2

Third Party Risk Analyst Remote Jobs in Houston, TX

Flexible Location with Hybrid or Remote Options Available * Award Winning Safety Culture & Best ... third party service providers including brokers, insurers and other TPAs. * Prepare loss analyses ...

Posted today

Analyzing processes, controls, and tools to identify opportunities for ServiceNow configuration and ... Security Operations, Third-Party Risk Management, and ServiceNow AI Control Tower use cases

... Third-Party Risk Management workstreams in partnership with architects and product owners ... Experience with Performance Analytics, Predictive Intelligence, Now Assist, or generative ...

Escalate at-risk accounts and coordinate with third-party collections partners when internal efforts are exhausted. * Partner with the Billing Systems & Controls Analyst and Manager, Collections & AR ...

Experience mapping detections to common frameworks and risk reduction models * Familiarity with the ... Our team of SOC analysts, threat hunters, detection engineers, and threat researchers work around ...

Experience mapping detections to common frameworks and risk reduction models * Familiarity with the ... Our team of SOC analysts, threat hunters, detection engineers, and threat researchers work around ...

Insurance Coverage Attorney

Houston, TX · On-site +1

$165K - $190K/yr

... remote work arrangement. The role will focus on sophisticated insurance coverage matters, including coverage analysis, preparation of coverage opinions, and litigation involving first-party and third ...

Account Executive - West

Texas City, TX · On-site +1

$300K - $350K/yr

... checkbox compliance analysts into risk engineers that save the business. Backed by Team8 ... Hitch Partners - Third-party risk dominates security priorities, with AI-enhanced attacks and cloud ...

New

... analyzing insurance coverage, preparing coverage opinions and litigating first and third party ... This position is also open to remote candidates located in Texas. Cozen O'Connor is an ...

Posted today

next page

Showing results 1-20

Third Party Risk Analyst Remote information

See Houston, TX salary details

$14

$38

$62

How much do third party risk analyst remote jobs pay per hour?

As of Aug 7, 2026, the average hourly pay for third party risk analyst remote in Houston, TX is $38.66, according to ZipRecruiter salary data. Most workers in this role earn between $28.46 and $47.07 per hour, depending on experience, location, and employer.

What does a third party risk analyst do?

A Third Party Risk Analyst is responsible for assessing and managing the risks associated with an organization’s external vendors or partners. They evaluate third parties to ensure they meet security, compliance, and operational standards. This role often involves conducting risk assessments, monitoring vendor performance, and recommending risk mitigation strategies. Working remotely, these analysts use digital tools to collaborate with internal teams and communicate with vendors.

What are the key skills and qualifications needed to thrive as a third party risk analyst?

To thrive as a Third Party Risk Analyst (Remote), you need a solid understanding of risk management frameworks, vendor due diligence, and compliance regulations, typically supported by a bachelor's degree in a related field. Familiarity with risk assessment tools, GRC (governance, risk, and compliance) platforms, and certifications such as CTPRA or CISA are often required. Strong analytical thinking, attention to detail, and effective communication are essential soft skills for evaluating and managing third-party risks collaboratively. These skills ensure organizations can identify, assess, and mitigate risks posed by external partners, maintaining regulatory compliance and protecting business interests.

How does a third party risk analyst collaborate with other departments in a remote work setting?

As a remote Third Party Risk Analyst, collaboration with departments such as procurement, legal, IT security, and compliance is typically achieved through regular virtual meetings and shared documentation platforms. You’ll often coordinate with these teams to assess vendor risks, review contracts, and ensure compliance with company policies. Clear communication and proactive follow-ups are key, as you may be managing multiple projects and stakeholders simultaneously. Building strong remote relationships helps streamline risk assessment processes and ensures effective risk mitigation strategies.

What is the difference between Third Party Risk Analyst Remote vs Vendor Risk Analyst?

AspectThird Party Risk Analyst RemoteVendor Risk Analyst
CredentialsCertifications like CRISC, CISA often preferredSimilar certifications, often including CRISC, CISA
Work EnvironmentRemote, primarily online collaborationRemote or on-site, depending on company policy
Industry UsageFinancial, healthcare, technology sectorsFinancial, retail, manufacturing sectors
Job FocusAssessing third-party risks and complianceEvaluating vendor security and operational risks

The main difference is that a Third Party Risk Analyst Remote focuses on assessing risks posed by third-party entities across various industries, often working remotely. A Vendor Risk Analyst typically concentrates on evaluating specific vendors' security and operational risks, which may involve more direct vendor interactions. Both roles require similar certifications and work environments, but their scope and focus differ slightly.

What are the most commonly searched types of Third Party Risk Analyst jobs in Houston, TX? The most popular types of Third Party Risk Analyst jobs in Houston, TX are:
What are popular job titles related to Third Party Risk Analyst Remote jobs in Houston, TX? For Third Party Risk Analyst Remote jobs in Houston, TX, the most frequently searched job titles are:
What job categories do people searching Third Party Risk Analyst Remote jobs in Houston, TX look for? The top searched job categories for Third Party Risk Analyst Remote jobs in Houston, TX are:
What cities near Houston, TX are hiring for Third Party Risk Analyst Remote jobs? Cities near Houston, TX with the most Third Party Risk Analyst Remote job openings:
Infographic showing various Third Party Risk Analyst Remote job openings in Houston, TX as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $80,418 per year, or $38.7 per hour.

Information Security Risk Mgmt Anlst

CITGO Petroleum Corporation

Houston, TX • On-site, Remote

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted yesterday

New


Citgo rating

6.4

Company rating: 6.4 out of 10

Based on 58 frontline employees who took The Breakroom Quiz

64th of 86 rated oil and gas companies


Job description

CITGO PETROLEUM CORPORATION

CITGO Petroleum Corporation is a recognized leader in the refining industry and operates under the well-known CITGO brand. CITGO owns and operates three refineries located in Lake Charles, LA.; Lemont, IL.; and Corpus Christi, TX, and wholly and/or jointly owns 38 active terminals, six pipelines and three lubricants blending and packaging plants. With approximately 3,300 employees and a combined crude capacity of approximately 807,000 barrels-per-day (bpd), positions CITGO as one of the best-branded supplier companies in the industry.

At CITGO our people are our most important resource.  Our core values are Safety, Integrity, Respect, Accountability, and Care.

Job Summary
The Risk Management Analyst is responsible for identifying, assessing, and managing cybersecurity risks across the organization's IT and OT environments. The analyst leads CITGO efforts in hardware / software and systems risk assessments, Risk Management, cybersecurity policy and procedure management, and cybersecurity governance. In this dynamic role, the employee oversees critical areas such as cyber risk assessments, policy and procedure rollout to system owners, and incident response planning, ensuring our business remains resilient and secure. As a key contributor, the employee collaborates with cross-functional teams to drive compliance initiatives, protect sensitive data, and help maintain the trust of CITGO’s information.
Minimum Qualifications

Required:

  • Bachelor’s degree and 8 years of experience; or associate’s degree and 10 years of experience; or high school diploma and 12 years of experience.
  • Awareness of emerging technologies and their associated risks.
  • Advanced analytical and problem-solving skills for assessing and prioritizing risks.
  • Compliance Standards: Familiarity with standards like ISO 27001 and NIST 800.53, 800.144 and 800.82.
  • IT and OT Risks: General knowledge of risks that impact IT and OT systems.
  • Supply Chain and Third-Party Cyber Risk Management (TPRM): Knowledge of best practices for TPRM, including highest priority risk mitigation practices.
  • Attention to Detail: Precision in managing risk assessments and governance to ensure adherence to compliance standards.

 

Preferred:

  • CISSP, CRISC or other security or compliance certifications.
Job Duties
  1. Comprehensive Infrastructure Risk Assessment:
    1. Conduct regular and thorough cybersecurity risk assessments across the organization's entire IT and OT infrastructure, including networks, cloud environments, data centers, endpoints, IoT devices, and software applications.
    2. Ensure risk assessments are aligned with industry frameworks like NIST, and CIS Controls to identify and prioritize risks.
    3. Regularly review security configurations and controls for effectiveness and compliance with organizational policies and external regulations (e.g., GDPR, CCPA, PCI DSS).
    4. Assist in evaluating cybersecurity risks posed by third-party vendors, contractors, and service providers, including supply chain risks.
    5. Perform regular assessments of exposure and coordinate security reviews ensuring adherence to organizational security standards.
  2. Hardware / Software Risk Assessments for IT and OT:
    1. Coordinates the risk assessment process, meeting with IT and Business Coordinators.
    2. Ensure the assessment process moves quickly to prevent delays in the implementation of new hardware and software.
    3. Utilize external threat platforms to assess other risks.
    4. Utilizes the GRC platform to control the assessment process..
  3. Governance Policy / Procedure Rollout to System Owners:
    1. Collaborate on developing policies, standards, and procedures to enhance risk management structure. Meets with system owners to review changes to policies, procedures, and controls.
    2. Meets with new system owners to review their responsibilities.
    3. Utilizes the GRC platform to control and document system owner responsibilities.
  4. Supply Chain and Third-Party Cyber Risk Management:
    1. Evaluate and collaborate with Legal and Procurement to ensure supply chain risk is mitigated.
    2. Utilize cyber risk platforms to document and follow up on 3rd party risk.
  5. Incident Response Plans (IRP):
    1. Responsible for maintaining the IT and OT IRP.
    2. Works with the Manager InfoSec and consultants to continuously update the IRP.
    3. Participate in tabletop exercises related to IT and OT IRPs.
Job Duties II

Job duties displayed above are not all-inclusive, site-specific responsibilities may be assigned. 

Here are the incentives we offer:

• Remote Work options available for eligible positions
• Options are department and/or location specific
• 9/80 Work Schedule Option (where applicable)
• Annual Vacation Incentive (40-120 hours of additional pay) for Eligible Employees
• Paid Vacation Time
• Company-Paid Holidays
• Caregiver Leave
• Excellent 401(k) Match
• Pension Plan

• Performance Incentive

• Company-Paid Sick Leave and Long-Term Disability
• Medical, Dental, & Vision Plans; FSA and HSA options
• Company-Paid Life Insurance for Active Employees
• Healthy Rewards Program
• Service Awards Program
• Educational Assistance Plan
• Dependent Children Scholarships
• Reimbursement for Gym Membership
• Employee Discount Programs
• On-site Health Clinic (select locations)
• On-site Cafeteria (select locations)
• On-site Credit Union and ATM (Corporate office only)
• On-site Fitness Center (select locations)


PLEASE NOTE ALL JOBS DO NOT QUALIFY FOR ALL PERKS

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or disability.

Requisition ID - 1920 


What Citgo employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom