The Analyst will work with Third-Party Risk Management, Privacy and Legal Counsel, Procurement and Contract Managers, Compliance, and Business Owners to develop and maintain an internal service model ...
The Analyst will work with Third-Party Risk Management, Privacy and Legal Counsel, Procurement and Contract Managers, Compliance, and Business Owners to develop and maintain an internal service model ...
Technical Sourcer - DataAILab - Seattle (Third-party Associate)
Seattle, WA · On-site
$30 - $50/hr
This is a 6-month temporary assignment managed by a third-party agency, who will be your employer. While you may be assigned to work at TikTok, you will not be a TikTok employee. All contractual ...
Technical Sourcer - DataAILab - Seattle (Third-party Associate)
Seattle, WA · On-site
$30 - $50/hr
This is a 6-month temporary assignment managed by a third-party agency, who will be your employer. While you may be assigned to work at TikTok, you will not be a TikTok employee. All contractual ...
Sr Director, Internal Audit
Seattle, WA · On-site
$200K - $320K/yr
Strengthen technology, cybersecurity, identity, and third-party risk assurance in close ... Have experience developing and leading senior audit managers and directors, building teams known ...
Sr Director, Internal Audit
Seattle, WA · On-site
$200K - $320K/yr
Strengthen technology, cybersecurity, identity, and third-party risk assurance in close ... Have experience developing and leading senior audit managers and directors, building teams known ...
Technical Sourcer - E-Commerce - Seattle (Third-Party Associate)
Seattle, WA · On-site
$30 - $50/hr
You will partner closely with recruiters and hiring managers to identify, engage, and attract top ... Please be advised that this job posting is on behalf of a third-party agency. This is a 6-month ...
Technical Sourcer - E-Commerce - Seattle (Third-Party Associate)
Seattle, WA · On-site
$30 - $50/hr
You will partner closely with recruiters and hiring managers to identify, engage, and attract top ... Please be advised that this job posting is on behalf of a third-party agency. This is a 6-month ...
Talent Sourcer - HR & Management - Seattle (Third-party Associate)
Seattle, WA · On-site
$30 - $50/hr
This is a 6-month temporary assignment managed by a third-party agency, who will be your employer. While you may be assigned to work at TikTok, you will not be a TikTok employee. All contractual ...
Talent Sourcer - HR & Management - Seattle (Third-party Associate)
Seattle, WA · On-site
$30 - $50/hr
This is a 6-month temporary assignment managed by a third-party agency, who will be your employer. While you may be assigned to work at TikTok, you will not be a TikTok employee. All contractual ...
ServiceNow - Senior Manager
Seattle, WA · On-site
Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...
ServiceNow - Senior Manager
Seattle, WA · On-site
Third-Party Risk Management (TPRM) * 10+ years of demonstrated deep technical expertise in ServiceNow, typically evidenced by advanced ServiceNow certifications (e.g., Certified Application Developer ...
Staff Analyst, Customer Audit
Bellevue, WA · On-site
$70K - $92.50K/yr
... third-party risk assessments. What you'll be doing * Create and communicate a strategy to deliver ... Bachelor's degree in Computer Science or Management Information Systems, or equivalent work ...
Staff Analyst, Customer Audit
Bellevue, WA · On-site
$70K - $92.50K/yr
... third-party risk assessments. What you'll be doing * Create and communicate a strategy to deliver ... Bachelor's degree in Computer Science or Management Information Systems, or equivalent work ...
OMHS Integration Safety Lead, FEC - Facilities, Engineering and Construction
Bellevue, WA · On-site
$84.10K - $112.90K/yr
... risk activities - not just course completion, but demonstrated proficiency • Manage the upstream training interface with third-party labor providers, defining pre-arrival requirements and on-site ...
OMHS Integration Safety Lead, FEC - Facilities, Engineering and Construction
Bellevue, WA · On-site
$84.10K - $112.90K/yr
... risk activities - not just course completion, but demonstrated proficiency • Manage the upstream training interface with third-party labor providers, defining pre-arrival requirements and on-site ...
OMHS Integration Safety Lead, FEC - Facilities, Engineering and Construction
$84.10K - $112.90K/yr
... risk activities - not just course completion, but demonstrated proficiency Manage the upstream training interface with third-party labor providers, defining pre-arrival requirements and on-site ...
OMHS Integration Safety Lead, FEC - Facilities, Engineering and Construction
$84.10K - $112.90K/yr
... risk activities - not just course completion, but demonstrated proficiency Manage the upstream training interface with third-party labor providers, defining pre-arrival requirements and on-site ...
OMHS Integration Safety Lead, FEC - Facilities, Engineering and Construction
$84.10K - $112.90K/yr
... risk activities - not just course completion, but demonstrated proficiency Manage the upstream training interface with third-party labor providers, defining pre-arrival requirements and on-site ...
OMHS Integration Safety Lead, FEC - Facilities, Engineering and Construction
$84.10K - $112.90K/yr
... risk activities - not just course completion, but demonstrated proficiency Manage the upstream training interface with third-party labor providers, defining pre-arrival requirements and on-site ...
Support the management of mobility vendors (immigration, relocation, tax, and destination services ... Please be advised that this job posting is on behalf of a third-party agency. This is a 6-month ...
Support the management of mobility vendors (immigration, relocation, tax, and destination services ... Please be advised that this job posting is on behalf of a third-party agency. This is a 6-month ...
... and third-party risk management, supplier/partner/vendor interaction portals and integration with core applications, supplier management platforms (Ariba, Aravo, Coupa, Ivalua, HICX, and APEX ...
Quick apply
... and third-party risk management, supplier/partner/vendor interaction portals and integration with core applications, supplier management platforms (Ariba, Aravo, Coupa, Ivalua, HICX, and APEX ...
Mobility Operations Specialist - HR Operations - Seattle (Third-Party Associate)
Seattle, WA · On-site
$30 - $50/hr
This is a 6-month temporary assignment managed by a third-party agency, who will be your employer. While you may be assigned to work at TikTok, you will not be a TikTok employee. All contractual ...
Mobility Operations Specialist - HR Operations - Seattle (Third-Party Associate)
Seattle, WA · On-site
$30 - $50/hr
This is a 6-month temporary assignment managed by a third-party agency, who will be your employer. While you may be assigned to work at TikTok, you will not be a TikTok employee. All contractual ...
Vendor Risk Management: Direct the assessment of all current and prospective third-party providers. You will ensure our vendor ecosystem adheres to our strict security and compliance standards ...
Quick apply
Vendor Risk Management: Direct the assessment of all current and prospective third-party providers. You will ensure our vendor ecosystem adheres to our strict security and compliance standards ...
Risk and Safety Specialist
Seattle, WA · On-site
$34 - $38/hr
Collect, manage and verify certificates of insurance from third-party vendors, partners and clients, as required by company contracts and risk management policies. * Handle routine and non-complex ...
Risk and Safety Specialist
Seattle, WA · On-site
$34 - $38/hr
Collect, manage and verify certificates of insurance from third-party vendors, partners and clients, as required by company contracts and risk management policies. * Handle routine and non-complex ...
Risk and Safety Specialist
Seattle, WA · On-site
$34 - $38/hr
Collect, manage and verify certificates of insurance from third-party vendors, partners and clients, as required by company contracts and risk management policies. * Handle routine and non-complex ...
Risk and Safety Specialist
Seattle, WA · On-site
$34 - $38/hr
Collect, manage and verify certificates of insurance from third-party vendors, partners and clients, as required by company contracts and risk management policies. * Handle routine and non-complex ...
Senior AI Risk Advisor
Seattle, WA · On-site +1
Lead AI risk assessments across the full model lifecycle - evaluating third-party AI vendors ... while managing risk intelligently * Represent the firm's AI governance posture externally ...
Senior AI Risk Advisor
Seattle, WA · On-site +1
Lead AI risk assessments across the full model lifecycle - evaluating third-party AI vendors ... while managing risk intelligently * Represent the firm's AI governance posture externally ...
ServiceNow Senior Consultant
Seattle, WA · On-site
Third-Party Risk Management (TPRM) * Demonstrated ability to operate as both a ServiceNow platform expert and a business analyst who can independently gather requirements, design processes, and drive ...
ServiceNow Senior Consultant
Seattle, WA · On-site
Third-Party Risk Management (TPRM) * Demonstrated ability to operate as both a ServiceNow platform expert and a business analyst who can independently gather requirements, design processes, and drive ...
Sr. Product Manager - Tech, Secure Third Party Tools
Seattle, WA · On-site
$144K - $190K/yr
The Secure Third Party Tools team has bold ambitions to re-imagine security products that serve Amazon's pace of innovation at our global scale. Technical Product Managers are integral to own roadmap ...
Sr. Product Manager - Tech, Secure Third Party Tools
Seattle, WA · On-site
$144K - $190K/yr
The Secure Third Party Tools team has bold ambitions to re-imagine security products that serve Amazon's pace of innovation at our global scale. Technical Product Managers are integral to own roadmap ...
Sr. Product Manager - Tech, Secure Third Party Tools
Seattle, WA · On-site
$144K - $190K/yr
The Secure Third Party Tools team has bold ambitions to re-imagine security products that serve Amazon's pace of innovation at our global scale. Technical Product Managers are integral to own roadmap ...
Sr. Product Manager - Tech, Secure Third Party Tools
Seattle, WA · On-site
$144K - $190K/yr
The Secure Third Party Tools team has bold ambitions to re-imagine security products that serve Amazon's pace of innovation at our global scale. Technical Product Managers are integral to own roadmap ...
Third Party Risk Manager information
See Renton, WA salary details
$57.9K - $70K
4% of jobs
$70K - $82.2K
6% of jobs
$82.2K - $94.3K
11% of jobs
$98.8K is the 25th percentile. Wages below this are outliers.
$94.3K - $106.4K
11% of jobs
The median wage is $116K / yr.
$106.4K - $118.5K
23% of jobs
$118.5K - $130.6K
13% of jobs
$138.6K is the 75th percentile. Wages above this are outliers.
$130.6K - $142.8K
12% of jobs
$142.8K - $154.9K
8% of jobs
$154.9K - $167K
6% of jobs
$167K - $179.1K
4% of jobs
$179.1K - $191.2K
2% of jobs
$57.9K
$125.5K
$191.2K
How much do third party risk manager jobs pay per year?
What are the key skills and qualifications needed to thrive as a Third Party Risk Manager, and why are they important?
How does a Third Party Risk Manager typically collaborate with other departments to manage vendor risks?
What is a Third Party Risk Manager?
What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?
| Aspect | Third Party Risk Manager | Vendor Risk Analyst |
|---|---|---|
| Credentials | Certifications like CRISC, CTPRP often preferred | Certifications such as CRISC, CTPRP common |
| Work Environment | Oversees multiple vendors and third-party relationships at strategic level | Focuses on assessing specific vendor risks and compliance |
| Employer & Industry Usage | Used in finance, healthcare, and large corporations managing third-party risks | Common in IT, finance, and procurement departments |
| Search & Comparison Intent | Often compared for broader risk management roles | Compared for detailed vendor risk assessments |
The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

Contractor
Posted 2 days ago
Job description
Job Title: "Information Security Specialist" (Cyber security analysis)
Location: Bellevue WA
Duration: 9+ Months (with high possibility of extending into full time)
Job Description:
This position is in Corporate Information Security and under the direction of the Manager, Third-Party Cybersecurity Assessments. The Cybersecurity Assessment Analyst will perform cybersecurity assessments on new and existing third parties. The Analyst will construct detailed and summary reports of assessments, including customized reports, as needed. The Analyst will work with Subject Matter Experts (SME) to develop and apply risk assessment criteria (aligned with Policy) to new and existing suppliers using internal and external business intelligence. The Analyst will work with Third-Party Risk Management, Privacy and Legal Counsel, Procurement and Contract Managers, Compliance, and Business Owners to develop and maintain an internal service model that informs the business of key risks in a timely manner to limit unnecessary impediments and avoid bureaucracy.
Specific responsibilities:
- Coordinate the development of information security policies, standards and procedures. Work with key IT offices, data custodians and governance groups in the development of such policies. Ensure that company policies support compliance with external requirements. Oversee the dissemination of policies, standards and procedures to the user community
- Coordinate the development and delivery of an education and training program on information security and privacy matters for employees, other authorized users, and vendors
- Serve as the company compliance officer with respect to state and federal information security policies and regulations. Work with the -designated internal audit, SOX compliance, legal, and HR on compliance issues as necessary. Prepare and submit and submit required reports to external agencies.
- Develop and implement an Incident Reporting and Response System to address security incidents (breaches), respond to alleged policy violations, or complaints from external parties.
- Serve as the official company contact point for information security, privacy and copyright infringement incidents, including relationships with law enforcement entities.
- Develop and implement an ongoing risk assessment program targeting information security and privacy matters; recommend methods for vulnerability detection and remediation, and oversee vulnerability testing.
Required Qualifications:
Talent management, results focus and inspirational leadership.
Essential Functions
Conduct third-party cybersecurity risk assessments, applying established criteria
Support assessment team with quality assurance reviews over work product and reporting
Collaborate with internal partners and third parties to mitigate and otherwise resolve third-party cyber risks
Consistently deliver on commitments, deadlines and objectives while remaining in scope and leveraging appropriate tools, methods, frameworks, and professional standards
Demonstrate consistent credibility with business partners and leadership while recommending initiatives, identifying gaps, and potential issues
Continuously demonstrate the ability to work independently while representing the services of the department with the highest level of professionalism
Demonstrate the ability to appropriately influence business decisions, and the professional judgment for selecting the appropriate methods and techniques to do so
Preferred Qualifications:
Solid background both educationally and via professional experience. No less than 3 years' professional experience in business operations, project/program management, finance, risk management, information security, business analytics or similar.
Experience in large companies and/or complex environments, or providing professional consulting services for them.
Demonstrated abilities in problem-solving and analysis: identifies issues, analyses information to assess root cause and relationships, risks, and potential risk responses. Proven ability to synthesize and summarize complex data into concise recommendations and reports.
Demonstrated strong business writing and professional oral communication skills.
Proven ability to balance multiple priorities, adapt to a constantly changing business environment, work independently, drive projects to completion, and meet deadlines in a fast-paced environment-with only periodic supervision.
Ability to work collaboratively and manage and initiate effective cross-functional relationships.
Strong computer skills, including MS Office products (e.g. Word, Excel, PowerPoint, Visio) and other business software to prepare reports, memos, summaries, and analyses.
Desired
Analytical - Synthesizes complex or diverse information; Collects and researches data; employs intuition and experience to complement data; Designs work flows and procedures.
Quality Management - Looks for ways to improve and promote quality; Demonstrates accuracy and thoroughness. Applies feedback to improve performance; Monitors own work to ensure quality
Planning/Organizing - Prioritizes and plans work activities to achieve success; Sets and achieves goals and objectives; Develops realistic action plans
Professionalism - Reacts well under pressure; Keeps commitments; Accepts responsibility for own actions.
Career Growth: Focus on cyber security auditing with potential advancement goals in engineering or threat analysis roles
Self-directed team player with Agile environment experience
Education
Minimum Required
Bachelor's Degree
Equivalent experience is acceptable.
License or Certification
Desired: (one of the following):
CISA (Certified Information Systems Auditor)
GSEC (GIAC Security Essentials Certification)
CompTIA - Security+
ECSA - EC-Council Certified Security Analyst
SSCP (Systems Security Certified Practitioner)
Other:
Six Sigma, PMP or Agile certificates
Other comments - suppliers:
Organizational skills; office suite knowledge; and good communication skills are "must haves". Cyber security analysis experience is preferred.
All your information will be kept confidential according to EEO guidelines.