Oracle Security is seeking an experienced individual contributor to support and mature the intake function within the Third-Party Risk Management program. This role will serve as a key front-door ...
Oracle Security is seeking an experienced individual contributor to support and mature the intake function within the Third-Party Risk Management program. This role will serve as a key front-door ...
Cybersecurity Risk Analyst
Nashville, TN · On-site
Familiarity with using Third Party Risk Management tools/processes such as OneTrust, SIG or similar GRC platforms. * Hands-on experience in Azure, AWS Cloud environments and familiarity with core ...
Cybersecurity Risk Analyst
Nashville, TN · On-site
Familiarity with using Third Party Risk Management tools/processes such as OneTrust, SIG or similar GRC platforms. * Hands-on experience in Azure, AWS Cloud environments and familiarity with core ...
Familiarity with using Third Party Risk Management tools/processes such as OneTrust, SIG or similar GRC platforms. * Hands-on experience in Azure, AWS Cloud environments and familiarity with core ...
Familiarity with using Third Party Risk Management tools/processes such as OneTrust, SIG or similar GRC platforms. * Hands-on experience in Azure, AWS Cloud environments and familiarity with core ...
This role manages the full claims lifecycle, coordinates with internal departments, legal counsel, insurers, and third-party administrators, and implements risk mitigation strategies to reduce ...
This role manages the full claims lifecycle, coordinates with internal departments, legal counsel, insurers, and third-party administrators, and implements risk mitigation strategies to reduce ...
Risk Manager
Memphis, TN · On-site
This role manages the full claims lifecycle, coordinates with internal departments, legal counsel, insurers, and third-party administrators, and implements risk mitigation strategies to reduce ...
Quick apply
Apply Early
Risk Manager
Memphis, TN · On-site
This role manages the full claims lifecycle, coordinates with internal departments, legal counsel, insurers, and third-party administrators, and implements risk mitigation strategies to reduce ...
Apply Early
Risk Manager
Memphis, TN · On-site
This role manages the full claims lifecycle, coordinates with internal departments, legal counsel, insurers, and third-party administrators, and implements risk mitigation strategies to reduce ...
Risk Manager
Memphis, TN · On-site
This role manages the full claims lifecycle, coordinates with internal departments, legal counsel, insurers, and third-party administrators, and implements risk mitigation strategies to reduce ...
This role manages the full claims lifecycle, coordinates with internal departments, legal counsel, insurers, and third-party administrators, and implements risk mitigation strategies to reduce ...
This role manages the full claims lifecycle, coordinates with internal departments, legal counsel, insurers, and third-party administrators, and implements risk mitigation strategies to reduce ...
Consultant - ServiceNow
Memphis, TN · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
Consultant - ServiceNow
Memphis, TN · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
Consultant - ServiceNow
Nashville, TN · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
Consultant - ServiceNow
Nashville, TN · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
Consultant - ServiceNow
Hermitage, TN · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
Consultant - ServiceNow
Hermitage, TN · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
Director, Regulatory Affairs and Compliance
Knoxville, TN · On-site
$123K - $163K/yr
Oversee third-party risk management, including due diligence, screening, and ongoing governance. * Lead and develop a high-performing compliance team with clear expectations, accountability, and ...
Director, Regulatory Affairs and Compliance
Knoxville, TN · On-site
$123K - $163K/yr
Oversee third-party risk management, including due diligence, screening, and ongoing governance. * Lead and develop a high-performing compliance team with clear expectations, accountability, and ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Manager - ServiceNow
Memphis, TN · On-site +1
... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...
Manager - ServiceNow
Memphis, TN · On-site +1
... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...
Manager - ServiceNow
Hermitage, TN · On-site +1
... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...
Manager - ServiceNow
Hermitage, TN · On-site +1
... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...
Manager - ServiceNow
Nashville, TN · On-site +1
... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...
Manager - ServiceNow
Nashville, TN · On-site +1
... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...
Third Party Risk Management information
See Tennessee salary details
$46.7K - $56.5K
4% of jobs
$56.5K - $66.3K
6% of jobs
$66.3K - $76.1K
11% of jobs
$79.7K is the 25th percentile. Wages below this are outliers.
$76.1K - $85.9K
11% of jobs
The median wage is $93.6K / yr.
$85.9K - $95.6K
23% of jobs
$95.6K - $105.4K
13% of jobs
$111.9K is the 75th percentile. Wages above this are outliers.
$105.4K - $115.2K
12% of jobs
$115.2K - $125K
8% of jobs
$125K - $134.7K
6% of jobs
$134.7K - $144.5K
4% of jobs
$144.5K - $154.3K
2% of jobs
$46.7K
$101.3K
$154.3K
How much do third party risk management jobs pay per year?
What is a Third Party Risk Management job?
A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.
What are some common challenges faced in a Third Party Risk Management role, and how are they addressed?
One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.
What are the key skills and qualifications needed to thrive in the Third Party Risk Management position, and why are they important?
To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
This job post has expired today. Applications are no longer accepted.
Oracle rating
8.7
Based on 146 frontline employees who took The Breakroom Quiz
43rd of 202 rated software companies
Job description
Oracle Security is seeking an experienced individual contributor to support and mature the intake function within the Third-Party Risk Management program.
This role will serve as a key front-door control point for third-party risk demand, helping ensure supplier, product, service, SaaS, tooling, and integration requests are identified early, triaged consistently, and routed to the appropriate TPRM path. The role will work across onboarding, procurement, security architecture, legal, privacy, business stakeholders, and other security teams to determine whether a supplier requires standard assessment support, deeper risk review, reuse of an existing assessment, or supplier incident / breach follow-up.
The successful candidate will help shift TPRM earlier into the supplier lifecycle, improve visibility of third-party technology and service risk, reduce ad hoc intake, and support scalable decision-making across Oracle's broad supplier ecosystem.
Only Oracle brings together the data, infrastructure, applications, and expertise to power everything from industry innovations to life-saving care. And with AI embedded across our products and services, we help customers turn that promise into a better future for all. Discover your potential at a company leading the way in AI and cloud solutions that impact billions of lives.
True innovation starts when everyone is empowered to contribute. That's why we're committed to growing a workforce that promotes opportunities for all with competitive benefits that support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_mb@oracle.com or by calling 1-888-404-2494 in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
Disclaimer:Certain U.S. based or U.S. customer or client-facing roles may be required to comply with applicable requirements, such as immunization/occupational health mandates, and/or drug testing requirements.
Range and benefit information provided in this posting are specific to the stated locations only
US: Hiring Range in USD from: $104,200 to $234,600 per annum. May be eligible for bonus, equity, and compensation deferral.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC4
Intake and Triage
- Manage incoming third-party risk requests from onboarding, procurement, security architecture, business stakeholders, security teams, and related intake channels.
- Review supplier, product, service, and engagement details to determine whether TPRM involvement is required.
- Validate whether incoming requests contain sufficient information to support triage, routing, and assessment scoping.
- Identify whether the request relates to a new supplier, existing supplier, changed scope, new integration, sensitive data, customer-impacting service, or elevated-risk activity.
- Route requests into the appropriate TPRM path: no action / reuse, standard assessment, deep dive, or breach / incident support.
- Help reduce fragmented, informal, or late-stage demand by establishing a more consistent front-door process.
- Check whether an existing TPRM assessment, supplier profile, tiering decision, or risk output can be reused.
- Determine whether the supplier's current use case materially changes the previous risk position.
- Reduce duplicate assessments by ensuring existing risk decisions are leveraged where current and applicable.
- Escalate higher-risk, unclear, or materially changed requests for deep-dive consideration.
- Ensure downstream teams receive concise, actionable TPRM outputs that allow work to continue without unnecessary rework.
- Support integration of TPRM into supplier approval workflows.
- Help identify third-party IT tools, SaaS, integrations, and services that should trigger TPRM review.
- Partner with Security Architecture, Procurement, Legal, Privacy, and LoB stakeholders to improve early supplier risk detection.
- Capture and categorize intake demand signals to support future automation, reporting, and control improvement.
- Help move TPRM from reactive assessment support toward earlier supplier lifecycle control.
- Maintain accurate intake records, supplier routing decisions, assessment status, and key risk indicators in approved tracking systems.
- Support the development of intake rules, triage criteria, minimum data requirements, decision trees, and process documentation.
- Identify recurring intake gaps, unclear ownership points, and opportunities to simplify or automate routing.
- Help maintain linkage between intake, supplier tiering, assessment activity, findings, continual monitoring services, and future capabilities.
- Support clean handoffs between intake, standard assessment activity, deep-dive work, and breach / incident follow-up.
- Support initial supplier-risk triage for supplier breach, ransomware, malware, certificate compromise, data exposure, and other third-party incident signals.
- Help determine whether Oracle may be impacted by a supplier event.
- Gather key information such as affected services, data exposure, compromise window, containment evidence, Oracle dependencies, and recommended actions.
- Route supplier incident matters to the appropriate internal teams where deeper security, legal, privacy, customer, product, or infrastructure review is required.
- Ensure supplier incident signals feed back into reassessment, findings management, continual monitoring, and supplier risk records.
Minimum Qualifications
- Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Technology, Risk Management, Business, Supply Chain, Procurement, or a related field, or equivalent practical experience.
- 5+ years of experience in third-party risk management, supplier risk, cybersecurity risk, technology risk, vendor management, procurement risk, security governance, compliance, or related security operations.
- Experience triaging supplier, SaaS, product, service, tooling, integration, or data-use requests and routing them to the appropriate risk, security, legal, privacy, procurement, or business review path.
- Experience supporting third-party risk assessments, supplier due diligence, risk tiering, assessment reuse, or supplier control review activities.
- Experience working with cross-functional stakeholders and producing clear written risk, routing, or assessment outputs.
Preferred Qualifications
- Experience in a large, complex, multinational, technology, cloud, or regulated enterprise environment.
- Experience supporting supplier onboarding, procurement, security architecture, privacy, legal, or incident-response workflows.
- Familiarity with supplier incident triage, including ransomware, malware, data exposure, certificate compromise, service compromise, or other third-party breach signals.
- Familiarity with supplier assurance evidence, including SOC 2, ISO 27001, SIG, CAIQ, penetration test summaries, security questionnaires, or equivalent materials.
- Experience with Jira, GRC tooling, procurement platforms, supplier management systems, or continuous monitoring platforms.
- Relevant professional certification such as CISSP, CISM, CISA, CRISC, ISO 27001, or equivalent.
About Oracle
Sourced by ZipRecruiter
An Oracle career can span industries, roles, Countries and cultures, giving you the opportunity to flourish in new roles and innovate, while blending work life in. Oracle has thrived through 40+ years of change by innovating and operating with integrity while delivering for the top companies in almost every industry. In order to nurture the talent that makes this happen, we are committed to an inclusive culture that celebrates and values diverse insights and perspectives, a workforce that inspires thought leadership and innovation. Oracle offers a highly competitive suite of Employee Benefits designed on the principles of parity, consistency, and affordability. The overall package includes certain core elements such as Medical, Life Insurance, access to Retirement Planning, and much more. We also encourage our employees to engage in the culture of giving back to the communities where we live and do business. At Oracle, we believe that innovation starts with diversity and inclusion and to create the future we need talent from various backgrounds, perspectives, and abilities. We ensure that individuals with disabilities are provided reasonable accommodation to successfully participate in the job application, interview process, and in potential roles. to perform crucial job functions. That's why we're committed to creating a workforce where all individuals can do their best work. It's when everyone's voice is heard and valued that we're inspired to go beyond what's been done before.
Industry
It services
Company size
10,000+ Employees
Headquarters location
Redwood City, CA, US
Year founded
1977