In addition, this role will collaborate with architecture, legal, compliance, and privacy as part of our TPRM (Third Party Risk Management) process. This role will help review risk assessments for ...
In addition, this role will collaborate with architecture, legal, compliance, and privacy as part of our TPRM (Third Party Risk Management) process. This role will help review risk assessments for ...
Leading end-to-end TPRM reviews - coordinating intake, managing due diligence documentation (such as security questionnaires and SOC reports), for both new and renewing vendors. * Maintaining the ...
Leading end-to-end TPRM reviews - coordinating intake, managing due diligence documentation (such as security questionnaires and SOC reports), for both new and renewing vendors. * Maintaining the ...
Manage and perform monitoring activities on the IT/OT TPRM program activities, including use of the IT Risk Management and Third Party Risk Management modules within the GPI GRC system (OneTrust)
Manage and perform monitoring activities on the IT/OT TPRM program activities, including use of the IT Risk Management and Third Party Risk Management modules within the GPI GRC system (OneTrust)
Operational Resilience Senior Advisor (Information Security Senior Advisor)
Atlanta, GA · Hybrid
$131K - $131K/yr
Leads development and execution of risk assessment methodologies to fit business, TPRM, regulatory, and technical environment considerations; * Leads the development of requirements, system ...
Operational Resilience Senior Advisor (Information Security Senior Advisor)
Atlanta, GA · Hybrid
$131K - $131K/yr
Leads development and execution of risk assessment methodologies to fit business, TPRM, regulatory, and technical environment considerations; * Leads the development of requirements, system ...
Traditional, manual approaches to TPRM can no longer keep pace with today's scale and speed of disruption. That's why we have pioneered an Intelligence-First approach. Trusted by millions of third ...
Traditional, manual approaches to TPRM can no longer keep pace with today's scale and speed of disruption. That's why we have pioneered an Intelligence-First approach. Trusted by millions of third ...
Executing TPRM review activities - coordinating intake, gathering and organizing due diligence documentation (such as security questionnaires and SOC reports), and tracking reviews through completion ...
Executing TPRM review activities - coordinating intake, gathering and organizing due diligence documentation (such as security questionnaires and SOC reports), and tracking reviews through completion ...
GA · On-site
You will also serve as the primary authority for Third-Party Risk Management (TPRM) architectural reviews, ensuring proposed technology investments are evaluated through sound architectural ...
You will also serve as the primary authority for Third-Party Risk Management (TPRM) architectural reviews, ensuring proposed technology investments are evaluated through sound architectural ...
Quick apply
You will also serve as the primary authority for Third-Party Risk Management (TPRM) architectural reviews, ensuring proposed technology investments are evaluated through sound architectural ...
Enterprise Account Executive
Atlanta, GA · On-site +1
Our AI-native platform replaces legacy, questionnaire-based TPRM processes by analyzing vendor artifacts directly, enabling organizations to perform faster, higher-confidence risk assessments at ...
Enterprise Account Executive
Atlanta, GA · On-site +1
Our AI-native platform replaces legacy, questionnaire-based TPRM processes by analyzing vendor artifacts directly, enabling organizations to perform faster, higher-confidence risk assessments at ...
... TPRM) and Governance and Risk functions in conducting vendor due diligence (initial, reassessments and ongoing monitoring) and supporting broader GRC efforts. This position is 100% Onsite and not ...
... TPRM) and Governance and Risk functions in conducting vendor due diligence (initial, reassessments and ongoing monitoring) and supporting broader GRC efforts. This position is 100% Onsite and not ...
... TPRM Managers, evolve, develop and manage the development, maintenance and evaluation of organizational InfoSec governance and risk procedures, processes and guidelines in accordance with Firm and ...
... TPRM Managers, evolve, develop and manage the development, maintenance and evaluation of organizational InfoSec governance and risk procedures, processes and guidelines in accordance with Firm and ...
Senior Analyst, Cybersecurity GRC
Atlanta, GA · On-site
$96K - $124K/yr
... TPRM) and Governance and Risk functions in conducting vendor due diligence (initial, reassessments and ongoing monitoring) and supporting broader GRC efforts. This position is 100% Onsite and not ...
Senior Analyst, Cybersecurity GRC
Atlanta, GA · On-site
$96K - $124K/yr
... TPRM) and Governance and Risk functions in conducting vendor due diligence (initial, reassessments and ongoing monitoring) and supporting broader GRC efforts. This position is 100% Onsite and not ...
Mature the TPRM and software supply chain risk programs - vendor due diligence, ongoing monitoring, SBOM governance, and contractual security obligations. * Maintain a coherent policy and standards ...
Mature the TPRM and software supply chain risk programs - vendor due diligence, ongoing monitoring, SBOM governance, and contractual security obligations. * Maintain a coherent policy and standards ...
Sr. Analyst - Third Party Risk
Alpharetta, GA · On-site
$85K/yr
Document TPRM related findings and follow up on identified issues and risk escalations * Keep management apprised of key third party risks and escalations through regular communication and reporting ...
New
Sr. Analyst - Third Party Risk
Alpharetta, GA · On-site
$85K/yr
Document TPRM related findings and follow up on identified issues and risk escalations * Keep management apprised of key third party risks and escalations through regular communication and reporting ...
New
Technical Account Manager
Atlanta, GA · On-site
... TPRM, change management, audit cycles) Preferred : • Prior background as a Forward Deployed Engineer at Palantir, Resident SA at Databricks, Principal SA at Snowflake/Confluent, or Customer ...
Technical Account Manager
Atlanta, GA · On-site
... TPRM, change management, audit cycles) Preferred : • Prior background as a Forward Deployed Engineer at Palantir, Resident SA at Databricks, Principal SA at Snowflake/Confluent, or Customer ...
Manager - ServiceNow
Atlanta, GA · On-site +1
... TPRM). * 3+ years managing program financials, executive reporting, stakeholder management, and change control for ServiceNow programs * 3+ years managing distributed delivery teams, including ...
Manager - ServiceNow
Atlanta, GA · On-site +1
... TPRM). * 3+ years managing program financials, executive reporting, stakeholder management, and change control for ServiceNow programs * 3+ years managing distributed delivery teams, including ...
... CIS-TPRM), CIS-Hardware Asset Management (CIS-HAM), CIS-Software Asset Management (CIS-SAM), CIS-Service Mapping (CIS-SM), CIS-Discovery (CIS-DISCO), CIS-Event Management (CIS-EM), CIS-Data ...
... CIS-TPRM), CIS-Hardware Asset Management (CIS-HAM), CIS-Software Asset Management (CIS-SAM), CIS-Service Mapping (CIS-SM), CIS-Discovery (CIS-DISCO), CIS-Event Management (CIS-EM), CIS-Data ...
Embed AI capabilities into endtoend workflows and platforms (CLM, Legal Service Delivery, TPRM, Materials Compliance, EHS) through product design, integration patterns, and change management.
Embed AI capabilities into endtoend workflows and platforms (CLM, Legal Service Delivery, TPRM, Materials Compliance, EHS) through product design, integration patterns, and change management.
... CIS-TPRM), CIS-Hardware Asset Management (CIS-HAM), CIS-Software Asset Management (CIS-SAM), CIS-Service Mapping (CIS-SM), CIS-Discovery (CIS-DISCO), CIS-Event Management (CIS-EM), CIS-Data ...
... CIS-TPRM), CIS-Hardware Asset Management (CIS-HAM), CIS-Software Asset Management (CIS-SAM), CIS-Service Mapping (CIS-SM), CIS-Discovery (CIS-DISCO), CIS-Event Management (CIS-EM), CIS-Data ...
Third-Party Risk Management (TPRM): * Lead security risk assessments for new and renewing third-party vendors third-party vendors as part of the procurement lifecycle. Track remediation items and ...
Third-Party Risk Management (TPRM): * Lead security risk assessments for new and renewing third-party vendors third-party vendors as part of the procurement lifecycle. Track remediation items and ...
Tprm information
See Georgia salary details
$4.47 - $10.78
12% of jobs
$10.78 - $17.09
0% of jobs
$17.09 - $23.40
0% of jobs
$23.40 - $29.71
4% of jobs
$29.71 - $36.02
5% of jobs
$38.95 is the 25th percentile. Wages below this are outliers.
$36.02 - $42.33
8% of jobs
The median wage is $47.46 / hr.
$42.33 - $48.64
26% of jobs
$48.64 - $54.95
14% of jobs
$57.98 is the 75th percentile. Wages above this are outliers.
$54.95 - $61.26
13% of jobs
$61.26 - $67.57
1% of jobs
$67.57 - $73.88
17% of jobs
$4
$47
$73
How much do tprm jobs pay per hour?
What is a TPRM?
A TPRM (Third-Party Risk Management) job involves assessing, monitoring, and mitigating risks associated with an organization's third-party vendors, suppliers, or service providers. Professionals in TPRM evaluate vendor security, compliance, and operational stability to ensure they align with company policies and regulatory requirements. They often collaborate with internal stakeholders and external partners to conduct risk assessments, manage due diligence processes, and implement risk mitigation strategies. This role is critical in industries like finance, healthcare, and technology, where third-party relationships can significantly impact business operations and regulatory compliance.
What are the key skills and qualifications needed to thrive in the TPRM position, and why are they important?
To excel as a Third Party Risk Manager (TPRM), you need strong analytical skills, knowledge of risk management principles, and experience in vendor management or compliance frameworks. Familiarity with risk assessment tools, governance, risk and compliance (GRC) platforms, and relevant certifications such as CTPRP or CRISC is highly valued. Exceptional communication, stakeholder management, and critical thinking are standout soft skills that facilitate collaborative risk mitigation. These skills are essential for ensuring third-party relationships are assessed and managed responsibly to protect organizational interests.
What are typical challenges faced by a Third Party Risk Manager (TPRM) on a daily basis?
Third Party Risk Managers often navigate the complexities of assessing and monitoring multiple vendors across various departments, each with their own processes and risk profiles. Challenges include gathering sufficient due diligence documentation, staying updated on evolving regulations, and ensuring that vendors meet compliance and security standards. The role frequently collaborates with procurement, legal, IT, and business units to address concerns and remediate potential risks. Successfully managing these challenges requires strong organizational skills, attention to detail, and the ability to communicate requirements effectively both internally and externally.

Other
Re-posted 11 hours ago
Job description
We are looking for a dynamic Senior Information Security GRC Analyst to support IT and InfoSec by performing various governance, risk, and compliance activities as part of the OneTrust InfoSec GRC team.
Your MissionThis role will support InfoSec by performing various governance, risk, and compliance activities as part of the OneTrust InfoSec GRC team. In addition, this role will collaborate with architecture, legal, compliance, and privacy as part of our TPRM (Third Party Risk Management) process. This role will help review risk assessments for customers/vendors, data flow diagrams, architecture diagrams, certifications, questionnaires, etc.
You AreThis a team player who can work well within the GRC team.
- Collaborate with IT, InfoSec, and within the GRC team to mature the compliance process
- Review vendor due diligence documentation, including SOC reports, ISO certifications, penetration testing reports, policies, and security questionnaires.
- Evaluate supplier control environments against established risk management standards and frameworks.
- Document risk findings and communicate recommendations to business stakeholders.
- Execute risk assessments of third-party vendors
- Mentor Junior Security Analysts, and work with them to evaluate and remediate complex security incidents
- Responsible for generation and continued delivery of relevant KPIs and metrics
- Provide feedback on solutions and processes to mature overall capabilities
- Impart expertise on the OneTrust environment and security best practices to others on the team
- BA/BS in Computer Science, Cybersecurity, Information assurance or related subject
- 5+ years, hands on experience in cybersecurity/risk management
- Experience reviewing SOC 1, SOC 2 reports & ISO 27001 certifications
- Experience reviewing security questionnaires, business continuity and disaster recovery plans as well as vendor contracts and security requirements
- Understanding of information security best practices around confidentiality, integrity and availability
- Cloud experience in at least one cloud provider
- Understanding of applicable laws and regulations, including but not limited to, GDPR, CCPA, PCI-DSS, SOC 2, ISO, and FedRAMP
- Understanding of the standards for the processing practice of third-party management
- Understanding of technology domains including governance, risk management, security, privacy, and information technology and business continuity
- Certifications: CRISC, Security+, CISSP, CISM, CCSP, CISA, Azure
- Knowledge of OneTrust security/GRC products.
About OneTrust
Sourced by ZipRecruiter
Industry
Software development
Company size
1,001 - 5,000 Employees
Headquarters location
Atlanta, GA, US
Year founded
2016