Maintain and enhance third-party risk management frameworks, risk tiering methodologies, assessment templates, and governance processes to support a scalable, risk-based program. * Partner with Legal ...
Maintain and enhance third-party risk management frameworks, risk tiering methodologies, assessment templates, and governance processes to support a scalable, risk-based program. * Partner with Legal ...
Third Party Risk Manager
Charlotte, NC · On-site
Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards * Managing ...
Third Party Risk Manager
Charlotte, NC · On-site
Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards * Managing ...
Third Party Risk Manager
New York, NY · On-site
Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards * Managing ...
Third Party Risk Manager
New York, NY · On-site
Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards * Managing ...
Third Party Risk Specialist
$150K - $175K/yr
A Career with Point72's Third-Party Risk Team The ThirdParty Risk Management Team at Point72 is ... Drive timely risk assessments at vendor on-boarding, including accurate data capture, and adherence ...
Third Party Risk Specialist
$150K - $175K/yr
A Career with Point72's Third-Party Risk Team The ThirdParty Risk Management Team at Point72 is ... Drive timely risk assessments at vendor on-boarding, including accurate data capture, and adherence ...
Third Party Risk Manager
Indianapolis, IN · On-site
Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards * Managing ...
Third Party Risk Manager
Indianapolis, IN · On-site
Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards * Managing ...
Support Third-Party Risk Assessment reviews by helping evaluate AML and Sanctions risks associated with vendor, service provider, and third-party relationships, including review of relevant ...
Support Third-Party Risk Assessment reviews by helping evaluate AML and Sanctions risks associated with vendor, service provider, and third-party relationships, including review of relevant ...
Analyst, GBM AML Risk Assessment
Dallas, TX · On-site
Support Third-Party Risk Assessment reviews by helping evaluate AML and Sanctions risks associated with vendor, service provider, and third-party relationships, including review of relevant ...
Analyst, GBM AML Risk Assessment
Dallas, TX · On-site
Support Third-Party Risk Assessment reviews by helping evaluate AML and Sanctions risks associated with vendor, service provider, and third-party relationships, including review of relevant ...
$80K/yr
It mainly covers third party inherent risk identification, due diligence assessments, risk mitigation plan and on-going monitoring. Summary: This position is to assist the TPRM Manager while working ...
New
$80K/yr
It mainly covers third party inherent risk identification, due diligence assessments, risk mitigation plan and on-going monitoring. Summary: This position is to assist the TPRM Manager while working ...
New
Oversee risk-based third-party due diligence, risk assessments, and ongoing monitoring activities across the full third-party lifecycle, ensuring consistent, defensible, and risk-informed outcomes.
Oversee risk-based third-party due diligence, risk assessments, and ongoing monitoring activities across the full third-party lifecycle, ensuring consistent, defensible, and risk-informed outcomes.
Oversee risk-based third-party due diligence, risk assessments, and ongoing monitoring activities across the full third-party lifecycle, ensuring consistent, defensible, and risk-informed outcomes.
Oversee risk-based third-party due diligence, risk assessments, and ongoing monitoring activities across the full third-party lifecycle, ensuring consistent, defensible, and risk-informed outcomes.
Oversee risk-based third-party due diligence, risk assessments, and ongoing monitoring activities across the full third-party lifecycle, ensuring consistent, defensible, and risk-informed outcomes.
Oversee risk-based third-party due diligence, risk assessments, and ongoing monitoring activities across the full third-party lifecycle, ensuring consistent, defensible, and risk-informed outcomes.
Third-Party Risk Management Officer
Manhattan, NY · On-site
$120K - $145K/yr
This role supports the SMTB AD's ability to identify, assess, mitigate, monitor, and report third ... Third Party Risk Framework and provide reporting to the U.S. Chief Risk Officer and U.S. Risk ...
Quick apply
Third-Party Risk Management Officer
Manhattan, NY · On-site
$120K - $145K/yr
This role supports the SMTB AD's ability to identify, assess, mitigate, monitor, and report third ... Third Party Risk Framework and provide reporting to the U.S. Chief Risk Officer and U.S. Risk ...
Manager, Third Party Risk
Overland Park, KS · On-site
$99/hr
Review completed vendor assessment reports for quality and consistency; ensure TPRM procedures are ... Third Party Risk Management - Demonstrated ability to design, manage, and mature a TPRM program ...
Manager, Third Party Risk
Overland Park, KS · On-site
$99/hr
Review completed vendor assessment reports for quality and consistency; ensure TPRM procedures are ... Third Party Risk Management - Demonstrated ability to design, manage, and mature a TPRM program ...
Third-Party Risk Management Officer
Manhattan, NY · Hybrid
$120K - $145K/yr
This role supports the SMTB AD's ability to identify, assess, mitigate, monitor, and report third ... Third Party Risk Framework and provide reporting to the U.S. Chief Risk Officer and U.S. Risk ...
Quick apply
Third-Party Risk Management Officer
Manhattan, NY · Hybrid
$120K - $145K/yr
This role supports the SMTB AD's ability to identify, assess, mitigate, monitor, and report third ... Third Party Risk Framework and provide reporting to the U.S. Chief Risk Officer and U.S. Risk ...
ABOUT YOUR ROLE The primary responsibility of this position is to support the assessment and oversight of Third-Party Risk, as a component of Operational Risk, and to enhance the Bank's risk ...
ABOUT YOUR ROLE The primary responsibility of this position is to support the assessment and oversight of Third-Party Risk, as a component of Operational Risk, and to enhance the Bank's risk ...
Oversee third party risk assessment and regular updates for critical suppliers along the supplier life cycle leveraging a central risk tool , working with business leads to provide required inputs ...
Oversee third party risk assessment and regular updates for critical suppliers along the supplier life cycle leveraging a central risk tool , working with business leads to provide required inputs ...
Oversee third party risk assessment and regular updates for critical suppliers along the supplier life cycle leveraging a central risk tool , working with business leads to provide required inputs ...
Oversee third party risk assessment and regular updates for critical suppliers along the supplier life cycle leveraging a central risk tool , working with business leads to provide required inputs ...
Third-Party Risk Management Program Officer
Hillsboro, OR · On-site
$100K - $126K/yr
Oversees execution of third party inherent risk assessments, due diligence reviews, and control assessments across all third-party risk domains (cybersecurity, privacy, operational resilience, etc.
Third-Party Risk Management Program Officer
Hillsboro, OR · On-site
$100K - $126K/yr
Oversees execution of third party inherent risk assessments, due diligence reviews, and control assessments across all third-party risk domains (cybersecurity, privacy, operational resilience, etc.
Senior Third Party Risk Management Analyst
New York, NY · On-site
$105K - $120K/yr
Assess, monitor, and mitigate third-party risks while supporting comprehensive due diligence and managing risk frameworks. Collaborate with internal teams--including Office of General Counsel, IT ...
Senior Third Party Risk Management Analyst
New York, NY · On-site
$105K - $120K/yr
Assess, monitor, and mitigate third-party risks while supporting comprehensive due diligence and managing risk frameworks. Collaborate with internal teams--including Office of General Counsel, IT ...
Senior Third Party Risk Management Analyst
Long Island City, NY · Hybrid
$105K - $120K/yr
Assess, monitor, and mitigate third-party risks while supporting comprehensive due diligence and managing risk frameworks. Collaborate with internal teams--including Office of General Counsel, IT ...
Senior Third Party Risk Management Analyst
Long Island City, NY · Hybrid
$105K - $120K/yr
Assess, monitor, and mitigate third-party risks while supporting comprehensive due diligence and managing risk frameworks. Collaborate with internal teams--including Office of General Counsel, IT ...
Third Party Risk Assessment information
See salary details
$44.5K - $51.8K
9% of jobs
$58.1K is the 25th percentile. Wages below this are outliers.
$51.8K - $59K
18% of jobs
$59K - $66.3K
0% of jobs
$66.3K - $73.6K
6% of jobs
$73.6K - $80.9K
2% of jobs
$80.9K - $88.1K
4% of jobs
$88.1K - $95.4K
2% of jobs
The median wage is $96.5K / yr.
$95.4K - $102.7K
52% of jobs
$102.7K - $110K
6% of jobs
$110K - $117.2K
0% of jobs
$117.2K - $124.5K
0% of jobs
$44.5K
$86.7K
$124.5K
How much do third party risk assessment jobs pay per year?
Is SOC analyst a high paying job?
What are some challenges commonly faced in a Third Party Risk Assessment role?
Professionals in Third Party Risk Assessment often face the challenge of managing a large and diverse portfolio of third-party vendors, each with unique risk factors and compliance requirements. Balancing thorough risk analysis with tight project deadlines can require strong organizational and prioritization skills. Additionally, staying current with evolving regulatory standards and ensuring consistent communication with both internal stakeholders and external vendors can be demanding. However, these challenges also provide opportunities to develop critical expertise in risk management, improve cross-functional collaboration, and contribute significantly to organizational resilience and reputation.
What is a Third Party Risk Assessment job?
A Third Party Risk Assessment job involves evaluating the security, compliance, and operational risks associated with external vendors, suppliers, or partners. Professionals in this role assess third-party practices to ensure they meet regulatory and organizational standards. They analyze potential risks such as data breaches, financial instability, and operational disruptions. The job typically involves conducting risk assessments, reviewing contracts, and working with internal stakeholders to mitigate risks.
How much does a third-party risk analyst make?
What does a third-party risk analyst do?
What are the key skills and qualifications needed to thrive in the Third Party Risk Assessment position, and why are they important?
To thrive in Third Party Risk Assessment, you need a solid understanding of risk management frameworks, vendor due diligence processes, and regulatory compliance, typically supported by a degree in business, IT, or a related field. Familiarity with GRC (Governance, Risk, and Compliance) platforms, risk assessment tools, and relevant certifications such as Certified Third Party Risk Professional (CTPRP) or Certified Risk Manager (CRM) is highly desirable. Excellent communication, analytical thinking, and problem-solving abilities set top candidates apart, as do project management skills. These skills are vital to effectively identify, evaluate, and mitigate risks posed by third-party vendors, ensuring the organization's overall security and compliance.
Is third-party risk management a good career?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 24 days ago
Job description
At Upstart, we're united by a mission that matters: to radically reduce the cost and complexity of borrowing for all Americans. Every day, we bring creativity, experimentation, and advanced AI to reshape access to credit, helping millions move forward financially with clarity and confidence.
As the leading AI lending marketplace, we partner with banks and credit unions to expand access to affordable credit through technology that's both radically intelligent and deeply human. Our platform runs over one million predictions per borrower using more than 1,800 signals, powering smarter, fairer decisions for millions of customers. But the numbers only hint at the impact. Every idea, every voice, and every contribution moves us closer to a world where credit never stands between people and their financial progress.
We're proudly digital-first, giving most Upstarters the flexibility to do their best work from wherever they thrive, alongside teammates across 80+ cities in the US and Canada. Digital-first doesn't mean distant. We're intentional about in-person connection through team onsites, planning sessions, and moments that spark creativity and trust. And whether you choose to work primarily from home or collaborate in-person from one of our offices in Columbus, Austin, the Bay Area, or New York City (opening Summer 2026), you'll have the support to work in the way that works best for you.
If you're energized by tackling meaningful problems, excited to innovate with purpose, and motivated by work that truly matters, we'd love to hear from you.
The Team:
Upstart's Risk team is building its second line of defense function in support of its application to establish Upstart Bank, N.A., a de novo national bank. The team is responsible for Upstart's enterprise risk management program and risk governance, providing independent oversight and credible challenge across key risk categories including operational risk, third-party risk, technology and information security risk, treasury risk, and compliance risk. The Risk team partners closely with business leaders, executive management, and the Board to ensure material risks are effectively identified, assessed, monitored, and governed in alignment with OCC, FDIC, and interagency regulatory expectations.
As the Manager, Third Party Risk Management at Upstart, you will lead the day-to-day execution of the bank's third-party risk management program and oversee a team responsible for risk assessments, due diligence, ongoing monitoring, and vendor oversight activities. You will play a key role in ensuring the program remains scalable, exam-ready, and aligned with evolving regulatory expectations while supporting the growth of Upstart Bank.
How you'll make an impact
- Lead execution of the bank's end-to-end third-party risk management program, including risk-tiered due diligence, onboarding risk assessments, ongoing monitoring, and offboarding activities across all vendor tiers.
- Manage and develop the Third-Party Risk Management team by setting priorities, providing coaching, and ensuring consistent, high-quality risk assessments and oversight activities.
- Serve as the primary second-line escalation point for elevated or complex third-party risk matters, providing risk-based recommendations and ensuring issues are appropriately documented, tracked, and resolved.
- Maintain and enhance third-party risk management frameworks, risk tiering methodologies, assessment templates, and governance processes to support a scalable, risk-based program.
- Partner with Legal, Compliance, Information Security, Affiliate Risk, and business stakeholders to ensure consistent application of third-party risk standards throughout the vendor lifecycle.
- Lead regulatory examination readiness and support responses to OCC, FDIC, internal audit, and external audit inquiries related to third-party risk management.
Minimum Qualifications
- Bachelor's degree or equivalent practical experience.
- 6+ years of experience in third-party risk management, compliance, audit, operational risk, or a related risk discipline within a banking or financial services environment.
- Experience leading a third-party risk management program, including risk assessments, due diligence reviews, ongoing monitoring, and issue management across a multi-vendor portfolio.
- Knowledge of OCC, FDIC, and interagency guidance related to third-party relationships and risk management, including the 2023 Interagency Guidance on Third-Party Relationships: Risk Management.
- Experience assessing and managing risks associated with multiple third-party relationship types, including suppliers, lending partners, affiliates, and technology service providers.
Preferred Qualifications
- Direct experience supporting OCC or FDIC regulatory examinations related to third-party risk management.
- Experience leading or developing risk, compliance, audit, or third-party risk professionals.
- Knowledge of affiliate risk oversight requirements, including Regulation W and related regulatory expectations.
- Experience operating within a fintech, digital banking, or technology-intensive environment, including oversight of cloud, SaaS, and other technology service providers.
- Experience using governance, risk, and compliance (GRC) platforms to support third-party risk assessments, issue management, workflow automation, and ongoing monitoring activities.
Position location This role is available in the following locations: Remote
Time zone requirements The team operates on the East/West coast time zones.
Travel requirements As a digital first company, the majority of your work can be accomplished remotely. The majority of our employees can live and work anywhere in the U.S but are encouraged to to still spend high quality time in-person collaborating via regular onsites. The in-person sessions' cadence varies depending on the team and role; most teams meet once or twice per quarter for 2-4 consecutive days at a time.
#LI-REMOTE
#LI-MidSenior --> use for L5, L6
At Upstart, your base pay is one part of your total compensation package. The anticipated base salary for this position is expected to be within the below range. Your actual base pay will depend on your geographic location-with our "digital first" philosophy, Upstart uses compensation regions that vary depending on location. Individual pay is also determined by job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.
In addition, Upstart provides employees with target bonuses, equity compensation, and generous benefits packages (including medical, dental, vision, and 401k).
United States | Remote - Anticipated Base Salary Range
$145,300-$231,300 USD
What you'll love
At Upstart, our benefits are designed to support your health, financial well-being, family, and personal growth. Here's what you can expect:
- Competitive compensation, including base pay, bonus opportunities, and annual equity grants that vest quarterly
- Retirement benefits to help you plan for the future, including a 401(k) or Group Retirement Savings Plan with a company match of $2 for every $1 contributed, up to $15,000 annually (USD in the US, CAD in Canada)
- Employee Stock Purchase Plan (ESPP) with discounted stock purchase options for eligible employees (US only)
- Comprehensive health coverage designed to support you and your family, including medical, dental, vision, and wellness resources for US and supplemental health coverage for Canada.
- Health Savings Account contributions from Upstart for eligible plans (US only)
- Income protection benefits, including life insurance and disability coverage for added financial security
- Paid time off, sick leave, and company holidays, in line with local requirements
- Paid family and parental leave to support caregiving and major life moments (duration varies by country)
- Family-centered benefits to support fertility, parenthood, and caregiving needs
- Employee Assistance Program (EAP) offering mental health support and life-centered resources
- Financial wellness resources, including access to financial planning tools and a financial concierge service (US Only)
- Annual wellness allowance to support your physical and emotional well-being and personal development, based on what matters most to you
- Annual productivity allowance to invest in relevant tools and resources you need to do your best work, no matter where you work from
- Connection and community through team events, all-company updates, and employee resource groups (ERGs)
- Onsite perks, including catered lunches and fully stocked micro-kitchens when working from one of our offices in the Bay Area, Austin, Columbus, and New York City (opening Summer 2026!)
For roles based in Canada, please note that we are not currently able to hire in Quebec.
Upstart is a proud Equal Opportunity Employer. Just as we are dedicated to improving access to affordable credit for all, we are committed to inclusive and fair hiring practices.
If you require reasonable accommodation in completing an application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please email candidate_accommodations@upstart.com
https://www.upstart.com/candidate_privacy_policy