1

Director Third Party Risk Management Jobs in Reston, VA

You understand the processes, pain points, and personas in third party management, supply chain management, procurement, risk, and compliance * You lead inspirational, tailored presentations in a ...

Director, Risk Management Come be a part of an organization that's dedicated to helping Capital One ... third-party products, services, educational tools or other information available through this site.

Director, Risk Management Come be a part of an organization that's dedicated to helping Capital One ... third-party products, services, educational tools or other information available through this site.

In accordance with the goals and objectives established by both the hospital and MedStar leadership the Director develops and implements operating policies and procedures for the MGUH Risk Management ...

An MBA in Risk Management or Business (Finance) is a plus. * 5+ years with increasing ... risk to the third-party based on their statement of work. Support the Director of Global ...

Showing results 41-60

Director Third Party Risk Management information

See Reston, VA salary details

$56.2K

$149K

$270.5K

How much do director third party risk management jobs pay per year?

As of Aug 20, 2026, the average yearly pay for director third party risk management in Reston, VA is $148,963.00, according to ZipRecruiter salary data. Most workers in this role earn between $109,800.00 and $174,300.00 per year, depending on experience, location, and employer.

What does a director of third party risk management do?

A Director of Third Party Risk Management is responsible for overseeing an organization's approach to identifying, assessing, and mitigating risks associated with its external partners, vendors, and suppliers. This role involves developing risk assessment frameworks, ensuring compliance with relevant regulations, and collaborating with internal teams to address any third-party issues that may affect the business. The director also leads the creation and execution of policies and procedures to manage third-party risks effectively, balancing operational needs with regulatory requirements.

What are some of the key challenges a director of third party risk management faces when implementing risk assessment frameworks across a large organization?

One of the main challenges is ensuring consistency and thoroughness in risk assessments across diverse business units and geographies, each with varying levels of vendor complexity and regulatory requirements. Directors often need to balance rigorous risk controls with the need for operational efficiency, which requires strong communication and influence skills to gain stakeholder buy-in. Additionally, keeping up with evolving third-party risks, such as cybersecurity threats and supply chain disruptions, demands continuous process improvement and cross-functional collaboration with IT, legal, and procurement teams.

What are the key skills and qualifications needed to thrive as a director of third party risk management, and why are they important?

To thrive as a Director of Third Party Risk Management, you typically need expertise in risk assessment, compliance, vendor management, and a relevant degree in business, finance, or a related field. Familiarity with risk management frameworks, regulatory requirements, and tools like GRC (Governance, Risk, and Compliance) platforms or vendor risk assessment software is essential. Exceptional leadership, strategic thinking, and negotiation skills help manage cross-functional teams and build strong relationships with vendors. These competencies are crucial to effectively mitigate third-party risks, ensure regulatory compliance, and protect the organization’s reputation and operations.

What is the difference between Director Third Party Risk Management vs Vendor Risk Manager?

AspectDirector Third Party Risk ManagementVendor Risk Manager
CredentialsTypically requires advanced degrees and certifications like CTPRP or CRISCOften requires certifications such as CTPRP, CRISC, or vendor-specific training
Work EnvironmentStrategic leadership, overseeing multiple teams and enterprise-wide risk policiesOperational focus, managing vendor assessments and risk mitigation activities
Industry UsageUsed in large organizations across finance, healthcare, and technology sectorsCommon in organizations with extensive vendor networks, especially in finance and IT

The main difference is that the Director Third Party Risk Management holds a strategic, leadership role overseeing enterprise-wide third-party risks, while the Vendor Risk Manager focuses on operational vendor assessments and risk mitigation. Both roles require similar certifications but differ in scope and level of responsibility.

What are popular job titles related to Director Third Party Risk Management jobs in Reston, VA?

For Director Third Party Risk Management jobs in Reston, VA, the most frequently searched job titles are:

What job categories do people searching Director Third Party Risk Management jobs in Reston, VA look for?

The top searched job categories for Director Third Party Risk Management jobs in Reston, VA are:

What cities near Reston, VA are hiring for Director Third Party Risk Management jobs?

Cities near Reston, VA with the most Director Third Party Risk Management job openings:

Infographic showing various Director Third Party Risk Management job openings in Reston, VA as of June 2026, with employment types broken down into 70% Full Time, and 30% Part Time. Highlights an 100% In-person job distribution, with an average salary of $148,963 per year, or $71.6 per hour.

Governance, Risk and Compliance Analyst

Babel Street

Reston, VA • On-site

Full-time

Medical, Dental, Vision, Life, Retirement

Re-posted 5 days ago


Job description

Position Summary

The Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and maintaining the organization's cybersecurity governance, risk management, and compliance programs. This role works across Information Security, Engineering, Product, IT, and business stakeholders to ensure compliance with applicable regulatory, contractual, and industry security requirements. 

The GRC Analyst will assist in maintaining compliance with the NIST Cybersecurity Framework (NIST CSF), Cybersecurity Maturity Model Certification (CMMC), Cyber Essentials Plus, SOC 2, and ISO/IEC 27001 requirements through evidence collection, control monitoring, risk assessments, audit support, policy management, and remediation tracking. 

Key Responsibilities 

Compliance & Audit Management 

  • Maintain compliance programs aligned with NIST CSF, CMMC, Cyber Essentials Plus, SOC 2, and ISO/IEC 27001.
  • Coordinate internal and external audits, assessments, and attestation activities.
  • Collect, validate, and maintain compliance evidence and audit artifacts.
  • Track audit findings and remediation activities through completion.
  • Support control testing and validation to ensure ongoing compliance. 

Governance & Risk Management 

  • Conduct security risk assessments and assist with enterprise risk management activities.
  • Maintain risk registers, track mitigation plans, and monitor remediation progress.
  • Assist with development and maintenance of security policies, standards, procedures, and guidelines.
  • Monitor security and compliance control effectiveness and identify opportunities for improvement.
  • Support control mapping and crosswalk activities across multiple compliance frameworks. 

Third-Party Risk Management 

  • Perform security reviews of vendors, suppliers, and third-party service providers.
  • Track vendor assessment findings and remediation activities.
  • Support ongoing monitoring of third-party security and compliance risks. 

Customer & Regulatory Support 

  • Respond to customer security questionnaires, due diligence requests, and compliance inquiries.
  • Support sales and customer-facing teams with security documentation and assurance materials.
  • Assist with documenting compliance posture and security program maturity. 

Program Administration 

  • Maintain GRC platforms and compliance repositories.
  • Develop metrics, dashboards, and compliance reporting for management.
  • Coordinate annual security awareness, compliance, and policy review activities.
  • Support continuous improvement initiatives across the security and compliance program. 

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Security, Information Systems, Business, or related field (or equivalent experience).
  • 3+years of experience in Governance, Risk, and Compliance, Information Security, Audit, or related disciplines.
  • Working knowledge of:  
    • NIST Cybersecurity Framework (CSF)
    • CMMC
    • Cyber Essentials Plus
    • ISO/IEC 27001
    • SOC 2
    • Risk assessment methodologies
  • Experience supporting audits, assessments, or certification activities. 
  • Strong written communication, documentation, and organizational skills.
  • Ability to manage multiple priorities and deadlines in a fast-paced environment. 

Benefits at Babel Street (just to name a few...)

  • Health Benefits: Babel Street covers 85-100% monthly premium costs for Medical, Dental, Vision, Life & Disability insurances - for you and your family!
  • Retirement Plans: Babel Street offers both a Traditional and Roth 401(K) with a very competitive match.
  • Unlimited Flexible Leave: We trust our employees to manage their own time and balance their personal and work lives.
  • Holidays: Babel Street provides employees with 12 paid Federal Holidays
  • Tuition Reimbursement: We are committed to investing in our employees. One way we do that is with our Tuition Reimbursement Program for continuing education.                 

Babel Street is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. Further, Babel Street will not discriminate against applicants for inquiring about, discussing or disclosing their pay or, in certain circumstances, the pay of their coworker, Pay Transparency Nondiscrimination. In addition, Babel Street's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request, we will provide you with more information about such accommodations.