Turn this role into an interview — a resume and cover letter built around what this employer wants.
ShyftLabs in India is seeking a Third-Party Risk Analyst to join our Compliance & GRC team. You will conduct end-to-end risk assessments across the vendor lifecycle, from onboarding to offboarding, and collaborate with Procurement, Legal, and business owners daily.
You will review SOC 1, SOC 2, and ISO 27001 reports, monitor compliance with PCI DSS, SOX, HIPAA, and GLBA, and help maintain executive risk dashboards and risk reports for leadership and auditors.
We are looking for a Third-Party Risk Analyst acts as a critical line of defense protecting data and operational integrity. The role executes end-to-end risk assessments across the entire vendor lifecycle — from onboarding and contract review through continuous monitoring and offboarding. This is a hands-on assessment role embedded in the Compliance & GRC function, working daily with Procurement, Legal, and business owners across the enterprise.