Alvarez & Marsal (A&M;) is a global consulting firm with entrepreneurial, action and results-oriented professionals. We take a hands-on approach to solving our clients' problems and assisting them in reaching their potential. Our culture celebrates independent thinkers and doers who positively impact our clients and shape our industry. The collaborative environment and engaging work - guided by A&M;'s core values of Integrity, Quality, Objectivity, Fun, Personal Reward, and Inclusive Diversity - are why our people love working at A&M.;
The Team
The Security GRC Associate will play a critical role in managing and enhancing our Information Security third-party risk management program. This position will align to the team responsibilities of assessing, monitoring, and mitigating risks associated with third-party vendors, ensuring compliance with regulatory requirements and internal security policies.
This role will be focused on supporting client security questionnaires, vendor security assessments,
and working closely with business stakeholders to align security measures commensurate with risk. The successful candidate requires a robust understanding of security controls with the ability to effectively assess and communicate technical security requirements to teams across the firm.
How You Will Contribute
The ideal candidate will have one or more of the following responsibilities
• Security Third Party Risk Management:
• Identify vendor security risks for assessment against A&M; risk appetite and submit risks into risk management platform.
• Maintain oversight of risk treatment and incorporate updates into monthly reports.
• Produce and deliver comprehensive risk assessments of vendors.
• Contribute to process improvements and development of vendor risk assessment frameworks and questionnaires.
• Execute vendor assessments within defined SLA’s utilizing GRC platforms and tools in line with A&M;’s vendor security assessment process