1

Third Party Risk Manager Jobs in Bothell, WA (NOW HIRING)

Support third-party risk management efforts including supplier onboarding and periodic cyber assessments. * Identify and propose business enabling actions by maintaining an up-to-date understanding ...

Support third-party risk management efforts including supplier onboarding and periodic cyber assessments. * Identify and propose business enabling actions by maintaining an up-to-date understanding ...

Lead vendor and third-party risk management and evaluate cyber insurance coverage in partnership with finance and legal. Customer & Revenue Enablement * Own the security and trust narrative for ...

Lead vendor and third-party risk management and evaluate cyber insurance coverage in partnership with finance and legal. Customer & Revenue Enablement * Own the security and trust narrative for ...

Director, Cyber Security

Kirkland, WA · Remote

$165K - $200K/yr

Risk Management, Compliance & Third-Party Security · Oversee enterprise-wide cyber risk management strategy, including risk identification, prioritization, and mitigation aligned to business ...

Sr Director, Internal Audit

Seattle, WA · On-site

$200K - $320K/yr

Strengthen technology, cybersecurity, identity, and third-party risk assurance in close ... Have experience developing and leading senior audit managers and directors, building teams known ...

next page

Showing results 1-20

Third Party Risk Manager information

See Bothell, WA salary details

$57.6K

$124.7K

$190K

How much do third party risk manager jobs pay per year?

As of Jul 20, 2026, the average yearly pay for third party risk manager in Bothell, WA is $124,707.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,600.00 and $144,200.00 per year, depending on experience, location, and employer.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

What are the key skills and qualifications needed to thrive as a Third Party Risk Manager, and why are they important?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

What is a Third Party Risk Manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

How does a Third Party Risk Manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.
What job categories do people searching Third Party Risk Manager jobs in Bothell, WA look for? The top searched job categories for Third Party Risk Manager jobs in Bothell, WA are:
What cities near Bothell, WA are hiring for Third Party Risk Manager jobs? Cities near Bothell, WA with the most Third Party Risk Manager job openings:
Sr. Cyber Assurance Analyst, Starlink

Sr. Cyber Assurance Analyst, Starlink

SpaceX

Redmond, WA • On-site

$130K - $180K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 26 days ago


SpaceX rating

8.8

Company rating: 8.8 out of 10

Based on 146 frontline employees who took The Breakroom Quiz

7th of 61 rated aerospace companies


Job description

SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.
SR. CYBER ASSURANCE ANALYST, STARLINK
Cyber Assurance is the practice of providing confidence that systems, products and processes meet security, regulatory and compliance obligations. It bridges governance with technical execution -- validating that controls are in place, risks are managed, and requirements are met for both internal and customer-facing systems.
As a teammate you will operate within Information Assurance, working closely with engineers to understand systems, how controls are implemented, be hands-on with collecting and reviewing evidence, and driving efficiencies and remediation efforts, along with providing technical certification support for Starlink products in line with required international standards.
As an ideal candidate, you love living at the intersection of security, compliance, and emerging technology. You thrive on rolling up your sleeves to dig into configs, logs, and making sense of challenging, complex, or ambiguous requirements. You're comfortable explaining security frameworks and security best practices to non-technical teams as you are at grabbing a hash of a file or identifying an insecure default configuration. You are firm when it matters, but also flexible to consider alternative ways to move the ball forward. You excel at handling concurrent complex efforts and flourish in an environment where learning never ceases, where the breadth of operations ranges from rockets to routing tables, and where teams are laser-focused on mission accomplishment -- excitement guaranteed!
RESPONSIBILITIES:
  • Lead and support security audits and certification (ISO 27001, NIST, PCI, etc.) efforts.
  • Partner with engineers to gather and validate technical evidence (configs, code snippets, logs, system designs, etc.).
  • Support product security certification efforts (e.g. telecom, CPE, or country-specific regulatory requirements).
  • Perform technical security and risk assessments of systems and networks within our environment and identify where they deviate from security policy, standards or regulations.
  • Identify security control and compliance gaps, advise on remediation, and drive timely resolution with engineers.
  • Maintain necessary documentation of controls, processes and audits.
  • Identify and drive assessments and audit efficiency through system integration, data utilization, and process improvement.
  • Support third-party risk management efforts including supplier onboarding and periodic cyber assessments.
  • Identify and propose business enabling actions by maintaining an up-to-date understanding of emerging trends in information security risks, changes in standards, and new compliance/assurance techniques and trends.
  • Mentor fellow teammates and take an active role in their development.

BASIC QUALIFICATIONS:
  • High school diploma or equivalency certificate.
  • 5+ years of experience in cybersecurity compliance, audit or technical security roles with strong knowledge in security compliance frameworks.
  • 5+ years of experience with control testing, security standards/policy development, security audits, or security risk management.

PREFERRED SKILLS AND EXPERIENCE:
  • Ability to interpret code/configurations and analyze system/network designs for compliance implications.
  • Experience with security tooling such as vulnerability scanners, SIEMS, container security, system configuration baseline checks (e.g. CIS Benchmarks, STIGs, etc.).
  • Hands-on experience supporting product-level security testing or certifications (e.g. Consumer Premise Equipment/ CPE devices, network equipment).
  • Knowledge of other U.S. and international regulatory requirements (e.g. EU NIS2, EU RED, UK PTSI, GDPR, SOX, SOC 1/2, etc.).
  • Experience evaluating third-party risk, communicating with external stakeholders, and supporting appropriate mitigations.
  • Strong communication skills across all organizational levels and ability to build cross-organizational coalitions.
  • Direct experience with external audits, regulatory compliance reviews and examinations.
  • Project and program management experience, tooling integration, and delivery in highly fluid environments.
  • Processional certifications such as CISA, CISM, CISSP, GSNA, ISO 27001 auditor, PCI ISA or QSA, or equivalent certifications.

ADDITIONAL REQUIREMENTS:
  • Must be willing to travel (<25>
  • Must be willing to work extended hours and/or weekends as needed.
  • This role requires you to be onsite, remote/hybrid work will not be considered.

COMPENSATION AND BENEFITS:
Pay Range:
Level 3: $130,000.00 - $180,000.00
Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience.
Base salary is just one part of your total rewards package at SpaceX. You may also be eligible for long-term incentives, in the form of company stock or long-term cash awards, as well as potential discretionary bonuses and the ability to purchase additional stock at a discount through an Employee Stock Purchase Plan. You will also receive access to comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short and long-term disability insurance, life insurance, paid parental leave, and various other discounts and perks. You may also accrue 3 weeks of paid vacation and will be eligible for 10 or more paid holidays per year. Employees in Washington State accrue paid sick time in compliance with state and federal law. Company shuttles are offered to employees for roundtrip travel from select Seattle locations to the SpaceX Redmond office Monday to Friday.
ITAR REQUIREMENTS:
  • To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.

SpaceX is an Equal Opportunity Employer; employment with SpaceX is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.
Applicants wishing to view a copy of SpaceX's Affirmative Action Plan for veterans and individuals with disabilities, or applicants requiring reasonable accommodation to the application/interview process should reach out to EEOCompliance@spacex.com.

What SpaceX employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom