1

Third Party Risk Manager Jobs in Maryland (NOW HIRING)

Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...

Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...

MD · On-site

Experience with cloud security, identity, incident response, third-party risk, and modern ... management skills * Ability to interact effectively across organization/ diverse cultures, and ...

MD · On-site

Experience with cloud security, identity, incident response, third-party risk, and modern ... management skills * Ability to interact effectively across organization/ diverse cultures, and ...

Showing results 41-60

Third Party Risk Manager information

See Maryland salary details

$50K

$108.3K

$165K

How much do third party risk manager jobs pay per year?

As of Aug 20, 2026, the average yearly pay for third party risk manager in Maryland is $108,270.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,300.00 and $125,200.00 per year, depending on experience, location, and employer.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

Is third party risk manager a good career?

A third party risk manager plays a key role in assessing and mitigating risks associated with external vendors and partners, often requiring knowledge of compliance standards and risk management tools. The role offers opportunities for advancement in industries such as finance, healthcare, and technology, with a growing demand for professionals skilled in risk assessment and regulatory requirements. It can be a stable and rewarding career for those with strong analytical skills and attention to detail.

What cities in Maryland are hiring for Third Party Risk Manager jobs?

Cities in Maryland with the most Third Party Risk Manager job openings:

Infographic showing various Third Party Risk Manager job openings in Maryland as of August 2026, with employment types broken down into 86% Full Time, 13% Part Time, and 1% Contract. Highlights an 81% Physical, 2% Hybrid, and 17% Remote job distribution, with an average salary of $108,270 per year, or $52.1 per hour.

Senior Analyst, Technology Risk Oversight

T Rowe Price

Baltimore, MD • Hybrid

Full-time

Re-posted 15 days ago


T. Rowe Price rating

9.1

Company rating: 9.1 out of 10

Based on 21 frontline employees who took The Breakroom Quiz


Job description

Role Summary

We are looking for a seasoned Technology Risk Analyst with more than 5 years' experience in financial services and/or technology industry. The qualified candidate should be well versed in identifying, managing and monitoring technology risks across Technology Resiliency, Technology Change Management, Obsolescence, IT Asset Management, Cybersecurity, and Technology Risks related to Third parties. The position interacts with all levels of management and senior level executives in IT (ie. CTO, CIO, Chief Architect); therefore, exceptional interpersonal and communication skills are essential.

The successful candidate will report into the Global Head of ERM, who reports directly into the Chief Risk Officer and provide Second Line of Defense (SLoD) services to Global Technology Services First Line Organization. Experience with Cyber and Information Security, Cloud Risk Management (AWS, Azure), Enterprise Architecture is a plus.

Responsibilities

  • Risk Identification: Collaborate with IT leaders, Enterprise Process Owners, and First Line of Defense (FLOD) teams to proactively identify, assess, and monitor technology risks-including resiliency, change management, obsolescence, asset management, cybersecurity, and third-party risks-that may impact the organization's strategic objectives.
  • Oversight and Effective Challenge: Provide independent oversight and challenge of FLOD technology risk management activities, ensuring risks and non-compliance with internal and external standards are prudently managed. Advise on the prioritization of risks, mitigation alternatives, and compensating controls.
  • Assessment and Governance: Participate in risk governance forums, monitor technology risk appetite, escalate exceptions, and report breaches. Evaluate the adequacy and effectiveness of risk control and mitigation actions, recommending improvements to strengthen governance and enhance policies, routines, and interaction models.
  • Advisory and Strategic Leadership: Act as a trusted advisor to IT and FLOD leaders, providing expert guidance on technology risk posture, regulatory requirements, and best practices. Support regulatory exams and findings and foster integrated relationships between FLOD and Second Line of Defense (SLOD).
  • Framework Implementation: Drive the adoption and effective implementation of Enterprise Technology Risk Management (ETRM) policies, frameworks, tools, guidelines, and standards across the business, ensuring technology risks are identified and managed in alignment with industry and regulatory expectations.
  • Reporting and Communication: Draft regular updates to executive management and the Board Risk Committee on changes to the company's technology risk profile. Communicate risk management policies and outcomes to stakeholders at all levels.
  • Continuous Monitoring: Utilize enterprise risk and operational risk management tools (MRI, RCSA, KRIs, incident data, loss event data) to monitor the technology control environment, identify potential weaknesses, and address gaps in a timely manner.
  • Subject Matter Expertise: Serve as a subject matter expert in technology risk, controls, compliance, and best practices. Stay abreast of emerging technologies and their impact on the organization's risk profile.

Qualifications

Required

  • Bachelor's degree or the equivalent combination of education and relevant experience
  • 5+ years of relevant experience in risk management, financial services, or related field

Preferred:

  • 8+ years of experience in the financial, and or technology industries
  • This position requires interacting with "C" level suite, so superior communication, interpersonal, negotiation, presentation and intergroup skills are critical for success
  • Ability to translate technical issues into risk terms that business can understand is absolutely necessary
  • Strong understanding of how the use of Artificial Intelligence both introduces risks across a variety of risk categories, as well as provides opportunities for improved monitoring and reporting
  • Experience with regulatory exams and responses is strongly desired
  • Undergraduate in technology disciple or equivalent
  • Thought leadership around technology risks a must
  • Experience in risk management, compliance or audit, including but not limited to experience in design & implementation of control frameworks
  • Working knowledge of industry and regulatory risk and control standards and frameworks - FFIEC, DORA, NIST-CSF, 800-53, COBIT, CCM etc.
  • Collaborative, team player with the ability to navigate a complex organization and influence outcomes
  • Strong analytical, problem solving and critical thinking skills
  • High attention to detail and strong organizational skills

FINRA Requirements

FINRA licenses are not required and will not be supported for this role.

Work Flexibility

This role is eligible for hybrid work, with up to one day per week from home.


What T. Rowe Price employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom