Cybersecurity Third Party Senior Analyst
$96K - $124K/yr
Coordinate with third party risk management, incident response, and infrastructure teams to validate threats, contain incidents, and recommend remediation steps. * Monitor external threat ...
$96K - $124K/yr
Coordinate with third party risk management, incident response, and infrastructure teams to validate threats, contain incidents, and recommend remediation steps. * Monitor external threat ...
$96K - $124K/yr
Coordinate with third party risk management, incident response, and infrastructure teams to validate threats, contain incidents, and recommend remediation steps. * Monitor external threat ...
Atlanta, GA · On-site
$96K - $124K/yr
Coordinate with third party risk management, incident response, and infrastructure teams to validate threats, contain incidents, and recommend remediation steps. * Monitor external threat ...
Atlanta, GA · On-site
$96K - $124K/yr
Coordinate with third party risk management, incident response, and infrastructure teams to validate threats, contain incidents, and recommend remediation steps. * Monitor external threat ...
Atlanta, GA · On-site +1
Foster strong collaboration with Enterprise Risk Management, Technology, Information Security, Facilities, Third-Party Risk, and other risk disciplines. * Ensure compliance with applicable regulatory ...
Atlanta, GA · On-site +1
Foster strong collaboration with Enterprise Risk Management, Technology, Information Security, Facilities, Third-Party Risk, and other risk disciplines. * Ensure compliance with applicable regulatory ...
Atlanta, GA · On-site +1
Foster strong collaboration with Enterprise Risk Management, Technology, Information Security, Facilities, Third-Party Risk, and other risk disciplines. Ensure compliance with applicable regulatory ...
Atlanta, GA · On-site +1
Foster strong collaboration with Enterprise Risk Management, Technology, Information Security, Facilities, Third-Party Risk, and other risk disciplines. Ensure compliance with applicable regulatory ...
Atlanta, GA · On-site +1
Foster strong collaboration with Enterprise Risk Management, Technology, Information Security, Facilities, Third-Party Risk, and other risk disciplines. * Ensure compliance with applicable regulatory ...
Atlanta, GA · On-site +1
Foster strong collaboration with Enterprise Risk Management, Technology, Information Security, Facilities, Third-Party Risk, and other risk disciplines. * Ensure compliance with applicable regulatory ...
Aravo Solutions, Inc., provides leading third-party risk management (TPRM), ESG, and vendor lifecycle management solutions powered by intelligent automation software and designed to meet the needs of ...
Aravo Solutions, Inc., provides leading third-party risk management (TPRM), ESG, and vendor lifecycle management solutions powered by intelligent automation software and designed to meet the needs of ...
Alpharetta, GA · On-site
Role: 3rd party cyber/risk management Alpharetta, GA - Need Onsite interview. Must be local Must be willing to work onsite Must be willing to interview in-person Team Overview This team is ...
Alpharetta, GA · On-site
Role: 3rd party cyber/risk management Alpharetta, GA - Need Onsite interview. Must be local Must be willing to work onsite Must be willing to interview in-person Team Overview This team is ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
Atlanta, GA · On-site
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
Atlanta, GA · On-site
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Atlanta, GA · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
Atlanta, GA · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
Atlanta, GA · Hybrid
$85K - $110K/yr
Support Vendor Management in aligning with third-party risk requirements AI Governance Operations * Support execution of AI intake and governance workflows: * Track AIA Forms and FactSheets * Ensure ...
Atlanta, GA · Hybrid
$85K - $110K/yr
Support Vendor Management in aligning with third-party risk requirements AI Governance Operations * Support execution of AI intake and governance workflows: * Track AIA Forms and FactSheets * Ensure ...
Position Summary The Credit Risk Manager will be responsible for reporting, analytics and credit ... Work with credit bureaus and other 3rd party data vendors on established and new initiatives.
Position Summary The Credit Risk Manager will be responsible for reporting, analytics and credit ... Work with credit bureaus and other 3rd party data vendors on established and new initiatives.
Atlanta, GA · On-site +1
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
Atlanta, GA · On-site +1
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
Atlanta, GA · On-site
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
Atlanta, GA · On-site
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
Manager - Packaging Operations and Third-Party Quality The Manager - Packaging Operations and Third ... high-risk or global risk assessment impacting Alora manufactured and/or distributed products.
Manager - Packaging Operations and Third-Party Quality The Manager - Packaging Operations and Third ... high-risk or global risk assessment impacting Alora manufactured and/or distributed products.
Atlanta, GA · On-site
$95K - $110K/yr
Third-Party Risk Management * AI Governance and Risk Management * HIPAA Privacy Rule knowledge a plus Professional Skills: Successful candidates demonstrate: * Strong consulting and advisory mindset
Quick apply
Atlanta, GA · On-site
$95K - $110K/yr
Third-Party Risk Management * AI Governance and Risk Management * HIPAA Privacy Rule knowledge a plus Professional Skills: Successful candidates demonstrate: * Strong consulting and advisory mindset
Riverdale, GA · On-site
$140K - $175K/yr
This role sits within Enterprise Cybersecurity on the Cybersecurity Risk Management team and partners closely with the Cyber Third-Party Risk Management (TPRM) lead, security engineering teams, and ...
Riverdale, GA · On-site
$140K - $175K/yr
This role sits within Enterprise Cybersecurity on the Cybersecurity Risk Management team and partners closely with the Cyber Third-Party Risk Management (TPRM) lead, security engineering teams, and ...
$43.5K - $52.6K
4% of jobs
$52.6K - $61.7K
6% of jobs
$61.7K - $70.8K
11% of jobs
$74.2K is the 25th percentile. Wages below this are outliers.
$70.8K - $79.9K
11% of jobs
The median wage is $87.1K / yr.
$79.9K - $89K
23% of jobs
$89K - $98.1K
13% of jobs
$104.1K is the 75th percentile. Wages above this are outliers.
$98.1K - $107.2K
12% of jobs
$107.2K - $116.3K
8% of jobs
$116.3K - $125.4K
6% of jobs
$125.4K - $134.4K
4% of jobs
$134.4K - $143.5K
2% of jobs
$43.5K
$94.2K
$143.5K
| Aspect | Third Party Risk Manager | Vendor Risk Analyst |
|---|---|---|
| Credentials | Certifications like CRISC, CTPRP often preferred | Certifications such as CRISC, CTPRP common |
| Work Environment | Oversees multiple vendors and third-party relationships at strategic level | Focuses on assessing specific vendor risks and compliance |
| Employer & Industry Usage | Used in finance, healthcare, and large corporations managing third-party risks | Common in IT, finance, and procurement departments |
| Search & Comparison Intent | Often compared for broader risk management roles | Compared for detailed vendor risk assessments |
The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

$96K - $124K/yr
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 6 days ago
8.0
Based on 116 frontline employees who took The Breakroom Quiz
58th of 149 rated banks
The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.
Need Help?
If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).
Regular or Temporary:
RegularLanguage Fluency: English (Required)
Work Shift:
1st shift (United States of America)Please review the following job description:In this role, you will be responsible for evaluating and managing risks introduced by supplier connectivity, including:This is a fully on-site position based in Atlanta, GA. Teammates are expected to be in the office five days a week
Essential Duties and Responsibilities
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
1. Technical Risk Assessment of Vendor Connectivity
Evaluate security risks for VPN access, cloud integrations, API connections, and SaaS apps.
Assess authentication, authorization, network segmentation, and trust boundaries.
Identify excessive access, weak authentication, insecure patterns, and single points of failure.
Maintain consistent classification of high-risk integrations and critical vendor access.
2. Line of Business (LOB) Request Review
Review and approve/deny new vendor connection requests and modifications.
Partner with business and engineering teams to understand use cases, recommend safer patterns, and propose compensating controls.
Advise Procurement, Vendor Risk, Application, and Cloud teams on technical risks.
Translate technical findings into business risk statements and remediation actions.
Support contractual security requirements and risk acceptance documentation.
3. Process Improvement & Method Development
Refine vendor risk processes to move beyond questionnaires and annual reviews.
Provide risk-based guidance rather than binary approvals.
Introduce architecture-based risk reviews and threat-model-informed assessments.
Define standard secure integration patterns, risk thresholds, and escalation criteria.
4. Control Validation & Monitoring Alignment
Validate network, IAM, and monitoring controls for vendor connections.
Partner with SOC and Detection Engineering to ensure high-risk connections are monitored.
Coordinate with third party risk management, incident response, and infrastructure teams to validate threats, contain incidents, and recommend remediation steps.
Monitor external threat intelligence and vendor security events to assess potential organizational impact.
Identify and document abuse cases and attack paths involving external parties and publicly exposed assets.
Translate technical findings into business risk and remediation recommendations.
Required Qualifications:
The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Bachelor's degree in Computer Science or related field or equivalent education and related training
Eight years of experience in Cybersecurity or related work
Broad knowledge of general IT with mastery of one or more of the following areas: operating systems, networking, computer programing, web development or database administration
Demonstrated advanced knowledge of cyber security operations with mastery of one or more of the following: attack surface management, Security Operations Center (SOC) operations, Intrusion Detection/Intrusion Prevention Systems (IDS/IPS), Security Information and Event Management (SIEM) use, threats (including Advanced Persistent Threat (APT), insider), vulnerabilities, and exploits; incident response, investigations and remediation
Experience with systems for automated threat intelligence sharing using industry standard protocols, such as Structured Threat Information Expression (STIX) and Trusted Automated Exchange of Indication Information (TAXII) Advanced knowledge of processes, procedures and methods to research, analyze and disseminate threat intelligence information
Ability to lead and persuade individuals and large teams on ideas, concepts and opportunities
Preferred Qualifications:
Master's degree or MBA and seven (7+) years of experience or an equivalent combination of education and work experience in Information Security banking. Strong knowledge on cybersecurity risks, frameworks, best practices, and industry/regulatory requirements. Knowledge and experience in use of cyber security frameworks in assessing programs.
Experience conducting, preparing, and presenting analysis, findings, and recommendations.
Bachelor's degree in business administration, technology related field or equivalent education and related training.
Excellent ability to express complex multi-disciplinary technical and business concepts in terms that are understandable to all levels of Lines of Business and corporate management both verbally and in writing.
Experience in security architecture reviews, third-party/vendor risk, and threat modeling.
Ability to read diagrams, detect weak trust boundaries, challenge unsafe designs diplomatically, and build repeatable processes.
Strong understanding of cloud architectures (AWS/Azure/GCP), VPN, IAM, OAuth, API security, and SaaS integrations.
Cyber security certifications such as CISA, CISSP
Other technical Certifications (e.g., CCNA, RHCE, MCSE, etc.)
General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position.Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist's generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist's defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.
Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.
EEO is the Law E-Verify IER Right to Work
Sourced by ZipRecruiter
Truist is combining distinctive personal service with investments in innovation to create transformational client experiences. We believe the unique blend of human touch and innovative technology will set us apart, instill confidence, and build deeper levels of trust with our clients
Finance and insurance
10,000+ Employees
Charlotte, NC, US
2019