Third-party risk assessments (financial, operational, geopolitical, cyber) * Continuous monitoring ... Leverage advanced analytics and digital tools to enhance risk detection and response Leadership ...
Third-party risk assessments (financial, operational, geopolitical, cyber) * Continuous monitoring ... Leverage advanced analytics and digital tools to enhance risk detection and response Leadership ...
Project Manager Professional - Onsite
$42.80 - $52.80/hr
... third-party risk management trends Requirements: Bachelor's degree in arts/sciences (BA/BS) in Risk Management, Business Administration, Treasury, Data Analytics, Project Management, Finance ...
Project Manager Professional - Onsite
$42.80 - $52.80/hr
... third-party risk management trends Requirements: Bachelor's degree in arts/sciences (BA/BS) in Risk Management, Business Administration, Treasury, Data Analytics, Project Management, Finance ...
Provide focused analysis on Top 25 SF Servicer performance, monitor CRR Servicing Risk Scores ... Attend Seller/Servicer Forum and Third-Party Risk oversight meetings * Monitor Transfers of ...
Provide focused analysis on Top 25 SF Servicer performance, monitor CRR Servicing Risk Scores ... Attend Seller/Servicer Forum and Third-Party Risk oversight meetings * Monitor Transfers of ...
Provide focused analysis on Top 25 SF Servicer performance, monitor CRR Servicing Risk Scores ... Attend Seller/Servicer Forum and Third-Party Risk oversight meetings * Monitor Transfers of ...
Provide focused analysis on Top 25 SF Servicer performance, monitor CRR Servicing Risk Scores ... Attend Seller/Servicer Forum and Third-Party Risk oversight meetings * Monitor Transfers of ...
... third-party risk management, and training. * Build standards for the product team, such as ... Principal Product Operations and Risk Analyst * 10+ years working in risk management for B2B and ...
... third-party risk management, and training. * Build standards for the product team, such as ... Principal Product Operations and Risk Analyst * 10+ years working in risk management for B2B and ...
Familiarity with supply chain operations, procurement, logistics, or third-party risk management. * Exposure to data tools such as Excel, SQL, or Python for data analysis (working knowledge preferred ...
Familiarity with supply chain operations, procurement, logistics, or third-party risk management. * Exposure to data tools such as Excel, SQL, or Python for data analysis (working knowledge preferred ...
... third-party providers by reviewing control evidence, identifying gaps, and documenting risk findings * Document clear and defensible control gap analysis and risk assessments * Review controls ...
... third-party providers by reviewing control evidence, identifying gaps, and documenting risk findings * Document clear and defensible control gap analysis and risk assessments * Review controls ...
Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) Company: The Boeing Company Boeing currently has an opening for a Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) that will ...
Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) Company: The Boeing Company Boeing currently has an opening for a Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) that will ...
... Risk Management (C-SCRM) professional to support U.S. Government stakeholders. The C-SCRM Analyst ... Evaluate vendor and supplier security postures (third-party/fourth-party) using frameworks such as ...
... Risk Management (C-SCRM) professional to support U.S. Government stakeholders. The C-SCRM Analyst ... Evaluate vendor and supplier security postures (third-party/fourth-party) using frameworks such as ...
Supply Chain Risk Management (SCRM) Lead
$180K - $210K/yr
Supply Chain Risk Management (SCRM) Lead Falls Church, Virginia Full-time Important Notice: This ... Analyze software composition and third-party dependencies. * Interface with contracting and ...
Quick apply
Supply Chain Risk Management (SCRM) Lead
$180K - $210K/yr
Supply Chain Risk Management (SCRM) Lead Falls Church, Virginia Full-time Important Notice: This ... Analyze software composition and third-party dependencies. * Interface with contracting and ...
Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) Company: The Boeing Company Boeing currently has an opening for a Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) that will ...
Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) Company: The Boeing Company Boeing currently has an opening for a Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) that will ...
... third-party providers by reviewing control evidence, identifying gaps, and documenting risk findings * Document clear and defensible control gap analysis and risk assessments * Review controls ...
... third-party providers by reviewing control evidence, identifying gaps, and documenting risk findings * Document clear and defensible control gap analysis and risk assessments * Review controls ...
Familiarity with supply chain operations, procurement, logistics, or third-party risk management. * Exposure to data tools such as Excel, SQL, or Python for data analysis (working knowledge preferred ...
Familiarity with supply chain operations, procurement, logistics, or third-party risk management. * Exposure to data tools such as Excel, SQL, or Python for data analysis (working knowledge preferred ...
As a Senior Risk Analyst on the AWS Sustainability Controllership Team, you will support the design ... is building AI-powered GRC tools and next-generation dashboards at scale. - Strong career ...
As a Senior Risk Analyst on the AWS Sustainability Controllership Team, you will support the design ... is building AI-powered GRC tools and next-generation dashboards at scale. - Strong career ...
As a Senior Risk Analyst on the AWS Sustainability Controllership Team, you will support the design ... is building AI-powered GRC tools and next-generation dashboards at scale. - Strong career ...
As a Senior Risk Analyst on the AWS Sustainability Controllership Team, you will support the design ... is building AI-powered GRC tools and next-generation dashboards at scale. - Strong career ...
We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...
New
We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...
New
Cyber Risk Analyst
Chantilly, VA · On-site
$86K - $138K/yr
We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...
New
Cyber Risk Analyst
Chantilly, VA · On-site
$86K - $138K/yr
We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...
New
Cyber Risk Analyst
Chantilly, VA · On-site
We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...
New
Cyber Risk Analyst
Chantilly, VA · On-site
We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and ... Experience using GRC tools or risk tracking platforms. * Familiarity with NextGen FAA modernization ...
New
SIPR Governance, Risk, and Compliance (GRC) & Security Analyst Intrepid, an SPA Company, brings more than 20 years of experience supporting the Department of Defense and U.S. Government, consistently ...
SIPR Governance, Risk, and Compliance (GRC) & Security Analyst Intrepid, an SPA Company, brings more than 20 years of experience supporting the Department of Defense and U.S. Government, consistently ...
Supply Chain Risk Management (SCRM) Audit Analyst (Logistics Management Analyst 2)
Fairfax, VA · On-site
$62K - $89K/yr
... of third-party vendor security documentation, evaluating cybersecurity controls, governance practices, and risk management approaches against DoD and federal requirements. • Reviews independent ...
Supply Chain Risk Management (SCRM) Audit Analyst (Logistics Management Analyst 2)
Fairfax, VA · On-site
$62K - $89K/yr
... of third-party vendor security documentation, evaluating cybersecurity controls, governance practices, and risk management approaches against DoD and federal requirements. • Reviews independent ...
Grc Third Party Risk Analyst information
See Reston, VA salary details
$46.3K - $53.9K
9% of jobs
$60.4K is the 25th percentile. Wages below this are outliers.
$53.9K - $61.4K
18% of jobs
$61.4K - $69K
0% of jobs
$69K - $76.6K
6% of jobs
$76.6K - $84.1K
2% of jobs
$84.1K - $91.7K
4% of jobs
$91.7K - $99.3K
2% of jobs
The median wage is $100.4K / yr.
$99.3K - $106.8K
52% of jobs
$106.8K - $114.4K
6% of jobs
$114.4K - $122K
0% of jobs
$122K - $129.5K
0% of jobs
$46.3K
$90.2K
$129.5K
How much do grc third party risk analyst jobs pay per year?
What are some typical challenges a GRC Third Party Risk Analyst may encounter when assessing vendors?
What are the key skills and qualifications needed to thrive as a GRC Third Party Risk Analyst, and why are they important?
What is a GRC Third Party Risk Analyst?
What is the difference between Grc Third Party Risk Analyst vs Grc Vendor Risk Analyst?
| Aspect | Grc Third Party Risk Analyst | Grc Vendor Risk Analyst |
|---|---|---|
| Certifications | Certifications like CRISC, CISA often preferred | Same certifications commonly required |
| Work Environment | Focuses on third-party relationships and risk assessments | Primarily evaluates vendor-specific risks and compliance |
| Industry Usage | Used across finance, healthcare, and tech sectors | Commonly found in industries with extensive vendor networks |
The Grc Third Party Risk Analyst and Grc Vendor Risk Analyst roles overlap significantly in certifications and work environment. The main difference lies in scope: the Third Party Risk Analyst assesses overall third-party relationships, while the Vendor Risk Analyst concentrates specifically on individual vendors. Both roles are vital for managing third-party risks in various industries.
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 18 days ago
Job description
The Senior Director, Supply Chain Governance & Risk Management is responsible for establishing and leading the enterprise-wide framework for supply chain governance, Third-Party risk management and supply chain resiliency program, small business program, procurement compliance, Supplier Onboarding and the Supplier Performance program. This role ensures alignment with regulatory requirements, contractual obligations, leveraging best commercial practices and corporate risk tolerance while enabling resilient, ethical, and high-performing supplier ecosystems across global operations. This leader partners closely with executive leadership, program teams, legal, contracts, subcontracts, compliance, cybersecurity, and finance to proactively manage supply chain risk in support of mission-critical government contracts. This position is Hybrid to the Fort Worth, TX or Chantilly, VA Amentum office. US Citizenship is required.
Key Responsibilities:
Strategy & Governance
- Design and implement an enterprise supply chain governance framework aligned to corporate strategy and risk appetite
- Maintains all (policies, procedures, instructions) for supply chain
- Oversight of approved business systems (Purchasing Systems)
- Lead governance forums and training to the larger supply chain organization as appropriate
- Ensure alignment with public company requirements (e.g., SOX controls, disclosures, ESG considerations
Supply Chain Risk Management & Compliance
- Design and manage a comprehensive supplier risk program, including:
- Third-party risk assessments (financial, operational, geopolitical, cyber)
- Continuous monitoring and risk scoring
- Mitigation planning and escalation protocols
- Ensure compliance with regulatory requirements (e.g., FAR/DFARS)
- Oversee adherence to cybersecurity standards (e.g., NIST, CMMC as applicable) in the supply base
- Partner with Legal/Compliance on ethics, anti-corruption, and export control (ITAR/EAR) requirements
- Support Accounting System Audits and Treasury insurance requirements and investigations
Operational Resilience
- Lead enterprise efforts related to supply chain continuity and disruption management
- Develop and test business continuity and contingency plans for critical suppliers
- Monitor global risk factors (geopolitical, economic, environmental) impacting supply continuity
- Drive scenario planning and stress testing for mission-critical programs
Supplier Oversight & Performance
- Establish supplier segmentation and management of small business program for work performed under US Government contracts and similar programs for other governments.
- Implement governance for supplier performance, audits, and corrective actions
- Lead high-risk supplier reviews and executive-level supplier engagements
- Enable responsible sourcing and supplier initiatives
Data, Reporting & Insights
- Develop KPIs/KRIs and dashboards to provide real-time visibility into supply chain risk posture
- Deliver executive-level reporting and insights to inform decision-making
- Leverage advanced analytics and digital tools to enhance risk detection and response
Leadership & Cross-Functional Influence
- Build and lead a high-performing, global team
- Influence across matrixed stakeholders including Procurement, Operations, Legal, Contracts, Subcontracts, IT, Security, Finance, and Program Leadership
- Serve as a trusted advisor to executive leadership on supply chain and procurement risk
Knowledge, Skills and Abilities:
- Strategic thinking and enterprise mindset
- Risk-based decision making
- Executive presence and communication
- Cross-functional leadership and influence
- Crisis management and resilience planning
Minimum Qualifications:
- Bachelor's degree and typically 18+ years experience or Master's degree and typically 15+ years experience in supply chain, supply chain risk management, procurement governance, small business management, with 5 years leadership/supervisory experience. Two (2) years of experience in procurement or related field may be substituted for each year of the four (4) years of college
- Substantial expertise in government procurement (FAR/DFARS), Small Business Reporting and Government audits (CPSR, Small Business Program Reviews (SPRC), SIGAR, etc.)
- Demonstrated experience building enterprise risk or governance frameworks
- Strong knowledge of third-party risk management, supplier risk, and operational resilience
- Experience in a publicly traded company environment (SOX, audit, disclosure considerations)
- US Citizenship is required to apply.
Preferred Qualifications:
- Experience with CPSR, Small Business reporting and Audits
- Knowledge of CMMC, NIST, or supply chain cybersecurity frameworks
- Familiarity with ESG, responsible sourcing, and global regulatory environments
- Advanced degree (MBA)
- Relevant certifications (e.g., CISM, CRISC, CPSM, CSCP)
Compensation Details:
Budget 190 - 205K +/- 10% depending on experience
The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws.
Benefits Overview:
Our health and welfare benefits are designed to support you and your priorities. Offerings include:
- Health, dental, and vision insurance
- Paid time off and holidays
- Retirement benefits (including 401(k) matching)
- Educational reimbursement
- Parental leave
- Employee stock purchase plan
- Tax-saving options
- Disability and life insurance
- Pet insurance
Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.
Original Posting:
Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may change based on business needs.
Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters.