1

Third Party Risk Jobs in Frederick, MD (NOW HIRING)

Assessment Consultant

Leesburg, VA · Remote

$124K - $137K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

... FedRAMP Third Party Assessment Organizations (3PAO). With the addition of Kovr.AI, we have expanded our capabilities to include advanced cyber risk quantification and analytics, enabling ...

Assessment Consultant

Leesburg, VA · Remote

$124K - $137K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

... FedRAMP Third Party Assessment Organizations (3PAO). With the addition of Kovr.AI, we have expanded our capabilities to include advanced cyber risk quantification and analytics, enabling ...

Organize and manage RFI and Value Engineering logs, and Risk logs. * Document meetings with ... Manage RFPs for subcontractors and third-party engineering scopes, including bid leveling and scope ...

PROJECT MANAGER

Rockville, MD · On-site

$105K - $120K/yr

Organize and manage RFI and Value Engineering logs, and Risk logs. * Document meetings with ... Manage RFPs for subcontractors and third-party engineering scopes, including bid leveling and scope ...

Project Manager - IPT

Rockville, MD · On-site

$115K - $130K/yr

Organize and manage RFI and Value Engineering logs, and Risk logs. * Document meetings with ... Manage RFPs for subcontractors and third-party engineering scopes, including bid leveling and scope ...

Organize and manage RFI and Value Engineering logs, and Risk logs. * Document meetings with ... Manage RFPs for subcontractors and third-party engineering scopes, including bid leveling and scope ...

The Cybersecurity Risk Manager will work directly with the Cybersecurity Program Manager and the agency's CIO and CISO in cybersecurity tasks such as information security policy development and ...

The Cybersecurity Risk Manager will work directly with the Cybersecurity Program Manager and the agency's CIO and CISO in cybersecurity tasks such as information security policy development and ...

The Cybersecurity Risk Manager will work directly with the Cybersecurity Program Manager and the agency's CIO and CISO in cybersecurity tasks such as information security policy development and ...

The Cybersecurity Risk Manager will work directly with the Cybersecurity Program Manager and the agency's CIO and CISO in cybersecurity tasks such as information security policy development and ...

Senior Underwriter

Frederick, MD · On-site

$90 - $120/hr

Collaborate with carrier partners, reinsurers, and third-party administrators to maintain alignment ... Develop and deliver risk management education -- including best practices for liability mitigation ...

New

EHS Manager

Rockville, MD · On-site

$84K - $114K/yr

  • Medical

  • Life

  • Retirement

  • PTO

Leads OSHA inspections, insurance audits, and third-party evaluations * RepresentsDAVIS procedures ... Ensures compliance, risk mitigation, and legal defensibility across projects

Director of Information Security

Germantown, MD · On-site

  • Medical

  • Dental

  • Vision

  • Retirement

... risk treatment plans * Oversee security audits, assessments, and government inspections * Maintain relationships with government and third party representatives Program Management * Review and advise ...

Cybersecurity Officer (Remote)

Rockville, MD · On-site +1

$175K - $205K/yr

... third-party vendor engagements. Reviews and recommends technical security controls to protect enterprise systems and information. Coordinates with Legal, Risk Management, Privacy, Compliance, and IT ...

Application Architect

Rockville, MD · Hybrid

$120K - $165K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

... third-party solutions for architectural fit and long-term supportability * Partner with business stakeholders, technology teams, information security, risk, compliance, and vendors throughout ...

Showing results 21-40

Third Party Risk information

See Frederick, MD salary details

$14

$30

$73

How much do third party risk jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for third party risk in Frederick, MD is $30.16, according to ZipRecruiter salary data. Most workers in this role earn between $19.38 and $38.46 per hour, depending on experience, location, and employer.

What is third party risk?

Third Party Risk refers to the potential risks and vulnerabilities an organization faces when working with external vendors, suppliers, or service providers. These risks can include data breaches, compliance violations, operational disruptions, and reputational damage resulting from the actions or failures of third parties. Managing third party risk involves identifying, assessing, monitoring, and mitigating these risks to protect the organization’s interests and ensure regulatory compliance.

What are the key skills and qualifications needed to thrive as a third party risk professional?

To thrive as a Third Party Risk professional, you need a solid understanding of risk management principles, vendor assessment processes, and relevant regulatory frameworks, often supported by a degree in business, finance, or a related field. Familiarity with risk assessment tools, GRC (governance, risk, and compliance) software, and certifications such as Certified Third Party Risk Professional (CTPRP) are common requirements. Strong analytical thinking, attention to detail, and effective communication skills help you evaluate vendors and influence stakeholders. These skills are vital for identifying, mitigating, and managing risks associated with third-party relationships to protect organizational integrity and compliance.

What are some common challenges faced in a third party risk role and how can they be managed?

Professionals in Third Party Risk often encounter challenges such as managing a large and diverse vendor portfolio, staying updated on regulatory requirements, and ensuring timely risk assessments. Navigating communication gaps between internal stakeholders and external vendors can also be demanding. These challenges are typically managed by implementing robust risk assessment frameworks, fostering cross-functional collaboration, and leveraging technology to streamline due diligence and monitoring processes. Continuous training and clear communication protocols further help in addressing these complexities and maintaining effective third-party risk management.

What is the difference between Third Party Risk vs Vendor Risk Management?

AspectThird Party RiskVendor Risk Management
FocusAssessing risks from all external entities, including vendors, partners, and contractorsEvaluating risks specifically associated with third-party vendors
CredentialsRisk management certifications, compliance knowledgeVendor management certifications, procurement experience
Work EnvironmentCorporate risk teams, compliance departmentsProcurement, vendor management teams
Industry UsageFinancial, healthcare, technology sectorsPrimarily in supply chain and procurement functions

Third Party Risk encompasses a broader scope, including all external entities, while Vendor Risk Management specifically focuses on vendors. Both roles require risk assessment skills and industry knowledge, but Third Party Risk roles often involve broader compliance and strategic oversight.

What are the most commonly searched types of Third Party Risk jobs in Frederick, MD?

The most popular types of Third Party Risk jobs in Frederick, MD are:

What are popular job titles related to Third Party Risk jobs in Frederick, MD?

For Third Party Risk jobs in Frederick, MD, the most frequently searched job titles are:

What job categories do people searching Third Party Risk jobs in Frederick, MD look for?

The top searched job categories for Third Party Risk jobs in Frederick, MD are:

What cities near Frederick, MD are hiring for Third Party Risk jobs?

Cities near Frederick, MD with the most Third Party Risk job openings:

Infographic showing various Third Party Risk job openings in Frederick, MD as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 14% Part Time, and 2% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $62,738 per year, or $30.2 per hour.

Assessment Consultant

Fortreum

Leesburg, VA • Remote

$124K - $137K/yr

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 12 days ago


Job description

Fortreum is a trusted leader in cloud and cybersecurity services, ranked among the Top 5 FedRAMP Third Party Assessment Organizations (3PAO). With the addition of Kovr.AI, we have expanded our capabilities to include advanced cyber risk quantification and analytics, enabling organizations to better understand, measure, and communicate risk. Together, we deliver independent, third-party, vendor-agnostic regulatory assessment and advisory services, alongside advanced cybersecurity offensive and compliance technical solutions. Our comprehensive service portfolio spans regulatory compliance frameworks including FedRAMP, CMMC, FISMA, SOC, PCI, ISO, and HIPAA.

Working with Fortune 500 companies and leading cloud service providers, we’ve built our reputation on service-delivery excellence and an unwavering commitment to client success. Our continued rapid growth creates exceptional opportunities for driven professionals to make their mark in the cybersecurity industry—guided by our core values: quality above all, a customer-driven mindset, autonomy, and personal accountability.

The Opportunity

On our team, you will have the opportunity to work with the best and brightest in the field. Fortreum team members have supported the biggest cloud providers in the world, and you will have the opportunity to work with the best. We are looking for candidates with a background in performing security assessments in support of FedRAMP and NIST-based frameworks to support our growing customer base.

Key Responsibilities

This role will specialize in FedRAMP, PCI, ISO, and other NIST-based assessment activities. Specifically, you would:

  • Work closely with all members of the team supporting one or all of the following work activities:

    • Developing security assessment plans (SAPs)

    • Conducting interviews of key stakeholders and technical personnel

    • Performing technical tests alongside security engineers

    • Recording meeting minutes and maintain work papers

    • Developing security assessment reports (SARs)

  • Maintain a consistent writing style and approach to documenting the results of the security assessment

  • Collaborate with delivery team members to drive customer satisfaction and meet project deliverables

  • Ensure quality products and services are delivered on time and within allotted hours

  • Establish and maintain positive collaborative relationships with clients and stakeholders

  • Continuous professional development in pursuing industry specific certifications

  • Consistently work to improve assessment interviewing techniques to establish efficiencies in gathering required information

  • Prepare deliverables and conduct peer-review of team member’s deliverables

  • Perform project outbriefs with clients to notify them of the outcome of their compliance activities

  • Manage priorities, tasks, and assigned hours on projects to achieve delivery utilization targets

  • This is a customer-facing role. You may be required to travel to client locations and deliver professional services.

Basic Qualifications
  • Bachelor’s Degree or equivalent job experience

  • 3+ years of professional services experience

  • 4+ years of assessment experience leveraging NIST SP 800-53, specific to cloud environments

  • Proficient in Microsoft 365 product suite

  • Ability to quickly take on new technologies and concepts

  • Ability to manage multiple priorities simultaneously

  • Proven analytical and problem-solving skills

  • Ability to develop and maintain strong relationships with team members and clients

  • Comfortable supporting fast-paced team environments

  • One or more of the following certifications:

    o Cisco Certified Network Associate Security (CCNA Security)

    o Cisco Certified Network Associate Cyber Security Operations (CCNA Cyber Ops)

    o Cybersecurity Analyst (CySA+)

    o GIAC Certified Incident Handler (GCIH)

    o GIAC Systems and Network Auditor (GSNA)

    o GIAC Certified Intrusion Analyst (GCIA)

    o Certified Information Systems Auditor (CISA)

    o Certified Information System Security Professional (CISSP or Associate)

    o Certified Secure Software Lifecycle Professional (CSSLP)

    o Certified Information Systems Security Officer (CISSO)

    o CyberSec First Responder (CFR)

    o CompTIA Advanced Security Practitioner (CASP+)

    o CompTIA Cloud+ (Cloud+)

    o Global Industrial Cyber Security Professional (GICSP)

    o Securing Cisco Networks with Threat Detection Analysis (SCYBER)

     
Preferred Skills
  • Ability to validate automated evidence pipelines, such as querying an API and reading/understanding logs

  • Basic scripting and understanding of JSON

  • Basic understanding of terraform

  • Advanced technical certifications, such as: AWS solutions architect, Google cloud engineer, Microsoft solutions architect

Posted Salary Range

$124,000 - $137,000 annual salary


What Fortreum Offers

We offer a competitive compensation package, where you will be rewarded based on your performance/outcomes and recognized for the value you bring to our business. Our benefits package includes medical insurance, dental insurance, vision insurance, 401K plan with a 4% match, company paid short-term disability, company paid long-term disability, company paid AD&D and life insurance, flex time off, annual bonuses, training stipends, certification reimbursements, access to over 30,000 free online training courses, personal cell phone allowance, new hire and annual home office stipend, spot awards and eleven paid holidays.

An Affirmative Action and Equal Opportunity Employer

Fortreum is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. If you’d like to view a copy of the company’s affirmative action plan or policy statement, please email hr@fortreum.com. If you have a disability and you believe you need a reasonable accommodation in order to search for a job opening or to submit an online application, please e-mail hr@fortreum.com or call 703-594-1460. This email and phone number is created exclusively to assist disabled job seekers whose disability prevents them from being able to apply online. Only messages left for this purpose will be returned. Messages left for other purposes, such as following up on an application or technical issues not related to a disability, will not receive a response.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.

Compensation Range: $124K - $137K