1

Third Party Risk Manager Jobs in Laurel, MD (NOW HIRING)

Job Title: Sr Risk Management Analyst Location: Washington, DC Type: Contract Compensation: $63.77 ... Govern and support associates in the completion of third-party risk assessments and control self ...

Job Title: Sr Risk Management Analyst Location: Washington, DC Type: Contract Compensation: $63.77 ... Govern and support associates in the completion of third-party risk assessments and control self ...

Job Title: Sr Risk Management Analyst Location: Washington, DC Type: Contract Compensation: $63.77 ... Govern and support associates in the completion of third-party risk assessments and control self ...

Showing results 21-40

Third Party Risk Manager information

See Laurel, MD salary details

$51.1K

$110.6K

$168.6K

How much do third party risk manager jobs pay per year?

As of Sep 7, 2026, the average yearly pay for third party risk manager in Laurel, MD is $110,604.00, according to ZipRecruiter salary data. Most workers in this role earn between $89,200.00 and $127,900.00 per year, depending on experience, location, and employer.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

Is third party risk manager a good career?

A third party risk manager plays a key role in assessing and mitigating risks associated with external vendors and partners, often requiring knowledge of compliance standards and risk management tools. The role offers opportunities for advancement in industries such as finance, healthcare, and technology, with a growing demand for professionals skilled in risk assessment and regulatory requirements. It can be a stable and rewarding career for those with strong analytical skills and attention to detail.

What cities near Laurel, MD are hiring for Third Party Risk Manager jobs?

Cities near Laurel, MD with the most Third Party Risk Manager job openings:

Infographic showing various Third Party Risk Manager job openings in Laurel, MD as of August 2026, with employment types broken down into 77% Full Time, 22% Part Time, and 1% Contract. Highlights an 81% Physical, 2% Hybrid, and 17% Remote job distribution, with an average salary of $110,604 per year, or $53.2 per hour.

Cyber Third Party Risk Reduction (CTPRR) Senior Manager, Operations Manager

Capital One

Mclean, VA • On-site

Full-time

Re-posted 27 days ago


Capital One rating

7.8

Company rating: 7.8 out of 10

Based on 148 frontline employees who took The Breakroom Quiz

88th of 175 rated banks


Job description

Cyber Third Party Risk Reduction (CTPRR) Senior Manager, Operations Manager

The Cyber Third Party Risk Reduction (CTPRR) program defines the framework for the management of information security risks with third party engagements, supports contracting, conducts assessments, and ongoing finding remediation of third parties supporting Capital One.

We are seeking a highly organized, analytical, and proactive CTRPP Operations Lead to oversee the day-to-day execution and continuous improvement of our third-party risk management lifecycle. In this role, you will bridge the gap between risk strategy and operational execution. You will lead the team responsible for the identification, documentation, reporting, and mitigation of realized cybersecurity risk through contracting, ongoing monitoring and risk remediation, ensuring that third-party relationships comply with internal policies and external regulatory requirements.

The ideal candidate thrives on optimizing workflows, translating complex data into actionable metrics, and collaborating with cross-functional stakeholders across legal, procurement, information security, and business units.

You will:

  • Manage the end-to-end CTRPP operational lifecycle, including vendor inherent risk rating, due diligence assessments and ongoing monitoring.

  • Serve as the primary escalation point for complex risk assessments, vendor disputes, or critical remediation issues.

  • Supervise and mentor a team of risk analysts, ensuring data accuracy, consistency in risk evaluations, and adherence to established Service Level Agreements (SLAs).

  • Design, generate, and maintain operational dashboards, Key Performance Indicators (KPIs), and Key Risk Indicators (KRIs) for executive leadership.

  • Monitor third-party compliance with remediation plans, tracking open findings to resolution and escalating past-due risks.

  • Support internal and external audits, examinations, and regulatory inquiries by providing necessary CTRPP documentation and evidence.

  • Partner closely with Procurement, Legal, InfoSec, and Privacy teams to ensure a seamless and unified approach to third-party oversight.

  • Provide guidance and training to internal business owners on their responsibilities regarding third-party risk and compliance.

Responsibilities may also include:

  • Participating in on site assessments of third parties during more focused reviews

  • Participate or lead ad hoc requests of the program

  • Participate with broader program enhancements and ongoing development activity

  • Willing to jump in to support any of the program functions when needs arise

Basic Qualifications:

  • High School Diploma, GED, or equivalent certification

  • At least 6 years of experience in Third-Party Risk Management, Vendor Management, or Operational Risk Management

  • At least 3 years of experience in IT Operations Management

Preferred Qualifications:

  • Bachelor's Degree

  • CTPRP, CISSP, CISA, or CRISC certification

  • 5+ years of experience in IT Operations Management

  • 5+ years of experience at a Financial Institution

At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, E-2, E-3, L-1 and O-1, or any EADs or other forms of work authorization that require immigration support from an employer)

The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

McLean, VA: $200,700 - $229,100 for Sr. Manager, Cyber Risk & Analysis


Richmond, VA: $182,500 - $208,300 for Sr. Manager, Cyber Risk & Analysis










Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.

This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at theCapital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at RecruitingAccommodation@capitalone.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to Careers@capitalone.com

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).


What Capital One employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom