1

Third Party Risk Management Specialist Jobs (NOW HIRING)

Showing results 21-40

Third Party Risk Management Specialist information

See salary details

$38K

$100.5K

How much do third party risk management specialist jobs pay per year?

As of Aug 9, 2026, the average yearly pay for third party risk management specialist in the United States is $94,940.00, according to ZipRecruiter salary data. Most workers in this role earn between $98,500.00 and $98,500.00 per year, depending on experience, location, and employer.

What does a third party risk management specialist do?

A Third Party Risk Management Specialist is responsible for identifying, assessing, and managing risks associated with an organization’s third-party vendors, suppliers, and service providers. They evaluate potential threats such as data breaches, regulatory non-compliance, and operational disruptions that could arise from these external partnerships. Their work involves conducting risk assessments, monitoring vendor performance, and ensuring that third parties adhere to security and compliance standards. They also develop policies, frameworks, and procedures to mitigate risks and protect the organization’s interests. Collaboration with internal teams and communication with external partners are key aspects of this role.

What is the difference between Third Party Risk Management Specialist vs Vendor Risk Analyst?

AspectThird Party Risk Management SpecialistVendor Risk Analyst
CertificationsCertifications like CTPRP, CRISC often preferredSimilar certifications, often including CRISC or CTPRP
Work EnvironmentTypically within risk management or compliance teams in finance, healthcare, or techUsually in procurement, compliance, or risk departments across industries
Employer & Industry UsageCommon in financial services, healthcare, and large corporationsWidely used in retail, manufacturing, and service sectors

Both roles focus on assessing and mitigating risks associated with external vendors or third parties. The Third Party Risk Management Specialist generally has a broader scope, overseeing the entire third-party risk lifecycle, while the Vendor Risk Analyst concentrates specifically on evaluating individual vendors' risks. Both positions require similar certifications and work in risk or compliance teams, but their scope and industry focus may differ.

What are the key skills and qualifications needed to thrive as a third party risk management specialist, and why are they important?

To thrive as a Third Party Risk Management Specialist, you need expertise in risk assessment, vendor management, and compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, GRC (Governance, Risk, and Compliance) tools, and relevant certifications like CTPRP or CISA is highly valuable. Strong analytical thinking, communication, and negotiation skills help in building effective relationships with vendors and internal stakeholders. These skills are crucial for identifying, mitigating, and managing risks associated with third-party relationships, ultimately protecting the organization's interests and reputation.

What are some common challenges faced by third party risk management specialists when assessing vendor risks across different departments?

One of the main challenges for Third Party Risk Management Specialists is ensuring consistent risk assessments across various departments, each of which may have different priorities and levels of risk tolerance. Collaborating with stakeholders to gather accurate information and ensure compliance with internal policies can be complex, especially when vendors support critical or diverse business functions. Effective communication, tailored risk frameworks, and ongoing monitoring are essential for overcoming these challenges and maintaining a robust third-party risk management program.
More about Third Party Risk Management Specialist jobs
Infographic showing various Third Party Risk Management Specialist job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 13% Part Time, and 3% Contract. Highlights an 88% Physical, 2% Hybrid, and 10% Remote job distribution, with an average salary of $94,940 per year, or $45.6 per hour.

Tech Risk Third Party Risk Management

AT and T

Dallas, TX • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 18 days ago


AT&T rating

7.3

Company rating: 7.3 out of 10

Based on 728 frontline employees who took The Breakroom Quiz

58th of 97 rated telecommunications companies


Job description

This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered.
AT&T will not hire any applicants for this position who require employer sponsorship now or in the future.
Job Summary
As AT&T Technology Risk Principal - Technology Third Party Risk Management (TPRM), you will be responsible for driving risk management efforts to ensure strong discipline and control for AT&T's engagements with technology third parties, and providing advisory for the company's enterprise-wide TPRM program. Increasing levels of risk and regulatory requirements demand additional risk management rigor, and we must implement highly resilient, secure, and effective solutions that meet and, in some cases, exceed performance standards found in other information rich industries. You will provide leadership and support for Technology Risk initiatives across the business and strengthen third party risk management through development and maturing of governance and controls. You will utilize risk-based management to integrate information and technology risk processes into the way AT&T and its extended third party ecosystem operates.
Key Roles and Responsibilities
Reporting to AT&T's AVP of Technology Risk - Cyber & Third-Party Risk Management, you will be responsible for orchestrating a diverse set of stakeholders to identify, assess, mitigate, and monitor third party risks and drive improved governance and control across the program. You will keenly focus on inherent and residual risk of technology third parties that support mission critical systems, access and control sensitive data, and provide hardware and software products that support AT&T operations. You will evaluate the maturity of third party risk management practices and drive program enhancements to design key elements like third party inventory, risk tiering, due diligence, and monitoring. You will ensure that regulatory / risk policies and standards and their impact on business operations are understood and addressed consistently across AT&T, and that third party risks of new and existing technologies are assessed, monitored, and remediated, as necessary. In short, you will help make the AT&T Guarantee a reality by mitigating risks across our extended ecosystem.
Responsibilities:
  • Drive the evolution of AT&T's Technology Third Party Risk Management program, including processes to identify, assess, mitigate, monitor, and report technology third-party risks
  • Advise on the design and enhancement of foundational TPRM capabilities, including policies and standards, third-party inventory, risk tiering, due diligence, onboarding, monitoring, and termination activities
  • Evaluate program maturity and lead improvement initiatives across governance, processes, controls, technology enablement, and data management capabilities
  • Partner with stakeholders across Supply Chain, Enterprise Risk Management, Compliance, Technology, and Legal to advance strategic program objectives and strengthen risk management practices
  • Develop executive-level risk assessments, point-of-view documents, and escalation materials related to critical third parties, emerging risks, and program gaps
  • Serve as a trusted advisor to business units on emerging third-party risk topics, regulatory developments, and industry best practices

Qualifications:
  • 7+ years experience in multiple industry risk, control, and governance disciplines (e.g., Audit, Information Security, and Regulatory Compliance)
  • 5+ years of work experience in third party risk management and/or supply chain processes at a global company with strong understanding of technology products, services, and lifecycles
  • Strong presentation and executive oral/written communication skills with demonstrated experience leading culture and capabilities change across a diverse set of stakeholder groups
  • Experience designing, implementing, and sustaining programs that effectively manage risk throughout the risk management lifecycle, including:
    • Strategic technology risk advisory
    • Risk identification, including emerging risks
    • Maturity and risk assessment, scenario analysis
    • Risk response, mainly issue remediation
    • Risk monitoring
    • Policy and committee governance
  • Demonstrated success in remediating self-identified, internal / external audit, and regulatory / compliance issues with proven ability to shape and solve complex problem statements
  • Extensive knowledge of information and technology risk management policies, methods, standards, tools, and processes (e.g., ISO, COSO, COBIT, NIST) as well as knowledge of compliance, legal, internal / external audit & regulatory requirements

Desired Qualifications
  • BS and advanced degree preferred
  • Professional TPRM related certifications such as CTPRP, TPCRA, TPRMP, CRISC, CISSP preferred
  • Familiarity with applying Artificial Intelligence (AI) or Machine Learning (ML) techniques in cybersecurity contexts (e.g., anomaly detection, threat hunting, behavioral analytics, or risk scoring).
Our Principal Cybersecurity jobs earn between $155,400.00 - $261,100.00 USD Annual. Not to mention all the other amazing rewards that working at AT&T offers. Individual starting salary within this range may depend on geography, experience, expertise, and education/training.
Joining our team comes with amazing perks and benefits:
  • Medical/Dental/Vision coverage
  • 401(k) plan
  • Tuition reimbursement program
  • Paid Time Off and Holidays (based on date of hire, at least 23 days of vacation each year and 9 company-designated holidays)
  • Paid Parental Leave
  • Paid Caregiver Leave
  • Additional sick leave beyond what state and local law require may be available but is unprotected
  • Adoption Reimbursement
  • Disability Benefits (short term and long term)
  • Life and Accidental Death Insurance
  • Supplemental benefit programs: critical illness/accident hospital indemnity/group legal
  • Employee Assistance Programs (EAP)
  • Extensive employee wellness programs
  • Employee discounts up to 50% off on eligible AT&T mobility plans and accessories, AT&T internet (and fiber where available) and AT&T phone

Weekly Hours:
40
Time Type:
Regular
Location:
Charlotte, North Carolina, USA:TX:Dallas / One AT&T Plaza (208 S Akard - Whitacre Tower) - Adm:208 S Akard St
Salary Range:
$155,400.00 - $261,100.00
AT&T and its subsidiaries are committed to equal employment opportunity. All hiring, promotion, and other employment decisions remain merit-based and free from discrimination on the basis of race, color, religion, religious creed, national origin, ancestry, age, sex, sexual orientation, gender, gender identity, gender expression, physical disability, mental disability, pregnancy, medical condition, genetic information, marital status, citizenship status, military status, veteran status, or any other characteristic protected by federal, state, or local laws. In addition, AT&T will provide reasonable accommodations to qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made. Click here to learn more or request an application accommodation here.

What AT&T employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom