What are the responsibilities and job description for the Senior Analyst- Third Party Risk position at RedStream Technology?
Senior Analyst, Third Party Risk
Contract, W2 only
Miramar, FL (hybrid preferred)
12 months, potential to convert to FTE
Responsibilities:
- Manage the policy and standards lifecycle, including updates, synchronization, approvals, and documentation control processes.
- Support the development and maintenance of Standard Operating Procedures (SOPs), playbooks, guidance documents, and governance artifacts.
- Create and maintain centralized governance document libraries and repositories.
- Draft and maintain process flow documentation to support operational clarity and process standardization.
- Ensure governance documentation is clear, actionable, and effectively implemented by operational teams.
- Prepare, organize, and package documentation to support internal and external audits and assessments.
- Facilitate working sessions to translate high-level regulatory and policy requirements into practical operational procedures and controls.
- Support change management activities, stakeholder communications, and training related to governance and policy updates.
- Draft, review, edit, and maintain policies, standards, procedures, workflows, and related governance documentation.
- Ensure documentation accurately reflects current-state processes, systems, and control environments.
- Maintain traceability and alignment between policies, standards, controls, procedures, and supporting evidence.
- Administer governance document repositories and ensure proper document organization and accessibility.
- Implement and maintain document version control standards and approval workflows.
- Ensure documentation retention, archival, and record management practices comply with organizational requirements.
- Maintain audit trails for document revisions, approvals, and governance decisions.
Skills:
Governance & Documentation Skills
- Strong experience drafting, reviewing, and maintaining policies, standards, procedures, SOPs, playbooks, and governance documentation.
- Ability to translate complex procurement, regulatory, and risk requirements into clear operational procedures and process documentation.
- Experience developing process flows, workflows, and governance artifacts using documentation and diagramming tools.
- Strong attention to detail with the ability to ensure documentation accuracy, consistency, and completeness.
Procurement & Third-Party Risk Knowledge
- Understanding of procurement operations, supplier lifecycle management, and third-party governance processes.
- Knowledge of third-party risk management (TPRM), vendor due diligence, supplier onboarding, and ongoing monitoring practices.
- Familiarity with procurement controls, contract governance, and supplier compliance requirements.
- Understanding of regulatory and audit expectations impacting procurement and third-party management environments.
Audit, Compliance & Risk Management
- Experience supporting internal audits, external audits, and regulatory reviews.
- Ability to organize and maintain audit-ready documentation and evidence repositories.
- Knowledge of governance, risk, and compliance (GRC) frameworks and control management practices.
- Ability to identify documentation gaps and support remediation activities.
- Stakeholder Management & Communication
- Strong collaboration and relationship management skills with the ability to work across Procurement, Legal, Compliance, Risk, Security, Finance, and Business teams.
- Excellent written and verbal communication skills.
- Ability to facilitate working sessions and gather requirements from cross-functional stakeholders.
- Strong organizational and project coordination skills with the ability to manage multiple priorities and deadlines.
Technical & Operational Skills
- Experience managing document repositories, version control processes, and records retention practices.
- Proficiency in Microsoft Office Suite (Word, Excel, PowerPoint, Visio).
- Experience with document management, workflow, procurement, or GRC platforms (e.g., SharePoint, Archer, Coupa, ServiceNow, OneTrust, SAP Ariba, or similar tools).
- Ability to create process maps, workflows, and reporting dashboards where applicable.
- Experience in procurement governance, third-party risk management, vendor management, or operational risk environments.
- Knowledge of industry frameworks and standards such as ISO 27001, SOC, NIST, GDPR, or other relevant regulatory frameworks.
- Professional certifications such as CTPRP, CRVPM, PMP, CRCM, or similar are a plus.
Education:
Bachelor’s degree in Business, Procurement, Risk Management, Compliance, or related field.