1

Third Party Risk Manager Jobs in Woonsocket, RI (NOW HIRING)

Senior Information Security Risk Analyst

Johnston, RI ยท On-site

$106K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Position Summary FM is seeking a Senior Information Security Analyst with deep expertise in Third-Party Risk Management (TPRM), you will play a critical role in protecting FM by assessing how ...

Senior Information Security Risk Analyst

Johnston, RI ยท On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Position Summary FM is seeking a Senior Information Security Analyst with deep expertise in Third-Party Risk Management (TPRM), you will play a critical role in protecting FM by assessing how ...

Senior Cybersecurity Risk Analyst - USA Remote

Boston, MA ยท Remote

$130K - $160K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Execute the third-party risk management (TPRM) lifecycle end-to-end, including vendor intake, inherent-risk tiering, security and privacy questionnaire administration, evidence collection and review ...

Execute risk assessments for new AI vendors, LLM platforms, AI APIs, and enterprise AI tools, including third-party risk scoring, control mapping, and remediation tracking * Manage the vendor risk ...

First Line Risk Sr Manager

Johnston, RI ยท On-site

$117K - $153K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

These initiatives involve technology risk, model risk, third-party risk, and customer impact ... Risk Management Expertise * Analytical and Strategic Thinking * Regulatory and Compliance Knowledge

First Line Risk Sr Manager

Westwood, MA ยท On-site

$117K - $153K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

These initiatives involve technology risk, model risk, third-party risk, and customer impact ... Risk Management Expertise * Analytical and Strategic Thinking * Regulatory and Compliance Knowledge

First Line Risk Sr Manager

Johnston, RI ยท On-site

$117K - $153K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

These initiatives involve technology risk, model risk, third-party risk, and customer impact ... Risk Management Expertise * Analytical and Strategic Thinking * Regulatory and Compliance Knowledge

Security Engineer (Boston HQ)

Boston, MA ยท On-site

$80K - $110K/yr

This is a high impact role with broad exposure: where you will work across core domains including identity and access management (IAM), third-party risk, and incident detection and response while ...

Senior Risk Manager: Payments

Boston, MA ยท On-site

$117K - $153K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Manage vendor and third-party risk oversight. * Support operational resilience, business continuity, and incident management. * Partner with audit, compliance, and regulators. Core Skills ...

Senior Risk Manager: Payments

Johnston, RI ยท On-site

$117K - $153K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Manage vendor and third-party risk oversight. * Support operational resilience, business continuity, and incident management. * Partner with audit, compliance, and regulators. Core Skills ...

Senior Risk Manager: Payments

Boston, MA ยท On-site

$117K - $153K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Manage vendor and third-party risk oversight. * Support operational resilience, business continuity, and incident management. * Partner with audit, compliance, and regulators. Core Skills ...

Showing results 21-40

Third Party Risk Manager information

See Woonsocket, RI salary details

$49.3K

$106.9K

$162.9K

How much do third party risk manager jobs pay per year?

As of Aug 15, 2026, the average yearly pay for third party risk manager in Woonsocket, RI is $106,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $86,200.00 and $123,600.00 per year, depending on experience, location, and employer.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.

What cities near Woonsocket, RI are hiring for Third Party Risk Manager jobs?

Cities near Woonsocket, RI with the most Third Party Risk Manager job openings:

Infographic showing various Third Party Risk Manager job openings in Woonsocket, RI as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 14% Part Time, and 2% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $106,895 per year, or $51.4 per hour.

Senior Information Security Risk Analyst

FM

Johnston, RI โ€ข On-site

$106K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 14 days ago


Job description

Established nearly two centuries ago, FM is a leading mutual insurance company whose capital, scientific research capability and engineering expertise are solely dedicated to property risk management and the resilience of its policyholder-owners. These owners, who share the belief that the majority of property loss is preventable, represent many of the world's largest organizations, including one of every four Fortune 500 companies. They work with FM to better understand the hazards that can impact their business continuity to make cost-effective risk management decisions, combining property loss prevention with insurance protection.
Work Schedule
This position requires on-site work one day per week at our Corporate Headquarters and flexibility to be on-site when needed based on the demands of the business
Relocation is not offered for this position.
Position Summary
FM is seeking a Senior Information Security Analyst with deep expertise in Third-Party Risk Management (TPRM), you will play a critical role in protecting FM by assessing how external vendors, SaaS platforms, and cloud solutions interact with our systems and data. This high-impact role where your expertise in cyber risk, vendor security, and cloud architecture will help shape business decisions, strengthen our security posture, and support innovation in a secure way. This includes reviewing both the vendor's security control environment and the specific solution being implemented, with a focus on data handling, storage, and integration with internal systems.
You will partner closely with business, technology, and procurement teams to identify risks and recommend practical, business-aligned mitigation strategies.
You will lead end-to-end cybersecurity risk assessments of third-party vendors and solutions-going beyond standard due diligence to evaluate real-world risk across systems, data, and integrations.
Key Responsibilities
  • Lead end-to-end third-party solution risk assessments and vendor security reviews across the vendor lifecycle, including due diligence, onboarding, ongoing monitoring, and reassessments.
  • Evaluate vendor security programs, control effectiveness, and governance, along with deep-dive assessment of the specific product being implemented including solution architecture, data flows, and integration points.
  • Identify and communicate inherent and residual cyber risks related to data protection, privacy, IAM, privileged access, system connectivity, and external attack surface exposure.
  • Review and interpret security documentation, including SOC 1/SOC 2 reports, ISO 27001 certifications, audit reports, architecture diagrams, data flow diagrams, and technical configurations.
  • Recommend practical risk mitigation strategies, including compensating controls, secure design changes, and contractual safeguards to support risk-informed decisions.
  • Partner with business, technology, procurement, and legal teams to support risk acceptance, exception management, and third-party risk governance.
  • Contribute to the evolution of FM's third-party risk management framework, methodology, and standards in alignment with NIST, ISO 27001, NYDFS, and other applicable regulatory expectations.

Qualifications
  • 5+ years of experience in cybersecurity, information security, or cyber risk, with a background in third-party risk management (TPRM), IT risk, audit, incident response, or access management.
  • Experience assessing vendor security posture in cloud (SaaS/PaaS)and enterprise environments.

Technical Expertise
  • Strong understanding of systems, networks, application architecture, cloud security, and secure system design across AWS, Azure, SaaS, PaaS, APIs, and enterprise integrations.
  • Experience evaluating data flows, data classification, data protection, data governance, and secure data handling practices.
  • Knowledge of IAM, SSO, federation, privileged access, cyber threats, vulnerabilities, and attack methodologies.
  • Ability to interpret SOC 1, SOC 2, ISO certifications, and other third-party assurance artifacts to identify control gaps and residual risk.

Risk & Analysis:
  • Ability to identify, assess, and clearly communicate complex cyber risks, trade-offs, and residual risk.
  • Experience recommending practical, business-aligned risk based mitigation strategies, including compensating controls and secure design changes.
  • Strong analytical judgment, attention to detail, and risk-based decision-making.

Collaboration & Communication
  • Ability to translate technical findings into clear, business-relevant insights and recommendations.
  • Strong stakeholder management and partnership across business, technology, procurement, and legal teams.
  • Collaborative, solutions-focused mindset with strong influencing skills in a fast-paced assessment environment.
  • High degree of professional skepticism and curiosity when evaluating vendor claims and evidence
  • Ability to manage multiple priorities independently while maintaining quality and consistency of assessments

Tools & Certifications:
  • Proficiency with Microsoft Office tools.
  • Relevant certifications such as CISSP, CISA, CSA, CISM, Security+, GIAC, CEH, or similar are strongly desired.

Education
Bachelor's degree in information security, Computer Science, Information Technology, or a related field required. An equivalent of relevant work experience will also be considered.
The hiring range for this position is $106,000- $152,000. The final salary offer will vary based on geographic location, individual education, skills, and experience. The position is eligible to participate in FM's comprehensive Total Rewards program that includes an incentive plan, medical, dental and vision insurance, life and disability insurance, well-being programs, a 401(k) and pension plan, career development opportunities, tuition reimbursement, flexible work, and time off, including vacation and sick time.
FM is an Equal Opportunity Employer and is committed to attracting, developing, and retaining a diverse workforce.
#LI-NL1
#FMG

FM logo

About FM

Sourced by ZipRecruiter

Industry

Plastics product manufacturing

Company size

51 - 200 Employees

Headquarters location

Rogers, AR, US

Year founded

1980

Social media