1

Third Party Risk Manager Jobs in Georgetown, TX (NOW HIRING)

... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Contributing to functional design and configuration of ServiceNow solutions, including forms, workflows, notifications ...

... Third-Party Risk Management, and ServiceNow AI Control Tower use cases * Supporting functional design and configuration of ServiceNow solutions, including forms, workflows, notifications, service ...

This role will focus on leveraging large language models and agentic AI to transform third-party security risk management, automate complex vendor assessments, streamline controllership processes ...

... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...

Manage activities of third-party vendors associated with assigned insurance programs. Property Risk Engineering (20%) - manage and coordinate, with assistance from third-party vendors, all loss ...

New

3rd Party IP Engineering Program Manager

Austin, TX ยท On-site

$127K/yr

As a Third-Party IP Engineering Program Manager, you'll orchestrate the integration of external custom IPs that are essential to our groundbreaking chip designs. This role offers a unique opportunity ...

Showing results 21-40

Third Party Risk Manager information

See Georgetown, TX salary details

$47.9K

$103.6K

$158K

How much do third party risk manager jobs pay per year?

As of Aug 9, 2026, the average yearly pay for third party risk manager in Georgetown, TX is $103,649.00, according to ZipRecruiter salary data. Most workers in this role earn between $83,600.00 and $119,900.00 per year, depending on experience, location, and employer.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.
What cities near Georgetown, TX are hiring for Third Party Risk Manager jobs? Cities near Georgetown, TX with the most Third Party Risk Manager job openings:
Infographic showing various Third Party Risk Manager job openings in Georgetown, TX as of August 2026, with employment types broken down into 88% Full Time, 11% Part Time, and 1% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $103,649 per year, or $49.8 per hour.

Cyber Security Analyst 2//San Jose, CA OR Austin, TX

TPI Global Solutions

Austin, TX โ€ข On-site

Other

Posted 4 days ago


Job description

Hi, My name is Sudheer , and I work with TPI Global Solutions. We are a global talent solutions firm providing a wide range of staffing solutions to companies and candidates within the technology field. I have reviewed your profile on one of the Job Portal and feel that your background could be a great fit for an exciting opportunity I am working on right now. Title: IT - Cyber Security Analyst 2 Client: AMD Location: San Jose, CA OR Austin, TX (hybrid, 3 days onsite per week) Duration: 12 + Months Job Description: We are seeking a detail-oriented GRC Risk Management Analyst to support information security and third-party risk management. The role combines structured governance and risk analysis with hands-on technical understanding to evaluate vendors throughout the relationship lifecycleโ€”from onboarding and due diligence through ongoing monitoring and offboarding. The analyst will examine architectures, security controls, configurations, technical evidence, and threat scenarios to identify control gaps, determine business impact, document defensible risk decisions, and support practical remediation. The role will also apply analytics, automation, and AI responsibly to streamline evidence review, improve assessment quality, and accelerate monitoring and reporting while maintaining human validation, data protection, traceability, and appropriate governance. Key Responsibilities โ€ข Conduct end-to-end third-party risk assessments, including due diligence, inherent-risk tiering, control evaluation, residual-risk determination, periodic reassessment, and offboarding review โ€ข Administer risk-based vendor questionnaires covering security governance, data protection, access control, vulnerability management, incident response, business continuity, cloud services, and subcontractor oversight; review responses and supporting evidence, clarify gaps with vendors, and translate findings into risk ratings and remediation actions โ€ข Maintain enterprise and vendor risk registers with clear risk statements, ratings, owners, treatment plans, and status โ€ข Analyze security, privacy, resilience, regulatory, concentration, and fourth-party risks based on business criticality and data sensitivity โ€ข Perform technical risk analysis by reviewing system architecture, data flows, cloud and network configurations, identity and access models, encryption, logging, vulnerability results, penetration-test findings, software dependencies, and incident-response capabilities; distinguish design intent from operating effectiveness and document evidence-based conclusions โ€ข Apply hands-on security knowledge to validate control implementation through practical review of technical artifacts, targeted demonstrations, sample-based testing, and collaboration with engineers and system owners; translate technical weaknesses and threat scenarios into clear likelihood, impact, residual-risk, and remediation recommendations โ€ข Partner with Security, IT, Legal, Privacy, Procurement, and business owners to validate findings and drive proportionate mitigation โ€ข Track remediation, escalate material risks and exceptions, and prepare concise leadership reporting, including KRIs, trends, and heat maps โ€ข Support policy governance, control testing, issue management, compliance monitoring, and alignment with NIST, ISO 27001, CMMC, and applicable requirements โ€ข Design and use analytics, automation, and AI-assisted workflows to improve questionnaire triage, evidence extraction, control mapping, risk-statement drafting, issue classification, continuous monitoring, and reporting; measure process gains and maintain human approval, secure handling of sensitive data, output validation, auditability, and compliance with organizational AI governance requirements Required Qualifications โ€ข Education: Bachelorโ€™s degree in Information Security, Risk Management, Business, Computer Science, or a related field โ€ข Experience: 1โ€“4 years in enterprise risk, third-party risk, GRC, information security, or a related area โ€ข Knowledge of inherent and residual risk, likelihood and impact, controls, treatment, acceptance, and monitoring โ€ข Working technical knowledge of enterprise and cloud environments, including networking, operating systems, identity and access management, encryption, secure configuration, vulnerability management, logging and monitoring, application security, and incident response โ€ข Ability to interpret technical evidence such as architecture and data-flow diagrams, access reviews, configuration outputs, vulnerability and penetration-test reports, security logs, and independent assurance reports, and to identify when deeper technical validation is required โ€ข Ability to assess business impact, apply risk criteria, and communicate clear, defensible recommendations โ€ข Strong analytical, organizational, stakeholder-management, and written and verbal communication skills โ€ข Proficiency with Microsoft Office and familiarity with GRC, analytics, or automation tools โ€ข Practical experience using generative AI, scripting, workflow automation, or low-code tools to improve repeatable business processes, with an understanding of prompt design, output validation, sensitive-data handling, access controls, model limitations, and responsible human oversight โ€ข Must be able to commute to San Jose, CA or Austin, TX and work on-site at least 3 days per week Preferred Qualifications โ€ข Relevant certification or active pursuit, such as Security+ or an AI fundamentals credential โ€ข Experience with GRC platforms, vendor monitoring tools, audit support, or control evidence collection โ€ข Familiarity with NIST CSF, ISO 27001, CMMC, SOC 2, GDPR, CCPA, or similar requirements โ€ข Experience creating clear procedures, SOPs, or workflow documentation in a technology or regulated environment Sudheer Paswan Sr Executive Resourcing | TPI Global Solutions +1 4706329257 s pawan@tpiglobalsolutions.com ; www.tpiglobalsolutions.com