You will report to the Manager, GRC within our Security organization. You're excited about this ... third-party risk exposure. * Partner cross-functionally with security engineering, procurement ...
You will report to the Manager, GRC within our Security organization. You're excited about this ... third-party risk exposure. * Partner cross-functionally with security engineering, procurement ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Procurement Contract Services Negotiator / Senior Contract Analyst
Milwaukee, WI · Hybrid
$68K - $82K/yr
Third-Party Risk Management (TPRM) experience * Knowledge of contract lifecycle management (CLM) tools and sourcing processes Preferred Skills & Experience * Strong analytical, problem-solving, and ...
Procurement Contract Services Negotiator / Senior Contract Analyst
Milwaukee, WI · Hybrid
$68K - $82K/yr
Third-Party Risk Management (TPRM) experience * Knowledge of contract lifecycle management (CLM) tools and sourcing processes Preferred Skills & Experience * Strong analytical, problem-solving, and ...
Manager, Quality Management
Milwaukee, WI · On-site +1
... third-party risk, and financial reporting controls * Performing risk assessments, information ... Work you'll do As a Manager, Technology Risk & Compliance on the Global Audit & Assurance Digital ...
Manager, Quality Management
Milwaukee, WI · On-site +1
... third-party risk, and financial reporting controls * Performing risk assessments, information ... Work you'll do As a Manager, Technology Risk & Compliance on the Global Audit & Assurance Digital ...
IT Risk and Compliance Specialist
Milwaukee, WI · On-site
$58.90 - $68.20/hr
... Manage third-party risk reviews by assessing vendor security practices and identifying areas that require mitigation or follow-up. • Oversee segregation of duties governance and monitor the ...
Quick apply
IT Risk and Compliance Specialist
Milwaukee, WI · On-site
$58.90 - $68.20/hr
... Manage third-party risk reviews by assessing vendor security practices and identifying areas that require mitigation or follow-up. • Oversee segregation of duties governance and monitor the ...
Cybersecurity Manager
Brookfield, WI · On-site
$105K - $142K/yr
... risk management, vendor oversight, and disaster recovery readiness, working closely with internal IT infrastructure and operations teams. You will also manage third-party security partners and ...
Cybersecurity Manager
Brookfield, WI · On-site
$105K - $142K/yr
... risk management, vendor oversight, and disaster recovery readiness, working closely with internal IT infrastructure and operations teams. You will also manage third-party security partners and ...
Litigation Specialist
Brookfield, WI · On-site
... risk management objectives. * Coordinate complex litigation, coverage, and claims activities with claims leadership, outside counsel, third-party administrators (TPAs), and internal stakeholders to ...
Litigation Specialist
Brookfield, WI · On-site
... risk management objectives. * Coordinate complex litigation, coverage, and claims activities with claims leadership, outside counsel, third-party administrators (TPAs), and internal stakeholders to ...
... risk management objectives. * Coordinate complex litigation, coverage, and claims activities with claims leadership, outside counsel, third-party administrators (TPAs), and internal stakeholders to ...
... risk management objectives. * Coordinate complex litigation, coverage, and claims activities with claims leadership, outside counsel, third-party administrators (TPAs), and internal stakeholders to ...
... risk management objectives. * Coordinate complex litigation, coverage, and claims activities with claims leadership, outside counsel, third-party administrators (TPAs), and internal stakeholders to ...
Quick apply
... risk management objectives. * Coordinate complex litigation, coverage, and claims activities with claims leadership, outside counsel, third-party administrators (TPAs), and internal stakeholders to ...
IT Vendor Financials & Contract Manager
Milwaukee, WI · On-site +1
Third-Party Risk Management (TPRM) * Service Level Management (SLM) * Contract Management Pro * Performance Analytics (PA) * Strategic Portfolio Management (SPM) * IT Service Management (ITSM) * 1+ ...
IT Vendor Financials & Contract Manager
Milwaukee, WI · On-site +1
Third-Party Risk Management (TPRM) * Service Level Management (SLM) * Contract Management Pro * Performance Analytics (PA) * Strategic Portfolio Management (SPM) * IT Service Management (ITSM) * 1+ ...
Proven experience advising banks on operational resilience, including operational risk, business continuity, third-party risk management, and regulatory resilience frameworks. * Experience managing ...
Proven experience advising banks on operational resilience, including operational risk, business continuity, third-party risk management, and regulatory resilience frameworks. * Experience managing ...
Proven experience advising senior executives on operational resilience, including operational risk, business continuity, third-party risk management, and regulatory resilience frameworks.
Proven experience advising senior executives on operational resilience, including operational risk, business continuity, third-party risk management, and regulatory resilience frameworks.
Support Third-Party Risk Management (TPRM) assessments for Tier 1 vendors. * Translate regulatory requirements into actionable technical controls and architecture recommendations for client ...
Support Third-Party Risk Management (TPRM) assessments for Tier 1 vendors. * Translate regulatory requirements into actionable technical controls and architecture recommendations for client ...
MANAGEMENT SERVICES ADJUSTER
$77K - $97K/yr
Risk Management FLSA Status: Exempt, Non-Represented Annual Salary Range: $77,600-$97,033 JOB ... Serve as liaison and assures compliance between MCTS and third-party administrators to ensure ...
MANAGEMENT SERVICES ADJUSTER
$77K - $97K/yr
Risk Management FLSA Status: Exempt, Non-Represented Annual Salary Range: $77,600-$97,033 JOB ... Serve as liaison and assures compliance between MCTS and third-party administrators to ensure ...
MANAGEMENT SERVICES ADJUSTER
Milwaukee, WI · On-site
$77K - $97K/yr
Risk Management FLSA Status: Exempt, Non-Represented Annual Salary Range: $77,600-$97,033 JOB ... Serve as liaison and assures compliance between MCTS and third-party administrators to ensure ...
MANAGEMENT SERVICES ADJUSTER
Milwaukee, WI · On-site
$77K - $97K/yr
Risk Management FLSA Status: Exempt, Non-Represented Annual Salary Range: $77,600-$97,033 JOB ... Serve as liaison and assures compliance between MCTS and third-party administrators to ensure ...
MANAGEMENT SERVICES ADJUSTER
Milwaukee, WI · On-site
$77K - $97K/yr
Risk Management FLSA Status: Exempt, Non-Represented Annual Salary Range: $77,600-$97,033 JOB ... Serve as liaison and assures compliance between MCTS and third-party administrators to ensure ...
MANAGEMENT SERVICES ADJUSTER
Milwaukee, WI · On-site
$77K - $97K/yr
Risk Management FLSA Status: Exempt, Non-Represented Annual Salary Range: $77,600-$97,033 JOB ... Serve as liaison and assures compliance between MCTS and third-party administrators to ensure ...
... risk policies for the Real Estate Investment Department within the mortgage loan portfolio and ... Regularly contracts, hires and manages outside consulting firms for third party evaluations.
... risk policies for the Real Estate Investment Department within the mortgage loan portfolio and ... Regularly contracts, hires and manages outside consulting firms for third party evaluations.
... risk policies for the Real Estate Investment Department within the mortgage loan portfolio and ... Regularly contracts, hires and manages outside consulting firms for third party evaluations.
... risk policies for the Real Estate Investment Department within the mortgage loan portfolio and ... Regularly contracts, hires and manages outside consulting firms for third party evaluations.
Property Risk Consultant
Milwaukee, WI · On-site
... risk policies for the Real Estate Investment Department within the mortgage loan portfolio and ... Regularly contracts, hires and manages outside consulting firms for third party evaluations.
Property Risk Consultant
Milwaukee, WI · On-site
... risk policies for the Real Estate Investment Department within the mortgage loan portfolio and ... Regularly contracts, hires and manages outside consulting firms for third party evaluations.
... risk policies for the Real Estate Investment Department within the mortgage loan portfolio and ... Regularly contracts, hires and manages outside consulting firms for third party evaluations.
... risk policies for the Real Estate Investment Department within the mortgage loan portfolio and ... Regularly contracts, hires and manages outside consulting firms for third party evaluations.
Third Party Risk Manager information
See Milwaukee, WI salary details
$50.7K - $61.4K
4% of jobs
$61.4K - $72K
6% of jobs
$72K - $82.6K
11% of jobs
$86.6K is the 25th percentile. Wages below this are outliers.
$82.6K - $93.2K
11% of jobs
The median wage is $101.6K / yr.
$93.2K - $103.8K
23% of jobs
$103.8K - $114.4K
13% of jobs
$121.4K is the 75th percentile. Wages above this are outliers.
$114.4K - $125K
12% of jobs
$125K - $135.6K
8% of jobs
$135.6K - $146.3K
6% of jobs
$146.3K - $156.9K
4% of jobs
$156.9K - $167.5K
2% of jobs
$50.7K
$109.9K
$167.5K
How much do third party risk manager jobs pay per year?
What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?
| Aspect | Third Party Risk Manager | Vendor Risk Analyst |
|---|---|---|
| Credentials | Certifications like CRISC, CTPRP often preferred | Certifications such as CRISC, CTPRP common |
| Work Environment | Oversees multiple vendors and third-party relationships at strategic level | Focuses on assessing specific vendor risks and compliance |
| Employer & Industry Usage | Used in finance, healthcare, and large corporations managing third-party risks | Common in IT, finance, and procurement departments |
| Search & Comparison Intent | Often compared for broader risk management roles | Compared for detailed vendor risk assessments |
The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.
What are the key skills and qualifications needed to thrive as a Third Party Risk Manager, and why are they important?
What is a Third Party Risk Manager?
How does a Third Party Risk Manager typically collaborate with other departments to manage vendor risks?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 13 days ago
DoorDash rating
6.4
Based on 184 frontline employees who took The Breakroom Quiz
12th of 24 rated food delivery companies
Job description
Come help us build the world's most trusted on-demand logistics engine for delivery! We're building a team of great minds to help us secure and maintain a 24x7, no-downtime, global infrastructure system that powers DoorDash's multi-sided marketplace of consumers, merchants, and drivers.
About the Role
The Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in a fast-paced environment, taking ownership, and driving improvements in our security posture, we want to talk to you! You will report to the Manager, GRC within our Security organization.
You're excited about this opportunity because you will...
- Drive the continuous maturation of our TPRM program, transforming it from a reactive, compliance-focused function into a proactive, strategic security partnership.
- Architect and govern the security strategy for our BPO and contingent worker ecosystem, from developing and operationalizing continuous security standards to implementing & monitoring robust technical controls and ensuring strict compliance through rigorous due diligence and regular audit cycles.
- Design and build process automations, optimizing and scaling the TPRM program to meet the business's fast-moving priorities.
- Pioneer and lead the Supplier Security AI Governance framework, evaluating critical third-party AI risks to ensure the secure implementation of AI tools across the business.
- Establish and own core program governance and build a centralized reporting function, delivering actionable key metrics, risk dashboards, and progress updates to leadership for continuous visibility into third-party risk exposure.
- Partner cross-functionally with security engineering, procurement, business, privacy, and legal teams to provide security advisory and lead risk assessments.
- Lead the end-to-end issues and remediation tracking process, following up on all security findings and exceptions from assessments to ensure accountability and timely closure of remediation items.
- Execute the core TPRM lifecycle (perform risk assessments, due diligence questionnaires, new vendor onboarding, contract and data protection agreement reviews) and partner with internal SMEs (Sourcing, Enterprise Security, IT) to refine internal policies and frameworks for scale.
- 7+ years of progressive experience in security-focused TPRM methodologies, including owning or successfully leading a TPRM program for a fast-paced, high-growth company.
- Bachelor's or Master's degree in Information Security, Computer Science, Business Administration, or related field.
- Experience with program building, conducting security and/or assurance audits, controls, and risk assessments, and remediation management.
- Deep technical understanding and experience conducting comprehensive security risk and gap assessments of cloud, SaaS, including Artificial Intelligence (AI) solutions, and infrastructure vendors, and evaluating risks that impact data security and application resilience.
- Proficiency in the technical review of core security assurance documentation. This encompasses, but is not limited to, CAIQ, SIG, SOC 2 Type 2 reports, Penetration Test reports, and compliance attestations (e.g., ISO 27001, PCI-DSS, etc).
- Experience in the technical vetting of complex vendor solutions. This involves scrutiny of API integrations with critical internal systems ('crown-jewels'), security of cloud-native services (AWS/Azure/GCP), and assessing agentic/generative AI platforms for vulnerabilities, data leakage, and system resilience.
- Practical experience in assessing the unique risks associated with AI/ML models, including analysis of data provenance, identification of model poisoning risks, and ensuring the secure handling of proprietary data used for model training or fine-tuning.
- Experience with implementing major information security, privacy, and risk management frameworks (e.g. NIST, ISO, SOC 2).
- Experience managing security and compliance programs across broad GRC disciplines within a complex, global public company environment.
- Experience solving complex, systemic issues that require creative thinking and cross-functional collaboration.
- Experience managing vendor risk across the full relationship lifecycle, including periodic re-assessments, amendments, scope changes, and continuous monitoring.
- Excellent verbal and written communication skills with the ability to effectively translate technical risk findings into a clear business context for diverse audiences, including executive leadership.
- CISA, CISSP, CISM, or other industry certifications are a plus.
We expect this position to be filled by 9/13/26.
Compensation
The successful candidate's starting pay will fall within the pay range listed below and is determined based on job-related factors including, but not limited to, skills, experience, qualifications, work location, and market conditions. Base salary is localized according to an employee's work location. Ranges are market-dependent and may be modified in the future.
In addition to base salary, the compensation for this role includes opportunities for equity grants. Talk to your recruiter for more information.
DoorDash cares about you and your overall well-being. That's why we offer a comprehensive benefits package to all regular employees, which includes a 401(k) plan with employer matching, 16 weeks of paid parental leave, wellness benefits, commuter benefits match, paid time off and paid sick leave in compliance with applicable laws (e.g. Colorado Healthy Families and Workplaces Act). DoorDash also offers medical, dental, and vision benefits, 11 paid holidays, disability and basic life insurance, family-forming assistance, and a mental health program, among others.
To learn more about our benefits, visit our careers page here.
See below for paid time off details:
- For salaried roles: flexible paid time off/vacation, plus 80 hours of paid sick time per year.
- For hourly roles: vacation accrued at about 1 hour for every 25.97 hours worked (e.g. about 6.7 hours/month if working 40 hours/week; about 3.4 hours/month if working 20 hours/week), and paid sick time accrued at 1 hour for every 30 hours worked (e.g. about 5.8 hours/month if working 40 hours/week; about 2.9 hours/month if working 20 hours/week).
The national base pay range for this position within the United States, including Illinois and Colorado.
$132,600-$195,000 USD
About DoorDash
At DoorDash, our mission to empower local economies shapes how our team members move quickly, learn, and reiterate in order to make impactful decisions that display empathy for our range of users-from Dashers to merchant partners to consumers. We are a technology and logistics company that started by enabling door-to-door delivery, and we are looking for team members who can help us go from a company that is known as the place you order food to a company that people turn to for any and all goods.
DoorDash is growing rapidly and changing constantly, which gives our team members the opportunity to share their unique perspectives, solve new challenges, and own their careers. We're committed to supporting employees' happiness, healthiness, and overall well-being by providing comprehensive benefits and perks including premium healthcare, wellness expense reimbursement, paid parental leave and more.
Our Commitment to Diversity and Inclusion
We're committed to growing and empowering a more inclusive community within our company, industry, and cities. That's why we hire and cultivate diverse teams of people from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has room at the table and the tools, resources, and opportunity to excel.
Statement of Non-Discrimination: In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital/domestic partner status, sexual orientation, gender identity or expression, disability status, or veteran status. Above and beyond discrimination and harassment based on "protected categories," we also strive to prevent other subtler forms of inappropriate behavior (i.e., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at DoorDash. We value a diverse workforce - people who identify as women, non-binary or gender non-conforming, LGBTQIA+, American Indian or Native Alaskan, Black or African American, Hispanic or Latinx, Native Hawaiian or Other Pacific Islander, differently-abled, caretakers and parents, and veterans are strongly encouraged to apply. Thank you to the Level Playing Field Institute for this statement of non-discrimination.
Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation.
If you need any accommodations, please inform your recruiting contact upon initial connection.
Notice to Applicants for Jobs Located in NYC or Remote Jobs Associated With Office in NYC Only
We used Covey as part of our hiring and/or promotional process for jobs in NYC and certain features may qualify it as an AEDT in NYC. As part of the hiring and/or promotion process, we provided Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound from August 21, 2023, through December 21, 2023. We resumed using Covey Scout for Inbound again on June 29, 2024, and ceased using Covey Scout for Inbound on April 30, 2026.
The Covey tool has been reviewed by an independent auditor. Results of the audit may be viewed here: https://getcovey.com/nyc-local-law-144.
About DoorDash
Sourced by ZipRecruiter
At DoorDash, our mission to empower local economies shapes how our team members move quickly, learn, and reiterate in order to make impactful decisions that display empathy for our range of users--from Dashers to merchant partners to consumers. We are a technology and logistics company that started with door-to-door delivery, and we are looking for team members who can help us go from a company that is known for delivering food to a company that people turn to for any and all goods. DoorDash is growing rapidly and changing constantly, which gives our team members the opportunity to share their unique perspectives, solve new challenges, and own their careers. We're committed to supporting employees' happiness, healthiness, and overall well-being by providing comprehensive benefits and perks including premium healthcare, wellness expense reimbursement, paid parental leave and more.
Industry
Transportation equipment manufacturing
Company size
10,000+ Employees
Headquarters location
San Francisco, CA, US
Year founded
2013