1

Third Party Risk Analyst Jobs in Rhode Island (NOW HIRING)

Third Party Specialist

Warwick, RI · On-site

$19.75 - $26.25/hr

... analyzing and trending of the accounts receivable. The Third Party Specialist functions as a billing liaison to patients, providers, and insurance carriers, internal and external customers to ensure ...

Information Security Analyst

Providence, RI · On-site +1

$83K - $124K/yr

Conduct security, privacy, and risk assessments of third-party vendors, delegates, and AI-enabled solutions to identify potential risks and vulnerabilities. * Collaborate with business and technology ...

Sr. Internal Auditor

West Greenwich, RI · On-site

$92K - $114K/yr

... risk assessment, internal controls, root cause analysis, and audit reporting. * Experience auditing or supporting compliance programs such as AML, anti-corruption, third-party due diligence, data ...

Sr. Internal Auditor

West Greenwich, RI · On-site

$92K - $114K/yr

... risk assessment, internal controls, root cause analysis, and audit reporting. * Experience auditing or supporting compliance programs such as AML, anti-corruption, third-party due diligence, data ...

Sr. Internal Auditor

West Greenwich, RI · On-site

$92K - $114K/yr

... risk assessment, internal controls, root cause analysis, and audit reporting. * Experience auditing or supporting compliance programs such as AML, anti-corruption, third-party due diligence, data ...

Showing results 21-40

Third Party Risk Analyst information

See Rhode Island salary details

$15

$39

$64

How much do third party risk analyst jobs pay per hour?

As of Aug 10, 2026, the average hourly pay for third party risk analyst in Rhode Island is $39.65, according to ZipRecruiter salary data. Most workers in this role earn between $29.18 and $48.27 per hour, depending on experience, location, and employer.

How does a third party risk analyst typically collaborate with other departments to manage vendor risks?

A Third Party Risk Analyst works closely with departments such as procurement, legal, IT security, and compliance to assess and mitigate potential risks posed by vendors and service providers. Collaboration often involves reviewing contracts, conducting risk assessments, and ensuring vendors meet the organization's security and compliance requirements. Regular communication and joint meetings are common to align on risk standards and address any emerging concerns. This cross-functional teamwork ensures a comprehensive approach to managing third-party risks and maintaining regulatory compliance.

What is the difference between Third Party Risk Analyst vs Vendor Risk Analyst?

AspectThird Party Risk AnalystVendor Risk Analyst
CertificationsCertifications like CRISC, CISA often preferredSimilar certifications, often the same as Third Party Risk Analyst
Work EnvironmentFinancial institutions, corporations managing third-party relationshipsOrganizations assessing vendor security, compliance, and performance
Industry UsageCommon in finance, healthcare, and tech sectorsPrimarily in procurement, supply chain, and IT sectors

The main difference is that a Third Party Risk Analyst focuses on assessing risks associated with all third-party relationships, including vendors, partners, and service providers. A Vendor Risk Analyst specifically concentrates on evaluating risks posed by vendors and suppliers. While their roles overlap, the Third Party Risk Analyst has a broader scope, often handling multiple types of third-party relationships within various industries.

How much does a third-party risk analyst make?

A third-party risk analyst typically earns between $60,000 and $100,000 annually, depending on experience, location, and industry. Entry-level positions may start lower, while experienced analysts with certifications like CRISC or CISSP can earn higher salaries. The role often requires strong analytical skills and knowledge of risk management tools.

What does a third-party risk analyst do?

A third-party risk analyst evaluates the risks associated with an organization’s vendors, suppliers, and partners to ensure compliance and mitigate potential threats. They review contracts, perform risk assessments, and monitor third-party performance using tools like risk management software. Strong analytical skills and knowledge of regulatory standards are essential for this role.

What are the key skills and qualifications needed to thrive as a third party risk analyst?

To thrive as a Third Party Risk Analyst, you need a solid understanding of risk management principles, vendor assessment processes, and compliance regulations, often supported by a degree in business, finance, or information security. Familiarity with risk assessment tools, GRC (Governance, Risk, and Compliance) platforms, and certifications like CTPRA or CRISC is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set exceptional analysts apart in this field. These competencies are crucial for identifying and mitigating vendor risks, ensuring organizational compliance, and safeguarding sensitive data.
What are popular job titles related to Third Party Risk Analyst jobs in Rhode Island? For Third Party Risk Analyst jobs in Rhode Island, the most frequently searched job titles are:
What job categories do people searching Third Party Risk Analyst jobs in Rhode Island look for? The top searched job categories for Third Party Risk Analyst jobs in Rhode Island are:
Infographic showing various Third Party Risk Analyst job openings in Rhode Island as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $82,467 per year, or $39.6 per hour.

Technology Risk Senior Analyst- Data, AI and Emerging Technology

Citizens

Johnston, RI • Hybrid

$86K - $109K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 18 days ago


Job description

Description

Role Overview

The Data, AI and Emerging Technology Risk Senior Analyst will support first-line technology risk oversight for customized data platforms, data engineering enablement, and emerging AI/ML enablement capabilities. This role is designed as a low-to-no-code governance and oversight position focused on identifying, assessing, documenting, and helping mitigate technology, data, security, stability, third-party, and AI-related risks across hybrid-cloud and on-premises environments. The analyst will partner directly with engineering, data, API, BI, AI/ML, and risk stakeholders to provide risk coverage for data transformation platforms, customized subprocess tools, AI use case triage, model/AI engineering tooling, process mapping, RCSA work, issue management, and control uplift activities.

Responsibilities

  • Act as a first-line technology risk partner for customized data platforms and data engineering enablement areas, including Talend, CCM, Commercial Data Solutions, HR Data Solutions, Fraud Data Solutions, Leapfrog & Payments Solutions, Wealth Data Solutions, and related RFT engineering processes.
  • Support oversight of enterprise AI/ML enablement and tooling, including AWS Bedrock, SageMaker, H2O.ai, MLflow, Galileo/Arize, Gloo, AgentCore, and related AI/ML engineering processes.
  • Serve as a delegate for AI use case triage by reviewing intake information, identifying potential technology, data, security, operational, model, and control considerations, and coordinating with appropriate stakeholders for follow-up.
  • Perform stability and security discovery through periodic review of applications, code bases, logging and monitoring capabilities, authentication patterns, vulnerability data, and operational signals to identify gaps requiring risk escalation or remediation.
  • Lead or support process mapping, RCSA activities, control adequacy reviews, control uplift efforts, procedure updates, and control testing support across assigned data platform and AI/ML domains.
  • Identify, document, and steward technology risk issues through the enterprise issue management lifecycle, including issue creation, second-line challenge, action plan tracking, target date management, evidence review, closure, and significance downgrade support.
  • Analyze risk, security, operational, and compliance data from tools such as GRC Archer, ServiceNow, Splunk, Datadog, Qualys, Sonatype IQ, Nexus, Jira, and similar platforms to identify trends, gaps, and actionable risk insights.
  • Partner with first-line risk, technology, data engineering, AI/ML engineering, cybersecurity, third-party risk, audit, and second-line stakeholders to assess control design and effectiveness, support remediation, and drive risk-aligned outcomes.
  • Support third-party risk coordination, internal audit inquiries, regulatory requests, and information requests related to customized data platforms, AI/ML tooling, security findings, and technology control environments.
  • Develop clear, well-researched, data-driven risk reports, issue summaries, control documentation, stakeholder updates, and decision support materials within assigned deadlines.
  • Use strong organizational skills and tools such as Jira, Confluence, Visio, Excel, Tableau, and enterprise documentation repositories to manage concurrent workloads, stakeholder meetings, deliverables, and follow-ups.
  • Stay current on evolving data engineering, cloud, DevSecOps, AI/ML, model risk, data governance, security, and regulatory trends that may affect the bank's technology risk profile.

Team-Specific Requirements

Domain-Specific Technical Skills

  • Working knowledge of data processing, transformation, integration, ETL/ELT, data sharing, reporting, and analytics enablement patterns across hybrid-cloud and on-premises environments.
  • Familiarity with customized data platforms across a variety of deployment mores (private cloud, commercial-off-the-shelf, in-house, etc.) and technology tools supporting commercial, HR, fraud, payments, wealth, and risk/finance technology data solutions (e.g. Firco, Oracle EBS, Black Diamond Wealth, etc.).
  • Understanding of DevSecOps, CI/CD, source control, application deployment, logging, monitoring, vulnerability management, access control, and production support concepts.
  • Functional understanding of AI/ML engineering and enablement patterns, including model development workflows, feature/data pipelines, AI platform governance, model observability, and operational controls.
  • Ability to identify stability and security gaps such as missing monitoring, incomplete logging, authentication weaknesses, vulnerable components, incomplete operational procedures, or unclear ownership models.
  • Comfort working with incomplete information, asking probing questions, documenting process flows, and translating technical details into risk, control, and issue management language.

Team-Specific Tools, Platforms & Coverage Areas

  • Customized data platform support across a range of engineering processes and tools, inlcuding Talend, Master Data Management, Commercial, HR Data Solutions, Fraud Data Solutions, Leapfrog & Payments Solutions, Wealth Data Solutions, and RFT engineering processes.
  • Enterprise AI/ML enablement and tools: AWS Bedrock, SageMaker, H2O.ai, MLflow, Galileo/Arize, Gloo, AgentCore, and AI/ML engineering processes.
  • Risk, workflow, and documentation platforms: GRC Archer, ServiceNow, Jira, Confluence, Visio, Excel, Tableau, and enterprise documentation repositories.
  • Security, monitoring, and operational data sources: Splunk, Datadog, Qualys, Sonatype IQ, Nexus, code repositories, vulnerability findings, logging tools, and related engineering telemetry.
  • Primary stakeholder groups may include data engineering, RFT engineering, enterprise AI/ML enablement, platform owners, third-party risk, internal audit, second-line risk, and technology control owners.

Experience & Skills

Required:

  • 5-7 years of progressive experience in technology risk management, information security, data management, internal audit, engineering governance, or related technology oversight roles.
  • Practical understanding of data engineering, data transformation, ETL/ELT, API, BI/reporting, cloud, DevSecOps, CI/CD, and technology control environments.
  • Familiarity with AI/ML, Data Engineering and Data Platform enablement concepts, including AI use case intake, platform/tooling risk considerations, model lifecycle controls, data governance, security, observability, and operational readiness.
  • Experience conducting or supporting RCSAs, ad-hoc risk assessments, business initiative risk assessments, control adequacy reviews, issue management, control testing support, and audit/regulatory response activities.
  • Proficiency with GRC, ITSM, collaboration, and monitoring tools such as Archer, ServiceNow, Jira, Confluence, Splunk, Qualys, Datadog, Nexus, Sonatype IQ, Excel, and Tableau.
  • Strong analytical ability to interpret technical, security, operational, and risk data and convert findings into clear risk statements, control observations, remediation actions, and stakeholder-ready reporting.
  • Strong communication skills with the ability to engage technical contributors, platform owners, AI/ML teams, risk partners, audit stakeholders, and non-technical audiences.
  • Demonstrated ability to manage multiple concurrent priorities, recurring stakeholder meetings, time-sensitive deliverables, and issue/action plan deadlines with minimal oversight.

Preferred:

  • Experience in a regulated financial institution or banking environment, especially supporting enterprise data, risk, finance, or AI/ML technology platforms.
  • Operational knowledge of Python, SQL, or other scripting/querying skills to support data analysis, automation, risk reporting, or control validation activities.
  • Familiarity with AWS services, AI/ML tooling, data governance platforms, model observability tools, SOAR concepts, or DevSecOps automation patterns.
  • Prior experience coordinating with third-party risk, internal audit, second-line challenge teams, or control owners to resolve findings and support remediation evidence.

Education

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Data Analytics, Business, Risk Management, or a related field required; Master's degree preferred.
  • One or more of the following certifications are preferred:
  • CISA, CRISC, CISM, CISSP, PMI-RMP or equivalent technology risk/security certification
  • AWS Cloud Practitioner, AWS Solutions Architect, Azure Fundamentals, or comparable cloud certification
  • Data governance, AI/ML, analytics, or platform-specific certifications such as Collibra Ranger, CCDAK, IBM API Connect, or similar credentials

Hours & Work Schedule

  • Hours per Week: 40
  • Work Schedule: Monday-Friday
  • Hybrid: 4 days per week on-site, 1 day remote

Pay Transparency

The salary range for this position is $110,000 - $147,000 per year, plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to the budget, work location, and relevant skills and experience.

We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens' paid time off policy exceeds the mandatory, paid sick or paid time-away policy of every local and state jurisdiction in the United States. For an overview of our benefits, visit https://jobs.citizensbank.com/benefits .

Some job boards have started using jobseeker-reported data to estimate salary ranges for roles. If you apply and qualify for this role, a recruiter will discuss accurate pay guidance.

Equal Employment Opportunity

Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague's or a dependent's reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability.

Education:Why Work for UsEmployment Type: 1ST