1

Third Party Risk Management Jobs (NOW HIRING)

Third Party Risk Manager

Carol Stream, IL ยท On-site

$125 - $150/hr

First Vice President, Enterprise Risk Management Grade Level: 16 Full Salary Range: $120,574.45 - $180,861.67 Hiring Salary Range: $120,574.45 - $150,718.06 Position Summary: The Third Party Risk ...

Third Party Risk Manager

Carol Stream, IL ยท On-site

$125 - $150/hr

First Vice President, Enterprise Risk Management Full Salary Range: $120,574.45 - $180,861.67 Hiring Salary Range: $120,574.45 - $150,718.06 Position Summary: The Third Party Risk Manager oversees ...

As a Third-Party Risk Management Analyst, you will own security risk assessments for critical Samsara vendors and partners. You will oversee the complete lifecycle-from tiering and onboarding to ...

Own and manage various actions and task queues that will result from risk management and mitigation activities * Perform quality control & audit checks over TPRM program and third party or business ...

Third Party Risk Manager

Columbus, OH ยท On-site

$67K - $81K/yr

Under the direction of the supervisor, ITS Systems Security, lead the Third-Party Risk Management (TPRM) program for State Teachers Retirement System of Ohio (STRS Ohio). Oversee due diligence ...

Third Party Risk Manager

Elgin, IL ยท On-site

$120K - $150K/yr

First Vice President, Enterprise Risk Management Grade Level: 16 Full Salary Range: $120,574.45 - $180,861.67 Hiring Salary Range: $120,574.45 - $150,718.06 Position Summary: The Third Party Risk ...

Third Party Risk Manager

Columbus, OH ยท On-site

$67K - $81K/yr

Under the direction of the supervisor, ITS Systems Security, lead the Third-Party Risk Management (TPRM) program for State Teachers Retirement System of Ohio (STRS Ohio). Oversee due diligence ...

$125 - $150/hr

As a Third-Party Risk Management Analyst, you will own security risk assessments for critical Samsara vendors and partners. You will oversee the complete lifecycle--from tiering and onboarding to ...

New

Third Party Risk Manager Location: Vienna, VA Type: Contract Work Model: Hybrid - onsite and remote Business unit: Procurement Main focus: support enhancements to the Third-Party Risk methodology and ...

Third Party Risk Manager Location: Vienna, VA Type: Contract Work Model: Hybrid - onsite and remote Business unit: Procurement Main focus: support enhancements to the Third-Party Risk methodology and ...

Experience supporting Third-Party Risk Management (TPRM), vendor risk, or enterprise risk management processes. * Experience gathering and documenting business requirements. * Hands-on experience ...

As a Third-Party Risk Management Analyst, you will own security risk assessments for critical Samsara vendors and partners. You will oversee the complete lifecycle-from tiering and onboarding to ...

$250/hr

Department Overview The Senior Director of Cyber Third-Party Risk Management (TPRM) is accountable for leading and modernizing McDonald's global third-party cyber risk management capability across a ...

Showing results 41-60

Third Party Risk Management information

See salary details

$51.5K

$111.6K

$170K

How much do third party risk management jobs pay per year?

As of Sep 9, 2026, the average yearly pay for third party risk management in the United States is $111,556.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,000.00 and $129,000.00 per year, depending on experience, location, and employer.

What is a third party risk management?

A Third Party Risk Management (TPRM) job involves assessing, monitoring, and mitigating risks associated with an organization's external vendors, suppliers, and service providers. Professionals in this role evaluate third parties for compliance, cybersecurity vulnerabilities, financial stability, and operational risks. They develop frameworks, conduct risk assessments, and ensure that vendors meet regulatory and organizational standards. TPRM specialists collaborate with internal teams like compliance, procurement, and IT security to protect the organization's interests. Their goal is to minimize potential disruptions, data breaches, or regulatory non-compliance stemming from third-party relationships.

What are some common challenges faced in a third party risk management role, and how are they addressed?

One of the primary challenges in Third Party Risk Management is keeping up with evolving regulatory requirements and the diverse risk profiles of different vendors. Professionals in this role often encounter situations where they must coordinate risk assessments across multiple departments and ensure timely responses from both internal teams and external partners. To address these challenges, strong project management skills, proactive communication, and the use of dedicated risk management tools are essential. Many organizations also emphasize ongoing training and cross-functional collaboration to stay ahead of emerging risks and regulatory changes.

What are the key skills and qualifications needed to thrive in third party risk management, and why are they important?

To thrive in Third Party Risk Management, you need a strong understanding of risk assessment, compliance regulations, vendor management, and data analysis, typically supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk assessment tools, third-party risk management platforms (such as Archer or ProcessUnity), and certifications like Certified Third Party Risk Professional (CTPRP) are common in this field. Exceptional communication, negotiation, and analytical-thinking skills are crucial soft skills for engaging vendors and stakeholders effectively. These abilities ensure comprehensive risk mitigation and help organizations maintain compliance and security while building strong external partnerships.

Is third party risk management a good career?

Third Party Risk Management is a growing field focused on identifying and mitigating risks associated with external vendors and partners. It requires skills in compliance, cybersecurity, and contract management, often involving certifications like CTPRP or CRISC. The role offers opportunities in various industries with increasing demand due to regulatory requirements and supply chain complexities.

What does a third party risk management do?

A third party risk management professional assesses and monitors risks associated with external vendors, suppliers, and partners to ensure compliance, security, and operational integrity. They conduct risk assessments, develop mitigation strategies, and often use tools like risk management software to protect the organization from potential threats and vulnerabilities.
More about Third Party Risk Management jobs

What cities are hiring for Third Party Risk Management jobs?

Cities with the most Third Party Risk Management job openings:

What are the most commonly searched types of Third Party Risk Management jobs?

The most popular types of Third Party Risk Management jobs are:

What states have the most Third Party Risk Management jobs?

States with the most job openings for Third Party Risk Management jobs include:

Infographic showing various Third Party Risk Management job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 84% Full Time, 13% Part Time, and 2% Contract. Highlights an 86% Physical, 2% Hybrid, and 12% Remote job distribution, with an average salary of $111,556 per year, or $53.6 per hour.

Third Party Risk Manager

Carol Stream, IL โ€ข On-site

Socket.dev
Network Securityย โ€ขย 1 - 10 employees

$125 - $150/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Job description

Position Title: Third Party Risk Manager

Reports to: First Vice President, Enterprise Risk Management

Grade Level:16

Full Salary Range:$120,574.45 - $180,861.67

Hiring Salary Range: $120,574.45 - $150,718.06

Position Summary:

The Third Party Risk Manager oversees the Credit Unionโ€™s third-party risk management (TPRM) program under the direction and oversight of the First Vice President, Enterprise Risk Management. This role is responsible for the execution and day-to-day oversight of the TPRM lifecycle across the Credit Unionโ€™s vendor and third-party relationships and ensures alignment with the Credit Unionโ€™s Enterprise Risk Management Framework. Duties must be accomplished in compliance with federal and state laws and in accordance with the credit unionโ€™s policies and procedures and with constant attention to Aleroโ€™s creed, vision, mission and goals.

Duties and Responsibilities:

  • Plan, direct, and lead the day-to-day operations of the TPRM Program under the direction of the First Vice President, Enterprise Risk Management.
  • Act as a subject matter expert (SME) to internal and external stakeholders on third-party risk matters.
  • Foster strong stakeholder relationships to enable active and collaborative working relationships across business lines.
  • Take a leading role in creating and maturing the TPRM policy, procedures, guidelines, templates, forms, and overall governance process to ensure a robust and scalable program.
  • Effectively communicate with senior managers, business leaders, internal support services, vendor owners, and third parties to build and maintain strong partnerships that support a mature TPRM Program.
  • Serve as the SME for the review of potential and established third-party relationships, as well as new initiatives.
  • Provide TPRM risk mitigation strategies; advise management in understanding and managing third-party risk across the Credit Union.
  • Champion behaviors that embed a strong risk management culture across the first and second lines, including strong awareness of TPRM policies and practices.
  • Ensure adequate development of risk assessments for all new and ongoing third-party relationships that align with the Credit Unionโ€™s TPRM Program and ERM Framework.
  • Coordinate contract reviews with legal, third-party relationship owners, and internal vendor owners.
  • Review the viability of third-party service providers and platforms and make recommendations on viable alternatives.
  • Prepare monthly, quarterly, and annual reporting to appropriate stakeholders that reflects the overall health and risk profile of the TPRM Program.
  • Leverage data-driven insights and provide oversight and challenge on key risk indicators.
  • Support audit reviews, regulatory exams, and internal risk and control self-assessments.
  • Perform all other duties as assigned.

Qualifications:

Education and Experience

  • Bachelorโ€™s degree from an accredited university in Finance, Accounting, or a related Business Management field.
  • Sponsor banking and/or fintech experience preferred.
  • Minimum of seven years of credit union or bank experience supporting the TPRM function.
  • CTPRP or similar designation preferred.

Skills and Competencies

  • In-depth understanding of relevant laws, regulations, guidance, and industry standards governing third-party relationships in the financial services sector.
  • Demonstrated ability to build strong relationships across the organization and excellent interpersonal and communication skills.
  • Strong leadership skills with the ability to influence, motivate, and lead others within a fast-paced environment.
  • Strong project management skills, with proven ability to coordinate multiple tasks on an ongoing basis.
  • Knowledge of SOC and SSAE 18 reports, user entity controls, contract language and terms, data security, disaster recovery, and insurance.
  • Ability to develop training materials and train individuals in TPRM processes, risk assessments, etc.

Benefits

  • Health, Vision, Dental Insurance
  • Long-term Disability Insurance
  • Critical Illness
  • Life Insurance
  • 401(k) match
  • Profit sharing
  • PTO
  • Flexible Spending Account
  • Tuition Reimbursement
  • Pet Insurance
  • Commuter Benefit

Applicable federal and multi-state regulations including, but not limited to:

  • Federal Credit Union Act
  • NCUA Rules and Regulations (12 CFR Chapter VII)
  • NCUA Part 701 โ€“ Organization and Operation of Federal Credit Unions
  • NCUA Part 702 โ€“ Capital Adequacy
  • NCUA Part 712 โ€“ Credit Union Service Organizations
  • NCUA Part 713 โ€“ Fidelity Bond and Insurance Coverage
  • NCUA Part 716 โ€“ Privacy of Consumer Financial Information
  • NCUA Part 717 โ€“ Fair Credit Reporting
  • NCUA Part 721 โ€“ Incidental Powers
  • NCUA Part 741 โ€“ Requirements for Insurance
  • NCUA Part 748 โ€“ Security Program, BSA Compliance, and Suspicious Activity Reporting
  • NCUA Part 749 โ€“ Records Preservation Program
  • Bank Secrecy Act (BSA)
  • Anti-Money Laundering Act of 2020
  • USA PATRIOT Act
  • Corporate Transparency Act
  • Money Laundering Control Act
  • Annunzio-Wylie Anti-Money Laundering Act
  • Office of Foreign Assets Control (OFAC) Regulations
  • Financial Crimes Enforcement Network (FinCEN) Regulations
  • Gramm-Leach-Bliley Act (GLBA)
  • Right to Financial Privacy Act
  • Fair Credit Reporting Act (FCRA)
  • Fair and Accurate Credit Transactions Act (FACT Act)
  • Identity Theft Red Flags Rule
  • Dodd-Frank Wall Street Reform and Consumer Protection Act
  • Consumer Financial Protection Act
  • Unfair, Deceptive, or Abusive Acts or Practices (UDAAP) Requirements
  • Equal Credit Opportunity Act (Regulation B)
  • Truth in Lending Act (Regulation Z)
  • Real Estate Settlement Procedures Act (Regulation X)
  • Home Mortgage Disclosure Act (Regulation C)
  • Electronic Fund Transfer Act (Regulation E)
  • Truth in Savings Act (Regulation DD)
  • Expedited Funds Availability Act (Regulation CC)
  • Fair Housing Act
  • Flood Disaster Protection Act
  • Homeowners Protection Act (HPA)
  • Secure and Fair Enforcement for Mortgage Licensing Act (SAFE Act)
  • Electronic Signatures in Global and National Commerce Act (E-SIGN Act)
  • Check Clearing for the 21st Century Act (Check 21 Act)
  • Uniform Commercial Code (UCC)
  • Fair Debt Collection Practices Act (FDCPA)
  • Servicemembers Civil Relief Act (SCRA)
  • Military Lending Act (MLA)
  • Telephone Consumer Protection Act (TCPA)
  • CAN-SPAM Act
  • Cybersecurity Information Sharing Act (CISA)
  • Interagency Guidelines Establishing Information Security Standards
  • Interagency Guidance on Third-Party Risk Management
  • FFIEC BSA/AML Examination Manual
  • FFIEC Information Technology Examination Handbook
  • FFIEC Compliance Examination Manual
  • FFIEC Architecture, Infrastructure, and Operations Handbook
  • FFIEC Development, Acquisition, and Maintenance Handbook
  • FFIEC Information Security Handbook
  • CFPB Regulations and Official Interpretations
  • Federal Reserve Operating Circulars
  • Internal Revenue Service (IRS) Reporting Requirements
  • NACHA Operating Rules
  • Visa Core Rules and Visa Product and Service Rules
  • Mastercard Rules
  • State Credit Union Laws
  • State Banking and Financial Institution Laws
  • State Consumer Protection Laws
  • State Consumer Financial Protection Laws
  • State Unfair and Deceptive Acts and Practices (UDAP) Laws
  • State Fair Lending Laws
  • State Privacy Laws
  • State Data Security Laws
  • State Cybersecurity Regulations
  • State Data Breach Notification Laws
  • State Identity Theft Protection Laws
  • State Record Retention Laws
  • State Electronic Transactions Acts
  • State Financial Records and Privacy Laws
  • State Vendor Management and Third-Party Risk Management Requirements
  • State Subpoena and Financial Records Disclosure Laws
  • State Regulatory Examination and Reporting Requirements
  • State Anti-Money Laundering Laws
  • State Financial Crimes Laws
  • State Consumer Lending Laws
  • State Governance and Corporate Recordkeeping Requirements
  • State Whistleblower Protection Laws
  • State Risk Management and Internal Control Requirements
  • State Sanctions and Financial Crime Reporting Requirements
  • State Employment and Labor Laws
  • Fair Labor Standards Act (FLSA)
  • Family and Medical Leave Act (FMLA)
  • Americans with Disabilities Act (ADA)
  • Occupational Safety and Health Act (OSHA)
  • Title VII of the Civil Rights Act
  • Age Discrimination in Employment Act (ADEA)
  • Uniformed Services Employment and Reemployment Rights Act (USERRA)

While performing the duties of this job, the employee is frequently required to sit, view information on a computer screen, and talk or hear. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Telephone conversations may be monitored or recorded for the purposes of training, coaching, feedback and quality assurance on an unannounced basis.

#J-18808-Ljbffr