1

Third Party Risk Management Jobs in Birmingham, AL

... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...

... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...

Cybersecurity Infrastructure availability Cloud services Identity and Access Management Data protection Artificial Intelligence Third-Party Technology Risk Executive Risk Reporting Produces executive ...

Cybersecurity Infrastructure availability Cloud services Identity and Access Management Data protection Artificial Intelligence Third-Party Technology Risk Develops methodologies, models, and ...

New

Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...

next page

Showing results 1-20

Third Party Risk Management information

See Birmingham, AL salary details

$48.3K

$104.5K

$159.3K

How much do third party risk management jobs pay per year?

As of Aug 28, 2026, the average yearly pay for third party risk management in Birmingham, AL is $104,549.00, according to ZipRecruiter salary data. Most workers in this role earn between $84,300.00 and $120,900.00 per year, depending on experience, location, and employer.

What is a third party risk management?

A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.

What are some common challenges faced in a third party risk management role, and how are they addressed?

One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.

What are the key skills and qualifications needed to thrive in third party risk management, and why are they important?

To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.

Is third party risk management a good career?

Third Party Risk Management is a growing field focused on identifying and mitigating risks associated with external vendors and partners. It requires skills in compliance, cybersecurity, and contract management, often involving certifications like CTPRP or CRISC. The role offers opportunities in various industries with increasing demand due to regulatory requirements and supply chain complexities.

What does a third party risk management do?

A third party risk management professional assesses and monitors risks associated with external vendors, suppliers, and partners to ensure compliance, security, and operational integrity. They conduct risk assessments, develop mitigation strategies, and often use tools like risk management software to protect the organization from potential threats and vulnerabilities.

What are the most commonly searched types of Third Party Risk Management jobs in Birmingham, AL?

The most popular types of Third Party Risk Management jobs in Birmingham, AL are:

What are popular job titles related to Third Party Risk Management jobs in Birmingham, AL?

For Third Party Risk Management jobs in Birmingham, AL, the most frequently searched job titles are:

What job categories do people searching Third Party Risk Management jobs in Birmingham, AL look for?

The top searched job categories for Third Party Risk Management jobs in Birmingham, AL are:

Infographic showing various Third Party Risk Management job openings in Birmingham, AL as of August 2026, with employment types broken down into 1% As Needed, 79% Full Time, 17% Part Time, and 3% Contract. Highlights an 82% Physical, 3% Hybrid, and 15% Remote job distribution, with an average salary of $104,549 per year, or $50.3 per hour.

IT Risk Director, Technology Risk Management Resiliency & Business Continuity

Huntington

Hoover, AL • On-site, Remote

Full-time

Re-posted 16 days ago


Huntington National Bank rating

8.1

Company rating: 8.1 out of 10

Based on 173 frontline employees who took The Breakroom Quiz

65th of 172 rated banks


Job description

Description

Summary:

The IT Risk Director, Resiliency & Business Continuity is responsible for leading the First Line Resiliency and Business Continuity Program across assigned business segments. This role establishes the strategic vision, governance, and execution framework for resiliency capabilities that enable the organization to prepare for, respond to, recover from, and adapt to operational disruptions. The IT Risk Director provides leadership, effective challenge, and partnership to business leaders, risk partners, technology teams, and support functions to ensure resilience risks are identified, assessed, mitigated, and monitored in alignment with enterprise standards and regulatory expectations.

Duties and Responsibilities:

  • Provide independent review and challenge of business continuity and resiliency activities performed by business units.
  • Facilitate completion of Business Impact Analyses, continuity plans, and resiliency assessments.
  • Monitor adherence to enterprise resiliency policies, standards, and risk appetite requirements.
  • Aggregate and report resiliency risks, issues, metrics, and control effectiveness to senior management.
  • Provide consultation and guidance regarding resiliency requirements and regulatory expectations.
  • Track remediation activities and validate closure of identified resiliency gaps.
  • Escalate material resiliency risks, control weaknesses, and testing failures to appropriate governance forums.  
  • Provide subject matter expertise and support during audits, examinations, and issue remediation activities.
  • Lead a high-performing team responsible for business continuity, resiliency, crisis management, and recovery planning activities.
  • Provide leadership and oversight for Business Impact Analyses (BIAs), continuity plans, recovery strategies, scenario testing, and resiliency assessments.
  • Partner with senior business leaders to identify critical business services, supporting processes, dependencies, and recovery requirements.
  • Oversee the development and execution of continuity and resiliency testing programs, including targeted risk assessments, tabletop exercises and recovery validation activities.
  • Drive continuous improvement of resiliency capabilities through analysis of testing results, events, incidents, and industry best practices.
  • Monitor resiliency-related metrics, key risk indicators, control performance, and remediation activities to ensure risks remain within established appetite.
  • Represent the First Line Risk & Controls organization in enterprise governance committees, regulatory examinations, audits, and executive forums.
  • Provide leadership during disruption events and support crisis management activities as required.
  • Foster strong collaboration with Enterprise Risk Management, Technology, Information Security, Facilities, Third-Party Risk, and other risk disciplines.
  • Ensure compliance with applicable regulatory requirements, policies, standards, and procedures related to operational resilience and business continuity.
  • Perform other duties as assigned.

Basic Qualifications:

  • Bachelor's degree or equivalent level of work experience
  • 10+ years in a related role

Preferred Qualifications:

  • 5+ years of leadership experience managing teams and enterprise-wide programs.
  • Advanced knowledge of operational resilience, business continuity, crisis management, and risk management frameworks.
  • Demonstrated experience developing and leading large-scale resiliency programs within a complex financial services environment.
  • Strong executive presence with the ability to influence senior leadership and drive strategic decisions.
  • Excellent communication, presentation, and stakeholder management skills.
  • Experience leading regulatory examinations, audits, and issue remediation activities.
  • Proven ability to manage multiple priorities and drive results in a fast-paced environment.
  • Strong analytical, problem-solving, and strategic planning capabilities.
  • Experience with business continuity and resiliency technologies, tools, and reporting platforms.
  • Industry certifications such as CBCP, MBCP, CRISC, CISA, CISM, CISSP, PMP, or similar.
  • Knowledge of regulatory expectations related to operational resilience, business continuity, and third-party risk management.


Exempt Status: (Yes = not eligible for overtime pay) (No = eligible for overtime pay)

Yes

Workplace Type:

Office

Our Approach to Office Workplace Type

Certain positions outside our branch network may be eligible for a flexible work arrangement. We’re combining the best of both worlds:  in-office and work from home. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. Remote roles will also have the opportunity to come together in our offices for moments that matter. Specific work arrangements will be provided by the hiring team.

Huntington is an Equal Opportunity Employer.

Tobacco-Free Hiring Practice: Visit Huntington's Career Web Site for more details.

Note to Agency Recruiters:  Huntington Bank will not pay a fee for any placement resulting from the receipt of an unsolicited resume.  All unsolicited resumes sent to any Huntington Bank colleagues, directly or indirectly, will be considered Huntington Bank property. Recruiting agencies must have a valid, written and fully executed Master Service Agreement and Statement of Work for consideration.


What Huntington National Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom