1

Senior Third Party Risk Analyst Jobs in Virginia

Third-Party Risk Analyst

Mclean, VA · On-site

$45 - $47/hr

Third-Party Risk Analyst Location: McLean, VA (5 days - Onsite) Job Overview The Third-Party Risk Analyst will support Enterprise Operationally Critical Third Parties (EOCTP) and Enterprise ...

Facilitate the completion of third party risk assessments, contract review/structuring, due ... (SR), Third Party Planning Questionnaire (TPPQ), Due Diligence Questionnaires (DDQ) and other ...

Senior SCRM Analyst

Mclean, VA

$89K - $117K/yr

Senior SCRM Analyst Location: Arlington, VA Work Environment: Client-site required with limited ... Knowledge of supply chain risk management frameworks, supplier risk assessment, or third-party risk ...

next page

Showing results 1-20

Senior Third Party Risk Analyst information

What are the key skills and qualifications needed to thrive as a senior third party risk analyst?

To thrive as a Senior Third Party Risk Analyst, you need expertise in risk management, vendor assessment, and regulatory compliance, often supported by a bachelor’s degree in business, finance, or a related field. Familiarity with GRC tools (such as Archer or OneTrust), risk assessment frameworks, and relevant certifications like CTPRA or CISA are typically required. Strong analytical thinking, communication skills, and stakeholder management set top performers apart in this role. These skills ensure effective identification and mitigation of third-party risks, safeguarding organizational integrity and regulatory adherence.

How does a senior third party risk analyst typically collaborate with other departments to manage vendor risks?

As a Senior Third Party Risk Analyst, you will frequently collaborate with teams such as procurement, legal, IT security, and compliance to assess and manage vendor risks. This involves coordinating risk assessments, facilitating due diligence processes, and sharing findings to inform contract negotiations and ongoing vendor management. Effective communication and cross-functional teamwork are essential, as you'll often serve as a liaison to ensure that third-party risks are properly identified, documented, and mitigated across the organization.

What is the difference between Senior Third Party Risk Analyst vs Third Party Risk Analyst?

AspectSenior Third Party Risk AnalystThird Party Risk Analyst
Required CredentialsBachelor's degree, certifications like CTPRP or CRISC, experience in risk managementBachelor's degree, certifications like CTPRP or CRISC, entry to mid-level experience
Work EnvironmentFinancial institutions, large corporations, consulting firmsFinancial services, healthcare, technology companies
Employer & Industry UsageUsed in organizations with complex third-party relationshipsCommon in industries with third-party dependencies

The Senior Third Party Risk Analyst typically has more experience and handles complex risk assessments, often leading initiatives. The Third Party Risk Analyst is usually an entry to mid-level role focused on supporting risk evaluations. Both roles require similar credentials but differ in responsibility level and scope.

What is a senior third party risk analyst?

A Senior Third Party Risk Analyst is a professional responsible for evaluating and monitoring the risks associated with a company’s external vendors, suppliers, and service providers. They assess potential security, financial, compliance, and operational risks that third parties may pose to the organization. This role typically involves conducting due diligence, developing risk assessment frameworks, and collaborating with internal teams to ensure regulatory compliance and protect sensitive data. Senior analysts often lead risk assessment initiatives, mentor junior analysts, and work closely with stakeholders to mitigate identified risks. Their work is crucial in safeguarding the organization from potential disruptions and reputational harm.
What are the most commonly searched types of Third Party Risk Analyst jobs in Virginia? The most popular types of Third Party Risk Analyst jobs in Virginia are:
What are popular job titles related to Senior Third Party Risk Analyst jobs in Virginia? For Senior Third Party Risk Analyst jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Senior Third Party Risk Analyst jobs in Virginia look for? The top searched job categories for Senior Third Party Risk Analyst jobs in Virginia are:
What cities in Virginia are hiring for Senior Third Party Risk Analyst jobs? Cities in Virginia with the most Senior Third Party Risk Analyst job openings:
Infographic showing various Senior Third Party Risk Analyst job openings in Virginia as of August 2026, with employment types broken down into 59% Full Time, and 41% Contract. Highlights an 60% In-person, and 40% Remote job distribution.

Third-Party Risk Analyst

DRC Systems

Mclean, VA • On-site

$45 - $47/hr

Contractor

Re-posted 8 days ago


Job description

Title: Third-Party Risk Analyst
Location: McLean, VA (5 days - Onsite)
 
Job Overview
The Third-Party Risk Analyst will support Enterprise Operationally Critical Third Parties (EOCTP) and Enterprise Vulnerability Incident Management (VIM) programs. This role partners closely with Governance Advisors and enterprise stakeholders to drive risk oversight, data analysis, reporting, and program execution within a financial services environment.
 
Key Responsibilities
Risk & Program Management
  • Partner with the Governance Advisor to execute EOCTP and VIM programs.
  • Ensure divisions comply with internal guidance for managing third-party risk.
  • Support crisis response activities involving third parties.
  • Project manage the data management platform supporting EOCTP and VIM.
  • Launch and review risk assessments across operational, financial, legal/compliance, reputational, and lifecycle domains.
  • Analyze program requirements and propose solutions, risks, and impact assessments.
Data Analysis & Reporting
  • Aggregate and analyze enterprise data for periodic and ad hoc reporting.
  • Independently extract and interpret KRIs and KPIs.
  • Develop monthly and quarterly third-party metrics dashboards.
  • Maintain the Vulnerability Incident Management tracker.
  • Synthesize complex data into clear, executive-ready insights.
  • Document and track vulnerability incidents and control evidence.
Stakeholder & Project Coordination
  • Establish and maintain strong relationships with enterprise stakeholders.
  • Facilitate meetings, forums, and follow-ups to drive project goals.
  • Support leadership using OneTrust workflows and processes.
  • Monitor and document third-party risk and cybersecurity trends.
Documentation & Communications
  • Create professional communications including:
    • Procedures and guidance
    • Job aids
    • PowerPoint presentations
    • Questionnaire templates
    • Dashboards and reports
  • Produce incident summaries and executive-level write-ups.
Required Qualifications
  • Bachelor’s degree in Risk Management, Business Administration, Finance, Data Analytics, Project Management, Information Security, or related field.
  • 5+ years of experience in risk management or third-party risk management (financial services preferred).
  • Strong hands-on data analysis experience.
  • Advanced proficiency in Microsoft Office Suite:
    • Excel (required)
    • Word
    • PowerPoint
    • Power BI
  • Experience aggregating and interpreting enterprise data.
  • Excellent professional writing and communication skills.
  • Strong multitasking and time-management abilities.
  • Experience in third-party risk assessment, remediation, and monitoring.
  • Knowledge of cybersecurity or information security incident management.
  • Familiarity with third-party risk frameworks and methodologies.
  • Ability to work onsite Monday–Friday in McLean, VA.
Preferred Qualifications
  • Experience with OneTrust platform.
  • Background in financial services risk environments.
  • Exposure to enterprise vulnerability management programs.
Key Skills
  • Enterprise Risk Management
  • Third-Party Risk Management (TPRM)
  • Data Analysis & Aggregation
  • KPI/KRI Development
  • Executive Reporting
  • Microsoft Excel (Advanced)
  • Power BI
  • Stakeholder Management
  • Incident Management
  • Strong Written Communication