1

Third Party Risk Assessor Jobs (NOW HIRING)

Third-Party Risk Analyst

Lincoln, NE · On-site

$60K - $70K/yr

This role supports risk assessments and ongoing oversight of third-party relationships across the organization. This role helps safeguard Nelnet against key risks by evaluating third-party controls ...

Responsibilities The Third-Party Risk Management (TPRM) Lead is responsible for executing third ... Maintain third-party records, assessment results, issues, and supporting documentation within the ...

This position is responsible for executing third-party risk assessments and due diligence activities across the MassMutual's third-party ecosystem. Additionally, you will support the adoption of risk ...

Third-Party Risk Analyst

Mclean, VA · On-site

$45 - $47/hr

Third-Party Risk Analyst Location: McLean, VA (5 days - Onsite) Job Overview The Third-Party Risk ... Launch and review risk assessments across operational, financial, legal/compliance, reputational ...

This position is responsible for executing third-party risk assessments and due diligence activities across the MassMutual's third-party ecosystem. Additionally, you will support the adoption of risk ...

Managing and overseeing assessment teams, project timelines, and client deliverables across ... Certified Third-Party Risk Professional (CTPRP) * Certified Vendor Risk Management Professional ...

Third Party Risk Specialist

New York, NY · On-site

$150K - $175K/yr

A Career with Point72's Third-Party Risk Team The Third-Party Risk Management Team at Point72 is ... Drive timely risk assessments at vendor on-boarding, including accurate data capture, and adherence ...

Managing and overseeing assessment teams, project timelines, and client deliverables across ... Certified Third-Party Risk Professional (CTPRP) * Certified Vendor Risk Management Professional ...

Managing and overseeing assessment teams, project timelines, and client deliverables across ... Certified Third-Party Risk Professional (CTPRP) * Certified Vendor Risk Management Professional ...

The Third Party Risk Officer is responsible for the development, implementation, and ongoing ... Review and challenge risk assessments and due diligence results for completeness and accuracy.

Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards * Managing ...

next page

Showing results 1-20

Third Party Risk Assessor information

See salary details

$19

$38

$67

How much do third party risk assessor jobs pay per hour?

As of Jul 29, 2026, the average hourly pay for third party risk assessor in the United States is $38.68, according to ZipRecruiter salary data. Most workers in this role earn between $23.80 and $54.33 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Third Party Risk Assessor, and why are they important?

To thrive as a Third Party Risk Assessor, you need a solid understanding of risk management frameworks, vendor assessment procedures, and regulatory compliance, often supported by a degree in information security, business, or a related field. Familiarity with GRC (Governance, Risk, and Compliance) platforms, risk assessment tools, and industry certifications such as CISA or CRISC is typically required. Strong analytical thinking, attention to detail, and the ability to communicate findings clearly with stakeholders are crucial soft skills. These competencies ensure thorough evaluation of third-party vendors, effective risk mitigation, and compliance with organizational and regulatory standards.

What jobs in the US pay 300,000 a year?

Third Party Risk Assessors typically do not earn $300,000 annually; such high salaries are more common in executive, specialized medical, or senior technology roles. High-paying jobs in risk management or compliance may reach this level with extensive experience, certifications, and leadership responsibilities. Most roles paying this amount require advanced skills, industry expertise, and often a combination of certifications and years of experience.

What is the difference between Third Party Risk Assessor vs Vendor Risk Analyst?

AspectThird Party Risk AssessorVendor Risk Analyst
CertificationsISO 27001, CRISC, CISAISO 27001, CRISC, CISA
Work EnvironmentRisk management teams, compliance departmentsProcurement, compliance, and risk teams
Industry UsageFinancial, healthcare, technologyFinancial, healthcare, technology

The Third Party Risk Assessor and Vendor Risk Analyst roles often share similar certifications and work environments, focusing on evaluating third-party vendors' risks. While the Risk Assessor primarily conducts risk assessments and compliance reviews, the Vendor Risk Analyst may focus more on vendor performance and procurement processes. Both roles are essential in managing third-party relationships and ensuring organizational security and compliance.

What are Third Party Risk Assessors?

Third Party Risk Assessors are professionals responsible for evaluating the risks associated with an organization’s vendors, suppliers, and other external partners. They assess potential threats such as cybersecurity vulnerabilities, compliance issues, financial instability, and operational risks that could impact the business through its third-party relationships. Their work helps ensure that organizations are protected from potential disruptions or breaches originating outside their direct control. By conducting thorough risk assessments, they support informed decision-making and help maintain regulatory compliance.

How much does a third-party risk analyst make?

A third-party risk analyst typically earns between $60,000 and $100,000 annually, depending on experience, certifications, and location. Entry-level positions may start lower, while experienced professionals with specialized skills can earn higher salaries, often with opportunities for bonuses and benefits.

How do you become a risk assessor?

To become a third-party risk assessor, individuals typically need a bachelor's degree in a relevant field such as business, finance, or cybersecurity. Gaining experience in risk management, understanding industry standards, and obtaining certifications like Certified Risk Management Professional (CRMP) or Certified Third Party Risk Professional (CTPRP) can enhance qualifications. Strong analytical skills and familiarity with risk assessment tools are also important for success in this role.

Is third-party risk management a good career?

Third-party risk management is a growing field that involves assessing and mitigating risks associated with external vendors and partners. It requires skills in compliance, cybersecurity, and risk assessment, often supported by certifications like CRISC or CTPRP. The role offers opportunities in various industries and can lead to senior risk management positions.

What are some common challenges faced by Third Party Risk Assessors when evaluating vendors, and how can they be addressed?

Third Party Risk Assessors often encounter challenges such as incomplete vendor documentation, inconsistent risk assessment methodologies across departments, and rapidly changing regulatory requirements. To overcome these, assessors should establish clear communication channels with vendors, utilize standardized assessment frameworks, and stay updated on relevant compliance standards. Collaborating closely with internal stakeholders and leveraging automated risk management tools can also help streamline the evaluation process and ensure thorough risk mitigation.
More about Third Party Risk Assessor jobs
What states have the most Third Party Risk Assessor jobs? States with the most job openings for Third Party Risk Assessor jobs include:
Infographic showing various Third Party Risk Assessor job openings in the United States as of July 2026, with employment types broken down into 74% Full Time, 5% Part Time, 1% Temporary, 2% Contract, and 18% Nights. Highlights an 87% Physical, 2% Hybrid, and 11% Remote job distribution, with an average salary of $80,460 per year, or $38.7 per hour.

Third-Party Risk Analyst

NELNET BUSINESS SOLUTIONS

Madison, WI • Hybrid

$60K - $70K/yr

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 6 days ago


Job description

Nelnet is a diversified and innovative company committed to enriching lives through the power of service as a student loan servicer, professional services company, consumer loan originator and servicer, payments processor, renewable energy solutions, and K-12 and higher education expert. For over 40 years, Nelnet has been serving its customers, associates, and communities.

The perks of working at Nelnet go beyond our benefits package. When you join the Nelnet team, you're part of a community invested in the success of each individual. That support comes through in our work, as we are united by our mission of creating opportunities for people where they live, learn, and work.

The Third-Party Risk Analyst is a contributor within Nelnet's Risk Management team. This role supports risk assessments and ongoing oversight of third-party relationships across the organization. This role helps safeguard Nelnet against key risks by evaluating third-party controls, identifying risk gaps, and recommending remediation aligned with regulatory requirements and internal standards. The Analyst partners closely with senior team members and internal stakeholders to support the third-party risk management lifecycle and contributes to process improvements that support the continued maturity of the Third-Party Risk Management Program.JOB RESPONSIBILITIES:
  • Facilitate third-party risk assessments for new and existing third-party relationships, with guidance from senior team members as needed.

  • Assist in assessing fourth-party and subcontractor risk exposure for third-party relationships.

  • Review and analyze documentation provided by the third-party, document assessment results, identity risk gaps, and recommend remediation actions aligned with Regulatory Requirements and Nelnet standards.

  • Deliver reporting, dashboards, and analytics for ongoing oversight, trends, and escalation.

  • Support the ongoing maintenance and administration of third-party policies, procedures, and guidelines.

  • Partner with internal stakeholders and subject matter experts to support the third-party risk management lifecycle.

  • Build and maintain strong cross-functional relationships across business segments to support collaboration throughout the third-party risk management lifecycle.

  • Utilize existing tools and technology, including AI, to support process efficiency, and identify opportunities for improvement.

  • Maintain awareness of emerging risks and industry trends through continued education and research, sharing relevant insights with the team.

  • Participate in and support the delivery of third-party risk management training for Nelnet Associates.

Annual compensation range for this role is $60,000-$70,000 depending on experience.

This position offers a hybrid work option. Nelnet values flexibility and understands the importance of work-life integration. Our hybrid work environment allows associates living within 30 miles of an office location to work remotely for part of the week, while also fostering collaboration and team connection through in-office presence three days per week.

Please note that we are unable to provide visa sponsorship for this position. To be considered, candidates must already be authorized to work in the United States without the need for current or future sponsorship.

EDUCATION:

Bachelor's in technology, risk, business, or related field (equivalent experience may substitute).

EXPERIENCE:

1-3 years in risk management, third-party risk management, audit, cybersecurity, or compliance.

Education or certifications in risk, audit, cyber, or project management preferred.

Familiarity with regulatory requirements and frameworks such as SOC 1/SOC 2, ISO, NIST, and others.

COMPETENCIES/SKILLS:
  • Ability to review and interpret vendor documentation to support risk assessments and identify control gaps.

  • Sound judgment to identify risk gaps and escalate issues appropriately based on risk severity.

  • Self-starter with the ability to work independently, communicate clearly, and escalate issues effectively to stakeholders.

  • Strong organizational skills to manage concurrent assessments and maintain audit-ready documentation.

  • Ability to collaborate effectively with internal stakeholders and subject matter experts across the third-party risk management lifecycle.

Our benefits package includes medical, dental, vision, HSA and FSA, generous earned time off, 401K/student loan repayment, life insurance & AD&D insurance, employee assistance program, employee stock purchase program, tuition reimbursement, performance-based incentive pay, short- and long-term disability, and a robust wellness program. Click here to learn more about our benefits: Benefits & Perks - Nelnet Inc.


Nelnet is committed to providing a welcoming and respectful workplace where all associates have the opportunity to succeed. As an Equal Opportunity Employer, we ensure that all qualified applicants are considered for employment. Employment decisions are made without regard to race, color, religion/creed, national origin, gender, sex, marital status, age, disability, use of a guide dog or service animal, sexual orientation, military/veteran status, or any other status protected by federal, state, or local law. We value the unique contributions of every team member and believe that a positive work environment benefits everyone.


Qualified individuals with disabilities who require reasonable accommodations in order to apply or compete for positions at Nelnet may request such accommodations by contacting Corporate Recruiting at 402-486-5725 orcorporaterecruiting@nelnet.net.


Nelnet is a Drug Free and Tobacco Free Workplace.


Use of Artificial Intelligence in Hiring


We may use automated or artificial intelligence enabled tools to assist with the initial review of applications, such as identifying relevant skills or experience. These tools are used to support human review and do not make hiring decisions. A recruiter reviews applications and determines which candidates move forward in the hiring process. For more information, see our Privacy Policy and Pre-Use Notice: Automated Tools in Hiring