Advanced expertise with Third-Party risk frameworks and operational practices, including contract provisions, third-party due diligence, vendor assessments, service commitment management, labor and ...
Advanced expertise with Third-Party risk frameworks and operational practices, including contract provisions, third-party due diligence, vendor assessments, service commitment management, labor and ...
Staff Cybersecurity Analyst, Risk Management
$140K - $186K/yr
This role sits within Enterprise Cybersecurity on the Cybersecurity Risk Management team and partners closely with the Cyber Third-Party Risk Management (TPRM) lead, security engineering teams, and ...
Staff Cybersecurity Analyst, Risk Management
$140K - $186K/yr
This role sits within Enterprise Cybersecurity on the Cybersecurity Risk Management team and partners closely with the Cyber Third-Party Risk Management (TPRM) lead, security engineering teams, and ...
Staff Cybersecurity Analyst, Risk Management
$140K - $175K/yr
This role sits within Enterprise Cybersecurity on the Cybersecurity Risk Management team and partners closely with the Cyber Third-Party Risk Management (TPRM) lead, security engineering teams, and ...
Staff Cybersecurity Analyst, Risk Management
$140K - $175K/yr
This role sits within Enterprise Cybersecurity on the Cybersecurity Risk Management team and partners closely with the Cyber Third-Party Risk Management (TPRM) lead, security engineering teams, and ...
Staff Cybersecurity Analyst, Risk Management
Riverdale, GA · On-site
$140K - $175K/yr
This role sits within Enterprise Cybersecurity on the Cybersecurity Risk Management team and partners closely with the Cyber Third-Party Risk Management (TPRM) lead, security engineering teams, and ...
Staff Cybersecurity Analyst, Risk Management
Riverdale, GA · On-site
$140K - $175K/yr
This role sits within Enterprise Cybersecurity on the Cybersecurity Risk Management team and partners closely with the Cyber Third-Party Risk Management (TPRM) lead, security engineering teams, and ...
Familiarity with GRC best practices (Controls Management, Risk Management, Policy Management, Third-Party Risk Management) * Familiarity with the eDiscovery lifecycle and litigation holds.
Familiarity with GRC best practices (Controls Management, Risk Management, Policy Management, Third-Party Risk Management) * Familiarity with the eDiscovery lifecycle and litigation holds.
Set firm aligned compliance requirements across audit methodology, SDLC, privacy, cybersecurity, third party risk, AI/GenAI, and data management lifecycle. Shape how risk and compliance are embedded ...
Set firm aligned compliance requirements across audit methodology, SDLC, privacy, cybersecurity, third party risk, AI/GenAI, and data management lifecycle. Shape how risk and compliance are embedded ...
Manager - ServiceNow
Atlanta, GA · On-site +1
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
Manager - ServiceNow
Atlanta, GA · On-site +1
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
Enterprise Account Executive
Atlanta, GA · On-site +1
About VISO TRUST VISO TRUST is a venture-backed, high-growth B2B SaaS company transforming how enterprises manage third-party risk. Our AI-native platform replaces legacy, questionnaire-based TPRM ...
Enterprise Account Executive
Atlanta, GA · On-site +1
About VISO TRUST VISO TRUST is a venture-backed, high-growth B2B SaaS company transforming how enterprises manage third-party risk. Our AI-native platform replaces legacy, questionnaire-based TPRM ...
Cyber Manager - ServiceNow
Atlanta, GA · On-site
$106K - $144K/yr
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
Cyber Manager - ServiceNow
Atlanta, GA · On-site
$106K - $144K/yr
... Third-Party Risk Management workstreams in partnership with architects and product owners * Managing stakeholder engagement and executive communications; facilitating decisions, change control, and ...
GLBA, PCI DSS 4.0.1, DORA ICT third-party risk, and NYDFS 23 NYCRR 500. * Establish governance controls for enterprise AI adoption, including standards for approved AI services, data handling ...
GLBA, PCI DSS 4.0.1, DORA ICT third-party risk, and NYDFS 23 NYCRR 500. * Establish governance controls for enterprise AI adoption, including standards for approved AI services, data handling ...
The Senior Analyst will respond to inquiries on the security controls policy, processes, and procedures implemented for managed systems and applications, as well as support Third Party Risk ...
The Senior Analyst will respond to inquiries on the security controls policy, processes, and procedures implemented for managed systems and applications, as well as support Third Party Risk ...
Define and drive the end-to-end technology strategy for Legal, Compliance, and EHS, including platforms supporting CLM, Legal Service Delivery, Third-Party Risk Management, Materials Compliance, and ...
Define and drive the end-to-end technology strategy for Legal, Compliance, and EHS, including platforms supporting CLM, Legal Service Delivery, Third-Party Risk Management, Materials Compliance, and ...
Corporate Compliance Manager
Atlanta, GA · On-site
Third Party Risk Management: due diligence reviews, screening, documentation, issue escalation, and managing system and tools. Regulatory reporting and audit activities: preparing materials ...
Corporate Compliance Manager
Atlanta, GA · On-site
Third Party Risk Management: due diligence reviews, screening, documentation, issue escalation, and managing system and tools. Regulatory reporting and audit activities: preparing materials ...
Partner as appropriate with other Forrester analysts on broader risk topics: risk quantification, third-party risk, systemic risk, compliance, and cyber risk. * Research/write/create approximately ...
Partner as appropriate with other Forrester analysts on broader risk topics: risk quantification, third-party risk, systemic risk, compliance, and cyber risk. * Research/write/create approximately ...
Corporate Compliance Manager
Atlanta, GA · On-site
Third Party Risk Management: due diligence reviews, screening, documentation, issue escalation, and managing system and tools. Regulatory reporting and audit activities: preparing materials ...
Corporate Compliance Manager
Atlanta, GA · On-site
Third Party Risk Management: due diligence reviews, screening, documentation, issue escalation, and managing system and tools. Regulatory reporting and audit activities: preparing materials ...
Fintech Ecosystem & Third-Party Risk * Govern security and compliance for fintech integrations, payment networks, and core banking partners. * Strengthen and lead a Vendor Risk Management (VRM) and ...
Fintech Ecosystem & Third-Party Risk * Govern security and compliance for fintech integrations, payment networks, and core banking partners. * Strengthen and lead a Vendor Risk Management (VRM) and ...
Support third-party risk management (TPRM) activities, including supplier risk segmentation, risk assessment integration into S2P processes, and alignment with compliance, legal, and risk ...
Support third-party risk management (TPRM) activities, including supplier risk segmentation, risk assessment integration into S2P processes, and alignment with compliance, legal, and risk ...
Lead third-party risk management (TPRM) activities, including supplier risk segmentation, risk assessment integration into S2P processes, and alignment with compliance, legal, and risk stakeholders.
Lead third-party risk management (TPRM) activities, including supplier risk segmentation, risk assessment integration into S2P processes, and alignment with compliance, legal, and risk stakeholders.
Oversee vendor performance and third-party risk compliance, escalating issues with data-driven recommendations Required Qualifications * Bachelor's degree required; MBA or equivalent preferred * 7+ ...
Oversee vendor performance and third-party risk compliance, escalating issues with data-driven recommendations Required Qualifications * Bachelor's degree required; MBA or equivalent preferred * 7+ ...
Account Executive
Atlanta, GA · Remote
Evident gives Risk, Procurement, and Operations leaders the tools they need to automate third-party insurance verification, reduce exposure, and ensure compliance across complex networks of vendors ...
Account Executive
Atlanta, GA · Remote
Evident gives Risk, Procurement, and Operations leaders the tools they need to automate third-party insurance verification, reduce exposure, and ensure compliance across complex networks of vendors ...
Third Party Risk information
See Georgia salary details
$16.29 is the 25th percentile. Wages below this are outliers.
$12.18 - $16.76
28% of jobs
The median wage is $19.49 / hr.
$16.76 - $21.33
37% of jobs
$21.33 - $25.91
6% of jobs
$28.77 is the 75th percentile. Wages above this are outliers.
$25.91 - $30.48
6% of jobs
$30.48 - $35.06
12% of jobs
$35.06 - $39.64
0% of jobs
$39.64 - $44.21
0% of jobs
$44.21 - $48.79
8% of jobs
$48.79 - $53.36
0% of jobs
$53.36 - $57.94
0% of jobs
$57.94 - $62.52
2% of jobs
$12
$25
$62
How much do third party risk jobs pay per hour?
What are some common challenges faced in a Third Party Risk role and how can they be managed?
What is the difference between Third Party Risk vs Vendor Risk Management?
| Aspect | Third Party Risk | Vendor Risk Management |
|---|---|---|
| Focus | Assessing risks from all external entities, including vendors, partners, and contractors | Evaluating risks specifically associated with third-party vendors |
| Credentials | Risk management certifications, compliance knowledge | Vendor management certifications, procurement experience |
| Work Environment | Corporate risk teams, compliance departments | Procurement, vendor management teams |
| Industry Usage | Financial, healthcare, technology sectors | Primarily in supply chain and procurement functions |
Third Party Risk encompasses a broader scope, including all external entities, while Vendor Risk Management specifically focuses on vendors. Both roles require risk assessment skills and industry knowledge, but Third Party Risk roles often involve broader compliance and strategic oversight.
What are the key skills and qualifications needed to thrive as a Third Party Risk professional, and why are they important?
What is Third Party Risk?
$94K/yr
Other
Medical, Dental, Vision, Life, Retirement, PTO
Posted 24 days ago
Truist rating
8.3
Based on 109 frontline employees who took The Breakroom Quiz
34th of 141 rated banks
Job description
The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.
Need Help? (https://pp-cdn.phenompeople.com/CareerConnectResources/prod/TBJTBFUS/documents/Career_site_FAQ-1758133253710.pdf)
If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (careers@truist.com?subject=Accommodation%20request)
(accommodation requests only; other inquiries won't receive a response).
Regular or Temporary:
Regular
Language Fluency: English (Required)
Work Shift:
1st shift (United States of America)
Please review the following job description:
Key contributor to the Truist second-line-of-defense (LoD2) Technology Risk team responsible for independent risk oversight of one or more Technology Risk Framework domains and/or Business Unit Technology areas. Partner with Enterprise Technology teammates and stakeholders in assigned oversight areas, advise on risk-related topics, effectively challenge through risk programs, and independently evaluate technology risk in the Truist environment.
The Technology Risk Senior Specialist – TEMPO Cost & Supplier Management Oversight provides independent LoD2 oversight of TD&O management of suppliers, ensuring the Cost & Supplier Management (CSM) function within TEMPO demonstrates appropriate risk management, governance, monitoring, and reporting across the TD&O supplier portfolio. CSM’s scope includes:
• Supplier Portfolio Management (non-strategic suppliers)
• Labor Supplier Management (Fieldglass-based contingent workforce supplier activities)
• Strategic Supplier Management (top strategic non-labor suppliers; classification, business reviews, executive summaries)
• Supplier Operations (purchase order management, credits/commitments/incentives, contract renewal pipeline oversight)
• Supplier Optimization (horizontal opportunities to improve cost/performance across TD&O suppliers)
This role partners with the enterprise Third Party Risk Management (TPRM) team and Risk Type Owners within Information Risk Oversight (IRO) to ensure balanced and coordinated coverage of risks generated or managed by TD&O Cost and Supplier Management.
ESSENTIAL DUTIES AND RESPONSIBILITIES
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
-
Provide independent risk oversight (i.e. LOD2) for Truist Technology and related consult to Truist Business Units through the effective identification, mitigation, monitoring and reporting of technology risk and other related risks (e.g., operational, compliance) within Enterprise Technology.
-
Serve as a subject matter expert and steward of the Technology Risk Framework to identify, report and mitigate technology risks.
-
Execute independent assessment and oversight of the maturity of technology and adequacy of technology controls to achieve business outcomes for performance, stability, security and service availability.
-
Strengthen and sustain proactive risk culture through conducting effective risk focused management and partnership routines with technology teams and internal partners. Interface with senior leaders and key partners across the organization.
-
Review and challenge outcomes of first-line-of-defense risk program execution.
-
Monitor legal, regulatory, compliance and audit matters for assigned Enterprise Technology oversight area(s) and ensures timely action.
-
Lead complex projects that have broad technology and enterprise level impact with implications and/or resource requirements beyond risk management. Provide informal leadership to others and serves as a resource on complex solutions.
-
Comfortable in interdisciplinary, matrix environments. Use acumen and skills to effectively bridge business and IT functions seamlessly. Pivot quickly between advisory consultant and implementation consultant roles.
QUALIFICATIONS
Required Qualifications:
The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
-
Bachelor's Degree or an equivalent combination of education and experience.
-
10+ years of banking, technology, operations or risk management experience.
-
Strong business acumen / knowledge, management experience, problem solving, critical thinking, influencing and decision-making skills.
-
Experience operating independently and navigating ambiguity to deliver value.
-
Excellent interpersonal and communication skills demonstrating the ability to establish credibility with all levels of management effectively.
-
Demonstrated ability to organize and manage complex initiatives and deliver high-quality, executive level work products.
-
Comfort with data and applying analysis to derive value-add insights.
-
Adept with Microsoft Office products.
Preferred Qualifications:
-
Master's degree in Business Administration (MBA) or advanced degree in Business Management, Technology or Finance.
-
Familiarity with financial services technology-related laws, rules, regulations, and risk management standards (e.g. Federal Financial Institutions Examination Council (FFIEC), Control Objectives for Information and Related Technology (COBIT), Information Technology Infrastructure Library (ITIL)).
-
Familiarity with risk measurement approaches including development of Key Risk Indicators and thresholds and associated reporting and analytics tools (e.g. Tableau).
-
Familiarity with enterprise Governance Risk and Compliance (eGRC) platforms and tools (e.g., RSA Archer)
-
Professional risk management designations such as Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (Information Systems Audit and Control Association), and/or Project Management certification.
-
Advanced expertise with Third-Party risk frameworks and operational practices, including contract provisions, third-party due diligence, vendor assessments, service commitment management, labor and strategic sourcing, cost structures, renewals and other requirements.
-
Hands-on familiarity with enterprise third-party risk management policy and procedures and typical divisional expectations.
-
Familiarity with supplier/procurement platforms and reporting (e.g., Ariba; Fieldglass).
-
Experience evaluating technology and operational vendors and operations.
-
Exposure to regulatory, audit, and industry standards impacting third parties, such as Interagency Guidance on Third-Party Relationships Risk Management, SR 23-4, FIL-29-2023, and third-party implications from other regulations for data, cyber security or technology (e.g., GLBA).
General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site (https://benefits.truist.com/)
. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.
Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.
EEO is the Law (https://www.eeoc.gov/sites/default/files/2022-10/EEOC_KnowYourRights_screen_reader_10_20.pdf)
E-Verify (https://pp-cdn.phenompeople.com/CareerConnectResources/prod/TBJTBFUS/documents/E-Verify_Participation_Poster-1757074518541.pdf)
IER Right to Work (https://pp-cdn.phenompeople.com/CareerConnectResources/prod/TBJTBFUS/documents/IER_RightToWorkPoster-1757074222028.pdf)
About Truist
Sourced by ZipRecruiter
Truist is combining distinctive personal service with investments in innovation to create transformational client experiences. We believe the unique blend of human touch and innovative technology will set us apart, instill confidence, and build deeper levels of trust with our clients
Industry
Finance and insurance
Company size
10,000+ Employees
Headquarters location
Charlotte, NC, US
Year founded
2019