The Third-Party Risk Management (TPRM) program provides strategic direction for TPRM governance & oversight, due diligence lifecycle execution, monitoring & reporting, and program management across ...
The Third-Party Risk Management (TPRM) program provides strategic direction for TPRM governance & oversight, due diligence lifecycle execution, monitoring & reporting, and program management across ...
The Third-Party Risk Management (TPRM) program provides strategic direction for TPRM governance & oversight, due diligence lifecycle execution, monitoring & reporting, and program management across ...
The Third-Party Risk Management (TPRM) program provides strategic direction for TPRM governance & oversight, due diligence lifecycle execution, monitoring & reporting, and program management across ...
Senior - Third-Party Cybersecurity & Risk Management Location :Hybrid, (3 days onsite) Charlotte, NC, Mt Laurel Township, NJ Top Skills Requried : TP Cybersecurity & Risk Management, Hands-on ...
New
Senior - Third-Party Cybersecurity & Risk Management Location :Hybrid, (3 days onsite) Charlotte, NC, Mt Laurel Township, NJ Top Skills Requried : TP Cybersecurity & Risk Management, Hands-on ...
New
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Lead the enterprise Cybersecurity Third-Party Risk Management program, including strategy, operating model, governance, policies, standards, procedures, assessment methodology, and reporting.
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Lead the enterprise Cybersecurity Third-Party Risk Management program, including strategy, operating model, governance, policies, standards, procedures, assessment methodology, and reporting.
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Lead the enterprise Cybersecurity Third-Party Risk Management program, including strategy, operating model, governance, policies, standards, procedures, assessment methodology, and reporting.
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Lead the enterprise Cybersecurity Third-Party Risk Management program, including strategy, operating model, governance, policies, standards, procedures, assessment methodology, and reporting.
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Lead the enterprise Cybersecurity Third-Party Risk Management program, including strategy, operating model, governance, policies, standards, procedures, assessment methodology, and reporting.
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Lead the enterprise Cybersecurity Third-Party Risk Management program, including strategy, operating model, governance, policies, standards, procedures, assessment methodology, and reporting.
Compliance Analyst I - Third Party Risk Management
Morrisville, NC · On-site
$31.04 - $44.62/hr
The HCS Compliance Analyst Iwill be assigned to support the Compliance and Privacy Operations - Third Party Risk Management Department in the Compliance Program and will report directly to the ...
Compliance Analyst I - Third Party Risk Management
Morrisville, NC · On-site
$31.04 - $44.62/hr
The HCS Compliance Analyst Iwill be assigned to support the Compliance and Privacy Operations - Third Party Risk Management Department in the Compliance Program and will report directly to the ...
Compliance Analyst III - Third Party Risk Management
Morrisville, NC · On-site
$35.87 - $51.57/hr
The HCS Compliance Analyst III will be assigned to support the Compliance and Privacy Operations - Third Party Risk Management Department in the Compliance Program and will report directly to the ...
Compliance Analyst III - Third Party Risk Management
Morrisville, NC · On-site
$35.87 - $51.57/hr
The HCS Compliance Analyst III will be assigned to support the Compliance and Privacy Operations - Third Party Risk Management Department in the Compliance Program and will report directly to the ...
Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers * Support the identification ...
Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers * Support the identification ...
Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers * Support the identification ...
Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers * Support the identification ...
This role provides strategic oversight of policy development, risk assessment and treatment, internal controls, third-party risk management, audit readiness, and regulatory engagement. The Director ...
This role provides strategic oversight of policy development, risk assessment and treatment, internal controls, third-party risk management, audit readiness, and regulatory engagement. The Director ...
Third-Party Risk; Issue Management), second line Risk, Audit, Business Information Security Officers (BISOs), Technology, Legal, and business stakeholders to strengthen Truist's cyber risk posture ...
Third-Party Risk; Issue Management), second line Risk, Audit, Business Information Security Officers (BISOs), Technology, Legal, and business stakeholders to strengthen Truist's cyber risk posture ...
Risk Management Analyst
Raleigh, NC · On-site
$66K - $102K/yr
As a Risk Management Analyst, you'll play a key role in supporting the City's claims and insurance ... Supports claims programs for property, liability, and third-party subrogation including maintaining ...
Risk Management Analyst
Raleigh, NC · On-site
$66K - $102K/yr
As a Risk Management Analyst, you'll play a key role in supporting the City's claims and insurance ... Supports claims programs for property, liability, and third-party subrogation including maintaining ...
... Third-Party, Vendor, and Delegated Entity Risk * Support enterprise oversight of vendor and delegated entity risk by assessing risk management practices, insurance coverage, and contractual risk ...
... Third-Party, Vendor, and Delegated Entity Risk * Support enterprise oversight of vendor and delegated entity risk by assessing risk management practices, insurance coverage, and contractual risk ...
... Third-Party, Vendor, and Delegated Entity Risk * Support enterprise oversight of vendor and delegated entity risk by assessing risk management practices, insurance coverage, and contractual risk ...
... Third-Party, Vendor, and Delegated Entity Risk * Support enterprise oversight of vendor and delegated entity risk by assessing risk management practices, insurance coverage, and contractual risk ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Bachelor's Degree in Business, Arts or related field * 6-8+ years of experience in Vendor Management, Relationship Management, (Third Party) Risk Management, Project Management, Sourcing or related ...
Bachelor's Degree in Business, Arts or related field * 6-8+ years of experience in Vendor Management, Relationship Management, (Third Party) Risk Management, Project Management, Sourcing or related ...
Familiarity with GRC best practices (Controls Management, Risk Management, Policy Management, Third-Party Risk Management) * Familiarity with the eDiscovery lifecycle and litigation holds.
Familiarity with GRC best practices (Controls Management, Risk Management, Policy Management, Third-Party Risk Management) * Familiarity with the eDiscovery lifecycle and litigation holds.
... third-party solutions. Key Responsibilities * Own AI compliance strategy: EU AI Act, GDPR, US state laws; lead conformity assessments and ISO readiness. * Implement AI risk management: risk ...
... third-party solutions. Key Responsibilities * Own AI compliance strategy: EU AI Act, GDPR, US state laws; lead conformity assessments and ISO readiness. * Implement AI risk management: risk ...
IT GRC Analyst II
Raleigh, NC · On-site
Third party risk management * Working knowledge of various industry security standards and frameworks including: NIST, ISO 27001, ISF Standard of Good Practice (SoGP), etc. Desired Knowledge ...
IT GRC Analyst II
Raleigh, NC · On-site
Third party risk management * Working knowledge of various industry security standards and frameworks including: NIST, ISO 27001, ISF Standard of Good Practice (SoGP), etc. Desired Knowledge ...
Third Party Risk Management information
See Raleigh, NC salary details
$50.1K - $60.5K
4% of jobs
$60.5K - $71K
6% of jobs
$71K - $81.5K
11% of jobs
$85.4K is the 25th percentile. Wages below this are outliers.
$81.5K - $91.9K
11% of jobs
The median wage is $100.3K / yr.
$91.9K - $102.4K
23% of jobs
$102.4K - $112.9K
13% of jobs
$119.8K is the 75th percentile. Wages above this are outliers.
$112.9K - $123.4K
12% of jobs
$123.4K - $133.8K
8% of jobs
$133.8K - $144.3K
6% of jobs
$144.3K - $154.8K
4% of jobs
$154.8K - $165.2K
2% of jobs
$50.1K
$108.4K
$165.2K
How much do third party risk management jobs pay per year?
What is a Third Party Risk Management job?
A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.
What is the highest paying risk management job?
What is the role of a third party Risk Manager?
What is 3rd party risk management?
What are some common challenges faced in a Third Party Risk Management role, and how are they addressed?
One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.
What are the key skills and qualifications needed to thrive in the Third Party Risk Management position, and why are they important?
To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.
Is TPRM a good career?

Full-time
Posted 9 hours ago
State Employees' Credit Union (North Carolina) rating
8.2
Based on 23 frontline employees who took The Breakroom Quiz
Job description
Position Overview:
The Third-Party Risk Management (TPRM) program provides strategic direction for TPRM governance & oversight, due diligence lifecycle execution, monitoring & reporting, and program management across SECU, in support of the Operational Risk Management framework. The program objective is to support business efforts to engage Third Parties to provide services to the membership.
The Third-Party Risk Management Analyst II helps ensure compliance with SECU's Third-Party Risk Management Program. This includes assisting with due diligence lifecycle execution, monitoring & reporting, and program management on request.
Essential Responsibilities:
- 60% - Due Diligence Lifecycle Execution. Work closely with assigned business lines to execute third-party risk management lifecycle activities in coordination with key internal stakeholders. Ensure timely analysis of due diligence documentation in consultation with third-party relationship owners, subject matter experts, and external partners. Ensure SECU due diligence requirements and documentation requests are effectively communicated to third parties. Ensure the adequacy of contingency plans for critical third parties, which outline strategies for transitioning away from a critical third-party, if needed.
- 10% - Monitoring & Reporting. Ensure ongoing monitoring requirements of existing third parties are sufficient to manage risks identified in the planning and due diligence phases. Support management reporting regarding performance issues, identifiable risk, exceptions, and risk mitigation plans
- 10% - Program Management. Support maintenance of third-party relationship inventory, files, program software, due diligence artifacts, and related documentation. Work with key internal stakeholders (e.g., Project Management, Privacy, Procurement, Compliance, Accounting, Legal Services, IT GRC, etc.) to review the third-party risk management lifecycle and implement changes where needed. Support communications with internal and external auditors during third-party risk management audits and examinations.
- 15% - TPRM Subject Matter Expertise. Develop and maintain a working knowledge of regulatory requirements and guidance along with industry best practices related to third-party risk management.
- 5% - TPRM Framework Management Support. Support the development, implementation, refinement and sustainability of SECU's third-party risk management governance framework.
Required Education & Experience (Knowledge, Skills, & Abilities):
- Associates degree via the North Carolina College Transfer Program (NC-CTP)
- Third-Party regulatory exposure including NCUA, FFIEC, CFPB, OCC, & FDIC
- 2 direct years of TPRM program experience
- Operational Risk Management program execution experience working across organization levels.
Preferred Education & Experience (Knowledge, Skills, & Abilities):
- Four-year degree
- CCUE Certification
- 5+ years direct years of TPRM program experience
- Demonstrated ability to work independently
- Credit Union risk management experience
Job Environment & Physical Requirements:
- The position has a Hybrid schedule with at least 2 days / week in the Salisbury Street or Creedmoor Road offices
SECU provides equal employment opportunity to all qualified persons regardless of race, color, religion, age, sex, sexual orientation, gender identity, national origin, genetic information, disability, veteran status, or other classification protected by law.
Disclaimer
State Employees' Credit Union reserves the right to fill this role at a higher/lower level based on business need.
What State Employees' Credit Union (North Carolina) employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom