Skip to main content
Back to jobs

Senior Analyst, Third Party Risk Management

External
nab logoNab · Unknown
Full-timeHybridToday
AgileComplianceExcelInformation SecurityLeadershipRisk Management
Cover LetterConnect

Prepare for this interview

Elite

AI-generated questions, company research, and talking points tailored to this role


About the role

The Senior Analyst, Third-party Risk Management role will play a crucial role in assessing, monitoring, and managing risks associated with NABVN third-party relationships. The ideal candidate is required to have a strong understanding of supplier/vendor Risk Management principles, excellent analytical skills, and the ability to communicate effectively with stakeholders at all levels. This role will involve conducting risk assessments, continuous monitoring of adverse media alerts, generating reports, and support to remediate third-party Risk. YOUR JOB RESPONSIBILITIES Supporting the NABVN business to evaluate the Inherent Risk Assessment (IRA) and third-party Assessments (TPA) for NABVN's third parties. Conduct risk assessments of third-party vendors to identify potential risks and vulnerabilities and collaborate with internal stakeholders to gather necessary information for risk assessment. Communicate assessment results to relevant stakeholders, including senior management. Providing advice and guidance to the business to ensure all outsourcing and third-party arrangements are within the Group Risk Appetite Statement enabling business to build and uplift supplier controls. Monitor and track third-party risk metrics and trends using share points and dashboards. Performing Assurance over Supplier performance in meeting risk requirements including the CPS 230, 231 and 234 compliance check and other APRA regulatory requirements. Assist in the implementation of risk mitigation measures and monitoring effectiveness. Communicating and driving best practice and consistency across the enterprise specific to third-party risk assessment activities. Supporting key stakeholders and 2nd line risk partners with the execution of key processes related to third-party risk assessment activities including the creation and review of internal dashboards.

Requirements

  • 6-8 years of proven experience into risk management, preferably within the context of third-party risk management
  • A deep understanding of information security and business continuity/disaster recovery controls along with a working knowledge of following standards/frameworks -
  • CPS 230 and 234 guidelines
  • ISO 27001 and ISO 22301
  • NIST Cyber Security Framework
  • An information security/BCM related certification (CISM/CISSP/Lead auditor for infosec/BCP/CRISC/CTPRP) would be a preferred.
  • Strong analytical skills with the ability to interpret complex data and identify trends
  • Excellent communication and presentation skills, with the ability to convey technical information to non-technical stakeholders.
  • Proficiency in Microsoft Office Suite, particularly Excel and PowerPoint.
  • Experience with risk management software and tools is desirable (risk mgmt, due diligence conducting tools, shared assessments, adverse media monitoring).
  • Ability to work independently and collaboratively in a fast-paced environment.
  • Attention to detail and a commitment to accuracy and quality.
  • THE BENEFITS AND PERKS
  • We appreciate and reward our colleagues who do great work every day - from excelling for our customers, to taking ownership of an issue to get it resolved. Here's how we support our people with a range of exclusive benefits.
  • Generous compensation and benefit package
  • Attractive salary
  • 20-day paid annual leave and 7-day paid sick leave
  • 13th month salary and Annual Performance Bonus
  • Premium healthcare for yourself and family members
  • Monthly allowance for team activities
  • Premium welcome kit and occasional gifts of appreciation
  • Extra benefits on your work anniversary
  • Exciting career and development opportunities
  • Large scale products with modern technologies in banking domain
  • Clear roadmap for career advancement in both technical and leadership pathways
  • Access to digital learning platform such as Udemy
  • Consistent and high-quality leadership training through the Distinctive Leadership program (DLP)
  • Specialist capabilities and accreditations in key skill areas such as Cloud Engineering, Digital, Data, Security and SREs (Site reliability engineers)
  • Sponsored English course with native teachers
  • Opportunity for training in Australia
  • Professional and engaging working environment
  • Hybrid working model and excellent work-life balance
  • State-of-the-art & modern Agile office
  • Food and beverages in the office pantry
  • Employee Assistance Program to improve your physical and mental health
  • Annual team activities and company events
  • A solid and talented team behind you - great people who love what they do
  • A DIVERSE AND INCLUSIVE WORKPLACE WORKS BETTER FOR EVERYONE

Benefits

Health insurancePerformance bonus

Additional Information

Worker Type: Maximum Term/Fixed Term (Fixed Term)


Your Match

How well this role fits your profile.

Company Intel

What employees say

Worked at nab? Share your experience

Interested in this role?

Apply on the company's website.

Cover LetterConnect