1

Third Party Risk Management Jobs in Silver Spring, MD

... of third-party risk identification, assessment, mitigation, and reporting across NIPRNet, SIPRNet, and JWICS environments in compliance with DoW SCRM policy, Risk Management Framework requirements ...

You understand the processes, pain points, and personas in third party management, supply chain management, procurement, risk, and compliance * You lead inspirational, tailored presentations in a ...

Management, Internal Audit, Third Party Risk Management, etc. Basic Qualifications: * Bachelor's Degree in Business Or Marketing. * 4+ years of experience in Financial Services, Marketing, Compliance ...

Management, Internal Audit, Third Party Risk Management, etc. Basic Qualifications: * Bachelor's Degree in Business Or Marketing. * 4+ years of experience in Financial Services, Marketing, Compliance ...

next page

Showing results 1-20

Third Party Risk Management information

See Silver Spring, MD salary details

$53.2K

$115.3K

$175.7K

How much do third party risk management jobs pay per year?

As of Jun 27, 2026, the average yearly pay for third party risk management in Silver Spring, MD is $115,324.00, according to ZipRecruiter salary data. Most workers in this role earn between $93,000.00 and $133,400.00 per year, depending on experience, location, and employer.

What is a Third Party Risk Management job?

A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.

What is the highest paying risk management job?

The highest paying risk management roles are often senior positions such as Chief Risk Officer (CRO) or Director of Risk Management, with salaries exceeding $150,000 annually. These roles require extensive experience, advanced certifications like FRM or CRM, and strong leadership skills in overseeing enterprise-wide risk strategies.

What is the role of a third party Risk Manager?

A third party Risk Manager is responsible for identifying, assessing, and mitigating risks associated with an organization’s external vendors and partners. They develop risk management strategies, conduct due diligence, and monitor third-party compliance to protect the organization from potential threats and ensure contractual obligations are met. Strong analytical skills and knowledge of risk assessment tools are essential in this role.

What is 3rd party risk management?

Third party risk management is the process of identifying, assessing, and mitigating risks associated with external vendors, suppliers, or partners that an organization relies on. It involves evaluating third parties' security, compliance, and operational practices to protect the organization from potential threats and disruptions. Professionals in this field often use risk assessment tools and frameworks to ensure third-party relationships do not compromise organizational integrity.

What are some common challenges faced in a Third Party Risk Management role, and how are they addressed?

One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.

What are the key skills and qualifications needed to thrive in the Third Party Risk Management position, and why are they important?

To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.

Is TPRM a good career?

Third Party Risk Management (TPRM) is a growing field focused on assessing and mitigating risks from external vendors and partners. It requires skills in compliance, cybersecurity, and risk assessment, often involving certifications like CTPRP or CRISC. The role offers opportunities in various industries and can lead to advancement in risk and compliance management careers.
What are popular job titles related to Third Party Risk Management jobs in Silver Spring, MD? For Third Party Risk Management jobs in Silver Spring, MD, the most frequently searched job titles are:
What job categories do people searching Third Party Risk Management jobs in Silver Spring, MD look for? The top searched job categories for Third Party Risk Management jobs in Silver Spring, MD are:
What cities near Silver Spring, MD are hiring for Third Party Risk Management jobs? Cities near Silver Spring, MD with the most Third Party Risk Management job openings:
GRC Lead / Cyber Risk Manager

GRC Lead / Cyber Risk Manager

CyberLinx Solutions LLC

Washington, DC • On-site

$125K - $169K/yr

Full-time

Posted 16 days ago


Job description

CyberLinx Solutions LLC is seeking a forward thinking Cybersecurity GRC Lead / Cyber Risk Manager responsible for leading the organization’s cybersecurity governance, risk, and compliance (GRC) program. This role oversees enterprise risk assessments, regulatory compliance, policy development, and security control implementation aligned to industry frameworks such as NIST CSF and NIST RMF.

The ideal candidate will serve as a strategic advisor to leadership, ensuring cybersecurity risks are identified, assessed, and managed in alignment with business objectives and regulatory requirements.

Key Responsibilities:

Governance & Program Leadership

  • Lead and manage the enterprise GRC program, including policies, standards, and procedures
  • Serve as the primary advisor on cybersecurity risk and compliance matters
  • Align cybersecurity strategy with business objectives and regulatory requirements
  • Provide executive-level reporting on risk posture, compliance status, and remediation efforts

Risk Management:

  • Conduct enterprise and system-level cybersecurity risk assessments
  • Develop and maintain risk registers aligned to NIST SP 800-53 and NIST SP 800-171
  • Define risk tolerance, scoring methodologies, and mitigation strategies
  • Perform gap assessments and maturity evaluations using NIST CSF

Compliance & Audit

  • Ensure compliance with federal, state, and industry regulations for NIST RMF, and FISMA as applicable.
  • Lead audit readiness efforts and coordinate internal/external audits
  • Develop Plans of Action & Milestones (POA&M) and track remediation activities
  • Maintain documentation supporting Authority to Operate (ATO) processes

Security Controls & Frameworks

  • Oversee implementation and validation of security controls
  • Map controls across frameworks (NIST CSF, NIST 800-53, ISO 27001)
  • Collaborate with technical teams to ensure control effectiveness

Third-Party Risk Management

  • Evaluate vendor and third-party cybersecurity risks
  • Conduct security assessments and due diligence reviews
  • Ensure contractual security and compliance requirements are met

Required Qualifications:

  • Bachelor’s degree in Cybersecurity, Information Technology, Risk Management, or related field
  • 8+ years of experience in cybersecurity, with at least 3–5 years in GRC or risk management leadership roles
  • Strong knowledge of:
    • NIST Cybersecurity Framework (CSF)
    • NIST Risk Management Framework (RMF)
    • NIST SP 800-53 / 800-171
  • Experience supporting audits, compliance programs, and regulatory frameworks
  • Proven ability to lead cross-functional teams and communicate with executive leadership