1

Third Party Risk Assessment Jobs in Virginia (NOW HIRING)

Senior SCRM Analyst

Mclean, VA · On-site

$89K - $117K/yr

Knowledge of supply chain risk management frameworks, supplier risk assessment, or third-party risk management practices. * Familiarity with CAGE codes, NSNs, DLA, SAM.gov, GIDEP, FED-LOG, FPDS ...

Showing results 41-60

Third Party Risk Assessment information

See Virginia salary details

$44.1K

$85.9K

$123.4K

How much do third party risk assessment jobs pay per year?

As of Aug 11, 2026, the average yearly pay for third party risk assessment in Virginia is $85,944.00, according to ZipRecruiter salary data. Most workers in this role earn between $56,000.00 and $99,100.00 per year, depending on experience, location, and employer.

What are some challenges commonly faced in a third party risk assessment role?

Professionals in Third Party Risk Assessment often face the challenge of managing a large and diverse portfolio of third-party vendors, each with unique risk factors and compliance requirements. Balancing thorough risk analysis with tight project deadlines can require strong organizational and prioritization skills. Additionally, staying current with evolving regulatory standards and ensuring consistent communication with both internal stakeholders and external vendors can be demanding. However, these challenges also provide opportunities to develop critical expertise in risk management, improve cross-functional collaboration, and contribute significantly to organizational resilience and reputation.

What is a third party risk assessment?

A Third Party Risk Assessment job involves evaluating the security, compliance, and operational risks associated with external vendors, suppliers, or partners. Professionals in this role assess third-party practices to ensure they meet regulatory and organizational standards. They analyze potential risks such as data breaches, financial instability, and operational disruptions. The job typically involves conducting risk assessments, reviewing contracts, and working with internal stakeholders to mitigate risks.

What are the key skills and qualifications needed to thrive in the third party risk assessment position, and why are they important?

To thrive in Third Party Risk Assessment, you need a solid understanding of risk management frameworks, vendor due diligence processes, and regulatory compliance, typically supported by a degree in business, IT, or a related field. Familiarity with GRC (Governance, Risk, and Compliance) platforms, risk assessment tools, and relevant certifications such as Certified Third Party Risk Professional (CTPRP) or Certified Risk Manager (CRM) is highly desirable. Excellent communication, analytical thinking, and problem-solving abilities set top candidates apart, as do project management skills. These skills are vital to effectively identify, evaluate, and mitigate risks posed by third-party vendors, ensuring the organization's overall security and compliance.

What are popular job titles related to Third Party Risk Assessment jobs in Virginia? For Third Party Risk Assessment jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Third Party Risk Assessment jobs in Virginia look for? The top searched job categories for Third Party Risk Assessment jobs in Virginia are:
What cities in Virginia are hiring for Third Party Risk Assessment jobs? Cities in Virginia with the most Third Party Risk Assessment job openings:
Infographic showing various Third Party Risk Assessment job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 89% Full Time, 8% Part Time, and 2% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $85,944 per year, or $41.3 per hour.

Manager, Security Engineering, Secure Third Party Tools

PVH (Tommy Hilfiger/Calvin Klein)

Arlington, VA • On-site

$180 - $240/hr

Other

Posted 6 days ago


PVH Corp. rating

6.3

Company rating: 6.3 out of 10

Based on 7 frontline employees who took The Breakroom Quiz


Job description

We're looking for an experienced Security Engineering Manager to join our Secure Third Party Tools team. Our team builds the standards, controls, and expert review processes that ensure external vendors, software providers, and services meet Amazon's security bar before they interact with our data or systems.

In this role, you'll manage a team of Security Engineers who define and maintain the security controls that 3P are assessed against, conduct expert security reviews for complex engagements, and provide continuous feedback that improves the accuracy of our assessment automation. You'll be responsible for both the technical quality of your team's output and the professional growth of your team.

This is a role where security expertise meets people leadership. You'll set direction for your team while partnering closely with Product, Software Engineering and Applied Science, to ensure that security standards are effectively translated into scalable, automated tooling. Your team's work directly determines whether Amazon can move fast with 3P while maintaining the highest security standards.

Key job responsibilities
  • Lead a team of Security Engineers who define and enforce Amazon's third-party security controls.
  • Set the security vision and strategy for your team's domain-defining which security controls to prioritize, how to evolve them against emerging threats, and how to integrate them into automated assessment systems.
  • Partner with Product and Engineering to translate security requirements into tool capabilities, providing subject-matter expertise that shapes product roadmaps and feature priorities.
  • Drive the feedback loop between manual expert reviews and automated assessment outputs, continuously improving precision and reducing the need for human intervention.
  • Conduct threat modeling, security architecture reviews, and risk assessments for complex or novel third-party integrations.
  • Develop and maintain security guidance, runbooks, and documentation for internal teams and third-party vendors.
  • Author documents for leadership reviews, communicating security risks, resource needs, and strategic priorities clearly and concisely.
  • Build mechanisms for operational excellence-tracking team capacity, review throughput, quality metrics, and backlog health.
About the teamAbout Amazon SecurityDiverse Experiences

Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.

Why Amazon Security?

At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Inclusive Team Culture

In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth

We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Work/Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.

Basic Qualifications:
  • 5+ years of managing and developing teams experience
  • 5+ years of progressive work within a software security team or related operating environment experience
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • Knowledge of security of web services, video content protection technologies, cryptography, network security protocols and operating system security
  • Experience applying threat modeling or other risk identification techniques or equivalent
Preferred Qualifications:
  • information security professional certification (SANS GIAC, CISSP etc.)
  • Master's degree in Computer Science or a related field
  • Knowledge of information security technologies such as security design review, threat modeling, risk analysis, and software testing techniques

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran st

#J-18808-Ljbffr

What PVH Corp. employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom