1

Third Party Risk Analyst Jobs in Virginia (NOW HIRING)

next page

Showing results 1-20

People also search for

Third Party Risk Analyst information

See Virginia salary details

$15

$40

$65

How much do third party risk analyst jobs pay per hour?

As of Jun 11, 2026, the average hourly pay for third party risk analyst in Virginia is $40.14, according to ZipRecruiter salary data. Most workers in this role earn between $29.57 and $48.85 per hour, depending on experience, location, and employer.

How does a Third Party Risk Analyst typically collaborate with other departments to manage vendor risks?

A Third Party Risk Analyst works closely with departments such as procurement, legal, IT security, and compliance to assess and mitigate potential risks posed by vendors and service providers. Collaboration often involves reviewing contracts, conducting risk assessments, and ensuring vendors meet the organization's security and compliance requirements. Regular communication and joint meetings are common to align on risk standards and address any emerging concerns. This cross-functional teamwork ensures a comprehensive approach to managing third-party risks and maintaining regulatory compliance.

What is the difference between Third Party Risk Analyst vs Vendor Risk Analyst?

AspectThird Party Risk AnalystVendor Risk Analyst
CertificationsCertifications like CRISC, CISA often preferredSimilar certifications, often the same as Third Party Risk Analyst
Work EnvironmentFinancial institutions, corporations managing third-party relationshipsOrganizations assessing vendor security, compliance, and performance
Industry UsageCommon in finance, healthcare, and tech sectorsPrimarily in procurement, supply chain, and IT sectors

The main difference is that a Third Party Risk Analyst focuses on assessing risks associated with all third-party relationships, including vendors, partners, and service providers. A Vendor Risk Analyst specifically concentrates on evaluating risks posed by vendors and suppliers. While their roles overlap, the Third Party Risk Analyst has a broader scope, often handling multiple types of third-party relationships within various industries.

What does a Third Party Risk Analyst do?

A Third Party Risk Analyst is responsible for assessing, monitoring, and managing the risks that arise from an organization's relationships with external vendors, suppliers, or partners. They evaluate third parties to ensure they comply with regulatory standards, information security requirements, and company policies. Their role often includes conducting risk assessments, reviewing contracts, ensuring ongoing compliance, and recommending mitigation strategies to minimize potential risks to the organization.

What are the key skills and qualifications needed to thrive as a Third Party Risk Analyst, and why are they important?

To thrive as a Third Party Risk Analyst, you need a solid understanding of risk management principles, vendor assessment processes, and compliance regulations, often supported by a degree in business, finance, or information security. Familiarity with risk assessment tools, GRC (Governance, Risk, and Compliance) platforms, and certifications like CTPRA or CRISC is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set exceptional analysts apart in this field. These competencies are crucial for identifying and mitigating vendor risks, ensuring organizational compliance, and safeguarding sensitive data.
What are the most commonly searched types of Third Party Risk Analyst jobs in Virginia? The most popular types of Third Party Risk Analyst jobs in Virginia are:
What are popular job titles related to Third Party Risk Analyst jobs in Virginia? For Third Party Risk Analyst jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Third Party Risk Analyst jobs in Virginia look for? The top searched job categories for Third Party Risk Analyst jobs in Virginia are:
What cities in Virginia are hiring for Third Party Risk Analyst jobs? Cities in Virginia with the most Third Party Risk Analyst job openings:
Infographic showing various Third Party Risk Analyst job openings in Virginia as of June 2026, with employment types broken down into 90% Full Time, 7% Part Time, and 3% Contract. Highlights an 89% Physical, 4% Hybrid, and 7% Remote job distribution, with an average salary of $83,487 per year, or $40.1 per hour.
Governance, Risk, and Compliance (GRC) Analyst

Governance, Risk, and Compliance (GRC) Analyst

EdgeConneX

Herndon, VA

Other

Posted 16 days ago


Job description

We are seeking a highly motivated and experienced Governance, Risk, and Compliance (GRC) Analyst to join our team. The ideal candidate will have at least five years of experience in GRC or IT risk, a bachelor's degree or higher in a related field, and professional certifications in GRC or cybersecurity. As a GRC Analyst, you will play a pivotal role in ensuring our organization adheres to regulatory requirements, manage risks effectively, and maintain robust governance practices for industry standards, frameworks and international data protection law.

Responsibilities:

  • Develop, implement, and maintain governance, risk, and compliance frameworks, policies, standards and procedures.
  • Conduct risk assessments and analyze potential threats to the organization's information systems and business operations.
  • Monitor compliance with internal policies and external regulatory requirements (e.g., NIS2, DORA, ISO27001, AICPA Trust Principles, NIST, CIS, GDPR, SOX, HIPAA).
  • Track changes to regional data protection law in the regions where EdgeConneX operates (APAC, EU, North America and South America)
  • Collaborate with cross-functional teams to identify, assess, and mitigate risks across the organization.
  • Maintain risk registers, compliance metrics, and reporting dashboards
  • Support third-party risk management and vendor security assessments
  • Prepare and present regular reports on risk management activities, compliance status, and remediation efforts to management.
  • Support internal and external audits, including gathering documentation and facilitating audit processes.
  • Stay up to date with changes in relevant laws, regulations, and industry best practices.
  • Assist in the development and delivery of training programs related to governance, risk, and compliance topics.
  • Contribute to continuous improvement of GRC processes and tooling

Required education & experience:

  • Bachelor's degree or higher in Information Security, Computer Science, Business Administration, or a related field.
  • Minimum of 5 years of professional experience in governance, risk, and compliance or a related discipline.
  • Professional certifications such as CISA, CRISC, CISSP, CISM, ISO27001LA or similar are required.
  • Strong understanding of regulatory requirements and frameworks (e.g., ISO 27001, NIST, PCI DSS).
  • Risk assessment methodologies and control testing
  • Excellent analytical and problem-solving skills.
  • Strong communication and interpersonal skills, with the ability to work collaboratively across departments.
  • Experience with:
    • Policy development and lifecycle management
    • Third-party/vendor risk assessments
    • GRC tools and risk management platforms (e.g., DRATA, VANTA, Archer, OneTrust)
  • Detail-oriented and highly organized, with a proactive approach to identifying and managing risks.

Preferred experience:

  • Experience with GRC software platforms and tools.
  • Project management experience or certification.
  • Experience in a regulated industry (e.g., datacenter, finance, technology).
  • Ability to train and mentor junior staff.