TPRM Continuous Monitoring Analyst
- TEK Systems
- Chicago, United States
- $120,000 – $128,000
The TPRM Continuous Monitoring Analyst is responsible for the ongoing oversight of the client's critical third-party vendors, ensuring their risk posture remains aligned with the organization’s risk appetite, internal policies, and regulatory expectations throughout the vendor lifecycle. This role plays a key part in safeguarding the organization by conducting periodic reassessments, trigger-based reviews, and continuous monitoring of vendor controls across multiple risk domains -including information security, privacy, business continuity, operational resilience, and compliance. The analyst leverages risk intelligence tooling (e.g., Supply Wisdom and Black Kite) to detect material changes in vendor risk, triage alerts, and drive timely remediation, escalation, and reporting.
Key Responsibilities
Continuous Monitoring & Ongoing Oversight
Participate in ongoing monitoring of critical vendors, including periodic reassessments and trigger-based reviews.
Monitor risk intelligence feeds (Supply Wisdom and Black Kite) daily, reviewing alerts across cyber, financial, operational, geopolitical, compliance, and reputational risk domains.
Perform initial triage and severity validation of incoming alerts, investigating alert context, vendor history, and existing controls to determine whether escalation is warranted.
Initiate and conduct targeted assessments based on defined cadence and triggers (e.g., breach disclosures, sanctions/adverse media hits, material CVE exposure, breach notifications).
Track changes in vendor risk posture and maintain monitoring tiers mapped to inherent risk, data sensitivity, concentration risk, and business criticality.
Risk Assessments & Reassessments
Perform comprehensive risk assessments and reassessments of third-party vendors using standardized frameworks and questionnaires (IRQ/DDQ).
Evaluate vendor responses, supporting documentation, and control effectiveness across domains such as cybersecurity, data protection, operational resilience, and regulatory compliance in ProcessUnity.
Conduct SOC report reviews for suppliers in accordance with the annual review cadence.
Evaluate updated evidence to identify control improvements or deterioration, newly introduced risks, and persistent or systemic issues.
Due Diligence & Analysis
Analyze vendor risk posture and identify potential gaps or areas of concern.
Collaborate with internal subject matter experts (e.g., InfoSec, Privacy, Legal, Compliance, Business Continuity) to validate findings and determine risk impact.
Document risk trend analysis and provide clear rationale for any changes in inherent or residual risk ratings.
Escalation & Communication
Escalate Critical and High alerts for Tier 1 and Tier 2 vendors within defined SLA timeframes, notifying the Relationship Manager, TPRM Assessment team, and applicable SMEs (e.g., InfoSec, CSIRT).
Communicate identified issues with Relationship Managers, InfoSec, Privacy, Legal, Compliance, and Business Continuity, and log outcomes in ProcessUnity.
Provide internal business support as well as supplier support throughout the reassessment process.
Reporting & Documentation
Document assessment results, risk ratings, and recommendations in the TPRM platform (ProcessUnity).
Produce monthly operational dashboards and status reports, and support quarterly executive reporting on top risks, identified findings, and SOC/compliance reviews.
Maintain accurate, audit-ready records of monitoring activity, escalation records, and reassessment outcomes.
Skills
third party risk management
Top Skills Details
third party risk management
Additional Skills & Qualifications
Required Qualifications
Experience in third-party risk, vendor assessments, or IT risk management.
Familiarity with risk and control frameworks (e.g., NIST, ISO 27001, SOC 2, SIG).
Working knowledge of risk assessment methodologies and control validation across information security, privacy, business continuity, and compliance domains.
Strong analytical, communication, and stakeholder management skills.
Ability to manage multiple priorities and meet deadlines in a fast-paced environment.
Detail-oriented with a focus on accuracy and completeness.
Key Competencies
Risk-based judgment and the ability to interpret and prioritize risk signals.
Sound decision-making under defined thresholds and escalation protocols.
Collaboration and partnership across cross-functional risk stakeholders.
Ownership, accountability, and the ability to produce measurable, actionable outputs.
Job Type & Location
This is a Contract position based out of Chicago, IL.
Pay and Benefits
The pay range for this position is $60.00 - $64.00/hr.
Individual compensation offered for this position within this range will depend on many factors, including qualifications, skills, relevant experience, job knowledge, geographic location, internal equity, and other pertinent job-related factors.
Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: • Medical, dental & vision • Critical Illness, Accident, and Hospital • 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available • Life Insurance (Voluntary Life & AD&D for the employee and dependents) • Short and long-term disability • Health Spending Account (HSA) • Transportation benefits • Employee Assistance Program • Time Off/Leave (PTO, Vacation or Sick Leave)
Workplace Type
This is a fully remote position.
Application Deadline
This position is anticipated to close on Sep 15, 2026.
About TEKsystems
We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company.
The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
About TEKsystems and TEKsystems Global Services
We’re a leading provider of business and technology services. We accelerate business transformation for our customers. Our expertise in strategy, design, execution and operations unlocks business value through a range of solutions. We’re a team of 80,000 strong, working with over 6,000 customers, including 80% of the Fortune 500 across North America, Europe and Asia, who partner with us for our scale, full-stack capabilities and speed. We’re strategic thinkers, hands-on collaborators, helping customers capitalize on change and master the momentum of technology. We’re building tomorrow by delivering business outcomes and making positive impacts in our global communities. TEKsystems and TEKsystems Global Services are Allegis Group companies. Learn more at TEKsystems.com.
The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
San Francisco Fair Chance Ordinance: Pursuant to the San Francisco Fair Chance Ordinance, for all positions located in the city and county of San Francisco, we will consider for employment qualified applicants with arrest and conviction records.
Massachusetts Lie Detector: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Use of Artificial Intelligence (AI): We may use Artificial Intelligence (AI) to support parts of our hiring process, including sourcing, screening, and evaluating candidates. AI helps assess applications and qualifications, but final decisions are made by our hiring team. By applying, you acknowledge and agree that your application may be reviewed using AI tools.
Skills
- Third-Party Risk Management
- Vendor Risk Assessment
- Supply Wisdom
- Black Kite
- Information Security
- Risk Intelligence Analysis
- Regulatory Compliance







