1

Senior Third Party Risk Analyst Jobs in New York

Role summary As a Senior Third-Party Risk Specialist , you will be responsible for identifying ... Strong analytical and problem-solving abilities. * Ability to work collaboratively across technical ...

Risk Analyst

Woodbury, NY · On-site

$32 - $35/hr

Third-Party Risk Analyst II The Third-Party Risk Analyst II supports the Enterprise Risk Management team by assessing and monitoring risks associated with current and prospective third-party vendors.

Mentoring, coaching, and developing staff and senior consultants within the practice Our clients ... analysis, identity management, access management, cloud security, or web security * Working ...

Mentoring, coaching, and developing staff and senior consultants within the practice Our clients ... analysis, identity management, access management, cloud security, or web security * Working ...

Senior Fintech Risk Analyst

Manhattan, NY · On-site

$122.72 - $137.50/hr

They own oversight of our strategic third-party partners, risk governance across the enterprise ... senior management and external clients. * Problem Solving: Proven ability to analyze ambiguous ...

next page

Showing results 1-20

Senior Third Party Risk Analyst information

What is a senior third party risk analyst?

A Senior Third Party Risk Analyst is a professional responsible for evaluating and monitoring the risks associated with a company’s external vendors, suppliers, and service providers. They assess potential security, financial, compliance, and operational risks that third parties may pose to the organization. This role typically involves conducting due diligence, developing risk assessment frameworks, and collaborating with internal teams to ensure regulatory compliance and protect sensitive data. Senior analysts often lead risk assessment initiatives, mentor junior analysts, and work closely with stakeholders to mitigate identified risks. Their work is crucial in safeguarding the organization from potential disruptions and reputational harm.

What are the key skills and qualifications needed to thrive as a senior third party risk analyst?

To thrive as a Senior Third Party Risk Analyst, you need expertise in risk management, vendor assessment, and regulatory compliance, often supported by a bachelor’s degree in business, finance, or a related field. Familiarity with GRC tools (such as Archer or OneTrust), risk assessment frameworks, and relevant certifications like CTPRA or CISA are typically required. Strong analytical thinking, communication skills, and stakeholder management set top performers apart in this role. These skills ensure effective identification and mitigation of third-party risks, safeguarding organizational integrity and regulatory adherence.

How does a senior third party risk analyst typically collaborate with other departments to manage vendor risks?

As a Senior Third Party Risk Analyst, you will frequently collaborate with teams such as procurement, legal, IT security, and compliance to assess and manage vendor risks. This involves coordinating risk assessments, facilitating due diligence processes, and sharing findings to inform contract negotiations and ongoing vendor management. Effective communication and cross-functional teamwork are essential, as you'll often serve as a liaison to ensure that third-party risks are properly identified, documented, and mitigated across the organization.

What is the difference between Senior Third Party Risk Analyst vs Third Party Risk Analyst?

AspectSenior Third Party Risk AnalystThird Party Risk Analyst
Required CredentialsBachelor's degree, certifications like CTPRP or CRISC, experience in risk managementBachelor's degree, certifications like CTPRP or CRISC, entry to mid-level experience
Work EnvironmentFinancial institutions, large corporations, consulting firmsFinancial services, healthcare, technology companies
Employer & Industry UsageUsed in organizations with complex third-party relationshipsCommon in industries with third-party dependencies

The Senior Third Party Risk Analyst typically has more experience and handles complex risk assessments, often leading initiatives. The Third Party Risk Analyst is usually an entry to mid-level role focused on supporting risk evaluations. Both roles require similar credentials but differ in responsibility level and scope.

What are the most commonly searched types of Third Party Risk Analyst jobs in New York?

The most popular types of Third Party Risk Analyst jobs in New York are:

What are popular job titles related to Senior Third Party Risk Analyst jobs in New York?

For Senior Third Party Risk Analyst jobs in New York, the most frequently searched job titles are:

What job categories do people searching Senior Third Party Risk Analyst jobs in New York look for?

The top searched job categories for Senior Third Party Risk Analyst jobs in New York are:

What cities in New York are hiring for Senior Third Party Risk Analyst jobs?

Cities in New York with the most Senior Third Party Risk Analyst job openings:

Infographic showing various Senior Third Party Risk Analyst job openings in New York as of August 2026, with employment types broken down into 57% Full Time, and 43% Contract. Highlights an 60% In-person, and 40% Remote job distribution.

Senior Third-Party Risk Specialist

New York, NY • On-site

Full-time

Medical, Retirement

Posted 29 days ago


Job description

About Mistral
Mistral provides full-stack AI solutions: from frontier models to developer tools, applications, and compute. We partner with enterprises tackling the hardest problems-across high-stakes industries like finance, manufacturing, defense, healthcare, and the public sector-co-creating customized AI systems that they can run on their terms.
We are a dynamic, collaborative team passionate about AI and its potential to transform society. Our diverse workforce thrives in competitive environments and is committed to driving innovation. Our teams are distributed between Europe, North America, Asia and the Middle East. We are creative, low-ego and team-spirited.
Role summary
As a Senior Third-Party Risk Specialist, you will be responsible for identifying, assessing, and mitigating risks associated with third parties (vendors, partners, subcontractors, etc.) at Mistral. You will play a pivotal role in safeguarding our assets, data, and reputation by ensuring that our third-party relationships adhere to the highest standards of security, compliance, and resilience. You will work closely with Legal, Procurement, Security, and Operational teams to embed a proactive third-party risk management approach into our business processes.
What you will do
  • Develop and manage the third-party risk management program: Design, implement, and maintain a structured framework for identifying, assessing, and monitoring risks associated with third parties (vendors, partners, service providers, etc.).
  • Conduct third-party assessments and audits: Perform due diligence, compliance assessments, security audits, and contractual reviews to ensure third parties meet our requirements and regulatory obligations (e.g., GDPR, NIS2, DORA).
  • Collaborate with internal teams: Work with Procurement, Legal, Security, and Operations teams to integrate third-party risk requirements into vendor selection, negotiation, and monitoring processes.
  • Manage incidents and non-compliance: Identify and address gaps or incidents related to third parties, coordinating corrective actions and ensuring follow-up until resolution.
  • Raise awareness and train stakeholders: Develop and deliver training and guidance to educate internal teams on third-party risk issues and their responsibilities.
  • Maintain robust documentation: Document assessments, decisions, and actions related to third-party risk management, ensuring traceability for internal and external audits.
  • Monitor regulatory and standards evolution: Stay updated on changes in regulations (e.g., NIS2, Cyber Resilience Act, GDPR) and standards (e.g., ISO 27001, SOC 2, ISO 27036) impacting third-party risk management, and propose adjustments to the internal framework.
  • Optimize tools and processes: Contribute to the continuous improvement of tools (e.g., third-party risk management platforms) and methodologies to enhance the program's effectiveness.
  • Align with broader resilience strategy: Ensure the third-party risk management program supports the company's overall cybersecurity and compliance objectives.
  • Contract redlining and negotiation skills: Ability to review, edit, and negotiate contractual terms to align with security and compliance requirements.
About you
  • 7+ years in third-party risk management, cybersecurity compliance, information security governance, or a related field.
  • Experience supporting cybersecurity compliance programs, certification processes, or external audits.
  • Practical knowledge of standards and frameworks such as ISO 27001, SOC 2, NIST SP 800-53, or regulations like NIS2, DORA, GDPR.
  • Proficiency in risk assessment methodologies (e.g., EBIOS RM, ISO 27005).
  • Familiarity with cybersecurity regulations such as NIS2, the Cyber Resilience Act, LPM, or DORA.
  • Strong organizational skills and attention to detail, with the ability to manage documentation and coordinate multiple stakeholders.
  • Excellent written and verbal communication skills.
  • Strong analytical and problem-solving abilities.
  • Ability to work collaboratively across technical, legal, commercial, and operational teams.
  • Professional proficiency in English; French proficiency is a plus.

What We Offer
We offer a comprehensive benefits package designed to support your well-being, growth, and work-life balance. Benefits vary by country and may include healthcare coverage, parental leave, retirement plans, relocation support, wellness programs, meal and transportation allowances, and other location-specific perks.
For the most up-to-date details on benefits available in your location, please refer to our Benefits page.
Privacy Policy
Your privacy matters to us. You can learn more about how we handle your personal data in our Applicant Privacy Policy.