1

Grc Third Party Risk Analyst Jobs in Reston, VA (NOW HIRING)

Third-Party Risk Analyst

Mclean, VA · On-site

$45 - $47/hr

Third-Party Risk Analyst Location: McLean, VA (5 days - Onsite) Job Overview The Third-Party Risk Analyst will support Enterprise Operationally Critical Third Parties (EOCTP) and Enterprise ...

As our new Third Party Risk Analyst , you will play a critical role in protecting Anaplan by managing the risks associated with our third-party suppliers and reporting to our legal team. You will be ...

As our new Third Party Risk Analyst, you will play a critical role in protecting Anaplan by managing the risks associated with our third-party suppliers and reporting to our legal team. You will be ...

As our new Third Party Risk Analyst , you will play a critical role in protecting Anaplan by managing the risks associated with our third-party suppliers and reporting to our legal team. You will be ...

Responsibilities As a Third-Party Risk Management Analyst, you will play a critical role in ensuring that our partnership with vendors and service providers are secure, compliant and align with the ...

Responsibilities As a Third-Party Risk Management Analyst, you will play a critical role in ensuring that our partnership with vendors and service providers are secure, compliant and align with the ...

IT Third Party Risk Professional

Mclean, VA · On-site

$87K - $131K/yr

Third Party Risk management encompasses evaluating suppliers across all operational risk domains including: Information, Technology, Operational Resiliency,Processes/Transactions, Models, Reporting ...

Third Party Risk management encompasses evaluating suppliers across all operational risk domains including: Information, Technology, Operational Resiliency, Processes/Transactions, Models, Reporting ...

next page

Showing results 1-20

Grc Third Party Risk Analyst information

See Reston, VA salary details

$46.3K

$90.2K

$129.5K

How much do grc third party risk analyst jobs pay per year?

As of Jun 17, 2026, the average yearly pay for grc third party risk analyst in Reston, VA is $90,186.00, according to ZipRecruiter salary data. Most workers in this role earn between $58,800.00 and $104,000.00 per year, depending on experience, location, and employer.

What are some typical challenges a GRC Third Party Risk Analyst may encounter when assessing vendors?

As a GRC Third Party Risk Analyst, you may face challenges such as obtaining timely and complete responses from vendors, especially when dealing with large or international organizations. Navigating varying levels of vendor maturity in risk management practices can also be difficult. Additionally, balancing the need for thorough risk assessments with fast-paced business timelines requires strong communication and prioritization skills. Collaborating closely with procurement, legal, and IT teams is essential to ensure all risks are properly identified and managed.

What are the key skills and qualifications needed to thrive as a GRC Third Party Risk Analyst, and why are they important?

To thrive as a GRC Third Party Risk Analyst, you need a strong understanding of risk management frameworks, compliance regulations, and vendor risk assessment methodologies, typically supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (like Archer or ServiceNow), third-party risk management tools, and certifications such as CISA or CRISC is highly beneficial. Strong analytical thinking, attention to detail, and effective communication skills are essential soft skills for this role. These competencies ensure that organizations can accurately assess and mitigate third-party risks, maintaining compliance and protecting sensitive data.

What is a GRC Third Party Risk Analyst?

A GRC Third Party Risk Analyst is a professional who assesses and manages the risks associated with an organization’s external vendors, suppliers, or partners. Their role involves evaluating third-party compliance with regulatory standards and internal policies, identifying potential risks such as data breaches or non-compliance, and recommending mitigation strategies. They use frameworks like GRC (Governance, Risk, and Compliance) to help ensure that third-party relationships do not compromise the organization's security or reputation. This role often collaborates with procurement, legal, and IT teams to maintain robust risk management processes.

What is the difference between Grc Third Party Risk Analyst vs Grc Vendor Risk Analyst?

AspectGrc Third Party Risk AnalystGrc Vendor Risk Analyst
CertificationsCertifications like CRISC, CISA often preferredSame certifications commonly required
Work EnvironmentFocuses on third-party relationships and risk assessmentsPrimarily evaluates vendor-specific risks and compliance
Industry UsageUsed across finance, healthcare, and tech sectorsCommonly found in industries with extensive vendor networks

The Grc Third Party Risk Analyst and Grc Vendor Risk Analyst roles overlap significantly in certifications and work environment. The main difference lies in scope: the Third Party Risk Analyst assesses overall third-party relationships, while the Vendor Risk Analyst concentrates specifically on individual vendors. Both roles are vital for managing third-party risks in various industries.

What are popular job titles related to Grc Third Party Risk Analyst jobs in Reston, VA? For Grc Third Party Risk Analyst jobs in Reston, VA, the most frequently searched job titles are:
What job categories do people searching Grc Third Party Risk Analyst jobs in Reston, VA look for? The top searched job categories for Grc Third Party Risk Analyst jobs in Reston, VA are:
What cities near Reston, VA are hiring for Grc Third Party Risk Analyst jobs? Cities near Reston, VA with the most Grc Third Party Risk Analyst job openings:

Third-Party Risk Analyst

DRC Systems

Mclean, VA • On-site

$45 - $47/hr

Contractor

Posted 14 days ago


Job description

Title: Third-Party Risk Analyst
Location: McLean, VA (5 days - Onsite)
 
Job Overview
The Third-Party Risk Analyst will support Enterprise Operationally Critical Third Parties (EOCTP) and Enterprise Vulnerability Incident Management (VIM) programs. This role partners closely with Governance Advisors and enterprise stakeholders to drive risk oversight, data analysis, reporting, and program execution within a financial services environment.
 
Key Responsibilities
Risk & Program Management
  • Partner with the Governance Advisor to execute EOCTP and VIM programs.
  • Ensure divisions comply with internal guidance for managing third-party risk.
  • Support crisis response activities involving third parties.
  • Project manage the data management platform supporting EOCTP and VIM.
  • Launch and review risk assessments across operational, financial, legal/compliance, reputational, and lifecycle domains.
  • Analyze program requirements and propose solutions, risks, and impact assessments.
Data Analysis & Reporting
  • Aggregate and analyze enterprise data for periodic and ad hoc reporting.
  • Independently extract and interpret KRIs and KPIs.
  • Develop monthly and quarterly third-party metrics dashboards.
  • Maintain the Vulnerability Incident Management tracker.
  • Synthesize complex data into clear, executive-ready insights.
  • Document and track vulnerability incidents and control evidence.
Stakeholder & Project Coordination
  • Establish and maintain strong relationships with enterprise stakeholders.
  • Facilitate meetings, forums, and follow-ups to drive project goals.
  • Support leadership using OneTrust workflows and processes.
  • Monitor and document third-party risk and cybersecurity trends.
Documentation & Communications
  • Create professional communications including:
    • Procedures and guidance
    • Job aids
    • PowerPoint presentations
    • Questionnaire templates
    • Dashboards and reports
  • Produce incident summaries and executive-level write-ups.
Required Qualifications
  • Bachelor’s degree in Risk Management, Business Administration, Finance, Data Analytics, Project Management, Information Security, or related field.
  • 5+ years of experience in risk management or third-party risk management (financial services preferred).
  • Strong hands-on data analysis experience.
  • Advanced proficiency in Microsoft Office Suite:
    • Excel (required)
    • Word
    • PowerPoint
    • Power BI
  • Experience aggregating and interpreting enterprise data.
  • Excellent professional writing and communication skills.
  • Strong multitasking and time-management abilities.
  • Experience in third-party risk assessment, remediation, and monitoring.
  • Knowledge of cybersecurity or information security incident management.
  • Familiarity with third-party risk frameworks and methodologies.
  • Ability to work onsite Monday–Friday in McLean, VA.
Preferred Qualifications
  • Experience with OneTrust platform.
  • Background in financial services risk environments.
  • Exposure to enterprise vulnerability management programs.
Key Skills
  • Enterprise Risk Management
  • Third-Party Risk Management (TPRM)
  • Data Analysis & Aggregation
  • KPI/KRI Development
  • Executive Reporting
  • Microsoft Excel (Advanced)
  • Power BI
  • Stakeholder Management
  • Incident Management
  • Strong Written Communication