1

Third Party Risk Manager Jobs in Rochester, NY (NOW HIRING)

Senior Manager - Cyber IAM

Rochester, NY ยท On-site

$109K - $148K/yr

... risk trends, and assess impact * Assess vendors/3rd party's IAM solutions for applicable cyber ... Digital Asset Management * Digital enabled organization * Distribution Automation * Real Time ...

Senior Manager - Cyber IAM

Rochester, NY ยท On-site

$109K - $148K/yr

... risk trends, and assess impact * Assess vendors/3rd party's IAM solutions for applicable cyber ... Digital Asset Management * Digital enabled organization * Distribution Automation * Real Time ...

New

Project Manager

Rochester, NY ยท On-site

$135K - $150K/yr

Management of third-party projects * Accountable and Responsible for: * Cost /Budgeting and ... Risk Management * Regulatory and Stakeholder Management What we're looking for: * Bachelor's Degree ...

Project Manager

Syracuse, NY ยท On-site

$135K - $150K/yr

Management of third-party projects * Accountable and Responsible for: * Cost /Budgeting and ... Risk Management * Regulatory and Stakeholder Management What were looking for: * Bachelor's Degree ...

Experienced Paralegal

Rochester, NY ยท On-site

$19.23/hr

The experienced Paralegal will be primarily responsible for managing third-party foreclosure sales and supporting all related tasks. The ideal candidate will possess a solid understanding of the ...

The experienced Paralegal will be primarily responsible for managing third-party foreclosure sales and supporting all related tasks. The ideal candidate will possess a solid understanding of the ...

Experienced Paralegal

Rochester, NY ยท On-site

$19.23/hr

The experienced Paralegal will be primarily responsible for managing third-party foreclosure sales and supporting all related tasks. The ideal candidate will possess a solid understanding of the ...

Epic Denials Management Operator

Rochester, NY ยท Remote

$17.75 - $23.75/hr

Use appropriate templates to develop denial appeal letters for denials and submit to third party ... Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment * Strong ...

Showing results 41-60

Third Party Risk Manager information

See Rochester, NY salary details

$50.8K

$110.1K

$167.7K

How much do third party risk manager jobs pay per year?

As of Aug 10, 2026, the average yearly pay for third party risk manager in Rochester, NY is $110,069.00, according to ZipRecruiter salary data. Most workers in this role earn between $88,800.00 and $127,300.00 per year, depending on experience, location, and employer.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.
What cities near Rochester, NY are hiring for Third Party Risk Manager jobs? Cities near Rochester, NY with the most Third Party Risk Manager job openings:
Infographic showing various Third Party Risk Manager job openings in Rochester, NY as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 14% Part Time, and 1% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $110,069 per year, or $52.9 per hour.

Senior Manager - Cyber IAM

Iberdrola

Rochester, NY โ€ข On-site

$109K - $148K/yr

Full-time

Posted 4 days ago


Job description

The base salary range for this position is dependent upon experience and location, ranging from:
  • $134,720 to $168,400 in NY
  • $148,160 to $185,200 in CT

Responsibilities
This position provides Leadership and Support across the Avangrid Networks business to support cybersecurity Identity and Access Management (IAM). This position is responsible to design, implement, operate, and evolve IAM solutions and strategies for Avangrid Networks operating companies progress for Grid Digitalization.
  • Drive the shift in philosophy of how critical infrastructure is secured from verify once at the perimeter to continual verification of each user, device, application, and transaction
  • Lead the deployment of IAM services and solutions in support of Avangrid's evolution towards a zero-trust security framework
  • Define, develop, and implement an IAM strategy that reduces risk and provides resiliency, while being designed to rapidly enable business initiatives
  • Engage with, and advise stakeholders within the business on IAM best practices
  • Leverage IAM technology investments to expand core capabilities and develop and integrate high-quality, highly available access management solutions
  • Lead federation of physical and logical access management services in support of global IAM federation objectives
  • Ensure IAM services and solutions are designed and delivered in compliance with industry best practices as well as applicable privacy and legal/regulatory requirements including NIST 800-63, GDPR, SOX, CEII, and NERC
  • Support implementation of GRC automation tools to manage compliance processes and evidence for applicable IAM services
  • Establish an IAM service model that is well defined, highly available, repeatable, and is constantly measured for Key performance, Key risk, and Key operational level metrics
  • Ensure measurements and methods are in place to ensure best in class control quality and assurance for IAM solutions
  • Follow applicable federal agency guidance on IAM technologies relevant to Grid Modernization and assess impact on AVANGRID Networks business model
  • Lead, develop, maintain, and write IAM cybersecurity policies, rules standards, and guidelines
  • Participate in appropriate external industry groups, including the Electricity Sector Coordinating Council (ESCC) in support of the OSG Governance and Risk team
  • Research current IAM industry and government frameworks, vulnerabilities, and risk trends, and assess impact
  • Assess vendors/3rd party's IAM solutions for applicable cyber standards/policies
  • Establish Vendor process and metrics for IAM cyber assurance
  • Analyze current/future IAM vendors, hardware, software, etc. that may be introduced to modernize the electric grid and assess increases and offsets to cyber exposure
  • Respond to audits, participate in cybersecurity-related committees, and explain policy impacts at all levels of the company
  • Educate members and government agencies as required during cyber and physical events.
  • Interact with the Department of Energy (DOE), Department of Homeland Security (DHS), Federal Emergency Management Agency (FEMA), Federal Bureau of Investigation (FBI) and other relevant agencies as needed in response to security and grid modernization-related issues

MAJOR ROLES AND RESPONSIBILITES (Scope of work - range of responsibilities):
  • Lead development and integration of IAM services and solutions in support of Grid Modernization for AVANGRID Networks
  • Define, develop, implement, and operate IAM services and solutions for:

  • Network Automation
  • Smart Metering
  • Resilient Telecommunications
  • Intelligent/automatic centralized operations
  • Digital Asset Management
  • Digital enabled organization
  • Distribution Automation
  • Real Time Systems
  • DER Management

JOB REQUIREMENTS:
Education & Experience Required:
  • Master's Degree in Engineering, Computer Science, or Business Management with a minimum of 8+ years' experience in Cybersecurity; or
  • Bachelor's Degree in Engineering, Computer Science, or Business Management with a minimum of 10+ years' experience in Cybersecurity
  • Experience of 5+ years in Business Decision Support including Cybersecurity Risk Indicators and Performance/Metrics reporting.

Skills/ Abilities:
  • Strong communication and administration skills related to cybersecurity technology
  • Strong system engineering and integration background for complex systems and networking
  • Strong understanding of current and future state of cyberspace

Desired Skills/ Abilities:
  • Security clearance at secret level or above I preferrable.
  • Knowledge of federal government cybersecurity activities and practices
  • Experience in federal or state regulatory environments
  • Experience in federal cybersecurity agencies and environments
  • Experience in a utility environment
  • Certified Information Systems Security Professional (CISSP)
  • Certified Identity and Access Manager (CIAM)

Competencies
  • Growth & Continuous Improvement
  • Initiative & Change
  • Focused on Results
  • Customer Centric (internal and/or external)
  • Communication
  • Collaboration
  • Leadership (people managers/leaders)

#LI-OFFICE
#LI-ER1
Company:
AVANGRID SERVICE COMPANY
Mobility Information
Please note that any applicant who is not a citizen of the country of the vacancy will be subject to compliance with the applicable immigration requirements to legally work in that country.
At Avangrid we provide fair and equal employment and advancement opportunities for all employees and candidates regardless of race, color, religion, national origin, gender, sexual orientation, age, marital status, disability, protected veteran status or any other status protected by federal, state, or local law.
If you are an individual with a disability or a disabled veteran who is unable to use our online tool to search for or to apply for jobs, you may request a reasonable accommodation by contacting our People and Organization department at careers@avangrid.com.
Avangrid employees may be assigned a system emergency role and in the event of a system emergency, may be required to work outside of their regular schedule/job duties. This is applicable to employees that will work in Connecticut, Maine, Massachusetts, and New York within Avangrid Network and Corporate functions. This does not include those that will work for Avangrid Power.
Avangrid employees may also be assigned a NERC Reliability Standards compliance role supporting Critical Infrastructure Protection (CIP) and/or Operations and Planning (O&P) responsibilities. This is applicable to employees that will work in electric transmission, operations, and cyber security business areas in Connecticut, Maine, Massachusetts, and New York within Avangrid Network and Corporate business areas. NERC Reliability Standards compliance roles and responsibilities may include additional access protections, training, audit engagement, and required evidence retention, and will be communicated by the employee's management.
Job Posting End Date:
August-15-2026