1

Third Party Risk Manager Jobs in Prairie du Sac, WI

Third-Party Risk Management: Assist with vendor due diligence, third-party governance activities, and ongoing monitoring efforts as the organization's third-party risk management capabilities evolve ...

Third-Party Risk Management: Assist with vendor due diligence, third-party governance activities, and ongoing monitoring efforts as the organization's third-party risk management capabilities evolve ...

Risk Manager

Madison, WI

$118K - $143K/yr

THE COMPENSATION RANGE FOR THIS POSITION WAS CORRECTED ON 8/5/2026 The Risk Manager is a highly ... Manage the City's workers' compensation program, including managing the City's claim Third-Party ...

Risk Manager

Madison, WI ยท On-site

$118K - $143K/yr

Manage the City's workers' compensation program, including managing the City's claim Third-Party ... Review City contracts for relevant risk management provisions. * Review, approve, and make changes ...

VP, Information Security

Madison, WI ยท On-site

$180 - $280/hr

Shape our third-party risk management (TPRM) programs, collaborating with procurement to ensure vendor partnerships maintain high data protection standards without creating bottlenecks Requirements ...

... risk, issue, dependency, and escalation management skills with the ability to proactively navigate technical complexities, setbacks, and competing priorities. * Experience managing third-party ...

next page

Showing results 1-20

Third Party Risk Manager information

See Prairie du Sac, WI salary details

$47.4K

$102.7K

$156.4K

How much do third party risk manager jobs pay per year?

As of Aug 28, 2026, the average yearly pay for third party risk manager in Prairie du Sac, WI is $102,657.00, according to ZipRecruiter salary data. Most workers in this role earn between $82,800.00 and $118,700.00 per year, depending on experience, location, and employer.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

Is third party risk manager a good career?

A third party risk manager plays a key role in assessing and mitigating risks associated with external vendors and partners, often requiring knowledge of compliance standards and risk management tools. The role offers opportunities for advancement in industries such as finance, healthcare, and technology, with a growing demand for professionals skilled in risk assessment and regulatory requirements. It can be a stable and rewarding career for those with strong analytical skills and attention to detail.

What cities near Prairie du Sac, WI are hiring for Third Party Risk Manager jobs?

Cities near Prairie du Sac, WI with the most Third Party Risk Manager job openings:

GRC Analyst I

Madison, WI โ€ข On-site

Sub-Zero Group, Inc.
Manufacturingย โ€ขย 1 - 5K employees

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 21 days ago


Job description

Job Overview
The GRC Analyst I is responsible for supporting the organization's Governance, Risk, and Compliance (GRC) program through risk management, policy governance, compliance monitoring, reporting, and continuous improvement activities. This role assists with risk assessments, maintenance of the risk register, control evaluations, mitigation tracking, policy management, and compliance-related activities that help protect the organization and enable business objectives.
The GRC Analyst I also supports emerging AI Governance initiatives by assisting with the identification, assessment, monitoring, and reporting of risks associated with artificial intelligence technologies. Working closely with IT Security, Legal, Business Continuity, Data Governance, and business stakeholders, this position helps promote responsible technology use, organizational resilience, and a risk-aware culture that enables the business to move faster with greater confidence.
This is a full-time position based at Sub-Zero Group's headquarters in Fitchburg, Wisconsin, just outside Madison.
Job Responsibilities
Responsibilities include, but are not limited to:
Governance:
  • Assist with policy governance activities, including the development, maintenance, review, and administration of policies, standards, procedures, and related governance documentation, while providing guidance to employees and business units on their application.
  • Support the organization's AI Governance program through documentation, inventories, risk assessments, stakeholder coordination, and monitoring activities that promote the responsible, secure, and compliant use of AI technologies.
  • Help maintain alignment with governance frameworks and industry standards, including NIST CSF, NIST AI RMF, and ISO standards, while assessing governance implications of new technologies, AI initiatives, business process changes, and emerging regulatory requirements.

Risk Management:
  • Support risk assessment activities by gathering information, documenting risks, facilitating stakeholder discussions, evaluating inherent and residual risk, and tracking follow-up actions and remediation activities.
  • Maintain the risk register, including risk documentation, ownership assignments, risk scoring, review cadences, mitigation plans, control effectiveness evaluations, and reporting activities.
  • Partner with risk owners to evaluate risk events, root causes, business impacts, existing controls, and risk response strategies while developing dashboards, metrics, KPIs, and executive reporting that communicate organizational risk exposure and program maturity.

Compliance:
  • Monitor compliance with internal policies, regulatory requirements, contractual obligations, and applicable industry standards while supporting assessments against relevant governance and compliance frameworks.
  • Assist with compliance reviews, internal audits, and audit readiness activities by collecting evidence, validating controls, documenting findings, maintaining records, and tracking remediation activities through resolution.
  • Track and report compliance metrics, audit findings, governance performance indicators, corrective actions, and overall program effectiveness and maturity.

Additional Opportunities
The GRC Analyst I may have opportunities to contribute to additional initiatives based on business needs, program priorities, and individual career interests.
  • Business Continuity & Resilience: Participate in business continuity, IT disaster recovery, crisis management, resilience planning, business impact analyses, exercises, and improvement activities in support of organizational resilience efforts.
  • Third-Party Risk Management: Assist with vendor due diligence, third-party governance activities, and ongoing monitoring efforts as the organization's third-party risk management capabilities evolve and mature.
  • Awareness, Training & Risk Culture: Contribute to governance, risk, compliance, cybersecurity, and responsible AI awareness initiatives through the development of training materials, communications, workshops, and other educational opportunities that promote a culture of accountability and risk-informed decision-making.

Required Qualifications
  • Associate's or Bachelor's degree in enterprise risk management, information technology, cybersecurity, business administration, finance, accounting, or related field.
  • 0-3 years of relevant experience in risk management, governance, compliance, auditing, or related disciplines.
  • Strong analytical, organizational, and communication skills.

Preferred Qualifications
  • Experience supporting risk assessments, maintaining risk registers, or tracking remediation activities.
  • Experience supporting policy management, compliance reviews, control assessments, or audit activities.
  • Familiarity with NIST CSF, NIST AI RMF, ISO 27001, ISO 31000, ISO 22301, or similar frameworks.
  • Familiarity with regulations and standards such as CCPA/CPRA, GDPR, PCI DSS, or similar requirements.
  • Relevant certifications or progress toward certification, such as ISC2 CC, Security+, CISA, CRISC, CGRC, or similar credentials.

Why Join Sub-Zero Group?
Join a growing Governance, Risk, and Compliance program that is helping embed governance, risk management, compliance, and resilience into the fabric of the organization. This role offers a unique opportunity to help shape and mature a developing GRC program while gaining hands-on experience across technology risk management, cybersecurity governance, compliance, policy management, internal audit, and business continuity. Working closely with organizational leaders, you will have a direct impact on strengthening the company's ability to reliably achieve its objectives, address uncertainty, build resilience, and act with integrity.
We value our employees by providing:
  • Competitive compensation based on skills
  • Industry leading health, dental, and vision plans
  • Generous 401(k) savings and profit sharing
  • 10 Paid Holidays
  • Paid Time Off (PTO)
  • Parental Leave
  • On-site UW Health clinic, fitness center, and walking paths
  • Education assistance and internal training programs
  • Employee discount program
  • Employee Assistance Program (EAP)
  • Electric vehicle charging
  • Department & Company-wide social events

Interested in learning more about our robust benefits package? Click here!
This position requires a pre-employment drug/alcohol test and background check, which will be administered after a conditional job offer is extended. A negative drug/alcohol test result is required for employment. Refusal to take the test or a positive result may disqualify a candidate from further consideration. All drug testing will be conducted in accordance with federal and state laws.
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights notice from the Department of Labor.