The role focuses on improving security operations, vulnerability management, audit readiness, identity governance, third-party risk management, and overall security maturity across global IT ...
The role focuses on improving security operations, vulnerability management, audit readiness, identity governance, third-party risk management, and overall security maturity across global IT ...
Senior Program Manager - Cybersecurity Risk Management
Spring, TX ยท Hybrid
$130K - $205K/yr
The role includes partnering with teams within our supply chain organization and third-party ... risk management best practices. The position reports to the Enterprise Operations Cybersecurity ...
Senior Program Manager - Cybersecurity Risk Management
Spring, TX ยท Hybrid
$130K - $205K/yr
The role includes partnering with teams within our supply chain organization and third-party ... risk management best practices. The position reports to the Enterprise Operations Cybersecurity ...
Senior Program Manager - Cybersecurity Risk Management
Spring, TX ยท On-site
$130K - $205K/yr
The role includes partnering with teams within our supply chain organization and third-party ... risk management best practices. The position reports to the Enterprise Operations Cybersecurity ...
Senior Program Manager - Cybersecurity Risk Management
Spring, TX ยท On-site
$130K - $205K/yr
The role includes partnering with teams within our supply chain organization and third-party ... risk management best practices. The position reports to the Enterprise Operations Cybersecurity ...
Prior work experience of risk management disciplines, security policies and standards, technology risk assessment, and third party supplier risk process and requirements Current or previous ...
Prior work experience of risk management disciplines, security policies and standards, technology risk assessment, and third party supplier risk process and requirements Current or previous ...
Third Party Risk Management * Network and Server Infrastructure Security * Cloud Security (SaaS, PaaS, IaaS) * Mobile Application Security * Ability to review and analyse risks based on assessments ...
Third Party Risk Management * Network and Server Infrastructure Security * Cloud Security (SaaS, PaaS, IaaS) * Mobile Application Security * Ability to review and analyse risks based on assessments ...
It manages more than $3 billion in charges for more than 240 hospitals nationwide. Since 2011 ... Third Party Eligibility Account Representatives work as a liaison between our client hospital ...
It manages more than $3 billion in charges for more than 240 hospitals nationwide. Since 2011 ... Third Party Eligibility Account Representatives work as a liaison between our client hospital ...
It manages more than $3 billion in charges for more than 240 hospitals nationwide. Since 2011 ... Third Party Eligibility Account Representatives work as a liaison between our client hospital ...
It manages more than $3 billion in charges for more than 240 hospitals nationwide. Since 2011 ... Third Party Eligibility Account Representatives work as a liaison between our client hospital ...
... and third-party recoveries. * Strong analytical and quantitative skills. * Knowledge of risk ... General risk management policies, procedures and standards. * Ability to interpret financial ...
... and third-party recoveries. * Strong analytical and quantitative skills. * Knowledge of risk ... General risk management policies, procedures and standards. * Ability to interpret financial ...
Strong working knowledge of Third Party Enablement for invoice processing and payment. * * This ... * Project management tasks will include managing the project according to the project plan ...
Strong working knowledge of Third Party Enablement for invoice processing and payment. * * This ... * Project management tasks will include managing the project according to the project plan ...
CYBERSECURITY RISK ANALYST
Houston, TX ยท On-site +1
Ensure compliance with security regulations (e.g., GDPR, CCPA, PCI DSS) and manage third-party ... Present risk reports to stakeholders, translating technical details into business impacts. * Use ...
CYBERSECURITY RISK ANALYST
Houston, TX ยท On-site +1
Ensure compliance with security regulations (e.g., GDPR, CCPA, PCI DSS) and manage third-party ... Present risk reports to stakeholders, translating technical details into business impacts. * Use ...
... third parties, and evolving our business models to serve our clients better. Our risk management ... party risks. * Collaboration and Oversight: Partner with the first line of defense data owners ...
... third parties, and evolving our business models to serve our clients better. Our risk management ... party risks. * Collaboration and Oversight: Partner with the first line of defense data owners ...
Third-party risk workflows and vendor lifecycle management (Aravo) * Audit and compliance artifact intake and workflow orchestration (Compliance Hub) * Ensure platform configurations align with ...
Third-party risk workflows and vendor lifecycle management (Aravo) * Audit and compliance artifact intake and workflow orchestration (Compliance Hub) * Ensure platform configurations align with ...
Defective work * Construction accidents and third-party liability claims * Coordinate claims ... Support enterprise-wide risk management initiatives and ensure alignment with corporate risk ...
Defective work * Construction accidents and third-party liability claims * Coordinate claims ... Support enterprise-wide risk management initiatives and ensure alignment with corporate risk ...
Compliance Director
Houston, TX ยท On-site
... Management * Maintain and align the compliance risk assessment with the enterprise risk framework * Identify key risks and implement practical mitigation strategies and controls * Oversee third-party ...
Compliance Director
Houston, TX ยท On-site
... Management * Maintain and align the compliance risk assessment with the enterprise risk framework * Identify key risks and implement practical mitigation strategies and controls * Oversee third-party ...
Defective work * Construction accidents and third-party liability claims * Coordinate claims ... Support enterprise-wide risk management initiatives and ensure alignment with corporate risk ...
Defective work * Construction accidents and third-party liability claims * Coordinate claims ... Support enterprise-wide risk management initiatives and ensure alignment with corporate risk ...
Compliance Director
Houston, TX ยท On-site
... Management * Maintain and align the compliance risk assessment with the enterprise risk framework * Identify key risks and implement practical mitigation strategies and controls * Oversee third-party ...
Compliance Director
Houston, TX ยท On-site
... Management * Maintain and align the compliance risk assessment with the enterprise risk framework * Identify key risks and implement practical mitigation strategies and controls * Oversee third-party ...
Support third-party risk management processes, including vendor risk assessments and ongoing monitoring. * Collaborate with cybersecurity and technology teams to align security tooling, monitoring ...
Support third-party risk management processes, including vendor risk assessments and ongoing monitoring. * Collaborate with cybersecurity and technology teams to align security tooling, monitoring ...
Support third-party risk management processes, including vendor risk assessments and ongoing monitoring. * Collaborate with cybersecurity and technology teams to align security tooling, monitoring ...
Support third-party risk management processes, including vendor risk assessments and ongoing monitoring. * Collaborate with cybersecurity and technology teams to align security tooling, monitoring ...
Commercial Lines Account Manager
Houston, TX ยท On-site
... third-party vendors involved with the account. Your Impact: Client Management: * Supports the ... S. brokerage firm offering comprehensive risk management advice, insurance and reinsurance ...
Commercial Lines Account Manager
Houston, TX ยท On-site
... third-party vendors involved with the account. Your Impact: Client Management: * Supports the ... S. brokerage firm offering comprehensive risk management advice, insurance and reinsurance ...
... third-party vendors involved with the account. Your Impact: Client Management: * Supports the ... S. brokerage firm offering comprehensive risk management advice, insurance and reinsurance ...
... third-party vendors involved with the account. Your Impact: Client Management: * Supports the ... S. brokerage firm offering comprehensive risk management advice, insurance and reinsurance ...
Third Party Risk Management information
See Spring, TX salary details
$45.8K - $55.4K
4% of jobs
$55.4K - $65K
6% of jobs
$65K - $74.6K
11% of jobs
$78.2K is the 25th percentile. Wages below this are outliers.
$74.6K - $84.2K
11% of jobs
The median wage is $91.8K / yr.
$84.2K - $93.8K
23% of jobs
$93.8K - $103.3K
13% of jobs
$109.7K is the 75th percentile. Wages above this are outliers.
$103.3K - $112.9K
12% of jobs
$112.9K - $122.5K
8% of jobs
$122.5K - $132.1K
6% of jobs
$132.1K - $141.7K
4% of jobs
$141.7K - $151.3K
2% of jobs
$45.8K
$99.3K
$151.3K
How much do third party risk management jobs pay per year?
What is a Third Party Risk Management job?
A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.
What are some common challenges faced in a Third Party Risk Management role, and how are they addressed?
One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.
What are the key skills and qualifications needed to thrive in the Third Party Risk Management position, and why are they important?
To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.

Job description
The IT Security & Compliance Analyst supports and operationalizes the organization's global information security and compliance program in support of mission-critical, safety-sensitive, and highly regulated aviation operations. The role focuses on improving security operations, vulnerability management, audit readiness, identity governance, third-party risk management, and overall security maturity across global IT environments.
Working closely with Infrastructure & Operations, Applications, and business stakeholders, the Analyst helps reduce enterprise risk, strengthen regulatory compliance, and ensure security controls are effective, repeatable, and defensible.
PRINCIPAL RESPONSIBILITIES:
Security Operations & Incident Response
- Monitor, analyze, and investigate security events using SIEM, EDR, email, cloud, and endpoint security tools.
- Coordinate incident response activities including containment, eradication, recovery, and post-incident reviews.
- Maintain and improve incident response playbooks and track response metrics and corrective actions.
Vulnerability Management & Risk Reduction
- Coordinate vulnerability scanning and validation across infrastructure, endpoint, cloud, and application environments.
- Prioritize vulnerabilities based on severity, asset criticality, and exploitability.
- Track remediation SLAs, exceptions, and risk acceptances; report status and trends to stakeholders.
Identity, Access & Security Controls
- Support on-premises and cloud identity platforms and secure authentication controls.
- Assist with joiner/mover/leaver processes, access reviews, and privileged access governance.
- Support enforcement of MFA, conditional access, and least-privilege principles.
Compliance, Audit & Continuous Readiness
- Support internal and external audits including SOX ITGC, ISO 27001, NIST CSF, NIST 800-171, and contractual requirements.
- Maintain audit evidence, control documentation, and test artifacts.
- Support proactive control monitoring to reduce repeat audit findings.
- Assist with regulatory readiness including aviation-specific security requirements (e.g., EASA Part-IS).
Third-Party & Supplier Security
- Support supplier security due diligence including questionnaires and review of SOC and ISO artifacts.
- Track vendor remediation actions and reassessment schedules for higher-risk suppliers.
- Partner with Procurement and Legal to support security obligations in vendor contracts.
Resilience, Business Continuity & Awareness
- Support IT emergency response, disaster recovery, and business continuity planning and exercises.
- Assist with security awareness initiatives and targeted training programs.
PERSON SPECIFICATION: (minimum education requirements, key skills and experience)
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, or equivalent professional experience.
- Security or audit-related certifications preferred (CISSP, CISM, CISA, Security+, SSCP).
Experience:
- 3+ years of experience in cybersecurity operations, compliance, vulnerability management, or audit support.
- Practical experience supporting incident response, vulnerability remediation, and audit evidence production.
- Experience working with third-party service providers and regulated environments is desirable.
Skills:
- Strong understanding of information security controls and operational risk management.
- Ability to translate security findings into clear remediation actions.
- Strong documentation, analytical, and stakeholder communication skills.
- Comfortable operating in regulated, mission-critical operational environments.
Bristow Group is an Equal Opportunity Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
About Bristow Group
Sourced by ZipRecruiter
Industry
Aviation
Company size
5,001 - 10,000 Employees
Headquarters location
Houston, TX, US
Year founded
1955