1

Senior Third Party Risk Analyst Jobs in Kentucky

$160K/yr

... Sr. Technology Risk Analyst Contractor - Intellipro Professional US 4 days ago Requisition ID ... Working under the direction of the Third-Party Risk Management Lead and in partnership with the ...

$160K/yr

Third Party Risk Management Lead Professional US 2 days ago Requisition ID: 1286 Salary: $160,000 ... Support development of Business Impact Analysis (BIA) across critical functions * Partner with ...

$110K - $167K/yr

As a Third-Party Risk Management Analyst, you will own security risk assessments for critical Samsara vendors and partners. You will oversee the complete lifecycle--from tiering and onboarding to ...

As a Third-Party Risk Management Analyst, you will own security risk assessments for critical Samsara vendors and partners. You will oversee the complete lifecycle--from tiering and onboarding to ...

Department Overview The Senior Director of Cyber Third-Party Risk Management (TPRM) is accountable for leading and modernizing McDonald's global third-party cyber risk management capability across a ...

$70K - $92K/yr

Peraton Labs is hiring a Senior GRC / Third-Party Risk / Data Protection Analyst to own the governance, risk, and compliance engine of the engagement -- policy, control testing, and POA&M management ...

Select how often (in days) to receive an alert: Sr Associate Cybersecurity Risk Analyst - Third Party Alternate Locations: Work from Home; Charlotte, NC (North Carolina); Fort Wayne, IN (Indiana)

Familiarity with global regulations including import/export, third-party risk, ESG, sanctions, and ... Proficient in analyzing global regulations and delivering compliance reports to stakeholders.

Senior Manager of Technical Operations Position Summary : VoltaGrid is seeking a Cybersecurity Risk ... Support third-party risk management, including vendor assessments and ongoing monitoring.

... Third-Party Risk Management as well as senior risk professionals. Trust Risk at Autodesk is an ... Strong analytical and problem-solving skills* Ability to think strategically and execute ...

The 3rd Party Analyst is responsible for configuring 3rd party insurance setups within our ... senior living communities, and hospitals. We also cater to individuals with behavioral needs ...

The 3rd Party Analyst is responsible for configuring 3rd party insurance setups within our ... senior living communities, and hospitals. We also cater to individuals with behavioral needs ...

The 3rd Party Analyst is responsible for configuring 3rd party insurance setups within our ... senior living communities, and hospitals. We also cater to individuals with behavioral needs ...

$90K/yr

Analyst III leads complex/critical reviews, challenges control design, and provides senior-level risk recommendations. * Monitor and investigate emerging third-party cyber threats, including critical ...

... a senior mentor. What Roles You Might Play * Credit Risk: assist Credit Officers in analyzing ... and third-party risk. As an intern, you'll sit in ORM's independent 2nd Line of Defense role ...

We are seeking an experienced Senior Risk Analyst to provide independent risk oversight for our US Refined Products trading business. The ideal candidate will possess deep commercial and operational ...

Your Role As Senior Insider & Data Risk Analyst, you will own insider risk investigations and help ... Investigate misuse and exfiltration risk across source code, Google, AWS, Azure, third party apps ...

next page

Showing results 1-20

Senior Third Party Risk Analyst information

What is a senior third party risk analyst?

A Senior Third Party Risk Analyst is a professional responsible for evaluating and monitoring the risks associated with a company’s external vendors, suppliers, and service providers. They assess potential security, financial, compliance, and operational risks that third parties may pose to the organization. This role typically involves conducting due diligence, developing risk assessment frameworks, and collaborating with internal teams to ensure regulatory compliance and protect sensitive data. Senior analysts often lead risk assessment initiatives, mentor junior analysts, and work closely with stakeholders to mitigate identified risks. Their work is crucial in safeguarding the organization from potential disruptions and reputational harm.

What are the key skills and qualifications needed to thrive as a senior third party risk analyst?

To thrive as a Senior Third Party Risk Analyst, you need expertise in risk management, vendor assessment, and regulatory compliance, often supported by a bachelor’s degree in business, finance, or a related field. Familiarity with GRC tools (such as Archer or OneTrust), risk assessment frameworks, and relevant certifications like CTPRA or CISA are typically required. Strong analytical thinking, communication skills, and stakeholder management set top performers apart in this role. These skills ensure effective identification and mitigation of third-party risks, safeguarding organizational integrity and regulatory adherence.

How does a senior third party risk analyst typically collaborate with other departments to manage vendor risks?

As a Senior Third Party Risk Analyst, you will frequently collaborate with teams such as procurement, legal, IT security, and compliance to assess and manage vendor risks. This involves coordinating risk assessments, facilitating due diligence processes, and sharing findings to inform contract negotiations and ongoing vendor management. Effective communication and cross-functional teamwork are essential, as you'll often serve as a liaison to ensure that third-party risks are properly identified, documented, and mitigated across the organization.

What is the difference between Senior Third Party Risk Analyst vs Third Party Risk Analyst?

AspectSenior Third Party Risk AnalystThird Party Risk Analyst
Required CredentialsBachelor's degree, certifications like CTPRP or CRISC, experience in risk managementBachelor's degree, certifications like CTPRP or CRISC, entry to mid-level experience
Work EnvironmentFinancial institutions, large corporations, consulting firmsFinancial services, healthcare, technology companies
Employer & Industry UsageUsed in organizations with complex third-party relationshipsCommon in industries with third-party dependencies

The Senior Third Party Risk Analyst typically has more experience and handles complex risk assessments, often leading initiatives. The Third Party Risk Analyst is usually an entry to mid-level role focused on supporting risk evaluations. Both roles require similar credentials but differ in responsibility level and scope.

What are popular job titles related to Senior Third Party Risk Analyst jobs in Kentucky?

For Senior Third Party Risk Analyst jobs in Kentucky, the most frequently searched job titles are:

What job categories do people searching Senior Third Party Risk Analyst jobs in Kentucky look for?

The top searched job categories for Senior Third Party Risk Analyst jobs in Kentucky are:

What cities in Kentucky are hiring for Senior Third Party Risk Analyst jobs?

Cities in Kentucky with the most Senior Third Party Risk Analyst job openings:

Sr. Technology Risk Analyst

On-site

$160K/yr

Other

Posted 10 days ago


Key responsibilities

  • Perform vendor security assessments, review security evidence, and validate third-party controls.

  • Coordinate remediation activities and maintain a mature, auditable vendor risk management program.

  • Monitor vendor security posture throughout the vendor lifecycle and track remediation commitments.


Job description

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Sr. Technology Risk Analyst

Contractor - Intellipro Professional US

4 days ago Requisition ID: 1287

Salary: $160,000.00 Annually

Senior Technology Risk Analyst

About Sungrow:
Sungrow Power Supply Co., Ltd. (β€œSungrow”) is a global leading PV inverter and ESS provider with 515 GW of power electronic converters installed worldwide as of December 2023. Founded in 1997 by University Professor Cao Renxian, Sungrow leads in the research and development of solar inverters with the largest dedicated R&D team in the industry and a broad product portfolio offering PV inverter solutions and ESS for utility-scale, commercial & industrial, and residential applications, as well as internationally recognized floating PV plant solutions, NEV driving solutions, EV charging solutions, and renewable hydrogen production systems. With a strong 27-year track record in the PV space, Sungrow products power in 170 countries and regions worldwide. For more information, visit:www.sungrowpower.com .

The Position:
Sungrow Americas is seeking a Senior Technology Risk Analystto support the execution and continuous improvement of the organization's Risk Management program.

Working under the direction of the Third-Party Risk Management Lead and in partnership with the Governance, Risk & Compliance (GRC) Manager, this role is responsible for performing vendor security assessments, reviewing security evidence, validating third‑party controls, coordinating remediation activities, and maintaining a mature, auditable vendor risk management program.

The ideal candidate possesses strong experience reviewing security documentation, collaborating across Procurement, Legal, IT, Engineering, Product Security, and business stakeholders, and translating complex technical findings into practical business risk.

This position plays a key role in strengthening Sungrow's cybersecurity posture across SaaS, cloud, operational technology (OT), software suppliers, manufacturing partners, and strategic service providers supporting critical infrastructure operations.

Key ResponsibilitiesThird-Party Risk Operations
  • Execute Sungrow's Third-Party Risk Management lifecycle, including vendor onboarding, periodic reassessments, contract renewals, and offboarding.
  • Perform vendor intake reviews to determine inherent risk, business criticality, data sensitivity, connectivity, and regulatory impact.
  • Maintain the enterprise vendor inventory, vendor classifications, and risk tiering methodology.
  • Coordinate vendor assessment schedules and ensure timely completion of required reviews.
Security Assessments & Due Diligence
  • Conduct security assessments for software vendors, cloud providers, managed service providers, professional services firms, product suppliers, and strategic third parties.
  • Review and evaluate:
  • SOC 2 Type II reports
  • ISO 27001 certifications
  • Penetration test summaries
  • Security policies and standards
  • Business Continuity and Disaster Recovery documentation
  • Privacy and data protection controls
  • Identify control gaps, residual risks, and recommended mitigation strategies.
  • Validate vendor controls against Sungrow security requirements and applicable regulatory frameworks.
Continuous Monitoring & Risk Management
  • Monitor vendor security posture throughout the vendor lifecycle.
  • Track remediation commitments and coordinate follow‑up activities through closure.
  • Monitor vendor certifications, attestations, and supporting documentation for expiration and renewal.
  • Maintain accurate vendor risk records within the organization’s GRC platform.
  • Assist in identifying changes in vendor ownership, subcontractors, or security posture that may affect organizational risk.
Governance & Customer Assurance
  • Maintain complete, accurate, and audit‑ready documentation supporting Sungrow's Third‑Party Risk Management program.
  • Support customer security assessments by providing vendor assurance documentation and supporting evidence.
  • Prepare reports and operational metrics covering:
  • Assessment completion
  • Remediation status
  • Assessment aging
  • Outstanding exceptions
  • Support internal audits, customer reviews, and regulatory inquiries.
Contract & Procurement Support
  • Partner with Procurement and Legal during vendor onboarding and contract renewals.
  • Review vendor security documentation supporting contractual security obligations.
  • Validate vendor compliance with contractual security requirements including:
  • Encryption
  • Access control
  • Data protection
  • Business continuity
  • Audit rights
  • Escalate material risks requiring management review.
Business Continuity Support

Working alongside the Third-Party Risk Management Lead:

  • Review vendor Business Continuity and Disaster Recovery capabilities during security assessments.
  • Maintain Business Impact Analysis (BIA) documentation related to critical third‑party services.
#J-18808-Ljbffr