Performing secondary reviews of business relationship submissions in the Third Party Risk Management (TPRM) Gateway and reinforcing data quality standards * Advising Lead Client Service Partners ...
Performing secondary reviews of business relationship submissions in the Third Party Risk Management (TPRM) Gateway and reinforcing data quality standards * Advising Lead Client Service Partners ...
Senior Cybersecurity Risk Analyst - USA Remote
San Diego, CA · Remote
$130K - $160K/yr
Execute the third-party risk management (TPRM) lifecycle end-to-end, including vendor intake, inherent-risk tiering, security and privacy questionnaire administration, evidence collection and review ...
Senior Cybersecurity Risk Analyst - USA Remote
San Diego, CA · Remote
$130K - $160K/yr
Execute the third-party risk management (TPRM) lifecycle end-to-end, including vendor intake, inherent-risk tiering, security and privacy questionnaire administration, evidence collection and review ...
Identify the most important customer problems related to SaaS supply chain risk, third-party access ... Required qualifications * 7+ years of Product Management experience, ideally in B2B SaaS ...
Quick apply
Identify the most important customer problems related to SaaS supply chain risk, third-party access ... Required qualifications * 7+ years of Product Management experience, ideally in B2B SaaS ...
Third-Party Risk Management: Perform and document SOC report reviews to ensure critical service providers meet the organization's operational resilience standards and regulatory compliance ...
Third-Party Risk Management: Perform and document SOC report reviews to ensure critical service providers meet the organization's operational resilience standards and regulatory compliance ...
Consultant - ServiceNow
San Diego, CA · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
Consultant - ServiceNow
San Diego, CA · Remote
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Manager - ServiceNow
San Diego, CA · On-site +1
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
Manager - ServiceNow
San Diego, CA · On-site +1
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
Sr Corporate Compliance Program Manager
San Diego, CA · On-site +1
You are experienced in standardization and optimization of core compliance processes (e.g., HCP engagements, grants, transparency reporting, third-party risk management, Speak Up reporting, etc.) to ...
Sr Corporate Compliance Program Manager
San Diego, CA · On-site +1
You are experienced in standardization and optimization of core compliance processes (e.g., HCP engagements, grants, transparency reporting, third-party risk management, Speak Up reporting, etc.) to ...
EHS & Risk Manager
San Diego, CA · On-site
$101K - $140K/yr
... Risk Manager. In this role, you will support the safe, compliant, and risk-aware operation of a ... Serve as Element on-site POC for EHS 3rd party partner. Basic Qualifications * 10+ years of ...
EHS & Risk Manager
San Diego, CA · On-site
$101K - $140K/yr
... Risk Manager. In this role, you will support the safe, compliant, and risk-aware operation of a ... Serve as Element on-site POC for EHS 3rd party partner. Basic Qualifications * 10+ years of ...
You will also serve as the primary authority for Third-Party Risk Management (TPRM) architectural reviews, ensuring proposed technology investments are evaluated through sound architectural ...
Quick apply
You will also serve as the primary authority for Third-Party Risk Management (TPRM) architectural reviews, ensuring proposed technology investments are evaluated through sound architectural ...
You will also serve as the primary authority for Third-Party Risk Management (TPRM) architectural reviews, ensuring proposed technology investments are evaluated through sound architectural ...
You will also serve as the primary authority for Third-Party Risk Management (TPRM) architectural reviews, ensuring proposed technology investments are evaluated through sound architectural ...
Drive product related policy management, issue management, change management, risk assessment, third-party risk management, and training. * Build standards for the product team, such as documentation ...
Drive product related policy management, issue management, change management, risk assessment, third-party risk management, and training. * Build standards for the product team, such as documentation ...
Senior Performance Manager - 3rd Party Vendor Relationship Management
San Diego, CA · On-site
$75K - $90K/yr
The Senior Performance Manager is responsible for leading relatively large, new and/or complex third-party relationships, programs, and initiatives. In this role you will foster relationships with ...
Quick apply
Senior Performance Manager - 3rd Party Vendor Relationship Management
San Diego, CA · On-site
$75K - $90K/yr
The Senior Performance Manager is responsible for leading relatively large, new and/or complex third-party relationships, programs, and initiatives. In this role you will foster relationships with ...
Senior Manager - ServiceNow
San Diego, CA · On-site
Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...
Senior Manager - ServiceNow
San Diego, CA · On-site
Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...
Senior AI Risk Advisor
San Diego, CA · On-site +1
Lead AI risk assessments across the full model lifecycle - evaluating third-party AI vendors ... while managing risk intelligently * Represent the firm's AI governance posture externally ...
Senior AI Risk Advisor
San Diego, CA · On-site +1
Lead AI risk assessments across the full model lifecycle - evaluating third-party AI vendors ... while managing risk intelligently * Represent the firm's AI governance posture externally ...
IT Vendor Financials & Contract Manager
San Diego, CA · On-site +1
Third-Party Risk Management (TPRM) * Service Level Management (SLM) * Contract Management Pro * Performance Analytics (PA) * Strategic Portfolio Management (SPM) * IT Service Management (ITSM) * 1+ ...
IT Vendor Financials & Contract Manager
San Diego, CA · On-site +1
Third-Party Risk Management (TPRM) * Service Level Management (SLM) * Contract Management Pro * Performance Analytics (PA) * Strategic Portfolio Management (SPM) * IT Service Management (ITSM) * 1+ ...
VP, Credit Risk
San Diego, CA · On-site
... programs, and third-party software applications required. * Commitment to company values ... Manages staffing plan for a division, including planning for needed additional hires and/or ...
VP, Credit Risk
San Diego, CA · On-site
... programs, and third-party software applications required. * Commitment to company values ... Manages staffing plan for a division, including planning for needed additional hires and/or ...
Procurement Analyst
San Diego, CA · On-site
$25 - $30/hr
Knowledge of vendor risk management principles and third-party oversight frameworks (e.g., OCC guidance on third-party risk) * Exposure to e-sourcing or RFx processes (RFI, RFP, RFQ) within Oracle ...
Procurement Analyst
San Diego, CA · On-site
$25 - $30/hr
Knowledge of vendor risk management principles and third-party oversight frameworks (e.g., OCC guidance on third-party risk) * Exposure to e-sourcing or RFx processes (RFI, RFP, RFQ) within Oracle ...
VP, Credit Risk
San Diego, CA · On-site
... programs, and third-party software applications required. * Commitment to company values ... Manages staffing plan for a division, including planning for needed additional hires and/or ...
VP, Credit Risk
San Diego, CA · On-site
... programs, and third-party software applications required. * Commitment to company values ... Manages staffing plan for a division, including planning for needed additional hires and/or ...
Third Party Risk Manager information
See Alpine, CA salary details
$52.2K - $63.1K
4% of jobs
$63.1K - $74K
6% of jobs
$74K - $84.9K
11% of jobs
$89K is the 25th percentile. Wages below this are outliers.
$84.9K - $95.9K
11% of jobs
The median wage is $104.5K / yr.
$95.9K - $106.8K
23% of jobs
$106.8K - $117.7K
13% of jobs
$124.9K is the 75th percentile. Wages above this are outliers.
$117.7K - $128.6K
12% of jobs
$128.6K - $139.5K
8% of jobs
$139.5K - $150.4K
6% of jobs
$150.4K - $161.4K
4% of jobs
$161.4K - $172.3K
2% of jobs
$52.2K
$113.1K
$172.3K
How much do third party risk manager jobs pay per year?
What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?
| Aspect | Third Party Risk Manager | Vendor Risk Analyst |
|---|---|---|
| Credentials | Certifications like CRISC, CTPRP often preferred | Certifications such as CRISC, CTPRP common |
| Work Environment | Oversees multiple vendors and third-party relationships at strategic level | Focuses on assessing specific vendor risks and compliance |
| Employer & Industry Usage | Used in finance, healthcare, and large corporations managing third-party risks | Common in IT, finance, and procurement departments |
| Search & Comparison Intent | Often compared for broader risk management roles | Compared for detailed vendor risk assessments |
The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.
What are the key skills and qualifications needed to thrive as a Third Party Risk Manager, and why are they important?
What is a Third Party Risk Manager?
How does a Third Party Risk Manager typically collaborate with other departments to manage vendor risks?
Other
Posted 4 days ago
Deloitte rating
8.1
Based on 86 frontline employees who took The Breakroom Quiz
57th of 139 rated financial services
Job description
As part of ICN Business Relationships team, you will be an enabler of Deloitte's operations and growth by reviewing proposed business relationships such as alliances, teaming arrangements, and sponsorships for auditor independence in a regulated environment.
Recruiting for this role ends on 7/23/2026.
Work you'll do
As a Specialist Manager, Risk & Compliance on the ICN Business Relationships team, you will be responsible for:
- Leading a domestic and international team that processes business relationship reviews and consultations by answering questions and providing guidance and training
- Performing secondary reviews of business relationship submissions in the Third Party Risk Management (TPRM) Gateway and reinforcing data quality standards
- Advising Lead Client Service Partners, Professional Practice Directors, Regional Compliance Officers, DTT Independence Directors, and other partners, principals, and managing directors on business relationship consultations
- Identifying, implementing, and testing enhancements to business relationship clearance processes and tools, including the TPRM Gateway
- Leading independence processes, assigned projects, training sessions, and team strategy and operations coordination
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to mentor and provide clear guidance to others
The team
Risk & Brand Protection (R&BP)
Our reputation starts with you-this belief is core to R&BP Office, which brings together six essential core pillars that shape our culture-we collectively work with our businesses to inspire new standards of integrity, trust, and performance to make an impact that matters and to better serve our clients, our communities and our people. Together, we protect, preserve, and enhance our reputation and distinguish Deloitte as the undisputed leader in professional services, strengthening our brand, and making Deloitte the first choice for our clients.
Together, we protect, preserve, and enhance our reputation and distinguish Deloitte as the undisputed leader in professional services, strengthening our brand, and each other.
Independence & Conflicts Network (ICN) - one of R&BP's six pillars
Independence is integrity, professional skepticism, intellectual honesty, and objectivity - freedom from conflicts of interest. The people of Deloitte must remain unbiased and free from conflicts of interest with our audit clients, in fact and appearance.
Deloitte's independence requirements are defined by specific sets of policies and regulatory rules and standards (e.g., SEC, AICPA and IESBA) to help us remain independent when providing professional services and creating business relationships.
Business Relationships Team - a critical component of ICN
Business relationships are essential to the growth strategy of Deloitte. The ICN Business Relationships team performs a critical consultative, quality-assurance, and risk-management function for the Deloitte US Firms, helping the businesses remain unbiased and independent when entering into business relationships with third parties.
Qualifications
Required:
- Bachelor's degree
- 8+ years of experience in auditor independence, compliance, third-party risk management, or regulatory review
- 3+ years of experience leading teams
- Experience reviewing third-party business relationships, alliances, teaming arrangements, or sponsorships in a regulated environment
- Experience using third-party risk management systems or workflow tools
- Ability to travel 10%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- Experience applying Securities and Exchange Commission (SEC), American Institute of Certified Public Accountants (AICPA), or International Ethics Standards Board for Accountants (IESBA) independence rules
- Experience presenting training to professional audiences
- Experience conducting user acceptance testing for technology enhancements
- Experience working with partners, principals, and managing directors on consultations
- Experience with data quality monitoring and reporting in workflow systems
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $88,600 to $163,100.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
EA_ExpHire
EA_RBP_ExpHire
As part of ICN Business Relationships team, you will be an enabler of Deloitte's operations and growth by reviewing proposed business relationships such as alliances, teaming arrangements, and sponsorships for auditor independence in a regulated environment.
Recruiting for this role ends on 7/23/2026.
Work you'll do
As a Specialist Manager, Risk & Compliance on the ICN Business Relationships team, you will be responsible for:
- Leading a domestic and international team that processes business relationship reviews and consultations by answering questions and providing guidance and training
- Performing secondary reviews of business relationship submissions in the Third Party Risk Management (TPRM) Gateway and reinforcing data quality standards
- Advising Lead Client Service Partners, Professional Practice Directors, Regional Compliance Officers, DTT Independence Directors, and other partners, principals, and managing directors on business relationship consultations
- Identifying, implementing, and testing enhancements to business relationship clearance processes and tools, including the TPRM Gateway
- Leading independence processes, assigned projects, training sessions, and team strategy and operations coordination
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to mentor and provide clear guidance to others
The team
Risk & Brand Protection (R&BP)
Our reputation starts with you-this belief is core to R&BP Office, which brings together six essential core pillars that shape our culture-we collectively work with our businesses to inspire new standards of integrity, trust, and performance to make an impact that matters and to better serve our clients, our communities and our people. Together, we protect, preserve, and enhance our reputation and distinguish Deloitte as the undisputed leader in professional services, strengthening our brand, and making Deloitte the first choice for our clients.
Together, we protect, preserve, and enhance our reputation and distinguish Deloitte as the undisputed leader in professional services, strengthening our brand, and each other.
Independence & Conflicts Network (ICN) - one of R&BP's six pillars
Independence is integrity, professional skepticism, intellectual honesty, and objectivity - freedom from conflicts of interest. The people of Deloitte must remain unbiased and free from conflicts of interest with our audit clients, in fact and appearance.
Deloitte's independence requirements are defined by specific sets of policies and regulatory rules and standards (e.g., SEC, AICPA and IESBA) to help us remain independent when providing professional services and creating business relationships.
Business Relationships Team - a critical component of ICN
Business relationships are essential to the growth strategy of Deloitte. The ICN Business Relationships team performs a critical consultative, quality-assurance, and risk-management function for the Deloitte US Firms, helping the businesses remain unbiased and independent when entering into business relationships with third parties.
Qualifications
Required:
- Bachelor's degree
- 8+ years of experience in auditor independence, compliance, third-party risk management, or regulatory review
- 3+ years of experience leading teams
- Experience reviewing third-party business relationships, alliances, teaming arrangements, or sponsorships in a regulated environment
- Experience using third-party risk management systems or workflow tools
- Ability to travel 10%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- Experience applying Securities and Exchange Commission (SEC), American Institute of Certified Public Accountants (AICPA), or International Ethics Standards Board for Accountants (IESBA) independence rules
- Experience presenting training to professional audiences
- Experience conducting user acceptance testing for technology enhancements
- Experience working with partners, principals, and managing directors on consultations
- Experience with data quality monitoring and reporting in workflow systems
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $88,600 to $163,100.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
EA_ExpHire
EA_RBP_ExpHire