1

Senior Third Party Risk Analyst Jobs in Kentucky

$106 - $177/hr

Manage and execute third-party risk assessments using OneTrust, including assessment creation, distribution, tracking, and completion * Analyse assessment results to identify risk levels, gaps, and ...

$116 - $168/hr

  • Medical

  • Dental

  • Vision

  • Retirement

Responsibilities The Principal Risk Analyst will lead risk business operations, special projects, investigations, legal litigation, mitigation development, non-employee access and end user awareness ...

New

$104 - $166/hr

Peraton Labs is hiring a Senior GRC / Third-Party Risk / Data Protection Analyst to own the governance, risk, and compliance engine of the engagement -- policy, control testing, and POA&M management ...

New

$90 - $140/hr

Familiarity with global regulations including import/export, third-party risk, ESG, sanctions, and ... Proficient in analyzing global regulations and delivering compliance reports to stakeholders.

New

$180 - $260/hr

... third-party dependencies, systems, and other high-risk workflows. We work closely with ... About the Role We're seeking a Senior Manager, Financial Risk Management to help shape and scale ...

New

$152 - $272/hr

... Third-Party Risk Management as well as senior risk professionals. Trust Risk at Autodesk is an ... Strong analytical and problem-solving skills* Ability to think strategically and execute ...

New

$120 - $180/hr

Your Role As Senior Insider & Data Risk Analyst, you will own insider risk investigations and help ... Investigate misuse and exfiltration risk across source code, Google, AWS, Azure, third party apps ...

New

$125 - $170/hr

Senior Financial Risk Analyst As a Senior Financial Risk Analyst located in Chicago, you will be part of a team of high-performing professionals that evaluates and manages financial risk (i.e ...

New

$100 - $125/hr

  • PTO

SOC 2 audit coordination, privacy rights fulfillment, policy governance, third-party risk ... Analyst and supports their professional development. Both roles report directly to the Senior ...

New

next page

Showing results 1-20

Senior Third Party Risk Analyst information

What is a senior third party risk analyst?

A Senior Third Party Risk Analyst is a professional responsible for evaluating and monitoring the risks associated with a company’s external vendors, suppliers, and service providers. They assess potential security, financial, compliance, and operational risks that third parties may pose to the organization. This role typically involves conducting due diligence, developing risk assessment frameworks, and collaborating with internal teams to ensure regulatory compliance and protect sensitive data. Senior analysts often lead risk assessment initiatives, mentor junior analysts, and work closely with stakeholders to mitigate identified risks. Their work is crucial in safeguarding the organization from potential disruptions and reputational harm.

What are the key skills and qualifications needed to thrive as a senior third party risk analyst?

To thrive as a Senior Third Party Risk Analyst, you need expertise in risk management, vendor assessment, and regulatory compliance, often supported by a bachelor’s degree in business, finance, or a related field. Familiarity with GRC tools (such as Archer or OneTrust), risk assessment frameworks, and relevant certifications like CTPRA or CISA are typically required. Strong analytical thinking, communication skills, and stakeholder management set top performers apart in this role. These skills ensure effective identification and mitigation of third-party risks, safeguarding organizational integrity and regulatory adherence.

How does a senior third party risk analyst typically collaborate with other departments to manage vendor risks?

As a Senior Third Party Risk Analyst, you will frequently collaborate with teams such as procurement, legal, IT security, and compliance to assess and manage vendor risks. This involves coordinating risk assessments, facilitating due diligence processes, and sharing findings to inform contract negotiations and ongoing vendor management. Effective communication and cross-functional teamwork are essential, as you'll often serve as a liaison to ensure that third-party risks are properly identified, documented, and mitigated across the organization.

What is the difference between Senior Third Party Risk Analyst vs Third Party Risk Analyst?

AspectSenior Third Party Risk AnalystThird Party Risk Analyst
Required CredentialsBachelor's degree, certifications like CTPRP or CRISC, experience in risk managementBachelor's degree, certifications like CTPRP or CRISC, entry to mid-level experience
Work EnvironmentFinancial institutions, large corporations, consulting firmsFinancial services, healthcare, technology companies
Employer & Industry UsageUsed in organizations with complex third-party relationshipsCommon in industries with third-party dependencies

The Senior Third Party Risk Analyst typically has more experience and handles complex risk assessments, often leading initiatives. The Third Party Risk Analyst is usually an entry to mid-level role focused on supporting risk evaluations. Both roles require similar credentials but differ in responsibility level and scope.

What are popular job titles related to Senior Third Party Risk Analyst jobs in Kentucky?

For Senior Third Party Risk Analyst jobs in Kentucky, the most frequently searched job titles are:

What job categories do people searching Senior Third Party Risk Analyst jobs in Kentucky look for?

The top searched job categories for Senior Third Party Risk Analyst jobs in Kentucky are:

What cities in Kentucky are hiring for Senior Third Party Risk Analyst jobs?

Cities in Kentucky with the most Senior Third Party Risk Analyst job openings:

Program Manager - Third Party Risk Management

Sentara Healthcare Inc

On-site

$106 - $177/hr

Other

Posted 4 days ago


Sentara Health rating

6.7

Company rating: 6.7 out of 10

Based on 412 frontline employees who took The Breakroom Quiz

531st of 888 rated healthcare providers


Job description

Overview

The Third-Party Risk Program Manager is responsible for the end-to-end management of the organization’s third-party risk management program within a healthcare environment. This individual contributor role owns the program lifecycle — from vendor onboarding and risk assessment through ongoing monitoring, documentation, and offboarding — ensuring third party relationships comply with applicable healthcare regulations (e.g., HIPAA, HITECH) and internal policy. The role requires close collaboration with vendors and cross-functional partners including Legal, Information Security, Privacy, Procurement, and Compliance to ensure full program coverage and audit readiness.

Key Responsibilities

Program Management
  • Own and drive the third-party risk program end-to-end, ensuring consistent execution across the vendor lifecycle

  • Establish and maintain program timelines, milestones, and status reporting for leadership and stakeholders

  • Identify process gaps and drive continuous improvement of program workflows

  • Be a part of the team and support the execution of the program

Vendor Management
  • Serve as the primary point of contact for third-party vendors throughout the assessment and management process

  • Coordinate with vendors to gather required documentation, evidence, and remediation plans

  • Track vendor responsiveness and elevate delays or non-compliance issues appropriately

Risk Assessments (OneTrust)
  • Manage and execute third-party risk assessments using OneTrust, including assessment creation, distribution, tracking, and completion

  • Analyse assessment results to identify risk levels, gaps, and required remediation actions

  • Maintain accurate, up-to-date vendor and assessment records within OneTrust

  • Generate reports and dashboards from OneTrust to support program reporting and audits

Documentation & Compliance
  • Ensure all program documentation (policies, procedures, assessment records, contracts, remediation plans) is accurate, complete, and current

  • Maintain audit-ready documentation in alignment with healthcare regulatory requirements (HIPAA, HITECH, and other applicable frameworks)

  • Support internal and external audits by providing timely and accurate documentation

Cross-Functional Collaboration
  • Partner with Legal, Information Security, Privacy, Procurement, and business owners to ensure comprehensive risk coverage

  • Communicate program requirements, risk findings, and remediation needs clearly to non-technical and technical stakeholders alike

  • Act as a liaison between vendors and internal teams to resolve issues and keep the program moving forward

Education
  • Bachelor Level Degree (Preferred)

  • 5+ years relevant experience may be accepted in lieu of degree

Certification/Licensure
  • Certification in risk, or compliance (e.g., CTPRP, CRISC) preferred

Experience

Required

  • Bachelor’s degree with 3+ years of experience in third-party/vendor risk management, program management, or compliance, ideally within healthcare or a regulated industry

  • 5+ years of experience in third-party/vendor risk management, program management, or compliance, ideally within healthcare or a regulated industry without a Bachelor's degree preferred.

  • Hands‑on experience with OneTrust or similar GRC/risk management platforms

  • Working knowledge of HIPAA, HITECH, and healthcare data privacy/security requirements

  • Strong organizational skills with the ability to manage multiple vendors and assessments simultaneously

  • Excellent written and verbal communication skills, with experience working cross functionally

Preferred

  • Certification in risk, or compliance (e.g., CTPRP, CRISC)

  • Experience with vendor contract review or working alongside Legal/Procurement

  • Familiarity with information security risk assessment frameworks (e.g., NIST, HITRUST)

We provide market-competitive compensation packages, inclusive of base pay, incentives, and benefits. The base pay rate for Full Time employment is: $106,080.00-$176,820.80. Additional compensation may be available for this role such as shift differentials, standby/on-call, overtime, premiums, extra shift incentives, or bonus opportunities.

#J-18808-Ljbffr

What Sentara Health employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom