1

Third Party Risk Analyst Jobs in Virginia (NOW HIRING)

Conduct third-party vendor security reviews and analyze contract clauses for risk exposure. * Integrate cyber threat intelligence into vendor evaluations to proactively mitigate emerging exposures.

New

Facilitate the completion of third party risk assessments, contract review/structuring, due ... analytical, problem-solving, and negotiation skills 4. Strong relationship management skills 5. ...

Business Risk Analyst

Vienna, VA · On-site

$45 - $55/hr

Risk Business Analyst Location: Vienna, VA (Hybrid) Pay Rate: Open to Both C2C and W2 options ... Experience in working with all levels of staff, management, stakeholders, and third parties

Required Skill and Experience The ideal candidate is a highly organized Risk Analyst with strong project management and documentation skills who can partner with stakeholders to identify, document ...

... Third-Party Risk Management, to support end‑to‑end risk governance across credit, capital, model, and regulatory dimensions. Leadership & Capability Development * Promote strong analytical ...

New

Showing results 41-60

Third Party Risk Analyst information

See Virginia salary details

$15

$40

$65

How much do third party risk analyst jobs pay per hour?

As of Sep 5, 2026, the average hourly pay for third party risk analyst in Virginia is $40.14, according to ZipRecruiter salary data. Most workers in this role earn between $29.57 and $48.85 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a third party risk analyst?

To thrive as a Third Party Risk Analyst, you need a solid understanding of risk management principles, vendor assessment processes, and compliance regulations, often supported by a degree in business, finance, or information security. Familiarity with risk assessment tools, GRC (Governance, Risk, and Compliance) platforms, and certifications like CTPRA or CRISC is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set exceptional analysts apart in this field. These competencies are crucial for identifying and mitigating vendor risks, ensuring organizational compliance, and safeguarding sensitive data.

How does a third party risk analyst typically collaborate with other departments to manage vendor risks?

A Third Party Risk Analyst works closely with departments such as procurement, legal, IT security, and compliance to assess and mitigate potential risks posed by vendors and service providers. Collaboration often involves reviewing contracts, conducting risk assessments, and ensuring vendors meet the organization's security and compliance requirements. Regular communication and joint meetings are common to align on risk standards and address any emerging concerns. This cross-functional teamwork ensures a comprehensive approach to managing third-party risks and maintaining regulatory compliance.

What is the difference between Third Party Risk Analyst vs Vendor Risk Analyst?

AspectThird Party Risk AnalystVendor Risk Analyst
CertificationsCertifications like CRISC, CISA often preferredSimilar certifications, often the same as Third Party Risk Analyst
Work EnvironmentFinancial institutions, corporations managing third-party relationshipsOrganizations assessing vendor security, compliance, and performance
Industry UsageCommon in finance, healthcare, and tech sectorsPrimarily in procurement, supply chain, and IT sectors

The main difference is that a Third Party Risk Analyst focuses on assessing risks associated with all third-party relationships, including vendors, partners, and service providers. A Vendor Risk Analyst specifically concentrates on evaluating risks posed by vendors and suppliers. While their roles overlap, the Third Party Risk Analyst has a broader scope, often handling multiple types of third-party relationships within various industries.

How much does a third party risk analyst make?

A third party risk analyst typically earns between $60,000 and $100,000 annually, depending on experience, location, and industry. Entry-level positions may start lower, while experienced analysts with certifications like CRISC or CISSP can earn higher salaries. The role often requires strong analytical skills and knowledge of risk management tools.

Is third party risk analyst a good career?

A third party risk analyst evaluates and manages risks associated with external vendors and partners, often requiring knowledge of compliance, cybersecurity, and risk management tools. The role offers opportunities in industries such as finance, healthcare, and technology, with a growing demand due to increasing regulatory requirements and supply chain complexities.

What does a third party risk analyst do?

A third party risk analyst evaluates the risks associated with an organization's external vendors, suppliers, and partners. They assess compliance, security, and operational risks using tools like risk management frameworks and may conduct audits or reviews to ensure third-party adherence to company standards.

What are the most commonly searched types of Third Party Risk Analyst jobs in Virginia?

The most popular types of Third Party Risk Analyst jobs in Virginia are:

What are popular job titles related to Third Party Risk Analyst jobs in Virginia?

For Third Party Risk Analyst jobs in Virginia, the most frequently searched job titles are:

What cities in Virginia are hiring for Third Party Risk Analyst jobs?

Cities in Virginia with the most Third Party Risk Analyst job openings:

Infographic showing various Third Party Risk Analyst job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 87% Physical, 4% Hybrid, and 9% Remote job distribution, with an average salary of $83,487 per year, or $40.1 per hour.

Procurement Risk & Compliance Lead

S&P Global

Centreville, VA • On-site

$155K/yr

Full-time

Re-posted 5 days ago


S&P Global rating

7.3

Company rating: 7.3 out of 10

Based on 10 frontline employees who took The Breakroom Quiz


Job description

The Role:

Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management.

Reporting to the Global Head of Procurement, the Procurement Risk & Compliance Lead, will lead a small team responsible for the operational implementation of the Company's vendor risk management process within Procurement. While Legal Risk & Compliance will design and maintain the enterprise risk framework, this role will be responsible for developing and building the third-party risk management function inside of procurement, aligning with enterprise risk domain owners (information security, HR, ethics and compliance, and finance), monitoring and mitigating supplier risk, and ensure proper governance across the procurement function.

This role serves as the operational bridge between Procurement, Legal, Risk & Compliance, and Information Security.

Responsibility and Impact:

Vendor Risk Process Operationalization

  • Translate the enterprise vendor risk framework into scalable procurement processes and policies.
  • Work with risk domain owners to define intake requirements and risk-tiering triggers for vendor engagements.
  • Monitor the TPRM process and ensure timely completeness of the risk reviews by the applicable risk domain owners.
  • Drive continuous improvement in vendor risk governance processes.
  • Maintain vendor risk attributes, classifications, and documentation repositories.
  • Partner with Finance Systems and IT to enhance automation and reporting.
  • Develop dashboards and reporting to monitor review completion, SLAs, and compliance trends.

Policy & Documentation Development

  • Draft and maintain procurement-facing vendor risk policies and SOPs.
  • Conduct training sessions for business stakeholders.

Risk Review Coordination & Enforcement

  • Monitor review timelines and escalate exceptions.
  • Maintain documentation of approvals, conditions, and remediation requirements.
  • Track and report compliance metrics to Procurement and Finance leadership.

Audit & Compliance Support

  • Maintain audit-ready documentation of vendor risk approvals and workflows.
  • Support SOX-related vendor governance controls where applicable.
  • Partner with Internal Audit on third-party risk assessments.
  • Support remediation efforts tied to vendor governance findings.
  • Promote a culture of governance and risk awareness.

What We're Looking For:

Basic Required Qualifications:

  • Bachelor's degree in Business, Supply Chain, Risk Management, Finance, or related field or equivalent relevant experience.
  • 7 to 10+ years of experience in Procurement, Third-Party Risk, Compliance, or Governance.
  • Experience in a publicly traded organization required.
  • Strong understanding of third-party risk domains, including:
    • Information security
    • Data privacy
    • Regulatory and compliance risk
    • Operational and financial risk
  • Experience developing policy documentation and process controls.
  • Strong systems and workflow configuration experience.
  • Must be a results-focused team player and adapt well to a multitasking, fast paced environment with changing priorities and challenges
  • Strong organizational, presentation and communication skills.
  • Experience working cross-functionally with Technology, Legal, Finance, and Risk teams.

Additional Preferred Qualifications:

  • Experience with LogicGate or similar TPRM tool
  • Governance-oriented with strong attention to detail.
  • Systems-minded and process-driven.
  • Confident cross-functional influencer.
  • Able to enforce controls in a collaborative but firm manner.
  • Comfortable operating in a transformation-oriented, post-spin environment.

If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!

It is the policy of Mobility to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, Mobility will provide reasonable accommodations for qualified individuals with disabilities.


What S&P Global employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom