Sr. TPRM Security Analyst
$135k - $145kMultiPlan, Inc
JOB SUMMARY:
This role will support leadership in the Third-Party Risk Management (TPRM) aspects of Claritev's GRC program, with emphasis on vendor security risk assessments, vendor onboarding and due diligence, ongoing monitoring, deficiency management, and third-party risk reporting. Working closely with Procurement, Legal, Compliance, Privacy, IT, and business stakeholders, this position will be responsible for executing and maturing core TPRM processes, improving the scalability and consistency of vendor risk evaluations, and strengthening the organization’s ability to identify, assess, treat, and monitor risks introduced by third-party relationships. This role requires the ability to engage in deep technical discussions with vendors and internal engineering teams, including evaluation of system architecture, data flows, and control implementations within complex environments.JOB ROLES AND RESPONSIBILITIES:
Serve as a trusted advisor and subject matter expert, providing third-party risk management and security governance support to Procurement, IT, and business stakeholders throughout the vendor lifecycle. Support the GRC leader in executing strategy and multi-year roadmaps to mature Claritev's TPRM program. Collaborate with security, IT, procurement, privacy, legal, compliance, and business stakeholders to develop standards and processes that protect the confidentiality, integrity, and availability of Claritev data in third-party environments. Own and execute core TPRM workflows and tooling, including vendor intake and risk tiering, security risk assessment (SRA) scoping, evidence collection, assessment execution, deficiency tracking, risk acceptance, and risk escalation processes. Conduct in-depth security risk assessments of third-party vendors, including evaluation of system architectures, data flows, authentication mechanisms, encryption implementations, network segmentation, and cloud security controls. Lead technical discussions with vendor engineering and security teams to validate architectural design, control effectiveness, and alignment with Claritev security requirements. Review and analyze vendor-provided documentation, including SOC reports, penetration test results, security policies, and completed questionnaires, to assess inherent and residual risk. Identify control gaps and deficiencies, document findings, and coordinate remediation activities or risk acceptance decisions with business stakeholders. Track and manage third-party remediation plans through closure, ensuring timely follow-up, appropriate documentation, and audit readiness. Support ongoing monitoring of third-party risk, including reassessments, periodic reviews, and integration of continuous monitoring tools and threat intelligence sources. Build and maintain consistent assessment methodologies and templates to improve efficiency, quality, and defensibility of vendor risk evaluations. Assist with audits and reviews of TPRM processes to evaluate control effectiveness, document findings, and track remediation activities through closure. Develop and maintain metrics, reporting, and dashboards that communicate third-party risk exposure, assessment volume, deficiency trends, SLA performance, and program effectiveness. Coordinate with the Risk Management team to ensure material third-party risks are escalated into the enterprise risk register and reporting framework. Partner with Procurement to ensure alignment between vendor onboarding workflows and TPRM requirements, including integration with procurement systems and contract lifecycle events. Continuously identify opportunities to improve TPRM processes, automation, and tooling within platforms such as Onspring. Collaborate, coordinate, and communicate effectively across disciplines and departments, and demonstrate the Company’s Core Competencies and values held within. The position responsibilities outlined above are in no way to be construed as all encompassing. Other duties, responsibilities, and qualifications may be required and/or assigned as necessary. REQUIREMENTS (Education, Experience, and Training): At least 5+ years' experience directly in cybersecurity or information security GRC, with a demonstrated track record of leading complex projects in at least two of the following areas: third-party risk management, vendor risk assessments, compliance operations, control assurance, or audit support. Strong technical background is required, with the ability to interpret and evaluate system architecture diagrams, application data flows, and infrastructure designs across cloud and on-prem environments. Hands-on or practical experience in one or more technical domains such as cloud engineering, network security, application security, or systems engineering. Demonstrated ability to engage in detailed technical discussions with engineers and architects regarding control implementation and security design decisions. Strong working knowledge of cloud architectures (e.g., AWS, Azure), including identity models, network design, data protection mechanisms, and shared responsibility considerations. A deep understanding of third-party risk assessment methodologies and frameworks, including NIST CSF, HITRUST, HIPAA, SOC 2, ISO 27001, and related security and privacy requirements. Strong knowledge and experience with the TPRM lifecycle, including vendor intake, tiering, due diligence, risk assessment execution, deficiency management, remediation tracking, and ongoing monitoring. Experience reviewing and interpreting vendor security artifacts such as SOC reports, penetration tests, security policies, and questionnaire responses. Experience building and maintaining TPRM reporting, dashboards, and program metrics that support executive-level decision-making. Strong knowledge of control frameworks, risk identification and assessment techniques, and remediation tracking processes as applied to third-party environments. Functional knowledge of information security domains, industry standards, and best practices, along with the ability to identify and recommend process improvements and automation opportunities. Previous experience with GRC solutions such as Onspring, Archer, Lockpath, LogicGate, or similar platforms; hands-on workflow and reporting configuration experience preferred. Experience collaborating with cross-functional stakeholders such as Procurement, Legal, Compliance, Privacy, Internal Audit, and IT. CISSP, CISA, CISM, CRISC, or similar certifications are a plus. Ability to maintain confidentiality of information and exercise sound judgment when handling sensitive matters. Ability to work independently as well as within a team, communicate effectively with technical and non-technical stakeholders, and influence decisions through clear recommendations. Ability to organize, prioritize, and coordinate multiple work activities, adapt to changing priorities, and meet target deadlines. Ability to travel as needed to Company locations and third-party locations within the US. Individual in this position must be able to work in a standard office environment which requires sitting and viewing monitor(s) for extended periods of time, operating standard office equipment such as, but not limited to, a keyboard, copier, and telephone.COMPENSATION:
The salary range for this position is $135k - $145K. Specific offers take into account a candidate's education, experience and skills, as well as the candidate's work location and internal equity. This position is also eligible for health insurance, 401k and bonus opportunity.#LI-MZ1
Why Clarivet? Healthcare is complex. We help make it clearer. At Clarivet, you'll do work that matters. Together, we’re helping make healthcare more transparent and affordable for all through the power of data, technology, and expertise. We offer meaningful opportunities to grow your career, collaborate with talented colleagues, and make an impact on the clients and communities we serve. If you’re looking for purpose, growth, and a team that succeeds together, you’ll find it here. What Guides Us At Clarivet, innovation, agility, and a focus on results drive our success. We embrace bold thinking, work as one team, take ownership, and strive for excellence in everything we do - creating meaningful impact for our clients, communities, and each other. #J-18808-Ljbffr MultiPlanVacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Sr. TPRM Security Analyst in Mc Lean, VA vacancy
$117.5k - $176.3k
...think is impossible. Our employees are not only part of history, they're making history.Northrop Grumman is seeking a Sr. Principal Industrial Security Analyst/CSSO. This position will report directly to the Corporate Office Security Manager. This position is an on-site...SeniorFull timeContract workFor subcontractorRelocationShift work- DescriptionPersonnel Security Analyst / Adjudicator - SeniorThe Senior Security Analyst is a subject matter expert who independently applies ICD 704 and EO 12968 to the most complex cases involving significant derogatory information. Requiring rare guidance from Senior...Senior
$99k - $225k
ISSO Security Analyst, SeniorThe Opportunity:As a Security Analyst on our team, you’ll use your experience to work with Veterans Affairs (VA) Information System Owners (ISO), Information System Security Officers (ISSO), site managers, and other system stakeholders to coordinate...SeniorFull timeContract workPart timeWork at officeLocal areaRemote work- Phase2 Technology is seeking a Senior Security Analyst to partner with VA ISO/ISSO, site managers, and stakeholders to drive RMF steps 0-6 and ATO activities. You will identify and mitigate risks, elevate issues to leadership, apply VA policies, and produce security documentation...Senior
- A cybersecurity solutions provider in McLean, Virginia is seeking a Security Analyst to support cybersecurity operations and compliance for federal systems. The successful candidate will lead FedRAMP processes, ensure compliance with stringent security requirements, and...Senior
- Dormont Manufacturing Co is hiring a Nuclear Forensics Analyst to support the Deputy Assistant Secretary of War for Nuclear Matters based in Falls Church, Virginia. The role demands extensive experience in nuclear forensics along with the ability to collaborate with various...SeniorFull timeRemote work
$99k - $225k
As a Senior Security Analyst on our team, you will partner with the Veterans Affairs (VA) Information System Owners (ISO), Information System Security Officers (ISSO), site managers, and other stakeholders to coordinate and drive the completion of the Risk Management Framework...SeniorLocal area- SAIC is seeking a Senior Security Analyst to provide general administrative support to the Office of the Under Secretary of War for Research and Engineering (OUSW(R&E)). This position is 100% on-site in Arlington, VA. You will process access requests, manage security records...SeniorWork at office
$120k - $160k
...601 Location Arlington, VA, US Date Posted 2026-08-14 Category Security Subcategory Security Schedule Full-Time Shift Day Job Travel Yes... ...Work ORA_ON_SITE Description SAIC is seeking a Senior Security Analyst to provide general administrative support to the Office of the...SeniorFull timeFor contractorsWork at officeRemote workShift work$120k - $140k
Nakupuna Companies is seeking a Business and Economics Analyst to support the ASN RD&A at the Pentagon. This on-site role requires meticulous analysis, multitasking in a fast-paced environment, and strong communication. The candidate should hold a bachelor’s degree with...Senior- ...seeking a Senior Third-Party Risk Management professional to support its GRC program and vendor risk initiatives. You will drive security risk assessments, onboarding, monitoring, and remediation, engaging with Engineering, Procurement, Legal, and Compliance to strengthen...Senior
$89.6k - $194k
SAP Application Security and GRC Analyst (Sr.) - U.S. Citizenship Required Position Description CGI is seeking a Senior SAP GRC and Application Security Analyst to join an SAP S/4HANA Greenfield implementation project for a large government contract. As a senior-...SeniorContract workWork at officeLocal area2 days per week$62k - $141k
COMSEC Security Program AnalystThe Opportunity:Provide technical and financial analytic support to the client’s Communications Security (COMSEC), Cryptographic, and Cybersecurity programs and efforts to ensure requirements align with Navy, Joint, and DoD strategic COMSEC...Civilian ContractorFull timeContract workPart timeWork at officeLocal areaRemote work$132.5k - $221.3k
...Technology, Test & Evaluation, Program Mission Support, Engineering & Analysis, and Training.ResponsibilitiesAs The Security Specialist Security Operations Analyst, you will:Apply structured analysis, business modeling, and process evaluation to improve security operations...For contractorsWork experience placement- Vacancy: Security Requirements Analyst For Frederick, MD. Dec 18, 2020Job DescriptionU.S. citizenship is required. All candidates must be able to obtain a Federal background clearance. OmniSystems has an exciting opportunity for a Security Requirements Analyst in Frederick...Work experience placementWork at officeRemote workWork from home
- ...objectives. The ProSidian Federal Govt. Client’s Mortgage Backed Securities (MBS) programs help to channel funds from the nation's capital... ...economic and industry trends, and customer demand. Financial analysts provide this information by gathering and analyzing data. They...SeniorFull timeFor contractorsBank staffInternshipWork at office
$117.5k - $176.3k
...not only part of history, they're making history.If forging a secure future excites you, look no further! Northrop Grumman’s Space Sector... ...quest for exploration are welcome. As an Industrial Security Analyst - Level 4 your role at Dulles, VA will be pivotal in supporting...Full timeRelocationShift work- DescriptionSAIC is seeking a Security and Facilities Specialist with an active TS/SCI to provide security, facility, and customer support for a diverse team of government, contractor, and SAIC personnel. Complete understanding and wide application of principles, concepts...For contractorsWork at office
$102k - $178.4k
...edge of geopolitics and technology, and shape the future of cloud security? Our team does this every day. We are looking for a security... ...combines the functions of a traditional all-source intelligence analyst with risk manager and operational security advisor. Using these...Temporary workFlexible hours- DescriptionPersonnel Security Analyst / Adjudicator - JuniorThe Developmental Security Analyst provides entry-level adjudicative support to the Sponsor. Working under the guidance of Senior Case Managers, the analyst organizes investigative materials and applies Federal...
- DescriptionPersonnel Security Analyst / Adjudicator - MidThe Full Performance Security Analyst operates with minimal guidance on all but the most complex cases. Building upon the foundational skills of the Junior level, this role manages a higher volume of cases and takes...
- ...and technical solutions to our Nation's most complex national security challenges. In order to achieve our mission, Core One values people... ...Active TS/SCI with Polygraph Summary We are seeking a Security Analyst to support cybersecurity operations, compliance, and risk...
$140k - $160k
...Job Description Description SAIC is seeking a SAP Security Analyst to provide comprehensive security support services for the Office of the Under Secretary of War for Research and Engineering (OUSW(R&E)) Special Access Program Central Office (SAPCO)...For contractorsWork at office- ...Industrial Security Analyst Position Summary: Industrial Security Analyst Location: National Capital Region Work Posture: On-site Travel: Occasional Drug screening: Yes Security Clearance: TS/SCI Must be a U.S. Citizen Education: A bachelor's degree...Contract workFor contractors
$55 per hour
...Position Title: Zero Trust Security Analyst Location: Vienna, VA or Pensacola, FL Position Status: Contract W2 Pay Rate: $55.00/hour Position Description: Seneca Resources is seeking a skilled and detail-oriented Zero Trust Security...Hourly payContract workFor contractors$137.71k - $164.04k
...Overview The Security Analyst supports the United States (U.S.) Army C5ISR Center to develop advances within cyber defense research; advanced detection methods; sensor structure, data optimization, and sensor architectures; intrusion detection innovations, evaluation...Temporary workImmediate startFlexible hoursShift work- ...technology infrastructure complies with these standards and Department's security policies. Plan and perform IT security controls... ...mitigation strategies Maintain Third Party Risk Management Program (TPRM) and analyze SOC-2 and other reporting including mapping to key...Work experience placement
- ...Industrial Security Analyst Position Summary: Position Description: Industrial Security Analyst Location: National Capital Region Work Posture: On-site Travel: Occasional Deployment: No Drug screening: Yes...Contract workFor contractors
$140k
DescriptionInformation Security Analyst III - Q Clearance RequiredSummary:We are seeking an experienced Information Security Analyst III to support the security, assessment, authorization, and continuous monitoring of government systems and information assets. The ideal...$115k - $132k
...candidateCreates cyber-intelligence tools / methods and performs research and analysis in order to mitigate and eliminate data and cyber security risks. Designs and develops acceptance criteria for cybersecurity architecture.Work closely with a developer to identify potential...Work at officeLocal areaRemote work1 day per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr. TPRM Security Analyst. Be the first to apply!
Related searches
- senior information security analyst Mc Lean, VA
- cloud security analyst Mc Lean, VA
- entry level security analyst Mc Lean, VA
- security analyst remote Mc Lean, VA
- security analyst intern Mc Lean, VA
- IT security analyst Mc Lean, VA
- security analyst Mc Lean, VA
- security operations analyst Mc Lean, VA
- bond analyst Mc Lean, VA
- junior security analyst Mc Lean, VA


