1

Contract Third Party Risk Analyst Jobs in Michigan

Conduct third-party security risk assessments, including review of: * Security questionnaires ... No relocation assistance or benefits are provided for this contract position. Thanking you Jeevan ...

... Security Operations, Third-Party Risk Management, and ServiceNow AI Control Tower use cases ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

... Security Operations, Third-Party Risk Management, and ServiceNow AI Control Tower use cases ... Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ...

Risk Transformation & Delivery Analyst

Southfield, MI ยท Hybrid

$94K - $134K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Description Risk Transformation and Delivery Senior Analyst Role Summary The Risk Transformation ... Support vendor management activities, including onboarding, contract coordination, performance ...

Showing results 21-40

Contract Third Party Risk Analyst information

See Michigan salary details

$13

$35

$57

How much do contract third party risk analyst jobs pay per hour?

As of Aug 12, 2026, the average hourly pay for contract third party risk analyst in Michigan is $35.29, according to ZipRecruiter salary data. Most workers in this role earn between $25.96 and $42.93 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a contract third party risk analyst?

To thrive as a Contract Third Party Risk Analyst, you need a solid understanding of risk management, vendor assessment processes, and relevant regulatory frameworks, often supported by a degree in business, finance, or a related field. Familiarity with risk assessment tools, contract management systems, and certifications such as CTPRA (Certified Third Party Risk Assessor) is highly valuable. Strong analytical skills, attention to detail, and effective communication enable you to identify risks and work collaboratively with stakeholders. These skills ensure organizations can mitigate vendor-related risks and maintain compliance in an increasingly complex regulatory environment.

What is the difference between Contract Third Party Risk Analyst vs Vendor Risk Analyst?

AspectContract Third Party Risk AnalystVendor Risk Analyst
CertificationsCertifications like CTPRP, CRISC often preferredSimilar certifications, often including CTPRP or CRISC
Work EnvironmentTypically in finance, healthcare, or corporate sectors managing third-party risksSimilar industries, focusing on vendor assessments and risk mitigation
Employer UsageUsed by organizations managing contractual third-party relationshipsCommonly employed by companies evaluating vendor and supplier risks

The Contract Third Party Risk Analyst and Vendor Risk Analyst roles share many similarities, including required certifications and work environments. Both focus on assessing and mitigating risks associated with external entities, but the Contract Third Party Risk Analyst often emphasizes contractual obligations, while the Vendor Risk Analyst concentrates on evaluating vendor performance and compliance.

What are common challenges faced by contract third party risk analysts when evaluating new vendors?

Contract Third Party Risk Analysts often encounter challenges such as incomplete or inconsistent documentation from vendors, rapidly changing regulatory requirements, and time constraints for onboarding. They must balance thorough due diligence with business needs for efficiency, often working closely with procurement, legal, and IT security teams. Building strong communication skills and developing robust assessment templates can help analysts efficiently identify and mitigate potential risks while maintaining positive vendor relationships.

What is a contract third party risk analyst?

A Contract Third Party Risk Analyst is a professional who evaluates and manages the risks associated with an organization's external vendors, suppliers, or partners. Their main role is to assess the security, compliance, and operational risks that third parties might pose, especially when handling sensitive data or critical business functions. They often review contracts, conduct risk assessments, and ensure that third parties comply with relevant regulations and internal policies. This helps organizations reduce potential financial, reputational, or legal impacts from working with external entities.
What are the most commonly searched types of Third Party Risk Analyst jobs in Michigan? The most popular types of Third Party Risk Analyst jobs in Michigan are:
What job categories do people searching Contract Third Party Risk Analyst jobs in Michigan look for? The top searched job categories for Contract Third Party Risk Analyst jobs in Michigan are:
What cities in Michigan are hiring for Contract Third Party Risk Analyst jobs? Cities in Michigan with the most Contract Third Party Risk Analyst job openings:

GRC Analyst

Saanvi Technologies

Southfield, MI โ€ข On-site

Contractor

Posted 13 days ago


Job description

About the Role

As a member of the Information Security team, the IS GRC – Risk & Compliance Senior Analyst will support the firm's Governance, Risk, and Compliance (GRC) program by managing security risks, maintaining the risk register, conducting risk assessments, coordinating control testing, and supporting audit activities. The role partners closely with IT leadership, business stakeholders, and third-party vendors to ensure security and compliance objectives are achieved.


Key Responsibilities

Security Risk Management

  • Support the CISO with annual and periodic security risk assessments.
  • Manage and maintain the enterprise risk register.
  • Conduct security risk assessments and evaluate risk and control effectiveness.
  • Track remediation activities through closure and report status to leadership.
  • Interview SMEs and gather information for risk assessments.
  • Develop and support risk mitigation strategies with cross-functional teams.
  • Conduct third-party security risk assessments, including review of:
    • Security questionnaires
    • Supporting documentation
    • Independent audit reports
  • Identify vendor security gaps, assign risk ratings, and recommend mitigations.

Control Framework & Compliance Testing

  • Design, execute, and monitor security control testing.
  • Ensure compliance with contractual, regulatory, and internal security requirements.
  • Partner with IT and business control owners.
  • Prepare audit evidence and documentation for internal and external audits.
  • Report metrics and compliance status to the IS GRC Manager, Director, and CISO.
  • Improve and automate GRC processes where possible.
  • Perform additional responsibilities as assigned.

Required Qualifications

  • Bachelor's degree in Information Technology or a related field (or equivalent experience).
  • 3+ years of professional experience.
  • Experience in one or more of the following:
    • Information Security
    • Governance, Risk & Compliance (GRC)
    • IT Risk
    • Information Technology
    • Audit
  • Experience with security frameworks or regulations such as:
    • ISO 27001
    • SOC 2
    • PCI DSS
    • HIPAA
    • Other global security/compliance standards
  • Strong experience in:
    • Risk assessments
    • Risk registers
    • Control testing
    • Security compliance
    • Third-party/vendor risk management
  • Excellent analytical, communication, and documentation skills.
  • Experience with Microsoft Office Suite.
  • ServiceNow experience is preferred.

Preferred Certifications

  • CISSP (Preferred)
  • CISA (Preferred)
  • CRISC (Nice to have)
  • Willingness to pursue security certifications is highly valued.

Additional Information

  • Core business hours: 8:30 AM – 5:30 PM (Monday–Friday).
  • Occasional work outside standard business hours may be required.
  • Hybrid work schedule:
    • Onsite: Tuesday, Wednesday & Thursday
    • Remote: Monday & Friday
  • No relocation assistance or benefits are provided for this contract position.
Thanking you 
Jeevan@saanvi.us

Saanvi Technologies logo

About Saanvi Technologies

Sourced by ZipRecruiter

Saanvi Technologies is a staffing company that specializes in providing IT professionals to businesses. Our employees are experts in their field, and have the skills and experience necessary to help businesses grow and succeed. Saanvi Technologies is dedicated to helping businesses achieve their goals, and they have a proven track record of success. Our employees are qualified and reliable, and they always go above and beyond to meet the needs of their customers.

Company size

51 - 200 Employees

Headquarters location

Farmington, MI, US

Social media