure risk mitigation plans are implemented.
What We’re Looking For
  • Experience in Third‑Party Risk Management or Vendor Risk Assessment.
  • Familiarity with frameworks such as NIST, ISO 27001, or SIG questionnaires.
  • Strong analytical and problem‑solving skills with attention to detail.
  • Excellent communication skills to engage with technical and non‑technical stakeholders.
  • Ability to manage multiple assessments and meet deadlines.
Desirable
  • Knowledge of regulatory requirements (GDPR, PCI DSS).
  • Experience with TPRM tools or GRC platforms (e.g., Archer, ServiceNow, JIRA).
  • Relevant certifications (e.g., CTPRP, CRISC, CISSP).
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.