1

Third Party Risk Manager Jobs in Reston, VA (NOW HIRING)

As a Principal Program Manager on the Cybersecurity Risk team, you will own and evolve our ... Third-Party Risk Program Ownership: Own and evolve the Cybersecurity third-party security risk ...

As a Principal Program Manager on the Cybersecurity Risk team, you will own and evolve our ... Third-Party Risk Program Ownership: Own and evolve the Cybersecurity third-party security risk ...

Key responsibilities include managing global risk activities, monitoring program performance, managing third-party service providers, analyzing risk data and trends, coordinating audits and reviews ...

You understand the processes, pain points, and personas in third party management, supply chain management, procurement, risk, and compliance * You lead inspirational, tailored presentations in a ...

You understand the processes, pain points, and personas in third party management, supply chain management, procurement, risk, and compliance * You lead inspirational, tailored presentations in a ...

An MBA in Risk Management or Business (Finance) is a plus. * 5+ years with increasing ... as 3rd party contract review. Work experience, which involved frequently visiting local plants ...

Showing results 21-40

Third Party Risk Manager information

See Reston, VA salary details

$53.6K

$116.1K

$176.9K

How much do third party risk manager jobs pay per year?

As of Aug 9, 2026, the average yearly pay for third party risk manager in Reston, VA is $116,058.00, according to ZipRecruiter salary data. Most workers in this role earn between $93,600.00 and $134,200.00 per year, depending on experience, location, and employer.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.
What cities near Reston, VA are hiring for Third Party Risk Manager jobs? Cities near Reston, VA with the most Third Party Risk Manager job openings:
Infographic showing various Third Party Risk Manager job openings in Reston, VA as of August 2026, with employment types broken down into 88% Full Time, 11% Part Time, and 1% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $116,058 per year, or $55.8 per hour.

Vendor Security Manager

Computer Task Group, Inc

Washington, DC

$58 - $72/hr

Full-time

Posted 18 days ago


Job description

Overview

CTG is seeking an experienced Vendor Security Manager to lead and enhance our client's third-party risk management program. This role is responsible for evaluating vendor cybersecurity risks, overseeing security assessments, ensuring compliance with industry standards, and partnering with internal stakeholders to strengthen the organization's overall security posture.

The ideal candidate brings expertise in cybersecurity, vendor risk management, compliance frameworks, and IT controls, along with strong leadership and communication skills.

Location: Washington, DC
Duration: 4 months

Primary Responsibilities
  • Lead the organization's third-party risk management and vendor security program.
  • Manage and oversee vendor security assessments, ensuring compliance with internal policies and regulatory requirements.
  • Guide and mentor team members responsible for vendor risk assessments and related security activities.
  • Collaborate with business units, vendors, and security stakeholders to remediate identified control gaps and mitigate risk.
  • Evaluate third-party security risks and provide recommendations for risk acceptance, mitigation, or remediation.
  • Maintain security documentation, including risk assessments, policies, standards, metrics, and compliance records.
  • Interpret cybersecurity data to identify potential security, compliance, and operational risks.
  • Develop executive-level dashboards and actionable metrics to communicate vendor risk posture.
  • Maintain internal procedures, documentation, and program governance materials.
  • Respond promptly to vendor security inquiries, compliance requests, and audit activities.
  • Support team development through coaching, training, and performance management.
Required Skills
  • Strong knowledge of third-party risk management and vendor security best practices.
  • Solid understanding of cybersecurity concepts, security architecture, networks, and IT infrastructure.
  • Experience evaluating IT controls and conducting security risk assessments.
  • Familiarity with industry security frameworks including:
    • ISO 27001
    • NIST Cybersecurity Framework (CSF)
    • NIST 800-171
  • Knowledge of vulnerability management, enterprise risk management, AI-related security considerations, and governance practices.
  • Excellent analytical, organizational, and documentation skills.
  • Strong verbal and written communication skills with the ability to communicate effectively across technical teams, business leaders, and executive management.
  • Exceptional attention to detail and ability to manage multiple priorities simultaneously.
Required Experience
  • 5–7 years of experience in cybersecurity, information security, information risk management, third-party risk management, or IT internal controls.
  • Experience leading or supporting vendor security assessment programs.
  • Demonstrated success evaluating security controls and recommending effective risk mitigation strategies.
  • Experience producing compliance documentation, metrics, executive reporting, and audit support materials.
  • Prior leadership or team management experience is preferred.
Education
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Business, or a related discipline preferred.
  • Industry certifications such as CISSP, CISM, CRISC, CISA, or Security+ are highly desirable.

Excellent verbal and written English communication skills and the ability to interact professionally with a diverse group are required.

CTG does not accept unsolicited resumes from headhunters, recruitment agencies, or fee based recruitment services for this role.

To Apply:
To be considered, please apply directly to this requisition using the link provided. Kindly forward this to any other interested parties. Thank you!

The expected base salary for this position ranges from $58.00 to $72.00/hour. Salary offers are based on a wide range of factors including relevant skills, training, experience, education, market factors, and where applicable, licensure or certifications obtained. In addition to salary, a competitive benefit package is also offered.


Computer Task Group logo

About Computer Task Group

Sourced by ZipRecruiter

We know that achieving our mission begins and ends with our people—and by people we mean you. Regardless of individual roles or responsibilities, regardless of industry or subject matter expertise, our lives happen in relation to other people—our colleagues, clients, and partners. CTG cultivates a workplace that attracts and develops the best people. Being Great Place to Work-CertifiedTM not only supports our Vision but also validates the rewarding workplace culture that has made CTG a leading IT and digital solutions and services company for more than 55 years.

Company size

1,001 - 5,000 Employees

Headquarters location

Buffalo, NY, US

Year founded

1966

Social media