1

Third Party Risk Management Jobs in Kentucky (NOW HIRING)

$140 - $180/hr

Third Party Risk Management Lead Professional US 2 days ago Requisition ID: 1286 Salary: $160,000.00 Annually Third Party Risk Management Lead About Sungrow: Sungrow North America is a leading ...

$237 - $296/hr

Department Overview The Senior Director of Cyber Third-Party Risk Management (TPRM) is accountable for leading and modernizing McDonald's global third-party cyber risk management capability across a ...

New

$150 - $210/hr

ABOUT THE TEAM The Internal Controls function sits within the broader Finance Risk Management (FRM ... third-party dependencies, systems, and other high-risk workflows. We work closely with ...

New

$104 - $166/hr

Run third-party security risk management. Conduct vendor security due diligence and assessments, contract and control reviews, continuous monitoring, and risk reporting. * Lead data protection.

$180 - $260/hr

About the Team The Internal Controls function sits within the broader Finance Risk Management (FRM ... third-party dependencies, systems, and other high-risk workflows. We work closely with ...

$90 - $130/hr

Basic understanding of vendor risk assessment methodologies and third-party risk management practices. * Strong analytical, research, and technical writing skills, with the ability to translate ...

New

$189 - $219/hr

Manage day-to-day relationships with brokers, carriers, third-party administrators, consultants, outside counsel, and other insurance and risk management advisors. * Work with the Company's captive ...

$152 - $272/hr

... includes Third-Party Risk Management as well as senior risk professionals. Trust Risk at Autodesk is an established team and program. We are looking for a leader with the lived experience of ...

... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...

... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...

$90 - $140/hr

Project Management Soft Skills * Strong Writing Skills * Verbal Communication Skills * Ability to Learn Quickly Industry Keywords * Third-Party Risk * ESG * Anti-Bribery * Anti-Corruption

$120 - $180/hr

Leads the corporate claims function, including oversight of third-party administrators, claim ... Bachelor's Degree in Risk Management, Insurance, Finance, Business, or related field; a minimum of ...

IT Security and Governance Analyst

Louisville, KY · On-site

$43.25 - $57.50/hr

... k management program to ensure both internal and third-party IT risks are identified, assessed, prioritized and remediated. • Raise awareness within the organization of IT governance, risk and ...

Risk Specialist

Owensboro, KY

$97K/yr

Risk Management | Work Hours: 0800-1630 week days | Weekend Requirements: N/A | 1.0 FTE Job Summary ... third-party administrators, and legal counsel to support claims management, regulatory reporting ...

Risk Specialist

Owensboro, KY · On-site

$97K/yr

Risk Management | Work Hours: 0800-1630 week days | Weekend Requirements: N/A | 1.0 FTE Job Summary ... third-party administrators, and legal counsel to support claims management, regulatory reporting ...

$192.86/hr

Support regulatory, audit, compliance, and third-party risk management activities in alignment with healthcare security requirements. * Develop technical standards, policies, playbooks, runbooks ...

$180 - $280/hr

Supports the Bank's third-party cybersecurity risk management program across the vendor lifecycle: * Due diligence and onboarding * Ongoing monitoring * Issue Identification and remediation * Works ...

New

next page

Showing results 1-20

Third Party Risk Management information

See Kentucky salary details

$44.7K

$96.9K

$147.6K

How much do third party risk management jobs pay per year?

As of Aug 25, 2026, the average yearly pay for third party risk management in Kentucky is $96,889.00, according to ZipRecruiter salary data. Most workers in this role earn between $78,200.00 and $112,000.00 per year, depending on experience, location, and employer.

What is a third party risk management?

A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.

What are some common challenges faced in a third party risk management role, and how are they addressed?

One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.

What are the key skills and qualifications needed to thrive in third party risk management, and why are they important?

To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.

Is third party risk management a good career?

Third Party Risk Management is a growing field focused on identifying and mitigating risks associated with external vendors and partners. It requires skills in compliance, cybersecurity, and contract management, often involving certifications like CTPRP or CRISC. The role offers opportunities in various industries with increasing demand due to regulatory requirements and supply chain complexities.

What does a third party risk management do?

A third party risk management professional assesses and monitors risks associated with external vendors, suppliers, and partners to ensure compliance, security, and operational integrity. They conduct risk assessments, develop mitigation strategies, and often use tools like risk management software to protect the organization from potential threats and vulnerabilities.

What are popular job titles related to Third Party Risk Management jobs in Kentucky?

For Third Party Risk Management jobs in Kentucky, the most frequently searched job titles are:

What job categories do people searching Third Party Risk Management jobs in Kentucky look for?

The top searched job categories for Third Party Risk Management jobs in Kentucky are:

Infographic showing various Third Party Risk Management job openings in Kentucky as of August 2026, with employment types broken down into 1% As Needed, 80% Full Time, 10% Part Time, 7% Temporary, and 2% Contract. Highlights an 82% Physical, 3% Hybrid, and 15% Remote job distribution, with an average salary of $96,889 per year, or $46.6 per hour.

Third Party Risk Management Lead

On-site

$140 - $180/hr

Other

Posted 4 days ago


Job description

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Third Party Risk Management Lead

Professional US

2 days ago Requisition ID: 1286

Salary: $160,000.00 Annually

Third Party Risk Management Lead

About Sungrow:

Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America is known for its commitment to innovation, high-quality standards, and exceptional customer service, aiming to provide sustainable and reliable energy solutions to meet the growing demand for clean power.

The Position:

Sungrow Americas is seeking a Third Party Risk Management (TPRM) Lead to establish and operate a scalable program for managing vendor, supplier, and third-party risk across the organization.

This role is responsible for ensuring that third-party relationships are assessed, governed, and continuously monitored in alignment with regulatory expectations and customer requirements.

In parallel, this role will support the development of business continuity and resilience capabilities, including Business Impact Analysis (BIA) and foundational BCDR program elements.

This is a program leadership role requiring strong execution, cross-functional influence, and the ability to operate in a regulated, critical infrastructure environment

Key Responsibilities
  • Build and operate the TPRM program lifecycle, including:
    • Vendor intake and risk tiering
    • Security assessments and due diligence
    • Ongoing monitoring and reassessment
  • Define and enforce minimum security requirements for vendors and suppliers
  • Partner with legal and procurement to embed security and risk clauses into contracts
  • Establish processes for exception management and risk acceptance
  • Lead execution of third-party security reviews, including:
    • Questionnaires and evidence validation
    • Review of SOC 2, ISO certifications, and supporting artifacts
  • Identify and communicate material risks and required mitigations
  • Ensure alignment to frameworks (NIST, ISO 27001, SOC 2, NERC CIP where applicable)
  • Implement ongoing monitoring capabilities for vendor risk posture
  • Track and drive remediation of identified third-party risks
  • Maintain visibility into fourth-party and supply chain dependencies where relevant
Business Continuity & Resilience (BCDR/BIA Support)
  • Support development of Business Impact Analysis (BIA) across critical functions
  • Partner with business and IT stakeholders to define:
    • Critical processes
    • Recovery time objectives (RTO) / recovery point objectives (RPO)
  • Contribute to the development of BCDR plans and testing frameworks
  • Ensure third-party dependencies are integrated into continuity planning
Governance, Reporting & Audit Readiness
  • Develop and track TPRM KPIs and risk metrics
  • Provide executive-level reporting on third-party risk posture
  • Maintain documentation and evidence to support:
    • Audits
    • Customer security reviews
    • Regulatory inquiries
  • Ensure program is defensible and repeatable
Cross-Functional Collaboration
  • Partner with:
    • Procurement (vendor onboarding)
    • Legal (contractual protections)
    • IT and engineering (technical validation)
  • Act as the central point of coordination for third-party risk decisions
Requirements
  • 7–10+ years of experience in third-party risk management, GRC, or vendor risk programs
  • Proven experience building or leading a TPRM program in a regulated or enterprise environment
  • Strong understanding of:
    • Vendor risk assessment methodologies
    • Security frameworks (NIST, ISO 27001, SOC 2)
  • Experience reviewing:
    • Security documentation (policies, controls, audit reports)
    • Third-party attestations (SOC 2, ISO certifications)
  • Working knowledge of business continuity and resilience concepts (BIA, BCDR)
  • Ability to drive cross-functional alignment and accountability
Preferred
  • Experience in energy, industrial, or critical infrastructure sectors
  • Familiarity with NERC CIP requirements
  • Experience implementing or operating TPRM platforms/tools
  • Certifications such as CRISC, CISM, CISSP, or CTPRP
  • Program Builder: Can stand up and mature TPRM from structure to scale
  • Risk Translator: Converts vendor risk into business and contractual impact
  • Governance-Oriented: Ensures decisions are documented and defensible
  • Cross-Functional Operator: Effective with procurement, legal, IT, and engineering
  • Pragmatic Enforcer: Balances risk reduction with business enablement
Strategic Fit
  • Establishes control over external risk exposure
  • Strengthens customer trust and regulatory alignment
  • Enables defensible procurement and vendor onboarding decisions
  • Builds foundation for enterprise resilience and continuity planning
Travel

Up to 10%

Work Location and Status:
  • Remote

Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only contact candidates who best meet the requirements. Thank you for your interest in Sungrow.

#J-18808-Ljbffr