Senior Third Party Risk Specialist
$115k - $130kPayNearMe, Inc.
Role Description
We are looking for a Sr. Third Party Risk Specialist to own and evolve PNM’s third-party risk program across vendor governance, risk assessment, due diligence, and continuous monitoring. This role requires a strategic thinker with a builder’s mindset—someone who can assess complex vendor risk, improve scalable processes, and influence alignment across security, compliance, legal, procurement, product, engineering, operations, and customer-facing teams.
This is an individual contributor role for someone who can operate at a senior level—balancing expert risk analysis, cross-functional coordination, regulatory awareness, and execution excellence. You’ll lead governance for critical and high-risk vendors, drive completion of incoming partner and client due diligence requests, and innovate efficiency strategies through automation, risk tiering, workflow orchestration, and continuous monitoring.
This role will report to the Director of Security GRC.
Responsibilities:
- Own and evolve enterprise-wide third-party security risk strategy, including automation, continuous monitoring, and emerging risk domains (e.g., AI/ML vendors)
- Liaise with cross-functional teams and leadership to ensure consistent, thorough operationalization of third party security risk controls
- Communicate complex vendor risk landscapes and prioritization decisions clearly to senior leadership
- Drive alignment on third party risk tolerance, vendor management decisions, and mitigation strategies
- Execute completion of and innovate efficiency strategies for incoming due diligence requests from partners and clients
- Administer in-scope tech stack (e.g. BlackKite, Responsive, Serval, N8N)
- Coach and develop team members, leading large-scale, cross-functional initiatives to mature TPRM capabilities and improve operational efficiency
- Contribute to evolution of TPRM best practices across the organization
- Maintain and improve third-party security risk framework artifacts, including risk assessment methodology, vendor tiering, control expectations, procedures, and reporting
- Partner with Legal, Procurement, and business owners to ensure third-party security risks are appropriately documented, accepted, mitigated, or escalated
- Monitor critical and high-risk vendors for control changes, risk signals, remediation progress, and ongoing compliance concerns
Qualifications
- 7+ years in risk management, including ownership of program-level strategy, cross-functional influence, and transformation initiatives
- Bachelor’s degree in Computer Science, Risk Management, or related field (or equivalent experience); advanced certifications preferred (e.g., CRISC, CISM, FAIR, or relevant emerging risk training)
- Proven track record of spearheading third party risk program improvements with measurable impact
- Hands-on experience managing third party AI risk
- Excellent communication and stakeholder management skills—especially with senior engineering, product, and business leaders.
- Comfortable operating independently, managing ambiguity, and taking ownership at both strategic and tactical levels.
- Experience developing and managing comprehensive third party program plans, roadmaps, and status updates to keep stakeholders aligned and informed.
- Fluency in cyber risk methodologies – ability to communicate complex risk considerations and proposals to leadership and peers
- Expertise in qualitative and quantitative third-party risk analysis, including the ability to translate risk into business impact
- Substantial experience with AI/automation tools, as well as GRC, TPRM, security ratings, questionnaire automation, or workflow orchestration platforms
- Working knowledge of relevant security and risk frameworks such as SIG, CSA STAR for AI, ISO 27001, SOC 2, PCI DSS, or NIST AI RMF
Requirements
- Experience in payments, fintech, or regulated industries
- Experience with third-party security risk management, client due diligence, and vendor governance in a regulated environment
- Exposure to automation, continuous monitoring, security ratings, questionnaire platforms, or GRC workflow tools
- Deep understanding of AI/ML vendor risk, including how AI-enabled services are assessed, monitored, and governed responsibly
Benefits
- Competitive salary and benefits with growth-company options grant
- Fast-paced and professional work culture
- Stock options with standard startup vesting - 1 year cliff; 4 years total
- $50 monthly communication expense stipend to go towards your phone/internet bill
- $250 stipend to enhance your WFH setup
- Reimbursement for peripheral equipment: monitor (up to $400), keyboard and mouse (up to $200)
- Premium medical benefits including vision and dental (100% coverage for employees)
- Company-sponsored life and disability insurance
- Paid parental bonding leave
- Paid sick leave, jury duty, bereavement
- 401k plan
- Flexible Time Off (our team members typically take off ~3-4 weeks per year)
- Volunteer Time Off
- 13 scheduled holidays
$132.6k - $195k
...sided marketplace of consumers, merchants, and drivers.About the RoleThe Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in...SeniorHourly payContract workWork at officeLocal areaRemote workFlexible hours$85k - $150k
...role is on a hybrid schedule in our Charlotte office, in office a few days weekly with a couple remote days. The Third Party Risk Management (TPRM) Senior Event Analyst is part of the TPRM Resilience and Response team and plays a key role in the intake, interpretation,...SeniorFull timeTemporary workPart timeWork experience placementWork at officeRemote workRelocation packageFlexible hours- ...Citizens Bank is seeking a Third Party Risk Sr Analyst responsible for managing vendor assessment reviews and ensuring adherence to company policies. This role involves close collaboration with business leaders to evaluate vendor risks effectively. Applicants should possess...SeniorWork at officeRemote work
- Crowe is seeking a Senior Staff to assess third party information security postures and coordinate end-to-end assessments at client or partner sites.... ...leadership, as well as vendors and service providers, to identify risks and drive remediation. Responsibilities include...SeniorRemote job
- ...Description Payment Network Compliance Senior Analyst (Visa/Mastercard/Discover)... ...sponsorship oversight program within the Payments Risk organization. This role is responsible... ...Discover network rules across merchant and third-party relationships. This is a hands-on,...SeniorWork at officeLocal areaRemote workMonday to Friday
$70k - $85k
...iCapital is looking to hire a Vendor Risk Specialist to join the Information Security team. This role works on a small team to evaluate the risk of third‑party vendors. Vendor risk includes information security, financial, business continuity, and regulatory risk. The...Full timeWork at officeRemote work- ...As the Third Party Risk Sr Analyst , you will manage vendor issues, complete quality assurance functions and execute Third Party Vendor Assessment... ...scale. Primary responsibilities include Collaborating with senior management to influence key decisions. Evaluating third party...SeniorWork at officeLocal areaRemote work
$120k - $140k
DescriptionJob TitleThird-Party Risk AnalystCompany OverviewA leading global professional services... ...in Los Angeles, California, is seeking a Third-Party Risk Analyst to join its growing IT... ...environment with direct exposure to senior leadership and security stakeholdersRequirementsRequired...Work at officeRemote work$88k - $141k
...services that help people, businesses and governments realize their greatest potential. Title and Summary Senior Analyst, Risk Management Overview The Third-Party Senior Risk Analyst is a member of the Third-Party Risk Management (TPRM) Center of Excellence team...SeniorFull timePart timeWork experience placementWork at officeWorldwideFlexible hours- ...Third-Party Vendor Risk Analyst Under the direction of the Program Manager, Third Party Risk Management, the Third-Party Vendor Risk Analyst supports the execution of the Bank's Third-Party Risk Management (TPRM) Program by performing day-to-day operational, analytical...Work at officeLocal areaRemote work
$90k - $120k
...Itlearn360 is seeking a Third Party GRC Analyst in Los Angeles, CA, to support Third Party Risk Management and Client Compliance programs. This position requires strong knowledge of GRC principles and experience in regulated industries. The role comes with a compensation...Remote work- ...Crowe is seeking a Manager for Third Party Risk Management in Chicago, Illinois. This role is vital for the leadership of Third Party Risk Management (TPRM) engagements, which involve oversight of third‑party assessments and working closely with client leadership. The...Remote work
- ...Position Title: Third Party Risk Management Analyst Remote role but able to go onsite in Maitland, FL - Big Plus Position Title... ...parties and communicating this data via consistent reporting to senior leadership as required. • Ensure enterprise-wide needs for...Contract workRemote work
$80.55k - $115k
Join to apply for the Third Party Risk Analyst : Advisory role at Jack Henry Join to apply for the Third Party Risk Analyst : Advisory role... ...s Third-Party Risk Management (TPRM) strategy. Partner with senior leadership to evaluate and enhance third-party risk processes...Full timeWork at officeLocal areaRemote work$84.2k - $131k
...relevant data to identify the quantitative and qualitative factors driving the credit risk for consumer & mortgage loans. Perform evaluation, implementation and monitoring of third-party and in-house scoring solutions. Perform model and strategy testing and assist with...SeniorFull timeTemporary workPart timeWork from home3 days per week- ...CompanyBrightSpring Health ServicesOverviewThe Senior Project Manager for Application... ...projects and initiatives across PharMerica’s third-party pharmacy and document management systems... ....Identifies and mitigate project risks, resolving issues proactively to maintain...SeniorFull timeWork from home
$8,625 per month
...motivated individual to work as an Information Technology Specialist II in the Information Security Office. Under... ...of the Information Technology Manager I, the Third-Party Security Risk Specialist serves as a senior level technical specialist responsible for the development...Permanent employmentFull timeWork at officeRemote workFlexible hours- Crowe is seeking a dynamic professional for the role of Third Party Risk Management Lead in New York. This position involves managing third-party assessments and leading teams to identify risks and remediation strategies for clients. The ideal candidate should have 5-8...SeniorRemote job
$90k - $160k
IT RISK & CONTROL SENIOR ANALYSTWHAT IS THE OPPORTUNITY?The IT Risk Senior Analyst is a subject-area specialist with specialized training, methods and analytic techniques to create recommendations... ...for auditors, regulators and external parties. This requires routinely performing...SeniorRemote work$220k - $330k
Job DescriptionThe Senior Director, Enterprise Third Party Risk Leader, will lead an expanded third-party risk management E2E process, including leading a Central Risk Management team and driving a holistic, effective and efficient third-party risk management approach...SeniorFull timeSummer workImmediate startRemote workFlexible hours2 days per week$112.7k - $193.2k
...seeking a highly strategic and technically oriented Senior Product Manager, Platform Services & Third-Party Capabilities to lead the product strategy, integration... ...and modernization goalsCompliance, Verification & Risk ServicesManage third-party KYB, KYC, identity verification...SeniorMinimum wageFull timeWork experience placementWork at officeLocal areaRemote work- ...comprehensive enterprise security program, including governance, risk, and compliance (GRC). This role will be responsible for... ..., IT, People, Workplace Experience, Trust & Safety, as well as third party contractors, and suppliers. If you have 80% of the requirements...SeniorFor contractorsFlexible hours
$125.2k - $150.2k
...tags, connected vehicles, dashcams, and third-party devices—and fuses them with contextual data... ...insights from CMT's platform to power risk assessment, safety, claims, and driver improvement... ..., customer-committed, and creative Senior Actuary who wants to join us in making...SeniorTemporary workWork experience placementWork from homeFlexible hours$195k - $263k
Role Description As a Senior Software Engineer on Vanta's Trust TPRM team, you'll build the... ...that help enterprises manage vendor risk at scale — working across teams focused on... ...vendor monitoring. Vanta's Trust TPRM (Third-Party Risk Management) team is building the products...SeniorFull timeWork at officeImmediate startRemote workFlexible hours$88k - $141k
...services that help people, businesses and governments realize their greatest potential. Title and Summary Senior Analyst, Risk Management Overview The Third-Party Senior Risk Analyst is a member of the Third-Party Risk Management (TPRM) Center of Excellence team...SeniorFull timePart timeWork experience placementWork at officeWorldwideFlexible hours$82.71 - $105.26 per hour
...Title : Third Party Risk / Vendor Security Consultant Location : Remote (some travel within the US may be required) Job Type : Contract (12 Months) Compensation : $82.71 - $105.26/hr Industry: Retail --- About the Role Our client, a Fortune 500 leader...Contract workRemote work- ...Events team turns tentpole moments like WEF/Davos and RSAC into some of the company's most powerful strategic assets, and as Senior Manager, Third-Party Events , you'll manage that portfolio end to end. You'll carry significant program budgets, partner directly with C-suite...SeniorFull time
$96.7k - $148.1k
Job Description Position Summary: The Senior Risk and Compliance Analyst is a key member of the IT Governance, Risk, and Compliance... ...supporting and advancing the organization’s IT risk, compliance, and third-party risk management (TPRM) programs. This role partners with...SeniorMinimum wageFull timeWork at officeRemote workShift work$150.8k - $251.3k
...flexibility to work from home one day per week.Overview: Leads risk assessments and control evaluations for complex Technology initiatives... ...exam materials, and tracking follow-up actions.Collaborate with senior leaders across Technology, Cybersecurity, Risk, Internal Audit,...SeniorFull timeWork experience placementWork from home1 day per week$119k - $193k
...This Role:Forrester is currently looking for a Senior Analyst to conduct research and deliver strategic advice for risk management leaders and their teams. The ideal... ...on broader risk topics: risk quantification, third-party risk, systemic risk, compliance, and cyber risk...SeniorFull timeFor contractorsRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Third Party Risk Specialist. Be the first to apply!



