1

Risk Program Manager Jobs in Virginia (NOW HIRING)

Traditional security and integrated risk programs have often been unsuccessful in unifying the need ... Work you'll do As an Insider Risk Manager on the Cyber team, you will be responsible for:

Program Manager, Cybersecurity Risk

Reston, VA · On-site

$110.10 - $176.90/hr

About the Role As a Program Manager on the Cybersecurity Risk team, you will be a hands‑on execution partner within our third‑party risk management (TPRM) program, working closely with the ...

New

About the Team The Cybersecurity Risk team is responsible for cybersecurity risk assessments, security exception management, TPRM, and partner eco-system security. About the Role This broader team is ...

About the Team The Cybersecurity Risk team is responsible for cybersecurity risk assessments, security exception management, TPRM, and partner eco-system security. About the Role This broader team is ...

Program Manager

Arlington, VA · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Program Manager (PM) provides overall management, direction, and leadership for the execution ... Provide research and analytical support to assess technical risk, program performance, procurement ...

The Program Manager provides overall management, direction, and leadership for the execution of the ... risk, program performance, procurement schedules, and user impacts. • Track performance ...

Program Manager

Arlington, VA

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Program Manager (PM) provides overall management, direction, and leadership for the execution ... Provide research and analytical support to assess technical risk, program performance, procurement ...

Program Manager

Arlington, VA · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Program Manager (PM) provides overall management, direction, and leadership for the execution ... Provide research and analytical support to assess technical risk, program performance, procurement ...

Third-Party Risk Analyst

Mclean, VA · On-site

$45 - $47/hr

Key Responsibilities Risk & Program Management * Partner with the Governance Advisor to execute EOCTP and VIM programs. * Ensure divisions comply with internal guidance for managing third-party risk.

Program Manager

Vienna, VA · On-site

$270K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Program Manager implements and tracks risk mitigation strategies in accordance with Air Force Instruction 90-802, maintains a Quality Control Plan to ensure deliverables meet operational ...

Program Manager

Vienna, VA · On-site

$270K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Program Manager implements and tracks risk mitigation strategies in accordance with Air Force Instruction 90-802, maintains a Quality Control Plan to ensure deliverables meet operational ...

Program Manager

Vienna, VA · On-site

$270K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Program Manager implements and tracks risk mitigation strategies in accordance with Air Force Instruction 90-802, maintains a Quality Control Plan to ensure deliverables meet operational ...

Program Manager

Vienna, VA

$270K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Program Manager implements and tracks risk mitigation strategies in accordance with Air Force Instruction 90-802, maintains a Quality Control Plan to ensure deliverables meet operational ...

Program Manager

Vienna, VA

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Program Manager implements and tracks risk mitigation strategies in accordance with Air Force Instruction 90-802, maintains a Quality Control Plan to ensure deliverables meet operational ...

Program Manager

Vienna, VA · On-site

$270K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

The Program Manager implements and tracks risk mitigation strategies in accordance with Air Force Instruction 90-802, maintains a Quality Control Plan to ensure deliverables meet operational ...

Program Manager K2 Group is in search of a Program Manager to support the TSA's Intermodal Security ... I-STEP's mission is to enable development and integration of risk-based, intelligence-driven ...

Program Manager K2 Group is in search of a Program Manager to support the TSA's Intermodal Security ... I-STEP's mission is to enable development and integration of risk-based, intelligence-driven ...

next page

Showing results 1-20

Risk Program Manager information

What are the typical challenges faced by a risk program manager when balancing compliance requirements with business objectives?

Risk Program Managers often encounter the challenge of ensuring strict adherence to regulatory and compliance standards while supporting the organization's strategic goals. This balancing act requires effective communication with both compliance teams and business leaders to align risk mitigation strategies with operational needs. It may involve prioritizing risks, negotiating acceptable risk levels, and fostering a culture of shared responsibility. Success in this area depends on strong analytical skills, stakeholder management, and the ability to translate complex risk data into actionable insights.

What are the key skills and qualifications needed to thrive as a risk program manager, and why are they important?

To thrive as a Risk Program Manager, you need expertise in risk assessment, compliance, project management, and a relevant degree such as in finance, business, or risk management. Familiarity with risk management frameworks, GRC (governance, risk, and compliance) tools, and certifications like CRMP or PMP are typically required. Strong analytical thinking, communication, and leadership skills help you effectively collaborate across departments and guide organizational risk strategies. These skills ensure the organization can proactively identify, assess, and mitigate risks while maintaining compliance and supporting business objectives.

What is the difference between Risk Program Manager vs Risk Analyst?

AspectRisk Program ManagerRisk Analyst
CredentialsCertifications like CRM, FRM, or PMP often preferredCertifications such as CRM or FRM may be beneficial but less common
Work EnvironmentOversees risk management programs across departments, strategic focusAnalyzes data, identifies risks, supports risk mitigation efforts
Employer & Industry UsageUsed in finance, insurance, large corporationsCommon in finance, banking, and consulting firms
Search & Comparison IntentLooking for managerial or program oversight rolesSeeking entry-level or analytical risk roles

The Risk Program Manager focuses on leading and coordinating comprehensive risk management strategies, while the Risk Analyst primarily analyzes data to identify and assess risks. Both roles are essential in risk management but differ in scope and responsibilities.

Do risk program managers make good money?

Risk program managers typically earn competitive salaries that vary based on experience, industry, and location. According to industry data, the median annual salary ranges from $90,000 to $130,000, with higher earnings possible for those with advanced certifications like PMP or CRISC. They often work in corporate environments, managing risk mitigation strategies and compliance efforts.

What does a risk program manager do?

A risk program manager oversees an organization’s risk management initiatives, developing strategies to identify, assess, and mitigate potential risks across various departments. They coordinate risk assessments, implement policies, and ensure compliance with regulations, often using tools like risk management software and requiring certifications such as PMP or CRM. Their role involves continuous monitoring and reporting to support informed decision-making and organizational resilience.

What are popular job titles related to Risk Program Manager jobs in Virginia?

For Risk Program Manager jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Risk Program Manager jobs in Virginia look for?

The top searched job categories for Risk Program Manager jobs in Virginia are:

What cities in Virginia are hiring for Risk Program Manager jobs?

Cities in Virginia with the most Risk Program Manager job openings:

Infographic showing various Risk Program Manager job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 72% Full Time, 24% Part Time, and 3% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution.

Program Manager - Third Party Risk Management

Sentara Healthcare Inc

Norfolk, VA • On-site

$106 - $177/hr

Other

Posted 6 days ago


Sentara Health rating

6.7

Company rating: 6.7 out of 10

Based on 412 frontline employees who took The Breakroom Quiz

531st of 888 rated healthcare providers


Job description

Overview

The Third-Party Risk Program Manager is responsible for the end-to-end management of the organization’s third-party risk management program within a healthcare environment. This individual contributor role owns the program lifecycle — from vendor onboarding and risk assessment through ongoing monitoring, documentation, and offboarding — ensuring third party relationships comply with applicable healthcare regulations (e.g., HIPAA, HITECH) and internal policy. The role requires close collaboration with vendors and cross-functional partners including Legal, Information Security, Privacy, Procurement, and Compliance to ensure full program coverage and audit readiness.

Key Responsibilities

Program Management
  • Own and drive the third-party risk program end-to-end, ensuring consistent execution across the vendor lifecycle

  • Establish and maintain program timelines, milestones, and status reporting for leadership and stakeholders

  • Identify process gaps and drive continuous improvement of program workflows

  • Be a part of the team and support the execution of the program

Vendor Management
  • Serve as the primary point of contact for third-party vendors throughout the assessment and management process

  • Coordinate with vendors to gather required documentation, evidence, and remediation plans

  • Track vendor responsiveness and elevate delays or non-compliance issues appropriately

Risk Assessments (OneTrust)
  • Manage and execute third-party risk assessments using OneTrust, including assessment creation, distribution, tracking, and completion

  • Analyse assessment results to identify risk levels, gaps, and required remediation actions

  • Maintain accurate, up-to-date vendor and assessment records within OneTrust

  • Generate reports and dashboards from OneTrust to support program reporting and audits

Documentation & Compliance
  • Ensure all program documentation (policies, procedures, assessment records, contracts, remediation plans) is accurate, complete, and current

  • Maintain audit-ready documentation in alignment with healthcare regulatory requirements (HIPAA, HITECH, and other applicable frameworks)

  • Support internal and external audits by providing timely and accurate documentation

Cross-Functional Collaboration
  • Partner with Legal, Information Security, Privacy, Procurement, and business owners to ensure comprehensive risk coverage

  • Communicate program requirements, risk findings, and remediation needs clearly to non-technical and technical stakeholders alike

  • Act as a liaison between vendors and internal teams to resolve issues and keep the program moving forward

Education
  • Bachelor Level Degree (Preferred)

  • 5+ years relevant experience may be accepted in lieu of degree

Certification/Licensure
  • Certification in risk, or compliance (e.g., CTPRP, CRISC) preferred

Experience

Required

  • Bachelor’s degree with 3+ years of experience in third-party/vendor risk management, program management, or compliance, ideally within healthcare or a regulated industry

  • 5+ years of experience in third-party/vendor risk management, program management, or compliance, ideally within healthcare or a regulated industry without a Bachelor's degree preferred.

  • Hands‑on experience with OneTrust or similar GRC/risk management platforms

  • Working knowledge of HIPAA, HITECH, and healthcare data privacy/security requirements

  • Strong organizational skills with the ability to manage multiple vendors and assessments simultaneously

  • Excellent written and verbal communication skills, with experience working cross functionally

Preferred

  • Certification in risk, or compliance (e.g., CTPRP, CRISC)

  • Experience with vendor contract review or working alongside Legal/Procurement

  • Familiarity with information security risk assessment frameworks (e.g., NIST, HITRUST)

We provide market-competitive compensation packages, inclusive of base pay, incentives, and benefits. The base pay rate for Full Time employment is: $106,080.00-$176,820.80. Additional compensation may be available for this role such as shift differentials, standby/on-call, overtime, premiums, extra shift incentives, or bonus opportunities.

#J-18808-Ljbffr

What Sentara Health employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom