1

Third Party Risk Management Jobs in Massachusetts

Additionally, you will support the adoption of risk management practices across the ETX organization. As a key member of the ETX Third-Party Technology Assurance team, you will help drive change and ...

Additionally, you will support the adoption of risk management practices across the ETX organization. As a key member of the ETX Third-Party Technology Assurance team, you will help drive change and ...

You will help manage third-party vendor risk reviews, and operational requests, in cross-functional security compliance workflows. Success in this role requires strong attention to detail ...

You will help manage third-party vendor risk reviews, and operational requests, in cross-functional security compliance workflows. Success in this role requires strong attention to detail ...

You will help manage third-party vendor risk reviews, and operational requests, in cross-functional security compliance workflows. Success in this role requires strong attention to detail ...

... third-party risk scoring, control mapping, and remediation tracking • Manage the vendor risk assessment lifecycle for AI/ML related suppliers, ensuring documented controls, evidence collection, and ...

... third-party risk scoring, control mapping, and remediation tracking Manage the vendor risk assessment lifecycle for AI/ML related suppliers, ensuring documented controls, evidence collection, and ...

... third-party risk scoring, control mapping, and remediation tracking • Manage the vendor risk assessment lifecycle for AI/ML related suppliers, ensuring documented controls, evidence collection, and ...

next page

Showing results 1-20

Third Party Risk Management information

See Massachusetts salary details

$56.2K

$121.8K

$185.7K

How much do third party risk management jobs pay per year?

As of Jul 27, 2026, the average yearly pay for third party risk management in Massachusetts is $121,833.00, according to ZipRecruiter salary data. Most workers in this role earn between $98,300.00 and $140,900.00 per year, depending on experience, location, and employer.

What is a Third Party Risk Management job?

A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.

What are some common challenges faced in a Third Party Risk Management role, and how are they addressed?

One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.

What are the key skills and qualifications needed to thrive in the Third Party Risk Management position, and why are they important?

To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.

What are the most commonly searched types of Third Party Risk Management jobs in Massachusetts? The most popular types of Third Party Risk Management jobs in Massachusetts are:
What are popular job titles related to Third Party Risk Management jobs in Massachusetts? For Third Party Risk Management jobs in Massachusetts, the most frequently searched job titles are:
What job categories do people searching Third Party Risk Management jobs in Massachusetts look for? The top searched job categories for Third Party Risk Management jobs in Massachusetts are:
What cities in Massachusetts are hiring for Third Party Risk Management jobs? Cities in Massachusetts with the most Third Party Risk Management job openings:
Infographic showing various Third Party Risk Management job openings in Massachusetts as of July 2026, with employment types broken down into 1% As Needed, 80% Full Time, 15% Part Time, 1% Temporary, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $121,833 per year, or $58.6 per hour.
Third-Party Risk Consultant

Third-Party Risk Consultant

MassMutual

Boston, MA

$86K - $113K/yr

Full-time

Posted 16 days ago


Job description

Third-Party Risk Consultant, ETX Governance, Risk & Compliance Team

Full-Time, Springfield/Boston

The Opportunity

As a Third-Party Risk Consultant, you will play a crucial role in implementing the third-party risk framework. This position is responsible for executing third-party risk assessments and due diligence activities across the MassMutual’s third-party ecosystem. Additionally, you will support the adoption of risk management practices across the ETX organization. As a key member of the ETX Third-Party Technology Assurance team, you will help drive change and enhance operational efficiency throughout the organization.

The Team

The ETX Governance, Risk & Compliance Team is comprised of governance and risk professionals responsible for implementing governance processes and risk management practices for the ETX (Information Technology) organization. We work closely with our business and technology partners and succeed together by designing practical and effective technology governance and risk management solutions to increase operational efficiency.

The Impact

  • Analyze third-party services, data flows, and system integrations to identify and recommend inherent and residual risk exposure.
  • Collaborate with issue management teams to ensure identified risks, including vulnerabilities, are appropriately tracked, communicated, and remediated
  • Contribute to status reporting and metrics tracking for ongoing third-party risk activities
  • Evaluate, document, communicate, and support breach event and incident response activities
  • Execute risk evaluation procedures by reviewing evidence, documenting observations, and recording results in accordance with defined templates and quality standards
  • Identify control gaps, weaknesses, or non-compliance issues and clearly document and recommend findings for further review and disposition
  • Partner with senior practitioners to support risk rating determinations and escalation decisions
  • Apply knowledge and discretion when performing risk assessments to ensure third parties meet security and technology standards in alignment with established practices and procedures
  • Proactively escalate delays, gaps in information, or emerging risks to the team lead
  • Research and consult with internal subject matter experts to understand and document risk identified through risk assessments and due diligence practices, and communicate the findings to stakeholders

The Minimum Qualifications

  • 2+ years of experience in risk management and/or completing third-party risk assessments
  • 2+ years of experience implementing metrics to track status, identify trends, and surface potential issues
  • 2+ years of experience working in an enterprise GRC platform, including proficient use of Excel import/export functions

The Ideal Qualifications

  • Bachelor’s degree, preferably in technology, cybersecurity, risk management, or business-related field
  • 3+ years of experience in third-party risk management, technology risk, cybersecurity, audit, or testing controls
  • Proficiency with SharePoint and related tools used to execute an effective regulatory compliance program
  • Experience communicating regulatory requirements to technical and non-technical audiences, and facilitating discussions between ETX owners, Compliance, and Law to ensure a shared understanding and effective compliance
  • Foundational understanding of third-party risk domains, including:
    • Cybersecurity and data protection
    • Cloud/SaaS risk considerations
    • Identity and access management (e.g., SSO vs. standalone access)
    • Business continuity and resiliency
  • Familiarity with industry frameworks such as NIST, ISO 27001, SOC 2, or similar
  • Ability to interpret control evidence and assess adequacy relative to risk
  • Strong written and verbal communication skills, with the ability to interact effectively with internal stakeholders and third parties
  • Demonstrated ability to execute with limited guidance while meeting deadlines in a structured, process-driven environment
  • Strong attention to detail and documentation discipline

What You Can Expect at MassMutual

MassMutual offers the opportunity to do meaningful work within a purpose-driven organization that values long-term impact over short-term outcomes. In this role, you can expect:

  • Clear areas of ownership and accountability, with work that connects directly to company and customer outcomes 
  • A collaborative environment where perspectives are welcomed  
  • Access to learning, development, and internal networks that support continuous growth and skill-building over time 
  • Employee-led communities and forums that foster connection, learning, and inclusion across the organization 
  • A culture grounded in integrity, responsibility, and stewardship—supported by a company with a strong legacy and a future-focused mindset

#LI-RK1

MassMutual is an equal employment opportunity employer. We welcome all persons to apply.
If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need.
California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.