1

Third Party Risk Analyst Jobs in Reston, VA (NOW HIRING)

Senior SCRM Analyst

Mclean, VA

$89K - $117K/yr

  • Medical

  • Dental

  • Vision

Senior SCRM Analyst Location: Arlington, VA Work Environment: Client-site required with limited ... Knowledge of supply chain risk management frameworks, supplier risk assessment, or third-party risk ...

Governance & Risk Analyst

Alexandria, VA · Hybrid

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

We seek Governance & Risk Analyst | Human Capital Programmatic Evaluation & Compliance - Policy & Governance Support [NSF0102102] candidates with relevant Government And Public Services Sector ...

Overview SOSi is seeking a Risk and Vulnerability Analyst II to support vulnerability assessment ... third-party tools Coordinate with cyber defense engineering and system teams to support tool ...

Overview SOSi is seeking a Risk and Vulnerability Analyst II to support vulnerability assessment ... data into third-party tools • Coordinate with cyber defense engineering and system teams to ...

Showing results 41-60

Third Party Risk Analyst information

See Reston, VA salary details

$16

$42

$68

How much do third party risk analyst jobs pay per hour?

As of Aug 19, 2026, the average hourly pay for third party risk analyst in Reston, VA is $42.12, according to ZipRecruiter salary data. Most workers in this role earn between $31.01 and $51.25 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a third party risk analyst?

To thrive as a Third Party Risk Analyst, you need a solid understanding of risk management principles, vendor assessment processes, and compliance regulations, often supported by a degree in business, finance, or information security. Familiarity with risk assessment tools, GRC (Governance, Risk, and Compliance) platforms, and certifications like CTPRA or CRISC is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set exceptional analysts apart in this field. These competencies are crucial for identifying and mitigating vendor risks, ensuring organizational compliance, and safeguarding sensitive data.

How does a third party risk analyst typically collaborate with other departments to manage vendor risks?

A Third Party Risk Analyst works closely with departments such as procurement, legal, IT security, and compliance to assess and mitigate potential risks posed by vendors and service providers. Collaboration often involves reviewing contracts, conducting risk assessments, and ensuring vendors meet the organization's security and compliance requirements. Regular communication and joint meetings are common to align on risk standards and address any emerging concerns. This cross-functional teamwork ensures a comprehensive approach to managing third-party risks and maintaining regulatory compliance.

What is the difference between Third Party Risk Analyst vs Vendor Risk Analyst?

AspectThird Party Risk AnalystVendor Risk Analyst
CertificationsCertifications like CRISC, CISA often preferredSimilar certifications, often the same as Third Party Risk Analyst
Work EnvironmentFinancial institutions, corporations managing third-party relationshipsOrganizations assessing vendor security, compliance, and performance
Industry UsageCommon in finance, healthcare, and tech sectorsPrimarily in procurement, supply chain, and IT sectors

The main difference is that a Third Party Risk Analyst focuses on assessing risks associated with all third-party relationships, including vendors, partners, and service providers. A Vendor Risk Analyst specifically concentrates on evaluating risks posed by vendors and suppliers. While their roles overlap, the Third Party Risk Analyst has a broader scope, often handling multiple types of third-party relationships within various industries.

How much does a third party risk analyst make?

A third party risk analyst typically earns between $60,000 and $100,000 annually, depending on experience, location, and industry. Entry-level positions may start lower, while experienced analysts with certifications like CRISC or CISSP can earn higher salaries. The role often requires strong analytical skills and knowledge of risk management tools.

Is third party risk analyst a good career?

A third party risk analyst evaluates and manages risks associated with external vendors and partners, often requiring knowledge of compliance, cybersecurity, and risk management tools. The role offers opportunities in industries such as finance, healthcare, and technology, with a growing demand due to increasing regulatory requirements and supply chain complexities.

What does a third party risk analyst do?

A third party risk analyst evaluates the risks associated with an organization's external vendors, suppliers, and partners. They assess compliance, security, and operational risks using tools like risk management frameworks and may conduct audits or reviews to ensure third-party adherence to company standards.

What are popular job titles related to Third Party Risk Analyst jobs in Reston, VA?

For Third Party Risk Analyst jobs in Reston, VA, the most frequently searched job titles are:

What job categories do people searching Third Party Risk Analyst jobs in Reston, VA look for?

The top searched job categories for Third Party Risk Analyst jobs in Reston, VA are:

What cities near Reston, VA are hiring for Third Party Risk Analyst jobs?

Cities near Reston, VA with the most Third Party Risk Analyst job openings:

Infographic showing various Third Party Risk Analyst job openings in Reston, VA as of August 2026, with employment types broken down into 1% As Needed, 86% Full Time, 9% Part Time, and 4% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $87,608 per year, or $42.1 per hour.

$89K - $117K/yr

Full-time

Medical, Dental, Vision

Re-posted 27 days ago


Job description

Senior SCRM Analyst

Location: Arlington, VA
Work Environment: Client-site required with limited remote flexibility
Clearance: Active Top Secret required; TS/SCI strongly preferred

Role Summary:

Exiger is seeking a Senior Supply Chain Risk Management (SCRM) Analyst to support a high-impact national security customer in assessing, prioritizing, and mitigating supply chain risks across critical programs, technologies, and industrial base dependencies. This role is designed for an experienced analyst who can operate in a senior advisory capacity, translate complex supplier and risk data into decision-grade insights, and support customer stakeholders in understanding vulnerabilities that may affect mission readiness, resilience, and operational continuity.

The Senior SCRM Analyst will sit directly with the customer and will partner closely with Exiger Government Delivery, product, data, and mission teams to produce analytical products, risk assessments, mitigation recommendations, and executive-ready briefings. The position requires strong judgment, exceptional written communication, and the ability to operate credibly with senior government stakeholders in a fast-moving, mission-driven environment.

What You'll Do:
  • Conduct advanced supply chain risk assessments across mission-critical programs, suppliers, components, and technology areas.
  • Identify supplier vulnerabilities, single-source dependencies, capacity constraints, obsolescence risks, foreign ownership, control, or influence indicators, and other risks affecting mission assurance.
  • Analyze supplier networks, industrial base dependencies, sourcing pathways, and risk exposure using proprietary, government-furnished, and open-source datasets.
  • Develop decision-support products that connect supplier risk, operational impact, mitigation options, and recommended courses of action.
  • Support industrial base planning, resilience analysis, and supply chain visibility efforts for senior government stakeholders.
  • Produce structured risk assessments, executive briefings, recurring status reports, and evidence-backed analytical products.
  • Partner with customer stakeholders to validate findings, refine analytical priorities, and translate requirements into repeatable workflows.
  • Support risk mitigation planning, alternate sourcing analysis, action tracking, and closure criteria for identified vulnerabilities.
  • Maintain clear documentation, source attribution, analytical methodologies, and audit-ready evidence packages.
  • Collaborate with Exiger data, product, and engineering teams to improve data quality, analytical tooling, dashboards, and repeatable delivery processes.
What You Need:
  • Active Top Secret clearance required; TS/SCI strongly preferred.
  • Ability to work regularly at a secure customer site in the National Capital Region, with onsite presence as required by the customer.
  • Strong analytical judgment and ability to turn complex supply chain, supplier, and risk data into clear recommendations.
  • Excellent written communication skills, including experience producing executive-level briefings, risk summaries, and decision-support materials.
  • Proficiency with Excel and familiarity with analytical tools such as SQL, Python, Tableau, Power BI, Palantir, or similar platforms.
  • Ability to operate independently, manage competing priorities, and deliver high-quality work under compressed timelines.
  • Comfortability working directly with government stakeholders, technical teams, and cross-functional delivery partners.
Professional Experience Required:
  • 6+ years of experience in supply chain risk management, intelligence analysis, defense industrial base analysis, logistics, acquisition, operations research, or a related analytical discipline.
  • Experience supporting Department of Defense, Intelligence Community, federal civilian, aerospace and defense, or other national security customers.
  • Demonstrated experience analyzing supplier networks, industrial base dependencies, critical technologies, mission risk, or third-party/vendor risk.
  • Experience producing structured analytical products for senior stakeholders, including briefings, risk assessments, mitigation plans, and recurring program deliverables.
  • Experience conducting structured research and maintaining supporting documentation, evidence packages, and source attribution.
Preferred Qualifications:
  • Experience with industrial base planning, defense acquisition, sustainment, logistics, or mission assurance programs.
  • Knowledge of supply chain risk management frameworks, supplier risk assessment, or third-party risk management practices.
  • Familiarity with CAGE codes, NSNs, DLA, SAM.gov, GIDEP, FED-LOG, FPDS, USAspending.gov, or related defense and supplier data sources.
  • Experience with FOCI analysis, sanctions screening, CFIUS-related research, geopolitical risk analysis, or OSINT methodologies.
  • Experience developing mitigation strategies, alternate sourcing recommendations, or industrial base resilience plans.
  • Experience briefing senior government, military, or executive stakeholders.
Why Exiger:

Exiger is transforming how government and commercial organizations understand, manage, and mitigate supply chain risk. Our Government Delivery team supports mission-critical national security programs by combining AI-enabled technology, proprietary data, advanced analytics, and experienced practitioners to deliver actionable insights for real-world decision-making.

In this role, you will work at the intersection of supply chain resilience, national security, industrial base readiness, and advanced analytics. You will help customers identify vulnerabilities, prioritize risk, and strengthen mission-critical supply chains that matter.

Why You'll Love Working at Exiger:
  • High-performance culture rooted in accountability, collaboration, and a shared commitment to excellence.
  • Discretionary Time Off with no maximum limits.
  • Industry-leading health, vision, and dental benefits.
  • Competitive compensation package, including base salary and bonus opportunity.
  • 16 weeks of fully paid parental leave.
  • Flexible, hybrid approach to working, subject to customer-site requirements.
  • Wellness stipends and employee health programming.
  • Career development support and certification reimbursement.

#Li-Onsite