1

Contract Third Party Risk Analyst Jobs in Delaware

Senior Net Revenue Analyst (Remote)

Wilmington, DE · On-site +1

$68K - $109K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

About This Position ChristianaCare is searching for a Senior Net Revenue Analyst to provide support ... Maintain systems related to the calculation of third-party reimbursement. * Assist in the month-end ...

Enterprise Fraud Governance Lead

Newark, DE · On-site

$111K - $189K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Track and facilitate fraud management compliance with BCP, Third Party Risk Management, Model Risk ... Experienced using analytics to solve business problems and monitor risks; and applying analytic ...

SAP Business Analyst III - Finance

Newark, DE · On-site

$44.35 - $73.92/hr

  • Medical

  • Dental

  • Life

  • Retirement

  • PTO

Familiarity with third-party tools (e.g., Blackline, PowerPlan, Utilities International) for ... SAP FI-CA (Contract Accounts Receivable). * Basic to working knowledge of SAP FI-CA as used in ...

$150 - $200/hr

... third-party risk, and regulatory compliance requirements. * Evaluates, selects, and governs AI ... data science, advanced analytics, or related enterprise technology functions. * 5+ years of ...

Due Diligence Manager

Millsboro, DE · On-site

$74K - $101K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

... risk analysis and detailed land development budgets for the land acquisition team as well as work ... meets third party seller's contractual requirements. * Evaluate contracts, proposals and other ...

Showing results 41-60

Contract Third Party Risk Analyst information

See Delaware salary details

$15

$40

$65

How much do contract third party risk analyst jobs pay per hour?

As of Aug 18, 2026, the average hourly pay for contract third party risk analyst in Delaware is $40.52, according to ZipRecruiter salary data. Most workers in this role earn between $29.86 and $49.33 per hour, depending on experience, location, and employer.

What is a contract third party risk analyst?

A Contract Third Party Risk Analyst is a professional who evaluates and manages the risks associated with an organization's external vendors, suppliers, or partners. Their main role is to assess the security, compliance, and operational risks that third parties might pose, especially when handling sensitive data or critical business functions. They often review contracts, conduct risk assessments, and ensure that third parties comply with relevant regulations and internal policies. This helps organizations reduce potential financial, reputational, or legal impacts from working with external entities.

What are the key skills and qualifications needed to thrive as a contract third party risk analyst?

To thrive as a Contract Third Party Risk Analyst, you need a solid understanding of risk management, vendor assessment processes, and relevant regulatory frameworks, often supported by a degree in business, finance, or a related field. Familiarity with risk assessment tools, contract management systems, and certifications such as CTPRA (Certified Third Party Risk Assessor) is highly valuable. Strong analytical skills, attention to detail, and effective communication enable you to identify risks and work collaboratively with stakeholders. These skills ensure organizations can mitigate vendor-related risks and maintain compliance in an increasingly complex regulatory environment.

What are common challenges faced by contract third party risk analysts when evaluating new vendors?

Contract Third Party Risk Analysts often encounter challenges such as incomplete or inconsistent documentation from vendors, rapidly changing regulatory requirements, and time constraints for onboarding. They must balance thorough due diligence with business needs for efficiency, often working closely with procurement, legal, and IT security teams. Building strong communication skills and developing robust assessment templates can help analysts efficiently identify and mitigate potential risks while maintaining positive vendor relationships.

What is the difference between Contract Third Party Risk Analyst vs Vendor Risk Analyst?

AspectContract Third Party Risk AnalystVendor Risk Analyst
CertificationsCertifications like CTPRP, CRISC often preferredSimilar certifications, often including CTPRP or CRISC
Work EnvironmentTypically in finance, healthcare, or corporate sectors managing third-party risksSimilar industries, focusing on vendor assessments and risk mitigation
Employer UsageUsed by organizations managing contractual third-party relationshipsCommonly employed by companies evaluating vendor and supplier risks

The Contract Third Party Risk Analyst and Vendor Risk Analyst roles share many similarities, including required certifications and work environments. Both focus on assessing and mitigating risks associated with external entities, but the Contract Third Party Risk Analyst often emphasizes contractual obligations, while the Vendor Risk Analyst concentrates on evaluating vendor performance and compliance.

What are the most commonly searched types of Third Party Risk Analyst jobs in Delaware?

The most popular types of Third Party Risk Analyst jobs in Delaware are:

What are popular job titles related to Contract Third Party Risk Analyst jobs in Delaware?

For Contract Third Party Risk Analyst jobs in Delaware, the most frequently searched job titles are:

What job categories do people searching Contract Third Party Risk Analyst jobs in Delaware look for?

The top searched job categories for Contract Third Party Risk Analyst jobs in Delaware are:

What cities in Delaware are hiring for Contract Third Party Risk Analyst jobs?

Cities in Delaware with the most Contract Third Party Risk Analyst job openings:

Infographic showing various Contract Third Party Risk Analyst job openings in Delaware as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $84,282 per year, or $40.5 per hour.

Director GRC & Security Architecture

University of Delaware

Newark, DE

Full-time

Re-posted 24 days ago


University Of Delaware rating

5.7

Company rating: 5.7 out of 10

Based on 21 frontline employees who took The Breakroom Quiz

581st of 618 rated colleges and universities


Job description

Director GRC & Security Architecture

Apply now Job no: 502862
College / VP Area: Vice President for IT
Work type: Staff
Location: Newark, DE
Categories: Information Technology, Legal & Compliance, Full Time

Pay Grade: 33S
 
Context of Job: 
 
The Director of GRC and Security Architecture is a senior leadership role responsible for governing the organization's information security risk, compliance, and architectural security posture. This role provides enterprise-wide leadership across governance, risk management, regulatory compliance (including HIPAA), and security architecture to ensure security controls are designed, implemented, and operating effectively in support of business, academic, and clinical objectives.
Serving as the designated HIPAA Security Officer, this role partners closely with Legal, Privacy, Compliance, IT, Cloud, Application, and Security Operations teams to ensure regulatory readiness, risk-informed decision-making, and secure-by-design technology architecture across on-premises, cloud, and SaaS environments.
This position reports to the Chief Information Security Officer of the University.
 
Major Responsibilities: 
 
Governance, Risk & Compliance (GRC)
  • Lead the enterprise Information Security Governance, Risk, and Compliance (GRC) program.
  • Establish and maintain security policies, standards, procedures, and control frameworks aligned with NIST, HITRUST, ISO 27001, and other applicable frameworks.
  • Oversee enterprise risk assessments, third-party risk management, and control effectiveness evaluations.
  • Translate regulatory, legal, and contractual requirements into actionable security controls and architectural standards.
  • Ensure ongoing compliance with applicable regulations and standards, including HIPAA, PCI DSS, FERPA, SOC 2, and FIPS-140, as applicable

HIPAA Security Officer Responsibilities

  • Serve as the organization's designated HIPAA Security Officer.
  • Oversee administrative, technical, and physical safeguards required under the HIPAA Security Rule.
  • Partner with Privacy, Legal, Compliance, and Health IT leadership on risk analyses, remediation plans, and regulatory inquiries.
  • Support audits, investigations, and compliance reviews related to protected health information (PHI).
  • Ensure appropriate security awareness and HIPAA training programs are developed and delivered across the organization.
    Security Architecture & Secure Design
  • Own and lead the security architecture function, defining enterprise security architecture principles, reference architectures, and design standards.
  • Review and approve security architecture for new systems, applications, cloud services, and major technology initiatives.
  • Ensure security is embedded early in system lifecycle activities through secure-by-design and defense-in-depth principles.
  • Partner with infrastructure, cloud, application, and DevOps teams to integrate security requirements into platforms and solutions.
  • Guide architectural decisions related to identity, network segmentation, encryption, key management, logging, and data protection.

Strategic Planning & Program Leadership

  • Contribute to and lead multi-year security strategy and roadmap development in alignment with organizational objectives.
  • Actively participate in enterprise security and risk governance forums, advising executive leadership on risk posture and architectural trade-offs.
  • Balance risk reduction with operational efficiency, usability, and institutional mission requirements.
  • Serve as a trusted advisor to schools, departments, and business units on risk and architectural security decisions.

Oversight of Security Technologies & Controls

  • Provide governance and oversight for security technologies supporting risk management, compliance, and architectural controls.
  • Ensure alignment between security architecture standards and operational security tooling.
  • Evaluate new security technologies and frameworks to address evolving regulatory and threat landscapes.

Metrics, Reporting & Communication

  • Develop and report meaningful risk and compliance metrics to senior leadership and governance committees.
  • Communicate complex security and compliance topics clearly to technical and non-technical stakeholders.
  • Provide executive-level reporting on risk trends, compliance posture, and architectural maturity.

Leadership & Talent Development

  • Lead and develop GRC and security architecture professionals.
  • Establish clear role definitions, performance expectations, and professional development pathways.
  • Foster a culture of accountability, continuous improvement, and collaboration across security and IT teams.

Budget, Vendor & Resource Management

  • Manage budgets associated with GRC, compliance, and security architecture programs.
  • Oversee vendor relationships related to risk management, compliance tooling, and architectural services.
  • Ensure responsible financial stewardship and alignment with strategic priorities.
 
Qualifications: 
  • Bachelor's degree in Information Security, Computer Science, Information Systems, or a related field (Master's preferred).
  • Seven years of progressive experience in information security, risk management, or IT, including leadership roles.
  • Demonstrated experience leading GRC programs, regulatory compliance efforts, and enterprise risk management.
  • Strong knowledge of HIPAA Security Rule, PCI DSS, and related regulatory frameworks.
  • Proven experience defining and governing security architecture across enterprise and cloud environments.
  • Excellent written and verbal communication skills, including executive-level presentations.
  • Experience supporting healthcare, higher education, or regulated enterprise environments preferred.
  • Hands-on experience with NIST, HITRUST CSF, ISO 27001, SOC 2, and third-party risk frameworks preferred.
  • Professional certifications such as CISSP, CISM, CRISC, or equivalent preferred.
  • Experience partnering closely with SOC, IR, Privacy, and Legal teams preferred.
  • Demonstrated success leading organizational change and maturing security governance programs preferred.

Notice of Non-Discrimination and Equal Opportunity
The University of Delaware does not discriminate against any person on the basis of race, color, national origin, sex, gender identity or expression, sexual orientation, genetic information, marital status, disability, religion, age, veteran status or any other characteristic protected by applicable law in its employment, educational programs and activities, admissions policies, and scholarship and loan programs as required by Title IX of the Educational Amendments of 1972, the Americans with Disabilities Act of 1990, Section 504 of the Rehabilitation Act of 1973, Title VI and VII of the Civil Rights Act of 1964, and other applicable statutes and University policies. The University of Delaware also prohibits unlawful harassment including sexual harassment and sexual violence.

Applications close:

Back to search results Apply now Refer a friend

Whatsapp Facebook LinkedIn Email App

What University Of Delaware employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom