The Analyst will work with Third-Party Risk Management, Privacy and Legal Counsel, Procurement and Contract Managers, Compliance, and Business Owners to develop and maintain an internal service model ...
The Analyst will work with Third-Party Risk Management, Privacy and Legal Counsel, Procurement and Contract Managers, Compliance, and Business Owners to develop and maintain an internal service model ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
Sr. Cyber Assurance Analyst, Starlink
Redmond, WA · On-site
$130K - $200K/yr
... ANALYST, STARLINK Cyber Assurance is the practice of providing confidence that systems, products ... Support third-party risk management efforts including supplier onboarding and periodic cyber ...
Sr. Cyber Assurance Analyst, Starlink
Redmond, WA · On-site
$130K - $200K/yr
... ANALYST, STARLINK Cyber Assurance is the practice of providing confidence that systems, products ... Support third-party risk management efforts including supplier onboarding and periodic cyber ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
Sr. Cyber Assurance Analyst, Starlink
Redmond, WA · On-site +1
$130K - $200K/yr
SR. CYBER ASSURANCE ANALYST, STARLINK Cyber Assurance is the practice of providing confidence that ... Support third-party risk management efforts including supplier onboarding and periodic cyber ...
Sr. Cyber Assurance Analyst, Starlink
Redmond, WA · On-site +1
$130K - $200K/yr
SR. CYBER ASSURANCE ANALYST, STARLINK Cyber Assurance is the practice of providing confidence that ... Support third-party risk management efforts including supplier onboarding and periodic cyber ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
We help with security risk reduction, by identifying required security measures, helping determine ... third party products and services, collaborate on securing integrations of third party products ...
... third party risk issues and vulnerabilities by working with multiple stakeholder teams, including Privacy, Legal, HR, IT, etc - Lead and execute internal security and data usage assessments ...
... third party risk issues and vulnerabilities by working with multiple stakeholder teams, including Privacy, Legal, HR, IT, etc - Lead and execute internal security and data usage assessments ...
... third party risk issues and vulnerabilities by working with multiple stakeholder teams, including Privacy, Legal, HR, IT, etc - Lead and execute internal security and data usage assessments ...
... third party risk issues and vulnerabilities by working with multiple stakeholder teams, including Privacy, Legal, HR, IT, etc - Lead and execute internal security and data usage assessments ...
... third party risk issues and vulnerabilities by working with multiple stakeholder teams, including Privacy, Legal, HR, IT, etc - Lead and execute internal security and data usage assessments ...
... third party risk issues and vulnerabilities by working with multiple stakeholder teams, including Privacy, Legal, HR, IT, etc - Lead and execute internal security and data usage assessments ...
... and risk assessments for complex or novel third-party integrations. - Develop and maintain security guidance, runbooks, and documentation for internal teams and third-party vendors. - Author ...
... and risk assessments for complex or novel third-party integrations. - Develop and maintain security guidance, runbooks, and documentation for internal teams and third-party vendors. - Author ...
Head of Internal Audit
Seattle, WA · On-site
$200K - $320K/yr
Strengthen technology, cybersecurity, identity, and third-party risk assurance in close ... analytics, and enterprise influence. * Communicate clearly with executive leadership and the Audit ...
Head of Internal Audit
Seattle, WA · On-site
$200K - $320K/yr
Strengthen technology, cybersecurity, identity, and third-party risk assurance in close ... analytics, and enterprise influence. * Communicate clearly with executive leadership and the Audit ...
... and risk assessments for complex or novel third-party integrations. - Develop and maintain security guidance, runbooks, and documentation for internal teams and third-party vendors. - Author ...
... and risk assessments for complex or novel third-party integrations. - Develop and maintain security guidance, runbooks, and documentation for internal teams and third-party vendors. - Author ...
Operational Risk Analyst (On-site)
Tacoma, WA · On-site
$36.44 - $45.55/hr
Our Risk and Compliance team is seeking an operational risk analyst to join the team. This position is responsible for supporting the Operational Risk Management (ORM) framework under the Enterprise ...
Operational Risk Analyst (On-site)
Tacoma, WA · On-site
$36.44 - $45.55/hr
Our Risk and Compliance team is seeking an operational risk analyst to join the team. This position is responsible for supporting the Operational Risk Management (ORM) framework under the Enterprise ...
The Analyst reports to the Risk Mitigation Research Manager and works collaboratively with attorneys, professional staff, and professional departments to fulfill research requests. ESSENTIAL ...
The Analyst reports to the Risk Mitigation Research Manager and works collaboratively with attorneys, professional staff, and professional departments to fulfill research requests. ESSENTIAL ...
Risk Analyst (Seattle on-site only)
$70K - $110K/yr
The role We're adding a Risk Analyst to our team to help us build and scale our user-facing products. You'll work closely with product, machine learning, and business operations to help people ...
Quick apply
Risk Analyst (Seattle on-site only)
$70K - $110K/yr
The role We're adding a Risk Analyst to our team to help us build and scale our user-facing products. You'll work closely with product, machine learning, and business operations to help people ...
Risk Analyst (Seattle on-site only)
$70K - $110K/yr
The role We're adding a Risk Analyst to our team to help us build and scale our user-facing products. You'll work closely with product, machine learning, and business operations to help people ...
Risk Analyst (Seattle on-site only)
$70K - $110K/yr
The role We're adding a Risk Analyst to our team to help us build and scale our user-facing products. You'll work closely with product, machine learning, and business operations to help people ...
Principal Enterprise Risk Manager
Seattle, WA · On-site
Analyze and aggregate risk data from across functions to generate actionable insights. * Define ... Expertise in identifying, assessing, and mitigating risks associated with third-party vendor ...
Principal Enterprise Risk Manager
Seattle, WA · On-site
Analyze and aggregate risk data from across functions to generate actionable insights. * Define ... Expertise in identifying, assessing, and mitigating risks associated with third-party vendor ...
Business Analyst
Seattle, WA · On-site
Note: for Critical tickets brought in mid sprint, analyze and refine ticket to mitigate risk of ... Partnering with Third Party Teams (internal/external) * Facilitate necessary conversations with ...
Business Analyst
Seattle, WA · On-site
Note: for Critical tickets brought in mid sprint, analyze and refine ticket to mitigate risk of ... Partnering with Third Party Teams (internal/external) * Facilitate necessary conversations with ...
Third Party Risk Analyst information
See Seattle, WA salary details
$17.52 - $22.74
3% of jobs
$22.74 - $27.97
7% of jobs
$27.97 - $33.19
12% of jobs
$34.22 is the 25th percentile. Wages below this are outliers.
$33.19 - $38.42
15% of jobs
$38.42 - $43.65
13% of jobs
The median wage is $43.82 / hr.
$43.65 - $48.87
16% of jobs
$48.87 - $54.10
8% of jobs
$54.75 is the 75th percentile. Wages above this are outliers.
$54.10 - $59.32
11% of jobs
$59.32 - $64.55
6% of jobs
$64.55 - $69.77
6% of jobs
$69.77 - $75
3% of jobs
$17
$46
$74
How much do third party risk analyst jobs pay per hour?
How does a third party risk analyst typically collaborate with other departments to manage vendor risks?
What is the difference between Third Party Risk Analyst vs Vendor Risk Analyst?
| Aspect | Third Party Risk Analyst | Vendor Risk Analyst |
|---|---|---|
| Certifications | Certifications like CRISC, CISA often preferred | Similar certifications, often the same as Third Party Risk Analyst |
| Work Environment | Financial institutions, corporations managing third-party relationships | Organizations assessing vendor security, compliance, and performance |
| Industry Usage | Common in finance, healthcare, and tech sectors | Primarily in procurement, supply chain, and IT sectors |
The main difference is that a Third Party Risk Analyst focuses on assessing risks associated with all third-party relationships, including vendors, partners, and service providers. A Vendor Risk Analyst specifically concentrates on evaluating risks posed by vendors and suppliers. While their roles overlap, the Third Party Risk Analyst has a broader scope, often handling multiple types of third-party relationships within various industries.
How much does a third-party risk analyst make?
What does a third-party risk analyst do?
What are the key skills and qualifications needed to thrive as a third party risk analyst?

Contractor
Re-posted 13 days ago
Job description
Job Title: "Information Security Specialist" (Cyber security analysis)
Location: Bellevue WA
Duration: 9+ Months (with high possibility of extending into full time)
Job Description:
This position is in Corporate Information Security and under the direction of the Manager, Third-Party Cybersecurity Assessments. The Cybersecurity Assessment Analyst will perform cybersecurity assessments on new and existing third parties. The Analyst will construct detailed and summary reports of assessments, including customized reports, as needed. The Analyst will work with Subject Matter Experts (SME) to develop and apply risk assessment criteria (aligned with Policy) to new and existing suppliers using internal and external business intelligence. The Analyst will work with Third-Party Risk Management, Privacy and Legal Counsel, Procurement and Contract Managers, Compliance, and Business Owners to develop and maintain an internal service model that informs the business of key risks in a timely manner to limit unnecessary impediments and avoid bureaucracy.
Specific responsibilities:
- Coordinate the development of  information security policies, standards and procedures. Work with key IT offices, data custodians and governance groups in the development of such policies. Ensure that company policies support compliance with external requirements. Oversee the dissemination of policies, standards and procedures to the user community
- Coordinate the development and delivery of an education and training program on information security and privacy matters for employees, other authorized users, and vendors
- Serve as the company compliance officer with respect to state and federal information security policies and regulations. Work with the -designated internal audit, SOX compliance, legal, and HR on compliance issues as necessary. Prepare and submit and submit required reports to external agencies.
- Develop and implement an Incident Reporting and Response System to address  security incidents (breaches), respond to alleged policy violations, or complaints from external parties.
- Serve as the official company contact point for information security, privacy and copyright infringement incidents, including relationships with law enforcement entities.
- Develop and implement an ongoing risk assessment program targeting information security and privacy matters; recommend methods for vulnerability detection and remediation, and oversee vulnerability testing.
Required Qualifications:
Talent management, results focus and inspirational leadership.
Essential Functions
Conduct third-party cybersecurity risk assessments, applying established criteria
Support assessment team with quality assurance reviews over work product and reporting
Collaborate with internal partners and third parties to mitigate and otherwise resolve third-party cyber risks
Consistently deliver on commitments, deadlines and objectives while remaining in scope and leveraging appropriate tools, methods, frameworks, and professional standards
Demonstrate consistent credibility with business partners and leadership while recommending initiatives, identifying gaps, and potential issues
Continuously demonstrate the ability to work independently while representing the services of the department with the highest level of professionalism
Demonstrate the ability to appropriately influence business decisions, and the professional judgment for selecting the appropriate methods and techniques to do so
Preferred Qualifications:
Solid background both educationally and via professional experience. No less than 3 years' professional experience in business operations, project/program management, finance, risk management, information security, business analytics or similar.
Experience in large companies and/or complex environments, or providing professional consulting services for them.
Demonstrated abilities in problem-solving and analysis: identifies issues, analyses information to assess root cause and relationships, risks, and potential risk responses. Proven ability to synthesize and summarize complex data into concise recommendations and reports.
Demonstrated strong business writing and professional oral communication skills.
Proven ability to balance multiple priorities, adapt to a constantly changing business environment, work independently, drive projects to completion, and meet deadlines in a fast-paced environment-with only periodic supervision.
Ability to work collaboratively and manage and initiate effective cross-functional relationships.
Strong computer skills, including MS Office products (e.g. Word, Excel, PowerPoint, Visio) and other business software to prepare reports, memos, summaries, and analyses.
Desired
Analytical - Synthesizes complex or diverse information; Collects and researches data; employs intuition and experience to complement data; Designs work flows and procedures.
Quality Management - Looks for ways to improve and promote quality; Demonstrates accuracy and thoroughness. Applies feedback to improve performance; Monitors own work to ensure quality
Planning/Organizing - Prioritizes and plans work activities to achieve success; Sets and achieves goals and objectives; Develops realistic action plans
Professionalism - Reacts well under pressure; Keeps commitments; Accepts responsibility for own actions.
Career Growth: Focus on cyber security auditing with potential advancement goals in engineering or threat analysis roles
Self-directed team player with Agile environment experience
Education
Minimum Required
Bachelor's Degree
Equivalent experience is acceptable.
License or Certification
Desired: (one of the following):
CISA (Certified Information Systems Auditor)
GSEC (GIAC Security Essentials Certification)
CompTIA - Security+
ECSA - EC-Council Certified Security Analyst
SSCP (Systems Security Certified Practitioner)
Other:
Six Sigma, PMP or Agile certificates
Other comments - suppliers:
Organizational skills; office suite knowledge; and good communication skills are "must haves". Cyber security analysis experience is preferred.
All your information will be kept confidential according to EEO guidelines.