1

Third Party Risk Manager Jobs in Baltimore, MD (NOW HIRING)

... risk scoring and disposition. * Continuously improve governance processes as the program matures from manual to software-enabled operations. * Manage assigned items from internal and third-party ...

Security Analyst

Columbia, MD · Hybrid

$55 - $60/hr

... third-party risk management process • Maintain and update the risk register and track remediation • Support responses to third-party security questionnaires. Support contract review tasks in ...

The ideal candidate will have experience in cybersecurity governance, risk management, compliance ... Third-Party Risk Analyst * Security Consultant performing risk and control assessments Ref: #851 ...

Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...

Showing results 21-40

Third Party Risk Manager information

See Baltimore, MD salary details

$51.2K

$110.8K

$168.9K

How much do third party risk manager jobs pay per year?

As of Sep 9, 2026, the average yearly pay for third party risk manager in Baltimore, MD is $110,846.00, according to ZipRecruiter salary data. Most workers in this role earn between $89,400.00 and $128,200.00 per year, depending on experience, location, and employer.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

Is third party risk manager a good career?

A third party risk manager plays a key role in assessing and mitigating risks associated with external vendors and partners, often requiring knowledge of compliance standards and risk management tools. The role offers opportunities for advancement in industries such as finance, healthcare, and technology, with a growing demand for professionals skilled in risk assessment and regulatory requirements. It can be a stable and rewarding career for those with strong analytical skills and attention to detail.

What cities near Baltimore, MD are hiring for Third Party Risk Manager jobs?

Cities near Baltimore, MD with the most Third Party Risk Manager job openings:

Infographic showing various Third Party Risk Manager job openings in Baltimore, MD as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 84% Physical, 2% Hybrid, and 14% Remote job distribution, with an average salary of $110,846 per year, or $53.3 per hour.

AI Governance Coordinator

Baltimore, MD • Remote

System One
Business Consulting Services • 5 - 10K employees

$43.94/hr

Contractor

Medical, Dental, Vision, Life, Retirement

Re-posted 9 days ago


Job description

Job Title: AI Governance Coordinator Type: Contract Compensation: $43.94 per hour Work Model: Remote – offsite - must work Eastern Time Zone business hours

Responsibilities • Support the AI Governance Lead in operationalizing the enterprise AI governance program, including managing the use case registry, executing risk assessments, coordinating mitigation follow-ups, and supporting audit and regulatory readiness. • Maintain the AI use case registry as the system of record for lifecycle stage, risk tiering, ownership, and value categories. • Review and validate risk ratings for active and pending AI use cases; adjust ratings as needed based on updated context, control posture, or governance criteria. • Issue and collect supplemental questionnaires for high- and medium-risk use cases; ensure responses are complete, accurate, and stored for audit readiness. • Track and follow up on mitigation actions for high- and medium-risk use cases through to formal close-out. • Coordinate periodic reviews of registered use cases to ensure risk ratings and mitigations remain current. • Support the implementation, migration, and ongoing operation of the AI governance platform — including data validation, intake workflow testing, and user onboarding. • Operate the AI use case intake process — triaging new submissions, routing to appropriate reviewers, and ensuring timely risk scoring and disposition. • Continuously improve governance processes as the program matures from manual to software-enabled operations. • Manage assigned items from internal and third-party assessment project plans, including follow-ups with action owners, status tracking, and escalation of delays. • Draft guardrail documents, process flows, and supporting documentation required to close identified gaps. • Track and document mitigation activities, evidence collection, and final close-out for each assigned item. • Partner with control function teams (Risk, Compliance, Privacy, Information Security) to ensure AI governance activities align with enterprise control frameworks. • Draft communications, mitigation plans, follow-up correspondence, and governance reporting on behalf of the AI Governance Lead. • Support audit and regulatory inquiries by preparing factual, audit-ready documentation and evidence packages.

Requirements • 1-2 years of direct AI governance or AI risk management experience, including AI use case review, risk assessment, working with business users on AI risk mitigation, and managing AI use case inventory. • Demonstrated experience in review and challenge roles such as third-party risk assessments, information security assessments, risk and control self-assessments (RCSAs), or privacy risk assessments. • Curiosity, initiative, and willingness to learn/research about new AI tools and associated risks. • Familiarity with AI governance frameworks (NIST AI RMF, ISO 42001) and healthcare regulatory requirements (HIPAA, CMS). • Experience with governance, risk, and compliance (GRC) tooling. • AI Governance certifications and training is a plus. • Bachelor's degree in Business, Information Systems, Risk Management, or a related field; equivalent experience considered. • 3–5 years of experience as a business analyst, governance analyst, or risk/compliance analyst in a regulated industry. • Demonstrated experience in review roles such as third-party risk assessments, information security assessments, RCSAs, or privacy risk assessments. • Strong communication and collaboration skills, with proven experience working alongside control function partners. • Excellent writing skills to draft clear, audit-ready communications and documentation. • Strong organizational skills to manage multiple workstreams, deadlines, and stakeholders concurrently. • Curiosity, initiative, and willingness to learn/research about new AI tools and associated risks.

Preferred Qualifications • AI Governance certifications and training. • Familiarity with AI governance frameworks (NIST AI RMF, ISO 42001) and healthcare regulatory requirements (HIPAA, CMS). • Experience with governance, risk, and compliance (GRC) tooling. • Healthcare payer or highly regulated industry experience preferred. • Experience supporting audit, regulator, or third-party assurance engagements.

System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

#M-1 #LI-AJ1 Ref: #851-Rockville-S1


System One logo

About System One

Sourced by ZipRecruiter

System One helps employers get work done more efficiently and economically without compromising quality. Over our 35+ year history, we've helped connect thousands of talented people with innovative companies. The excitement of a perfect fit motivates us every single day.

Industry

Business consulting services and recruiting and staffing services

Company size

5,001 - 10,000 Employees

Headquarters location

Pittsburgh, PA, US