The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and ... Experience in negotiating and managing vendor contracts (buy-side) for third-party software ...
The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and ... Experience in negotiating and managing vendor contracts (buy-side) for third-party software ...
Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...
Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...
Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...
Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...
Oversee third-party/vendor security assessments and risk management processes * Develop and manage security awareness programs for employees and stakeholders * Provide reporting and updates to ...
Oversee third-party/vendor security assessments and risk management processes * Develop and manage security awareness programs for employees and stakeholders * Provide reporting and updates to ...
Head of Compliance
Glastonbury, CT · On-site +1
$125K - $168K/yr
Oversees third-party risk management and vendor compliance programs, particularly related to financial systems, payment providers, and technology platforms. * Provides regular reporting and strategic ...
Head of Compliance
Glastonbury, CT · On-site +1
$125K - $168K/yr
Oversees third-party risk management and vendor compliance programs, particularly related to financial systems, payment providers, and technology platforms. * Provides regular reporting and strategic ...
Counterparty Credit Risk Manager, Assistant Vice President
Stamford, CT · On-site
$110K - $177K/yr
Contribute to enhancing CCR limit framework and risk management systems to support new business ... Programming skills with SQL, Python; familiar with statistics software or third-party software such ...
Counterparty Credit Risk Manager, Assistant Vice President
Stamford, CT · On-site
$110K - $177K/yr
Contribute to enhancing CCR limit framework and risk management systems to support new business ... Programming skills with SQL, Python; familiar with statistics software or third-party software such ...
... 3rd party business. Reporting directly to the Head of Merchandising, this role will lead the ... Manage assortment productivity, SKU optimization, and lifecycle planning. * Utilize sales ...
... 3rd party business. Reporting directly to the Head of Merchandising, this role will lead the ... Manage assortment productivity, SKU optimization, and lifecycle planning. * Utilize sales ...
... 3rd party business. Reporting directly to the Head of Merchandising, this role will lead the ... Manage assortment productivity, SKU optimization, and lifecycle planning. * Utilize sales ...
... 3rd party business. Reporting directly to the Head of Merchandising, this role will lead the ... Manage assortment productivity, SKU optimization, and lifecycle planning. * Utilize sales ...
Senior Manager, Enterprise Actuarial - Catastrophe Risk Management
Hartford, CT · On-site
$120K - $198K/yr
Travelers Enterprise Catastrophe Risk Management is seeking a Senior Manager to join our Actuarial ... The Actuarial & Analytics team leverages 3rd party catastrophe models, loss experience, industry ...
Senior Manager, Enterprise Actuarial - Catastrophe Risk Management
Hartford, CT · On-site
$120K - $198K/yr
Travelers Enterprise Catastrophe Risk Management is seeking a Senior Manager to join our Actuarial ... The Actuarial & Analytics team leverages 3rd party catastrophe models, loss experience, industry ...
Senior Manager, Enterprise Actuarial - Catastrophe Risk Management
Hartford, CT · On-site
$120K - $198K/yr
Travelers Enterprise Catastrophe Risk Management is seeking a Senior Manager to join our Actuarial ... The Actuarial & Analytics team leverages 3rd party catastrophe models, loss experience, industry ...
Senior Manager, Enterprise Actuarial - Catastrophe Risk Management
Hartford, CT · On-site
$120K - $198K/yr
Travelers Enterprise Catastrophe Risk Management is seeking a Senior Manager to join our Actuarial ... The Actuarial & Analytics team leverages 3rd party catastrophe models, loss experience, industry ...
Senior Manager, Enterprise Actuarial - Catastrophe Risk Management
Hartford, CT · On-site
$120K - $198K/yr
Travelers Enterprise Catastrophe Risk Management is seeking a Senior Manager to join our Actuarial ... The Actuarial & Analytics team leverages 3rd party catastrophe models, loss experience, industry ...
Senior Manager, Enterprise Actuarial - Catastrophe Risk Management
Hartford, CT · On-site
$120K - $198K/yr
Travelers Enterprise Catastrophe Risk Management is seeking a Senior Manager to join our Actuarial ... The Actuarial & Analytics team leverages 3rd party catastrophe models, loss experience, industry ...
Third-Party Manager Oversight * Lead due diligence and ongoing oversight of external investment managers. * Evaluate manager performance, investment process, organizational changes, risk controls ...
Third-Party Manager Oversight * Lead due diligence and ongoing oversight of external investment managers. * Evaluate manager performance, investment process, organizational changes, risk controls ...
Third-Party Manager Oversight * Lead due diligence and ongoing oversight of external investment managers. * Evaluate manager performance, investment process, organizational changes, risk controls ...
Third-Party Manager Oversight * Lead due diligence and ongoing oversight of external investment managers. * Evaluate manager performance, investment process, organizational changes, risk controls ...
Enforce strict adherence to Otis procurement processes, supplier governance, risk management ... Benchmark leading third-party machine and motor manufacturers to identify best-in-class ...
Enforce strict adherence to Otis procurement processes, supplier governance, risk management ... Benchmark leading third-party machine and motor manufacturers to identify best-in-class ...
Head of Individual Markets Business Risk & Resiliency
Stamford, CT · Hybrid
$132K - $217K/yr
You will manage the operational risk profile for FPRS and CSWM, aggregating risk across domains (Technology, Cyber, Data, Model, Compliance, Third Party, etc) and ensuring alignment to Guardian ...
Head of Individual Markets Business Risk & Resiliency
Stamford, CT · Hybrid
$132K - $217K/yr
You will manage the operational risk profile for FPRS and CSWM, aggregating risk across domains (Technology, Cyber, Data, Model, Compliance, Third Party, etc) and ensuring alignment to Guardian ...
Personal Risk Advisor
Norwalk, CT · On-site
Design risk management insurance programs to protect the personal assets, exposures and lifestyles ... Engage, introduce and position value-added third-party subject matter experts in response to client ...
Personal Risk Advisor
Norwalk, CT · On-site
Design risk management insurance programs to protect the personal assets, exposures and lifestyles ... Engage, introduce and position value-added third-party subject matter experts in response to client ...
Personal Risk Advisor
Norwalk, CT · On-site
Design risk management insurance programs to protect the personal assets, exposures and lifestyles ... Engage, introduce and position value-added third-party subject matter experts in response to client ...
Personal Risk Advisor
Norwalk, CT · On-site
Design risk management insurance programs to protect the personal assets, exposures and lifestyles ... Engage, introduce and position value-added third-party subject matter experts in response to client ...
... and risk selection? Do you enjoy translating business strategy into actionable roadmaps that ... third-party data, rating, and product management, connecting Prevail and legacy delivery ...
... and risk selection? Do you enjoy translating business strategy into actionable roadmaps that ... third-party data, rating, and product management, connecting Prevail and legacy delivery ...
This position reports directly to the Manager of Patient Financial Services Accounts Receivables ... third-party payers. Assisting the organization to comply with all federal/state guidelines.
This position reports directly to the Manager of Patient Financial Services Accounts Receivables ... third-party payers. Assisting the organization to comply with all federal/state guidelines.
Support third-party coordination efforts (railroad, utilities, agencies) as issues arise during ... Risk Management & Proactive Issue Identification * Support ongoing risk identification, risk ...
Support third-party coordination efforts (railroad, utilities, agencies) as issues arise during ... Risk Management & Proactive Issue Identification * Support ongoing risk identification, risk ...
Third Party Risk Management information
See Connecticut salary details
$49K - $59.2K
4% of jobs
$59.2K - $69.5K
6% of jobs
$69.5K - $79.7K
11% of jobs
$83.6K is the 25th percentile. Wages below this are outliers.
$79.7K - $90K
11% of jobs
The median wage is $98.1K / yr.
$90K - $100.2K
23% of jobs
$100.2K - $110.5K
13% of jobs
$117.2K is the 75th percentile. Wages above this are outliers.
$110.5K - $120.7K
12% of jobs
$120.7K - $131K
8% of jobs
$131K - $141.2K
6% of jobs
$141.2K - $151.5K
4% of jobs
$151.5K - $161.7K
2% of jobs
$49K
$106.1K
$161.7K
How much do third party risk management jobs pay per year?
What is a third party risk management?
A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.
What are some common challenges faced in a third party risk management role, and how are they addressed?
One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.
What are the key skills and qualifications needed to thrive in third party risk management, and why are they important?
To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.

Full-time
Posted 19 days ago
Deloitte rating
8.2
Based on 92 frontline employees who took The Breakroom Quiz
45th of 150 rated financial services
Job description
The Team: The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and increasingly complex business to improve financial performance and protect the firm's assets and reputation.
Work you'll do
Deloitte's Cyber QRM team is seeking a Quality & Risk Manager who will be responsible for supporting Cyber quality and risk management activities across the Cyber Offering Portfolio and Market Offerings. Candidates must have extensive experience in delivering and/or contracting for consulting services and related agreements.
Recruiting for this role ends on 08/28/2026.
Key job responsibilities include:
Guidance and Support to Senior Business Leaders within the Firm
- Serves as liaison between firm leadership and the Office of General Counsel and others (National Risk, National Office of Independence, etc.).
- Is responsible for advising practice leadership on potential quality and risk management issues within the Cyber Offering Portfolio that includes Cyber Strategy & Transformation, Cyber Defense & Resilience, Digital Trust & Privacy, Enterprise Security, and Cyber Operate services.
- Provides guidance to engagement leaders and teams on risk mitigation strategies, contract formation, contract terms, and contract management for Cyber services.
- Facilitates internal compliance with contract terms, risk management policies and procedures, and management directives for Cyber services.
- Comfortable in facilitating risk management training to business leaders / business teams when called upon to do so for Cyber services.
Proposals for Cyber Services
- Performs proposal reviews for Cyber opportunities.
- Consults with firm Partners, Principals, Managing Directors, and engagement teams on Requests for Proposals (RFPs), Teaming Agreements, and Non-Disclosure Agreements.
- Conducts Risk Consultations as needed.
- Helps interpret contract requirements and obligations and provides guidance to engagement teams.
- Facilitates early coordination with Office of General Counsel on RFPs where applicable.
Contract Negotiation for Cyber Services
- Involved in the negotiation of professional services contracts with a primary focus on reducing and mitigating delivery and contractual risks associated with the services being provided.
- Facilitates the coordination of Office of General Counsel, the business, and clients (where applicable) on contract negotiations.
- Professional services contracts include Master Services Agreements, Managed Services Agreements, Subscription License Agreements, Statements of Work, Engagement Letters, Change Orders, Subcontractor Agreements, Teaming Agreements, Non-Disclosure Agreements, independence consultations, and other similar or related agreements.
Contract Management for Cyber Services
- Reviews services contracts (in particular Statements of Work, Engagement Letters, and Change Orders) and provides revisions oriented to mitigating and containing risk aligned with Deloitte policies and procedures and management guidance.
- Available to consult and help interpret requirements of the contract as aligned to the Cyber services as well as associated Master Services Agreements and Managed Services Agreements, where applicable.
- Analyzes and assesses potential impacts associated with contract delivery risks aligned to the Cyber services.
- Where applicable, assists business leadership with contract template development and review to help expedite future risk reviews.
- Provides guidance to reduce in flight project risks, adjusts contract requirements to accommodate changing project circumstances, and manages stakeholder expectations to contractual obligations and agreed upon performance standards.
A successful candidate will possess these skills:
- Significant experience in negotiating various consulting agreements as identified above.
- Significant experience in advising business teams on developing agreements and contracts
- Significant experience evaluating and assessing Cyber engagements across the Cyber Market Offerings
- Experience in negotiating and managing vendor contracts (buy-side) for third-party software providers, including reseller agreements
- Understanding of the different types of sensitive data (PII, PHI, etc.), the associated risk profile of handling each type of data, and the appropriate risk mitigation strategies to be employed
- Ability to evaluate risks associated with large professional service engagements
- Experience advising engagement teams on risk matters
- Experience in Request for Proposal analysis, including contract terms and conditions
- Experience and ability to work directly with senior level individuals (internally and externally)
- Strong oral and written communication skills
- Ability to work autonomously and handle a fast paced, multi-task environment
- Experience structuring and negotiating license agreements for a software business
Qualifications
Required:
- Experience: 15+ years of Client Service delivery, direct contract negotiation, and/or relevant management experience
- Education: BBA/BA/BS in related field
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- Education: Master's Degree is desirable
The wage range for this roletakes into accountthe wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $155,600-306,800.
You may also be eligible toparticipatein a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends onvarious factors, including, without limitation, individual and organizational performance.
Qualifications:The Team: The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and increasingly complex business to improve financial performance and protect the firm's assets and reputation.
Work you'll do
Deloitte's Cyber QRM team is seeking a Quality & Risk Manager who will be responsible for supporting Cyber quality and risk management activities across the Cyber Offering Portfolio and Market Offerings. Candidates must have extensive experience in delivering and/or contracting for consulting services and related agreements.
Recruiting for this role ends on 08/28/2026.
Key job responsibilities include:
Guidance and Support to Senior Business Leaders within the Firm
- Serves as liaison between firm leadership and the Office of General Counsel and others (National Risk, National Office of Independence, etc.).
- Is responsible for advising practice leadership on potential quality and risk management issues within the Cyber Offering Portfolio that includes Cyber Strategy & Transformation, Cyber Defense & Resilience, Digital Trust & Privacy, Enterprise Security, and Cyber Operate services.
- Provides guidance to engagement leaders and teams on risk mitigation strategies, contract formation, contract terms, and contract management for Cyber services.
- Facilitates internal compliance with contract terms, risk management policies and procedures, and management directives for Cyber services.
- Comfortable in facilitating risk management training to business leaders / business teams when called upon to do so for Cyber services.
Proposals for Cyber Services
- Performs proposal reviews for Cyber opportunities.
- Consults with firm Partners, Principals, Managing Directors, and engagement teams on Requests for Proposals (RFPs), Teaming Agreements, and Non-Disclosure Agreements.
- Conducts Risk Consultations as needed.
- Helps interpret contract requirements and obligations and provides guidance to engagement teams.
- Facilitates early coordination with Office of General Counsel on RFPs where applicable.
Contract Negotiation for Cyber Services
- Involved in the negotiation of professional services contracts with a primary focus on reducing and mitigating delivery and contractual risks associated with the services being provided.
- Facilitates the coordination of Office of General Counsel, the business, and clients (where applicable) on contract negotiations.
- Professional services contracts include Master Services Agreements, Managed Services Agreements, Subscription License Agreements, Statements of Work, Engagement Letters, Change Orders, Subcontractor Agreements, Teaming Agreements, Non-Disclosure Agreements, independence consultations, and other similar or related agreements.
Contract Management for Cyber Services
- Reviews services contracts (in particular Statements of Work, Engagement Letters, and Change Orders) and provides revisions oriented to mitigating and containing risk aligned with Deloitte policies and procedures and management guidance.
- Available to consult and help interpret requirements of the contract as aligned to the Cyber services as well as associated Master Services Agreements and Managed Services Agreements, where applicable.
- Analyzes and assesses potential impacts associated with contract delivery risks aligned to the Cyber services.
- Where applicable, assists business leadership with contract template development and review to help expedite future risk reviews.
- Provides guidance to reduce in flight project risks, adjusts contract requirements to accommodate changing project circumstances, and manages stakeholder expectations to contractual obligations and agreed upon performance standards.
A successful candidate will possess these skills:
- Significant experience in negotiating various consulting agreements as identified above.
- Significant experience in advising business teams on developing agreements and contracts
- Significant experience evaluating and assessing Cyber engagements across the Cyber Market Offerings
- Experience in negotiating and managing vendor contracts (buy-side) for third-party software providers, including reseller agreements
- Understanding of the different types of sensitive data (PII, PHI, etc.), the associated risk profile of handling each type of data, and the appropriate risk mitigation strategies to be employed
- Ability to evaluate risks associated with large professional service engagements
- Experience advising engagement teams on risk matters
- Experience in Request for Proposal analysis, including contract terms and conditions
- Experience and ability to work directly with senior level individuals (internally and externally)
- Strong oral and written communication skills
- Ability to work autonomously and handle a fast paced, multi-task environment
- Experience structuring and negotiating license agreements for a software business
Qualifications
Required:
- Experience: 15+ years of Client Service delivery, direct contract negotiation, and/or relevant management experience
- Education: BBA/BA/BS in related field
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- Education: Master's Degree is desirable
The wage range for this roletakes into accountthe wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $155,600-306,800.
You may also be eligible toparticipatein a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends onvarious factors, including, without limitation, individual and organizational performance.
Education:Bachelor's DegreeEmployment Type: