1

Freelance Third Party Risk Management Jobs in Kentucky

$140 - $180/hr

Third Party Risk Management Lead Professional US 2 days ago Requisition ID: 1286 Salary: $160,000.00 Annually Third Party Risk Management Lead About Sungrow: Sungrow North America is a leading ...

Posted today

$104 - $166/hr

Run third-party security risk management. Conduct vendor security due diligence and assessments, contract and control reviews, continuous monitoring, and risk reporting. * Lead data protection.

New

$180 - $260/hr

About the Team The Internal Controls function sits within the broader Finance Risk Management (FRM ... third-party dependencies, systems, and other high-risk workflows. We work closely with ...

New

$189 - $219/hr

Manage day-to-day relationships with brokers, carriers, third-party administrators, consultants, outside counsel, and other insurance and risk management advisors. * Work with the Company's captive ...

Posted today

$152 - $272/hr

... includes Third-Party Risk Management as well as senior risk professionals. Trust Risk at Autodesk is an established team and program. We are looking for a leader with the lived experience of ...

New

... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...

... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...

$120 - $180/hr

Leads the corporate claims function, including oversight of third-party administrators, claim ... Bachelor's Degree in Risk Management, Insurance, Finance, Business, or related field; a minimum of ...

$90 - $140/hr

Project Management Soft Skills * Strong Writing Skills * Verbal Communication Skills * Ability to Learn Quickly Industry Keywords * Third-Party Risk * ESG * Anti-Bribery * Anti-Corruption

New

IT Security and Governance Analyst

Louisville, KY · On-site

$43.25 - $57.50/hr

... k management program to ensure both internal and third-party IT risks are identified, assessed, prioritized and remediated. • Raise awareness within the organization of IT governance, risk and ...

Risk Specialist

Owensboro, KY · Hybrid

$97K/yr

Risk Management | Work Hours: 0800-1630 week days | Weekend Requirements: N/A | 1.0 FTE Job Summary ... third-party administrators, and legal counsel to support claims management, regulatory reporting ...

Risk Specialist

Owensboro, KY

$97K/yr

Risk Management | Work Hours: 0800-1630 week days | Weekend Requirements: N/A | 1.0 FTE Job Summary ... third-party administrators, and legal counsel to support claims management, regulatory reporting ...

Risk Specialist

Owensboro, KY · Hybrid

$97K/yr

Risk Management | Work Hours: 0800-1630 week days | Weekend Requirements: N/A | 1.0 FTE Job Summary ... third-party administrators, and legal counsel to support claims management, regulatory reporting ...

Risk Specialist

Owensboro, KY · On-site

$97K/yr

Risk Management | Work Hours: 0800-1630 week days | Weekend Requirements: N/A | 1.0 FTE Job Summary ... third-party administrators, and legal counsel to support claims management, regulatory reporting ...

$192.86/hr

Support regulatory, audit, compliance, and third-party risk management activities in alignment with healthcare security requirements. * Develop technical standards, policies, playbooks, runbooks ...

New

next page

Showing results 1-20

Freelance Third Party Risk Management information

What is a freelance third party risk management professional?

A freelance third party risk management professional is an independent consultant who helps organizations identify, assess, and mitigate risks associated with engaging external vendors or service providers. They evaluate third-party relationships for compliance, security, and operational risks, often developing risk assessment frameworks and recommending best practices. Freelancers in this field work on a contract basis, providing flexibility and specialized expertise to companies that may not have in-house risk management resources.

What are the key skills and qualifications needed to thrive as a freelance third party risk management specialist?

To thrive as a Freelance Third Party Risk Management specialist, you need expertise in risk assessment, regulatory compliance, and vendor due diligence, often supported by a degree in business, cybersecurity, or a related field. Familiarity with tools like risk management software (e.g., RSA Archer, MetricStream), and certifications such as CTPRP or CISA are typically required. Strong analytical thinking, communication, and negotiation skills help in building trust and effectively managing stakeholder relationships. These competencies are crucial for identifying, mitigating, and communicating third-party risks to protect organizational interests and ensure regulatory compliance.

What are some typical challenges freelance third party risk management professionals face when working with multiple clients simultaneously?

Freelance third party risk management professionals often juggle multiple client expectations, each with unique risk assessment frameworks and compliance requirements. Navigating differing organizational cultures and security standards can be challenging, especially when aligning deliverables and timelines. Effective communication and strong project management skills are essential to streamline processes, avoid duplication of effort, and ensure all clients receive thorough, timely risk assessments. Building adaptable templates and staying updated on evolving regulations can help freelancers efficiently manage these complexities.

What is the difference between Freelance Third Party Risk Management vs Freelance Vendor Risk Analyst?

AspectFreelance Third Party Risk ManagementFreelance Vendor Risk Analyst
CredentialsRisk management certifications, industry-specific knowledgeRisk assessment certifications, analytical skills
Work EnvironmentConsulting, remote, client sitesRemote, client offices, data analysis
Industry UsageFinancial, healthcare, tech sectorsFinancial, retail, manufacturing sectors
Search IntentManaging third-party risks, complianceAnalyzing vendor risks, assessments

Freelance Third Party Risk Management focuses on overseeing and mitigating risks associated with third-party vendors and partners, ensuring compliance and security. Freelance Vendor Risk Analyst specializes in evaluating individual vendors' risks through data analysis. While both roles involve risk assessment, the former has a broader scope of managing third-party relationships, whereas the latter concentrates on detailed vendor evaluations.

Is freelance third party risk management a good career?

Freelance third party risk management involves assessing and mitigating risks associated with external vendors and partners, often requiring knowledge of compliance standards and risk assessment tools. It can offer flexible work arrangements and demand strong analytical skills, but success depends on industry experience and networking. As a freelance role, it provides opportunities for independent work but may require building a client base and staying updated on regulatory changes.

What are popular job titles related to Freelance Third Party Risk Management jobs in Kentucky?

For Freelance Third Party Risk Management jobs in Kentucky, the most frequently searched job titles are:

What job categories do people searching Freelance Third Party Risk Management jobs in Kentucky look for?

The top searched job categories for Freelance Third Party Risk Management jobs in Kentucky are:

What cities in Kentucky are hiring for Freelance Third Party Risk Management jobs?

Cities in Kentucky with the most Freelance Third Party Risk Management job openings:

Third Party Risk Management Lead

Sungrow Na

On-site

$140 - $180/hr

Other

Posted 9 hours ago

Posted today


Job description

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Third Party Risk Management Lead

Professional US

2 days ago Requisition ID: 1286

Salary: $160,000.00 Annually

Third Party Risk Management Lead

About Sungrow:

Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America is known for its commitment to innovation, high-quality standards, and exceptional customer service, aiming to provide sustainable and reliable energy solutions to meet the growing demand for clean power.

The Position:

Sungrow Americas is seeking a Third Party Risk Management (TPRM) Lead to establish and operate a scalable program for managing vendor, supplier, and third-party risk across the organization.

This role is responsible for ensuring that third-party relationships are assessed, governed, and continuously monitored in alignment with regulatory expectations and customer requirements.

In parallel, this role will support the development of business continuity and resilience capabilities, including Business Impact Analysis (BIA) and foundational BCDR program elements.

This is a program leadership role requiring strong execution, cross-functional influence, and the ability to operate in a regulated, critical infrastructure environment

Key Responsibilities
  • Build and operate the TPRM program lifecycle, including:
    • Vendor intake and risk tiering
    • Security assessments and due diligence
    • Ongoing monitoring and reassessment
  • Define and enforce minimum security requirements for vendors and suppliers
  • Partner with legal and procurement to embed security and risk clauses into contracts
  • Establish processes for exception management and risk acceptance
  • Lead execution of third-party security reviews, including:
    • Questionnaires and evidence validation
    • Review of SOC 2, ISO certifications, and supporting artifacts
  • Identify and communicate material risks and required mitigations
  • Ensure alignment to frameworks (NIST, ISO 27001, SOC 2, NERC CIP where applicable)
  • Implement ongoing monitoring capabilities for vendor risk posture
  • Track and drive remediation of identified third-party risks
  • Maintain visibility into fourth-party and supply chain dependencies where relevant
Business Continuity & Resilience (BCDR/BIA Support)
  • Support development of Business Impact Analysis (BIA) across critical functions
  • Partner with business and IT stakeholders to define:
    • Critical processes
    • Recovery time objectives (RTO) / recovery point objectives (RPO)
  • Contribute to the development of BCDR plans and testing frameworks
  • Ensure third-party dependencies are integrated into continuity planning
Governance, Reporting & Audit Readiness
  • Develop and track TPRM KPIs and risk metrics
  • Provide executive-level reporting on third-party risk posture
  • Maintain documentation and evidence to support:
    • Audits
    • Customer security reviews
    • Regulatory inquiries
  • Ensure program is defensible and repeatable
Cross-Functional Collaboration
  • Partner with:
    • Procurement (vendor onboarding)
    • Legal (contractual protections)
    • IT and engineering (technical validation)
  • Act as the central point of coordination for third-party risk decisions
Requirements
  • 7–10+ years of experience in third-party risk management, GRC, or vendor risk programs
  • Proven experience building or leading a TPRM program in a regulated or enterprise environment
  • Strong understanding of:
    • Vendor risk assessment methodologies
    • Security frameworks (NIST, ISO 27001, SOC 2)
  • Experience reviewing:
    • Security documentation (policies, controls, audit reports)
    • Third-party attestations (SOC 2, ISO certifications)
  • Working knowledge of business continuity and resilience concepts (BIA, BCDR)
  • Ability to drive cross-functional alignment and accountability
Preferred
  • Experience in energy, industrial, or critical infrastructure sectors
  • Familiarity with NERC CIP requirements
  • Experience implementing or operating TPRM platforms/tools
  • Certifications such as CRISC, CISM, CISSP, or CTPRP
  • Program Builder: Can stand up and mature TPRM from structure to scale
  • Risk Translator: Converts vendor risk into business and contractual impact
  • Governance-Oriented: Ensures decisions are documented and defensible
  • Cross-Functional Operator: Effective with procurement, legal, IT, and engineering
  • Pragmatic Enforcer: Balances risk reduction with business enablement
Strategic Fit
  • Establishes control over external risk exposure
  • Strengthens customer trust and regulatory alignment
  • Enables defensible procurement and vendor onboarding decisions
  • Builds foundation for enterprise resilience and continuity planning
Travel

Up to 10%

Work Location and Status:
  • Remote

Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only contact candidates who best meet the requirements. Thank you for your interest in Sungrow.

#J-18808-Ljbffr