Information Security experience (preferably Third Party Risk Management and Compliance) Familiarity with SOC 1 (SSAE 16*) and SOC 2 (**AT101) reports Ability to write process, procedures, flowcharts ...
Information Security experience (preferably Third Party Risk Management and Compliance) Familiarity with SOC 1 (SSAE 16*) and SOC 2 (**AT101) reports Ability to write process, procedures, flowcharts ...
Supports and contributes to third-party and integrated risk management activities within Trinity Health GRC platforms, identifying opportunities for process improvement and adapting to evolving ...
Supports and contributes to third-party and integrated risk management activities within Trinity Health GRC platforms, identifying opportunities for process improvement and adapting to evolving ...
Supports and contributes to third-party and integrated risk management activities within Trinity Health GRC platforms, identifying opportunities for process improvement and adapting to evolving ...
Supports and contributes to third-party and integrated risk management activities within Trinity Health GRC platforms, identifying opportunities for process improvement and adapting to evolving ...
Supports and contributes to third-party and integrated risk management activities within Trinity Health GRC platforms, identifying opportunities for process improvement and adapting to evolving ...
Supports and contributes to third-party and integrated risk management activities within Trinity Health GRC platforms, identifying opportunities for process improvement and adapting to evolving ...
Develops and leads Trinity Health's Information Security Third Party Risk and Integrated Risk Management Program, with direct responsibility for defining team goals, scope of work, and deliverables ...
Develops and leads Trinity Health's Information Security Third Party Risk and Integrated Risk Management Program, with direct responsibility for defining team goals, scope of work, and deliverables ...
Junior Analyst, Third Party Diligence Are you a detail-oriented risk professional looking to make a ... Thomson Reuters is looking for an Junior Analyst to join our Enterprise Risk Management function ...
Junior Analyst, Third Party Diligence Are you a detail-oriented risk professional looking to make a ... Thomson Reuters is looking for an Junior Analyst to join our Enterprise Risk Management function ...
Junior Analyst, Third Party Diligence Are you a detail-oriented risk professional looking to make a ... Thomson Reuters is looking for an Junior Analyst to join our Enterprise Risk Management function ...
Junior Analyst, Third Party Diligence Are you a detail-oriented risk professional looking to make a ... Thomson Reuters is looking for an Junior Analyst to join our Enterprise Risk Management function ...
... third-party risk management, cloud security, incident readiness, and managed risk services. * Identify and qualify high-value expansion opportunities by analyzing client risk maturity, cyber program ...
... third-party risk management, cloud security, incident readiness, and managed risk services. * Identify and qualify high-value expansion opportunities by analyzing client risk maturity, cyber program ...
Develops and leads Trinity Health's Information Security Third Party Risk and Integrated Risk Management Program, with direct responsibility for defining team goals, scope of work, and deliverables ...
Develops and leads Trinity Health's Information Security Third Party Risk and Integrated Risk Management Program, with direct responsibility for defining team goals, scope of work, and deliverables ...
Develops and leads Trinity Health's Information Security Third Party Risk and Integrated Risk Management Program, with direct responsibility for defining team goals, scope of work, and deliverables ...
Develops and leads Trinity Health's Information Security Third Party Risk and Integrated Risk Management Program, with direct responsibility for defining team goals, scope of work, and deliverables ...
Managing and enhancing our third-party risk management program, including refining evaluation criteria, expected evidence, reevaluation timeframe, and remediation processes. * Regularly evaluating ...
Managing and enhancing our third-party risk management program, including refining evaluation criteria, expected evidence, reevaluation timeframe, and remediation processes. * Regularly evaluating ...
IT GRC Program Administrator II
Pontiac, MI · On-site
Managing and enhancing our third-party risk management program, including refining evaluation criteria, expected evidence, reevaluation timeframe, and remediation processes. * Regularly evaluating ...
IT GRC Program Administrator II
Pontiac, MI · On-site
Managing and enhancing our third-party risk management program, including refining evaluation criteria, expected evidence, reevaluation timeframe, and remediation processes. * Regularly evaluating ...
IT GRC Program Administrator II
Pontiac, MI · On-site
Managing and enhancing our third-party risk management program, including refining evaluation criteria, expected evidence, reevaluation timeframe, and remediation processes. * Regularly evaluating ...
IT GRC Program Administrator II
Pontiac, MI · On-site
Managing and enhancing our third-party risk management program, including refining evaluation criteria, expected evidence, reevaluation timeframe, and remediation processes. * Regularly evaluating ...
You will also play a pivotal role in key programs like Business Continuity/Disaster Recovery, IT Risk Management, Third Party Risk Management, Data Governance, and Security Awareness. Your function ...
You will also play a pivotal role in key programs like Business Continuity/Disaster Recovery, IT Risk Management, Third Party Risk Management, Data Governance, and Security Awareness. Your function ...
Consultant - ServiceNow
Detroit, MI · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
Consultant - ServiceNow
Detroit, MI · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Manager - ServiceNow
Detroit, MI · On-site +1
... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...
Manager - ServiceNow
Detroit, MI · On-site +1
... Management, and Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions ...
Manager, Quality Management
Detroit, MI · On-site +1
... third-party risk, and financial reporting controls * Performing risk assessments, information ... Project Management Professional (PMP) * Certified Information Privacy Professional (CIPP) The wage ...
Manager, Quality Management
Detroit, MI · On-site +1
... third-party risk, and financial reporting controls * Performing risk assessments, information ... Project Management Professional (PMP) * Certified Information Privacy Professional (CIPP) The wage ...
... third party administrators across the North American region * Present insurance and risk management solutions proposals to senior leaders in the organization * Provide leadership to captive team ...
... third party administrators across the North American region * Present insurance and risk management solutions proposals to senior leaders in the organization * Provide leadership to captive team ...
Third Party Risk Management information
See Detroit, MI salary details
$51K - $61.6K
4% of jobs
$61.6K - $72.3K
6% of jobs
$72.3K - $83K
11% of jobs
$87K is the 25th percentile. Wages below this are outliers.
$83K - $93.6K
11% of jobs
The median wage is $102.1K / yr.
$93.6K - $104.3K
23% of jobs
$104.3K - $115K
13% of jobs
$122K is the 75th percentile. Wages above this are outliers.
$115K - $125.6K
12% of jobs
$125.6K - $136.3K
8% of jobs
$136.3K - $147K
6% of jobs
$147K - $157.6K
4% of jobs
$157.6K - $168.3K
2% of jobs
$51K
$110.4K
$168.3K
How much do third party risk management jobs pay per year?
What is a Third Party Risk Management job?
A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.
What are some common challenges faced in a Third Party Risk Management role, and how are they addressed?
One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.
What are the key skills and qualifications needed to thrive in the Third Party Risk Management position, and why are they important?
To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.

Other
Posted 10 days ago
Job description
OpTech is an award-winning talent management firm providing Information Technology, Engineering and Healthcare talent and services to Fortune 500 and Government clients. We offer our employees outstanding career opportunities supporting innovative companies with cutting-edge technology. OpTech's awards include the distinguished Elite Category Award for best Recruitment, Selection and Orientation practices, the prestigious National 101 Best and Brightest Companies to Work For and the coveted Crain's Cool Places to Work in Michigan. OpTech creatively combines training, mentoring, bonuses and rewards to motivate and retain the highest caliber talent. OpTech offers Opportunity...see how a fast-paced career with one of the leading technology firms can benefit you!
Required Skills
 The job is to assess the controls at our suppliers to ensure that they are adequate to mitigate the risk of outsourcing to that supplier.
This assessment would be accomplished by interpreting independent reviews of the supplier, minimal on-site reviews and testing at the supplier, as well as utilizing the available tools (MS Office, Archer, Hiperos, etc.), to automate and communicate the scoring of inherent and residual risks involved in supplier relationships.
Information Security experience (preferably Third Party Risk Management and Compliance)
Familiarity with SOC 1 (SSAE 16*) and SOC 2 (**AT101) reports
Ability to write process, procedures, flowcharts Knowledge of regulatory and industry standards such GLBA, HIPAA, COBIT, FFIEC
Information Security experience (preferably Third Party Risk Management and Compliance)
Familiarity with SOC 1 (SSAE 16*) and SOC 2 (**AT101) reports
 Ability to write process, procedures, flowcharts
Knowledge of regulatory and industry standards such GLBA, HIPAA, COBIT, FFIEC
Preferred Skills and competencies
IT Audit Experience
Knowledge of FS-ISAC Shared Assessments, Pen Test results , PCI DSS
Experience performing on-site third party reviews CISA, CISSP, CRISC or other security certifications
Archer (eGRC) or Hiperos (Supplier Management) experience
Knowledge of Visual Basic and Macro Coding for MS Office applications