1

Third Party Risk Manager Jobs in Chicago, IL (NOW HIRING)

Governance & Risk Analyst

Chicago, IL · On-site

$85K - $95K/yr

Key Responsibilities Third-Party Risk Management (TPRM) & Vendor Risk Assessments (VRA) * Conduct end-to-end Vendor Risk Assessments (VRA) including initiation, analysis, follow-ups, and final ...

Gong is seeking an experienced Third Party Risk Manager to join our Governance, Risk, and Compliance (GRC) team. In this role, you will own and mature Gong's third-party risk management program ...

Clinical Risk Manager

Chicago, IL · On-site

$42.54 - $65.94/hr

Work with the Claims Management team to process Notices of Claim (NOCs) for submission to Third Party Administrator (TPA) in a timely manner * Attend monthly Risk/Claims Management meetings to ...

Build trusted partnerships across Business, Technology, Operations, Risk, Compliance, Internal Audit, and Third Party Risk Management. * Communicate program progress, emerging risks, key milestones ...

Build trusted partnerships across Business, Technology, Operations, Risk, Compliance, Internal Audit, and Third Party Risk Management. * Communicate program progress, emerging risks, key milestones ...

Associate Analyst IT Compliance

Bolingbrook, IL · On-site

$93K - $93K/yr

Assists in ensuring documentation remains current and aligned with organizational and regulatory requirements. • Third-Party Risk Management Participates in vendor and third-party risk assessment ...

Showing results 41-60

Third Party Risk Manager information

See Chicago, IL salary details

$53.1K

$114.9K

$175.1K

How much do third party risk manager jobs pay per year?

As of Aug 7, 2026, the average yearly pay for third party risk manager in Chicago, IL is $114,919.00, according to ZipRecruiter salary data. Most workers in this role earn between $92,700.00 and $132,900.00 per year, depending on experience, location, and employer.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.
What cities near Chicago, IL are hiring for Third Party Risk Manager jobs? Cities near Chicago, IL with the most Third Party Risk Manager job openings:
Infographic showing various Third Party Risk Manager job openings in Chicago, IL as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 87% Physical, 2% Hybrid, and 11% Remote job distribution, with an average salary of $114,919 per year, or $55.2 per hour.

Governance & Risk Analyst

ZS

Chicago, IL • On-site

$85K - $95K/yr

Full-time

Re-posted 25 days ago


Job description

ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Here you'll work side-by-side with a powerful collective of thinkers and experts shaping life-changing solutions for patients, caregivers and consumers, worldwide. ZSers drive impact by bringing a client-first mentality to each and every engagement. We partner collaboratively with our clients to develop custom solutions and technology products that create value and deliver company results across critical areas of their business. Bring your curiosity for learning, bold ideas, courage and passion to drive life-changing impact to ZS.
What you'll do: Governance & Risk Analyst in the Enterprise will...
The GRC Analyst will support the organization's Governance, Risk & Compliance function with a primary focus on Third-Party Risk Management (TPRM) and Vendor Risk Assessments (VRA). This role is responsible for conducting end-to-end risk assessments of third-party vendors, identifying security, privacy, and compliance risks, and working with internal stakeholders and vendors to ensure timely risk remediation and closure.
The role requires strong analytical skills, stakeholder engagement, and familiarity with information security, privacy, and regulatory frameworks.
Key Responsibilities
Third-Party Risk Management (TPRM) & Vendor Risk Assessments (VRA)
  • Conduct end-to-end Vendor Risk Assessments (VRA) including initiation, analysis, follow-ups, and final reporting
  • Review vendor security questionnaires, supporting evidence, and contractual artifacts to assess information security, privacy, and compliance risks
  • Identify inherent and residual risks across domains such as not limited only to below:
    • Information Security
    • Data Privacy
    • Access Controls
    • Business Continuity & Disaster Recovery
    • Regulatory & Compliance requirements
  • Clearly document assessment findings, risk ratings, and remediation recommendations in risk management tools and trackers
  • Coordinate with vendors to obtain clarifications, remediation plans, and follow-up evidence for identified gaps

Stakeholder Collaboration & Governance
  • Partner with internal teams including Procurement, Legal, Information Security, Privacy, and Business Owners to support third-party onboarding and risk decisions
  • Escalate high-risk findings and delays to GRC leadership with clear summaries and recommended actions
  • Support second-level reviews and management reporting for VRAs and TPRM activities

Risk Reporting & Continuous Improvement
  • Maintain accurate risk registers, assessment trackers, and dashboards for VRA/TPRM
  • Contribute to improving TPRM frameworks, workflows, and reporting to enhance stakeholder value
  • Assist in developing and updating SOPs, templates, and guidance documents related to vendor risk management

Audit & Compliance Support
  • Support internal and external audits by providing VRA documentation, evidence, and risk summaries
  • Assist with broader GRC initiatives such as policy reviews, opportunity security risk assessments, and compliance assessments as needed

What you'll bring:
  • Bachelor's degree in computer science, Information Systems, or a related field. A relevant master's degree is a plus.
  • Proven experience of at least 2 years or more in IT risk management, governance, or a related field.
  • Strong understanding of IT risk assessment methodologies, frameworks, and industry best practices.
  • Assess vendor security posture against frameworks such as ISO 27001 / 27002, NIST, and SOC 2.
  • Familiarity with regulatory requirements (e.g., GDPR, HIPAA, PCI DSS) and their impact on IT risk management.
  • Knowledge of vendor risk management principles and practices.
  • Experience in performing process, Contract review and project security risk assessments.
  • Proficiency in using risk assessment tools and technologies.
  • Excellent analytical and problem-solving skills.
  • Strong written and verbal communication skills, with the ability to effectively communicate technical concepts to both technical and non-technical audiences.
  • Strong organizational and time management skills, with the ability to manage multiple priorities and deadlines.
  • Relevant certification such as ISO 27001:2022 LA is preferred.
  • Fluency in English
  • Client-first mentality
  • Intense work ethic
  • Collaborative spirit and problem-solving approach

How you'll grow:
  • Cross-functional skills development & custom learning pathways
  • Milestone training programs aligned to career progression opportunities
  • Internal mobility paths that empower growth via s-curves, individual contribution and role expansions

Perks & Benefits:
At ZS, your growth matters. We offer a comprehensive total rewards package that supports your health and well-being, financial future, time away, and professional development. With robust skills-building programs, multiple career progression paths, internal mobility, and a deeply collaborative culture, you'll have the opportunity to do meaningful work, expand your capabilities, and thrive as part of a global community. For details on total rewards in United States, visit ZS US office locations | Where we work | ZS.
Hybrid working model:
We are committed to giving our employees a flexible and connected way of working. A flexible and connected ZS allows us to combine work from home and on-site presence at clients/ZS offices for the majority of our week. The magic of ZS culture and innovation thrives in both planned and spontaneous face-to-face connections.
Travel:
Travel is a requirement at ZS for client facing ZSers; business needs of your project and client are the priority. While some projects may be local, all client-facing ZSers should be prepared to travel as needed. Travel provides opportunities to strengthen client relationships, gain diverse experiences, and enhance professional growth by working in different environments and cultures.
Considering applying?
At ZS, we honor the visible and invisible elements of our identities, personal experiences, and belief systems-the ones that comprise us as individuals, shape who we are, and make us unique. We believe your personal interests, identities, and desire to learn are integral to your success here. We are committed to building a team that reflects a broad variety of backgrounds, perspectives, and experiences. Learn more about our inclusion and belonging efforts and the networks ZS supports to assist our ZSers in cultivating community spaces and obtaining the resources they need to thrive.
If you're eager to grow, contribute, and bring your unique self to our work, we encourage you to apply.
ZS is an equal opportunity employer and is committed to providing equal employment and advancement opportunities without regard to any class protected by applicable law.
Work Authorization:
This position is not eligible for visa sponsorship. Candidates must have authorization to work in the United States that does not now or in the future require employer sponsorship.
To complete your application:
An on-line application, including a full set of transcripts (official or unofficial), is required to be considered.
NO AGENCY CALLS, PLEASE.
Find Out More At:
www.zs.com

ZS logo

About ZS

Sourced by ZipRecruiter

Industry

Business management consulting

Company size

10,000+ Employees

Headquarters location

Evanston, IL, US

Year founded

1983