1

Third Party Risk Analyst Jobs in Illinois (NOW HIRING)

Manager - Third Party Risk The position will be primarily responsible for managing and leading the ... analysis, identity management, access management, cloud security, or web security * Working ...

Manager - Third Party Risk The position will be primarily responsible for managing and leading Third Party Risk Management (TPRM) engagements, including oversight of third-party assessments, client ...

Governance & Risk Analyst

Chicago, IL · On-site

$85K - $95K/yr

Key Responsibilities Third-Party Risk Management (TPRM) & Vendor Risk Assessments (VRA) * Conduct end-to-end Vendor Risk Assessments (VRA) including initiation, analysis, follow-ups, and final ...

The Third Party Management (TPM) team, which delivers this service to HSBC's first line businesses ... and analytics from a risk, supplier management, outsourcing, and materiality perspective; and ...

next page

Showing results 1-20

Third Party Risk Analyst information

See Illinois salary details

$14

$39

$63

How much do third party risk analyst jobs pay per hour?

As of Jul 29, 2026, the average hourly pay for third party risk analyst in Illinois is $39.23, according to ZipRecruiter salary data. Most workers in this role earn between $28.89 and $47.74 per hour, depending on experience, location, and employer.

How does a Third Party Risk Analyst typically collaborate with other departments to manage vendor risks?

A Third Party Risk Analyst works closely with departments such as procurement, legal, IT security, and compliance to assess and mitigate potential risks posed by vendors and service providers. Collaboration often involves reviewing contracts, conducting risk assessments, and ensuring vendors meet the organization's security and compliance requirements. Regular communication and joint meetings are common to align on risk standards and address any emerging concerns. This cross-functional teamwork ensures a comprehensive approach to managing third-party risks and maintaining regulatory compliance.

What is the difference between Third Party Risk Analyst vs Vendor Risk Analyst?

AspectThird Party Risk AnalystVendor Risk Analyst
CertificationsCertifications like CRISC, CISA often preferredSimilar certifications, often the same as Third Party Risk Analyst
Work EnvironmentFinancial institutions, corporations managing third-party relationshipsOrganizations assessing vendor security, compliance, and performance
Industry UsageCommon in finance, healthcare, and tech sectorsPrimarily in procurement, supply chain, and IT sectors

The main difference is that a Third Party Risk Analyst focuses on assessing risks associated with all third-party relationships, including vendors, partners, and service providers. A Vendor Risk Analyst specifically concentrates on evaluating risks posed by vendors and suppliers. While their roles overlap, the Third Party Risk Analyst has a broader scope, often handling multiple types of third-party relationships within various industries.

Is a grc analyst a good entry-level job?

A third-party risk analyst is often considered an entry-level role in risk management and compliance, suitable for individuals with strong analytical skills and knowledge of regulations like GDPR or HIPAA. The position typically involves assessing vendor risks, using tools like GRC software, and may require certifications such as CRISC or CISA. It provides a foundation for career growth in cybersecurity, compliance, or risk management fields.

How much does a third-party risk analyst make?

A third-party risk analyst typically earns between $60,000 and $100,000 annually, depending on experience, location, and industry. Entry-level positions may start lower, while experienced analysts with certifications like CRISC or CISSP can earn higher salaries.

Is third-party risk management a good career?

Third-party risk management is a growing field within risk analysis and compliance, focusing on assessing and mitigating risks from external vendors and partners. It requires skills in risk assessment, regulatory knowledge, and often involves using tools like risk management software. The role offers opportunities for career advancement in industries such as finance, healthcare, and technology.

What does a third-party risk analyst do?

A third-party risk analyst evaluates the risks associated with an organization’s external vendors, suppliers, and partners. They assess third-party security, compliance, and operational risks using tools like risk management software and often require knowledge of industry standards and certifications. Their goal is to ensure that external relationships do not compromise the organization’s security or compliance posture.

What are the key skills and qualifications needed to thrive as a Third Party Risk Analyst, and why are they important?

To thrive as a Third Party Risk Analyst, you need a solid understanding of risk management principles, vendor assessment processes, and compliance regulations, often supported by a degree in business, finance, or information security. Familiarity with risk assessment tools, GRC (Governance, Risk, and Compliance) platforms, and certifications like CTPRA or CRISC is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set exceptional analysts apart in this field. These competencies are crucial for identifying and mitigating vendor risks, ensuring organizational compliance, and safeguarding sensitive data.
What are the most commonly searched types of Third Party Risk Analyst jobs in Illinois? The most popular types of Third Party Risk Analyst jobs in Illinois are:
What job categories do people searching Third Party Risk Analyst jobs in Illinois look for? The top searched job categories for Third Party Risk Analyst jobs in Illinois are:
What cities in Illinois are hiring for Third Party Risk Analyst jobs? Cities in Illinois with the most Third Party Risk Analyst job openings:
Infographic showing various Third Party Risk Analyst job openings in Illinois as of July 2026, with employment types broken down into 100% Full Time. Highlights an 33% In-person, 34% Hybrid, and 33% Remote job distribution, with an average salary of $81,601 per year, or $39.2 per hour.

Third Party Risk Manager

Crowe LLP

Chicago, IL • On-site

Full-time

Re-posted 17 days ago


Job description

Your Journey at Crowe Starts Here:

At Crowe, you can build a meaningful and rewarding career. With real flexibility to balance work with life moments, you're trusted to deliver results and make an impact. We embrace you for who you are, care for your well-being, and nurture your career. Everyone has equitable access to opportunities for career growth and leadership. Over our 80-year history, delivering excellent service through innovation has been a core part of our DNA across our audit, tax, and consulting groups. That's why we continuously invest in innovative ideas, such as AI-enabled insights and technology-powered solutions, to enhance our services. Join us at Crowe and embark on a career where you can help shape the future of our industry.

Job Description:

Manager - Third Party Risk

The position will be primarily responsible for managing and leading the assessment of the information security posture of key clients' third parties while overseeing the overall execution, quality, and delivery of assessments. The position will work within a Crowe team at a client or third-party site and be responsible for leading teams in identifying key risks, information security gaps, and remediation strategies. This role will also serve as a trusted advisor to client leadership and provide mentorship and oversight to junior team members. Projects would be performed through interacting with the client's Information Security and Business Unit leadership, as well as the client's vendors, service providers, and partners.

Specific projects and responsibilities may include:

  • Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards
  • Managing and overseeing assessment teams, project timelines, and client deliverables across multiple engagements
  • Performing and overseeing site visits to third-party facilities
  • Evaluating the effectiveness of security controls for compliance with applicable policies, security laws, regulations, and industry standards
  • Assessing cloud technologies such as Software as a Service (SaaS) hosted applications, Platform as a Service (PaaS), and Infrastructure as a Service (IaaS) deployments
  • Documenting information security risk and compliance findings, presenting recommendations for remediation, and communicating results to client leadership
  • Performing quality assurance reviews of assessments completed by team members to ensure consistency and accuracy
  • Delivering high-quality, executive-level reports and presentations
  • Coordinating schedules, resource allocation, and assessment activities for key third-party clients while overseeing all key deliverables
  • Supporting business development initiatives, client relationship management, and practice growth efforts
  • Mentoring, coaching, and developing staff and senior consultants within the practice

Our clients operate in and our team members work across the following industries:

  • Pharmaceutical
  • Life Sciences
  • Biotechnology
  • Healthcare
  • Manufacturing
  • Financial Services
  • Technology, Media and Telecommunications

Basic Qualifications

  • Bachelor's Degree
  • Information Technology and/or Cybersecurity background and/or experience, including 5-8+ years of IT, cybersecurity, risk management, or third-party risk experience with network, platform, and/or application technology
  • One or more of the following certifications required:
    • Certified Information Systems Security Professional (CISSP)
    • Certified Information Systems Auditor (CISA)
    • Certified Third Party Risk Assessor (CTPRA)
    • Certified in Risk and Information Systems Control (CRISC) preferred
  • Strong knowledge of security domains such as auditing, policy, database security, firewall design and implementation, risk analysis, identity management, access management, cloud security, or web security
  • Working knowledge of one or more compliance frameworks such as SOC 2, ISO 27001, NIST, HIPAA, PCI DSS, or HITRUST
  • Experience managing multiple projects and teams in a fast-paced consulting environment
  • Demonstrated leadership experience overseeing project execution, client relationships, and team performance
  • Proven ability to learn new technologies and systems, especially through independent research and self-study
  • Strong verbal and written communication skills with the ability to present technical information to both technical and executive audiences
  • Ability to manage project schedules, budgets, staffing, and client expectations
  • Ability to travel domestically an average of 20%-50% per year

Preferred Qualifications

  • Bachelor's and/or advanced degree with a concentration in Cybersecurity, Risk Management, Computer Science, Management Information Systems, or related field
  • Experience working with or assessing third-party vendors and service providers
  • IT or cybersecurity experience at a leading public company, consulting firm, or regulated industry organization
  • Experience with Archer, ProcessUnity, ServiceNow, OneTrust, or other GRC/VRM platforms
  • Experience with security ratings platforms and continuous monitoring solutions
  • Experience leading teams and mentoring junior professionals in a consulting or advisory environment
  • Bilingual capabilities preferred
  • Open to remote work arrangements

We expect the candidate to uphold Crowe's values of Care, Trust, Courage, and Stewardship. These values define who we are. We expect all of our people to act ethically and with integrity at all times.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire. Crowe is not sponsoring for work authorization at this time.

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Crowe, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $59,800.00 - $114,500.00 per year.

Our Benefits:
Your exceptional people experience starts here. At Crowe, we know that great peopleare what makes a great firm. We care about our people and offer employees a comprehensive total rewards package. Learn more about what working at Crowe can mean for you!
How You Can Grow:
We will nurture your talent in an inclusive culture that values diversity. You will have the chance to meet on a consistent basis with your Career Coach that will guide you in your career goals and aspirations. Learn more about where talent can prosper!
More about Crowe:
Crowe (www.crowe.com) is one of the largest public accounting, consulting and technology firms in the United States. Crowe uses its deep industry expertise to provide audit services to public and private entities while also helping clients reach their goals with tax, advisory, risk and performance services. Crowe is recognized by many organizations as one of the country's best places to work. Crowe serves clients worldwide as an independent member of Crowe Global, one of the largest global accounting networks in the world. The network consists of more than 200 independent accounting and advisory services firms in more than 130 countries around the world.
Crowe LLP provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, sexual orientation, gender identity or expression, genetics, national origin, disability or protected veteran status, or any other characteristic protected by federal, state or local laws.

Crowe LLP does not accept unsolicited candidates, referrals or resumes from any staffing agency, recruiting service, sourcing entity or any other third-party paid service at any time. Any referrals, resumes or candidates submitted to Crowe, or any employee or owner of Crowe without a pre-existing agreement signed by both parties covering the submission will be considered the property of Crowe, and free of charge.

Crowe will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws.

Please visit our webpage to see notices of the various state and local Ban-the-Box laws and Fair Chance Ordinances, where applicable.

We are committed to a merit-based hiring process, evaluating all candidates consistently using objective, job-related criteria such as relevant experience, demonstrated skills, measurable impact, and alignment with the role's responsibilities, and making employment decisions in a fair and inclusive manner free from discrimination.

If you are interested in applying for employment with Crowe and are in need of an accommodation or require special assistance to navigate our website or to complete your application, please visit our Applicant Assistance and Accommodations page for more information: https://careers.crowe.com/crowe-applicant-assistance-and-accommodation


Crowe logo

About Crowe

Sourced by ZipRecruiter

Crowe (www.crowe.com) is one of the largest public accounting, consulting and technology firms in the United States. Crowe uses its deep industry expertise to provide audit services to public and private entities while also helping clients reach their goals with tax, advisory, risk and performance services. Crowe is recognized by many organizations as one of the country's best places to work. Crowe serves clients worldwide as an independent member of Crowe Global, one of the largest global accounting networks in the world. The network consists of more than 200 independent accounting and advisory services firms in more than 130 countries around the world.

Industry

Accounting services

Company size

1,001 - 5,000 Employees

Headquarters location

Chicago, IL, US

Social media