1

Third Party Risk Management Tprm Analyst Jobs (NOW HIRING)

Third Party Risk Manager, AVP

Tempe, AZ · On-site

$91K - $107K/yr

Ensures that all Third-Party Risk Management (TPRM) Policies & Procedures are adhered to in the ... Strong analytical mindset, able to manage risks both at the micro and macro levels. * Ability to ...

Experience with third party risk management (TPRM) software platforms and risk data analysis/reporting tools preferred. * Knowledge of and experience with the following: * Third-party risk management ...

Third Party Risk Manager

Carol Stream, IL · On-site

$120K - $180K/yr

Provide TPRM risk mitigation strategies; advise management in understanding and managing third-party risk across the Credit Union. * Champion behaviors that embed a strong risk management culture ...

Anticipate emerging risks, industry trends, and stakeholder needs to proactively evolve TPRM ... Experience improving risk management governance, processes, data, analytics, automation, or ...

Anticipate emerging risks, industry trends, and stakeholder needs to proactively evolve TPRM ... Experience improving risk management governance, processes, data, analytics, automation, or ...

Third Party Risk Manager

Carol Stream, IL · On-site

$120K - $150K/yr

Provide TPRM risk mitigation strategies; advise management in understanding and managing third-party risk across the Credit Union. * Champion behaviors that embed a strong risk management culture ...

Ensures that all Third-Party Risk Management (TPRM) Policies & Procedures are adhered to in the ... Strong analytical mindset, able to manage risks both at the micro and macro levels. * Ability to ...

Third Party Risk Manager

Elgin, IL · On-site

$120K - $150K/yr

Provide TPRM risk mitigation strategies; advise management in understanding and managing third-party risk across the Credit Union. * Champion behaviors that embed a strong risk management culture ...

NY · On-site

$42K/yr

Bank of China Limited, New York Branch is hiring for a position focused on managing the Third Party Risk Management (TPRM). The candidate will oversee the TPRM policies, conduct risk assessments, and ...

Own strategy, design, and continuous improvement of the Third-Party/Vendor Risk Management (TPRM ... analysts or a risk team. * Demonstrated experience designing or maturing a TPRM program lifecycle ...

Showing results 41-60

Third Party Risk Management Tprm Analyst information

See salary details

$15

$40

$65

How much do third party risk management tprm analyst jobs pay per hour?

As of Sep 10, 2026, the average hourly pay for third party risk management tprm analyst in the United States is $40.49, according to ZipRecruiter salary data. Most workers in this role earn between $29.81 and $49.28 per hour, depending on experience, location, and employer.

What is a Third Party Risk Management (TPRM) analyst?

A Third Party Risk Management (TPRM) Analyst is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors and service providers. They evaluate the security, compliance, and operational risks that third parties may pose, ensuring that these partners meet the company's standards and regulatory requirements. TPRM Analysts often conduct due diligence, monitor ongoing vendor performance, and collaborate with internal stakeholders to minimize potential threats. Their work helps protect the organization from data breaches, legal issues, and financial losses related to third-party relationships.

What are some common challenges faced by a Third Party Risk Management (TPRM) analyst when assessing new vendors?

A Third Party Risk Management Analyst often encounters challenges such as obtaining timely and complete risk documentation from vendors, navigating complex regulatory requirements, and aligning internal stakeholders on acceptable risk levels. Additionally, TPRM Analysts must frequently manage multiple assessments simultaneously while ensuring that risk mitigation strategies are both effective and practical. Strong communication and project management skills are key, as the role requires close collaboration with procurement, legal, and IT teams to ensure comprehensive vendor risk evaluations.

What are the key skills and qualifications needed to thrive as a Third Party Risk Management (TPRM) analyst, and why are they important?

To thrive as a Third Party Risk Management (TPRM) Analyst, you need a solid understanding of risk assessment, vendor due diligence, and regulatory compliance, often supported by a bachelor’s degree in finance, business, or a related field. Familiarity with risk management frameworks (such as ISO 27001 or NIST), GRC (Governance, Risk, and Compliance) platforms, and relevant certifications like CTPRP or CRISC is typically required. Strong analytical thinking, attention to detail, and effective communication help professionals excel in evaluating third-party risks and collaborating across departments. These competencies are crucial for identifying, mitigating, and reporting risks that could impact an organization’s operations and reputation.

What is the difference between Third Party Risk Management Tprm Analyst vs Vendor Risk Analyst?

AspectThird Party Risk Management Tprm AnalystVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredSimilar certifications, often including CRISC or CTPRP
Work EnvironmentFocuses on third-party relationships, compliance, and risk assessmentsEvaluates vendor risks, contract compliance, and performance
Industry UsageCommon in banking, finance, and regulated industriesUsed across various sectors including technology and healthcare

The Third Party Risk Management Tprm Analyst and Vendor Risk Analyst roles share many similarities, including required certifications and industry usage. However, Tprm Analysts primarily focus on managing risks associated with third-party relationships, while Vendor Risk Analysts concentrate on assessing individual vendors' risks and compliance. Both roles are essential for organizations aiming to mitigate third-party and vendor-related risks effectively.

What are popular job titles related to Third Party Risk Management Tprm Analyst jobs?

For Third Party Risk Management Tprm Analyst jobs, the most frequently searched job titles are:

Infographic showing various Third Party Risk Management Tprm Analyst job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 84% Full Time, 13% Part Time, and 2% Contract. Highlights an 86% Physical, 2% Hybrid, and 12% Remote job distribution, with an average salary of $84,210 per year, or $40.5 per hour.

Senior Risk Analyst, Privacy & Third-Party Risk

Baltimore, MD • On-site

T Rowe Price
Funds, Trusts and Financial Programs • 5 - 10K employees

Full-time

Re-posted 3 days ago


T. Rowe Price rating

9.1

Company rating: 9.1 out of 10

Based on 21 frontline employees who took The Breakroom Quiz


Job description

Role Summary

The Senior Risk Analyst - Privacy &ThirdPartyRisk is aSecond Line of Defense (2LoD)role and a member of theGlobal Privacy Office (GPO)andThirdPartyRisk Management (TPRM)function. The role provides independent risk oversight, effective challenge, and assurance over first-line activities andoutsourced TPRM services,operatingwithminimal supervisionand a high degree of professional judgment.

This position is expected to independently manage complex risk assessments, lead oversight activities,identifyemerging risk themes, and deliver clear, actionable insights to senior stakeholders and governance committees.

Responsibilities

Privacy Risk- Global Privacy Office:

  • Independently provide 2LoD oversight of privacy risks arising from first-line business activitiesand serveas a subject matter resource on privacy risk matters.
  • Lead review andchallengeofPrivacy Impact Assessments (PIAs), Data Protection Impact Assessments (DPIAs), and privacy risk assessments.
  • Evaluate the design and operating effectiveness of privacy controls and recommend enhancements aligned with regulatory expectations and risk appetite.
  • Independently review privacy incidents, including root cause analyses and remediation plans.
  • Provide technicalexpertiseandsupportthe implementation of privacy and data protection processes, controls, and procedures based on enterprise-wide guidance issued by the Global Privacy Office.
  • Support the process of Privacy and Security by Design reviews, in particular, wherethey relate to the development and deployment of new technologies.This includes reviewing technical implementation details and design documentation for new systems andfeatures, andproviding guidance on improving privacy features in
  • those systems.
  • Collaborate with technology and security teams to embed privacy controls into the architecture of products and services, including providing advice and best practices to protect and mitigate privacy risks.
  • Identifyopportunities to enhance the Global Privacy Office's technical capabilities, develop,testand work with technology teams to deploy such capabilities.
  • Support the maintenance of the firm's required privacy compliance documentation (e.g., Records of Processing Activities, Transfer Impact Assessments, procedures, guides, training, SharePoint sites).
  • Support the execution of the privacy compliance monitoring program.

Third-Party Risk Management:

  • Perform quality assurance and effective challenge of third-party risk outputs produced by external service providers and first-line stakeholders.
  • Monitor adherence to SLAs, KPIs, and contractual obligations of outsourced TPRM providers and escalate deficiencies asappropriate.
  • Identifysystemic control gaps, concentration risk, and emerging third-party risk trends across the vendor population.
  • Support thirdparty cyber and information security risk review activities.
  • Contribute to the ongoing development of fourth-party risk governance and oversight practices.
  • Identifyopportunities to enhanceTRPM's technical capabilities, develop,testand work with technology teams to deploy such capabilities.
  • Support the maintenance of the firm's requiredTPRMcompliance documentation (e.g.,Policy, Supplier Management Standards, questionnaire templates, frameworks, training, Share Point sites).

Risk Governance, Reporting & Analytics:

  • Independently develop and deliver executive-level risk reporting, dashboards, and management information.
  • Assistwith monitoring and reporting emerging AI and technology risks across privacy andthird partyrisk, contributing to oversight of controls, assessments, and reporting.
  • Leverage AI-enabled tools and advanced analytics toidentifytrends, emerging risks, and control weaknesses.
  • Lead preparation for regulatory examinations, internal audits, and management assurance activities related to privacy and third-party risk oversight.
  • Maintainaccurate, complete documentation in GRC, privacy, and TPRM systems and ensure audit-ready artifacts.

Qualifications

Required:

  • Bachelor's degree in Risk Management, Information Systems, Finance, Business, Law, ora relatedfield.
  • 5+ years of experience insecond-line risk management, privacy risk, or third-party risk oversight, preferably within financial services or asset management(or other industry subject to equivalent regulatory scrutiny).
  • Demonstrated ability tooperateindependently with minimal guidance in a 2LoD environment.
  • In-depth knowledge of global privacy regulations andoutsourced TPRM operating models.
  • Required Certifications (at least one):
  • Certified Information Privacy Professional (CIPP/US, CIPP/E)
  • Certified Information Systems Auditor (CISA)
  • Certified in Risk and Information Systems Control (CRISC)
  • Certified Third Party Risk Professional (CTPP)

Preferred:

  • Experience leading or independently managing 2LoD privacy or TPRM oversight activities.
  • Asset management or broader financial services experience.
  • Additionalcertifications:
  • CIPM or CIPT
  • ISO 27001 Lead Implementer or Auditor
  • Familiarity with SEC, FINRA, and global regulatory expectations.

Tools & Technology (Preferred)

  • Advanced experience with GRC, privacy, and TPRM platforms (e.g., Archer, ServiceNow, OneTrust,IBM OpenPages).
  • Strongproficiencywith reporting and analytics tools (e.g., Power BI, advanced Excel).
  • Practical experience using AI-enabled risk, compliance, or data analytics tools to enhance oversight and reporting(e.g., Microsoft Co-Pilot, ChatGPT Enterprise).
  • Ability to automate reporting and improve risk visibility.

Key Competencies

  • Strong independent judgment and risk-based decision-making.
  • Ability to provide credible, effectivechallengeat senior levels.
  • Excellent written and verbal communication skills.
  • Strong issue management, quality assurance, and governance discipline.
  • Comfortoperatingautonomously in a global, regulated environment.

FINRA Requirements

FINRA licenses are not required and will not be supported for this role.

Work Flexibility

This role is eligible for hybrid work, with up to one day per week from home.


What T. Rowe Price employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom