Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Third-Party Risk Management Analyst

$110.67k - $167.4k

Jobgether

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Third-Party Risk Management Analyst based in United States.

This role is responsible for strengthening security and risk management across a broad vendor and partner ecosystem.
You will lead end-to-end third-party security assessments, from initial tiering and onboarding through reassessments and remediation.
The position combines information security, governance, risk management, compliance, and cross-functional collaboration.
You will work closely with Legal, Procurement, Security leadership, and business stakeholders to ensure vendor relationships meet established security standards.
Your work will provide leadership with clear visibility into third-party risk through meaningful metrics, dashboards, and reporting.
You will also help modernize vendor risk processes through automation and AI-enabled workflows.
This is an opportunity to make a measurable impact within a fast-growing, high-performance environment while helping scale a mature TPRM program.

Accountabilities:

  • Lead end-to-end third-party security risk assessments using qualitative and quantitative methodologies, including vendor risk ratings and tiering in accordance with established Vendor Risk Management policies.
  • Own the vendor reassessment cadence and monitor remediation of security gaps throughout the full vendor lifecycle.
  • Partner with Legal, Procurement, and system or relationship owners to review vendor onboarding requests and contracts, ensuring appropriate security and privacy requirements are established before vendors go live.
  • Evaluate and support requirements related to incident notification, data security and training, compliance obligations, security addenda, and other relevant contractual protections.
  • Escalate unresolved or significant vendor risks to Security leadership, Legal, Procurement, and appropriate business owners.
  • Support internal and external audits of the third-party risk management program, including assessments aligned with ISO, SOC, FedRAMP, and similar standards.
  • Build and maintain metrics, dashboards, and reporting that provide leadership with visibility into the organization's third-party risk posture and program performance.
  • Support the implementation of automation and AI-enabled capabilities within vendor risk workflows, including security questionnaire triage, identification of high-risk contract terms, and integration of relevant industry intelligence.
  • Mentor junior third-party risk team members and help ensure the program evolves effectively alongside organizational growth and innovation.
  • Promote a strong culture of security, collaboration, continuous improvement, customer focus, long-term thinking, inclusion, and team success.
Requirements
  • 5+ years of experience in third-party or vendor risk management, Governance, Risk, and Compliance (GRC), or information security compliance.
  • Hands-on experience conducting vendor security assessments and administering vendor risk tiering programs.
  • Experience using automation, scripting, or low-code workflows to improve and scale vendor risk processes.
  • Demonstrated experience partnering with Legal and Procurement on vendor security and privacy requirements, including security addenda and Data Processing Agreements (DPAs).
  • Familiarity with risk assessment frameworks such as NIST CSF, ISO 27001, or SOC 2.
  • Experience using GRC or vendor risk management platforms such as Vanta, ServiceNow, OneTrust, Archer, or similar technologies.
  • Strong analytical and problem-solving skills, with the ability to evaluate complex risks and translate findings into clear recommendations.
  • Excellent communication and collaboration skills, with the ability to work effectively across Security, Legal, Procurement, and business teams.
  • Strong organizational skills and the ability to manage multiple assessments, remediation activities, stakeholders, and deadlines in a fast-paced environment.
  • Ability to work independently while exercising sound judgment around risk escalation and prioritization.
  • A relevant professional certification such as CTPRP, CISA, CRISC, or CISSP is preferred.
  • Must reside in the United States, excluding the San Francisco Bay Area, New York City, and Washington, D.C. metropolitan areas.
Benefits
  • Annual base salary of $110,670-$167,400 USD , with actual compensation varying based on factors such as location, knowledge, skills, and experience.
  • Eligibility for an initial RSU grant with no vesting cliff , subject to applicable plan terms and conditions.
  • Ongoing equity refresh opportunities tied to performance, subject to plan terms and conditions.
  • Potential performance-based bonus and variable compensation as part of a broader total rewards program.
  • Flexible, employee-led remote work model.
  • Comprehensive health and parental leave plans.
  • Professional development stipend to support continued learning and career growth.
  • Opportunity to work in a high-growth environment with significant ownership and career development opportunities.
  • Inclusive and collaborative culture focused on long-term impact, innovation, and team success.
  • Fully remote U.S. position, with geographic restrictions excluding the San Francisco Bay Area, New York City, and Washington, D.C. metro areas.

How Jobgether works:

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?


Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Third-Party Risk Management Analyst in United States vacancy
  • $93k - $111.5k

    DescriptionThe Senior Third-Party Risk Management (TPRM) Analyst is responsible for performing advanced compliance risk assessments, due diligence reviews, and ongoing monitoring of third-party relationships. This role ensures that third-party activities comply with regulatory... 
    Suggested
    Work at office

    First Tech Credit Union

    Hillsboro, OR
    3 days ago
  • $89.29k - $127.56k

     ...primary responsibility of this position is to support the assessment and oversight of Third-Party Risk, as a component of Operational Risk, and to enhance the Bank's risk management program. This includes analysis of processes to identify key risks and controls associated... 
    Suggested
    Work at office
    Local area

    OceanFirst Bank

    Red Bank, NJ
    7 days ago
  •  ...Owning the security risk assessments for critical vendors and partners, the remote Third-Party Risk Management Analyst will manage the complete lifecycle of vendor relationships, ensuring compliance with security standards while collaborating with Legal and Procurement... 
    Suggested
    Contract work
    Remote work

    Virtual Vocations Inc

    United States
    4 days ago
  •  ...Senior Third-Party Risk Management Analyst GavinHeath is partnering with a client looking to add a Senior Third-Party Risk Management Analyst to their team. The role is a fully remote contract position. Responsibilities: Conduct cybersecurity due diligence... 
    Suggested
    Contract work
    Local area
    Remote work

    GavinHeath

    United States
    3 days ago
  •  ...Position Title: Third Party Risk Management Analyst Remote role but able to go onsite in Maitland, FL - Big Plus Position Title: Information Security Analyst Location: Maitland, FL (preferred) or remote Department: Chief Risk Officer (CRO)... 
    Suggested
    Contract work
    Remote work

    3B Staffing LLC

    Maitland, FL
    4 days ago
  •  ...Third-Party Risk Management Senior Analyst (MRA Remediation Support) - VP LevelNew York City, NY or Tampa, FL (Hybrid) 6-12 Months Contract Web Cam Interview $70-$75/Hr on W2Third Party Risk is a global, first line team within the Markets Operational Risk & Control group... 
    Contract work

    Syntricate Technologies

    Tampa, FL
    1 day ago
  •  ...Job Description Job Description The Third-Party Risk Management (TPRM) Senior Analyst is responsible for supporting the effective execution of the TPRM program by ensuring adherence to all phases of the third-party lifecycle. The role focuses on coordination, documentation... 
    Contract work
    Flexible hours

    MUFG Investor Services

    New York, NY
    9 days ago
  • $110.67k

     ...teams. Key Responsibilities The Samsara Governance, Risk, and Compliance team keeps our organization and customers safe by managing risk across our vendor and partner ecosystem. As a Third-Party Risk Management Analyst, you will own security risk assessments for... 
    Full time
    Contract work
    Remote work
    Flexible hours

    NextGenEnergyJobs

    Brooklyn, NY
    10 hours ago
  •  ...Collaborate with business stakeholders, Risk SMEs, and Technology teams to gather, document...  ..., and adherence to established risk management practices. Support deployment activities...  ...automation. Experience supporting Third-Party Risk Management (TPRM), vendor risk, or... 

    247Hire

    Vienna, VA
    3 days ago
  • $101.1k - $115.4k

     ...Overview Senior Business Analyst - Third Party Risk Management (TPRM) About the Role: Capital One is seeking a highly motivated, strategic and analytically adept Senior Business Analyst to join our Third Party Risk Management (TPRM) team. Sitting within the Operational... 
    Full time
    Part time
    Local area

    Capital One

    McLean, VA
    20 days ago
  •  ...Job Description Job Description Third-Party Risk Senior Analyst – First Century Bank First Century Bank has an exciting career opportunity...  ...team. The Bank is growing its existing third-party risk management program to improve oversight of its key partners and vendors... 
    Work at office
    Remote work

    First Century Bank

    Alpharetta, GA
    18 days ago
  • $95k - $110k

    Third Party Privacy Risk Analyst Job Summary : Viking is seeking a highly motivated and dedicated Third Party Privacy Risk Analyst to join our Data...  ...primarily focus on third-party vendor privacy risks management throughout the entire vendor engagement lifecycle, including... 
    Work at office

    Viking Cruises

    Los Angeles, CA
    10 hours ago
  • $132.6k - $195k

     ...of consumers, merchants, and drivers.About the RoleThe Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in a fast-paced... 
    Hourly pay
    Contract work
    Work at office
    Local area
    Remote work
    Flexible hours

    Doordash

    San Francisco, CA
    6 days ago
  • $85k - $150k

     ...certain number of days per week as indicated by your manager. Your hiring manager will discuss this role's...  ...office a few days weekly with a couple remote days. The Third Party Risk Management (TPRM) Senior Event Analyst is part of the TPRM Resilience and Response team... 
    Full time
    Temporary work
    Part time
    Work experience placement
    Work at office
    Remote work
    Relocation package
    Flexible hours

    Ally Financial

    North Carolina
    5 days ago
  •  ...Third Party Risk Management ConsultantThe hiring manager has 2 engineers on his team. He had a Third Party Risk Manager that left, so now he has one engineer doing 30% of that role. They need to do 200 assessments this year and are only at 75, so they are very behind.... 
    Remote work

    Samprasoft

    Austin, TX
    10 hours ago
  • $111.2k - $126.9k

     ...Overview Senior Business Analyst - Card Loss Forecasting and Allowance Summary: Within the Card Credit Risk Management organization, the Domestic loss forecasting team is...  ...endorse nor guarantee and is not liable for third-party products, services, educational tools... 
    Full time
    Temporary work
    Part time
    Local area

    Capital One

    McLean, VA
    23 days ago
  •  ...: Overview To manage vendors life cycle activities including selection, contract, performance and enforcement at the business unit...  ...relationship management best practices to ensure contract compliance and risk mitigation. Provide line of sight to enterprise Procurement and... 
    Contract work
    Internship
    Monday to Friday

    Navy Federal Credit Union

    Winchester, VA
    14 days ago
  •  ...and your work makes a lasting impactJob Summary:The Senior Risk Management Analyst is responsible for collecting, analyzing, validating, and...  ...accept unsolicited resumes from individual recruiters or third party recruiting agencies (collectively, “Recruiters”) in response... 
    Full time

    Pulte Group

    Atlanta, GA
    3 days ago
  • $71k - $75k

     ...further. Overview East West Bank is seek a Wealth Management Risk Analyst. The primary role of the Risk Analyst is to support daily...  ...services, distribution channels (sales), regulations, and third-party operations (Cetera). Assist with the preparation for the presentation... 
    Full time

    East West Bank

    Los Angeles, CA
    3 days ago
  •  ...RegularWe are seeking a highly motivated and detail-oriented Risk Management Analyst to support the Risk Management team with the analysis,...  ...recommend appropriate types & levels of insurance coverageReview third party certificates of insurance to ensure compliance with EOG's... 
    Full time
    Work at office

    EOG Resources

    Houston, TX
    3 days ago
  • $95.6k - $162.4k

     ...TrustAs a global leader in innovative wealth management, asset servicing, asset management and...  ...the institution’s central owner for the third party across all engagements and business...  ...view of the third party’s performance, risk posture, and concentration of exposure to... 
    Full time
    H1b
    Worldwide
    Flexible hours

    Northern Trust

    Tempe, AZ
    6 days ago
  • Sky Mavis seeks a Sr. GRC Analyst in Phoenix, AZ, to manage Third-Party and Human Risk Management. This analytical role involves vendor risk assessment, security awareness training, and compliance evaluation, ensuring holistic risk management. Candidates should have significant... 

    Sky Mavis

    Phoenix, AZ
    2 days ago
  • Citi is seeking a Lead Analyst in New York to manage third-party risk and operational resilience. This role will involve overseeing risk frameworks and providing insights to senior leadership. Candidates should have over 6 years of experience in risk management and a strong... 

    Citi

    New York, NY
    10 hours ago
  • $118.68k - $175.8k

     ...Amsterdam.Team:The Security Governance, Risk, and Compliance (GRC) team is part of Plaid...  ...on enabling the business by proactively managing information security risks and...  ...with industry and regulatory expectations. Third-party ecosystem risk is a core part of how we... 
    Work experience placement
    Work at office
    Local area

    Plaid Financial

    San Francisco, CA
    6 days ago
  • $116.35k - $210.33k

    Leidos is seeking a Senior-Level Supply Chain Risk Management Analyst to provide advanced technical and analytical support to the FAA’s Counterintelligence...  ...Open-Source Intelligence) or senior-level experience in third-party risk management (TPRM), Cyber Supply Chain Risk Management... 
    Full time
    Contract work
    Work at office

    Leidos

    Washington, VA
    4 days ago
  • $73k - $110k

     ...Job Summary Responsible for supporting risk management activities at Medline including the execution of Medline’s global insurance program...  ...Medline’s insurance and risk programs by working with third party service providers including brokers, insurers, consultants,... 
    Minimum wage
    Contract work
    Work experience placement
    Local area
    Worldwide

    Medline Industries

    Northfield, MN
    2 days ago
  •  ...coordinating claims administration with third-party administrators; ensure the appropriate forms...  ...in claims activities; consult with Manager and/or Director, and when assigned, legal...  ...Monitor and analyze insured and uninsured risks making recommendations on appropriate... 
    Contract work
    Work at office

    Professional Risk Managers' International Association

    Gardena, CA
    2 days ago
  • $69.32k - $90k

     ...: Full-Time, 37.5 hrs/week, Exempt SUMMARY OBJECTIVE: The Risk Management Analyst supports the County's enterprise risk management program through...  ...data entry, investigation support, and coordination with third-party administrators, insurers, and legal counsel. Review,... 
    Full time
    Contract work
    Work at office
    Night shift
    Weekend work

    Durham County

    Durham, NC
    5 days ago
  • $55 - $60 per hour

     ...GorusuCompany: SRI Tech SolutionsTitle: Third Party Risk AnalystLocation: Dallas TXDuration: Contract / Full timeDescription:The Analyst/ Sr Analyst, Cybersecurity Risk is part of...  ...protecting digital ecosystem by identifying and managing cybersecurity risks. You will help shape... 
    Hourly pay
    Full time
    Contract work

    SRI Tech

    Dallas, TX
    5 days ago
  • $87.28k - $130.92k

     ...StatesSalary: $87,280.00 - $130,920.00Category: Risk ManagementCompany: CitiThe Markets...  ...solutions to control and monitor third-party risk activities to ensure they operate within...  ...professional to join our Third Party Risk Management team as an Assistant Vice President (AVP... 
    Full time
    Contract work

    Citigroup

    Tampa, FL
    7 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Third-Party Risk Management Analyst. Be the first to apply!