Senior Third-Party Cyber Risk Analyst

FM

Johnston (RI)

On-site

USD 110,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

FM is seeking a Senior Information Security Analyst specializing in Third-Party Risk Management (TPRM). You will lead end-to-end risk assessments of external vendors, SaaS platforms, and cloud solutions, focusing on data handling, storage, and integration with internal systems.

You will partner with business, technology, and procurement teams to identify risks and implement practical mitigation strategies, guiding risk governance and alignment with regulatory expectations.

Qualifications

  • Minimum 5+ years in cybersecurity, risk, or related fields with TPRM experience.
  • Experience assessing vendor security posture in cloud and enterprise environments.

Responsibilities

  • Lead end-to-end third-party risk assessments and vendor security reviews.
  • Evaluate vendor security programs and governance, including architecture and data flows.
  • Identify risks in data protection, privacy, IAM, and external attack surface.
  • Interpret SOC 1/SOC 2 and ISO 27001 reports to identify gaps and risk.
  • Collaborate with business, technology, procurement and legal teams on risk decisions.
  • Contribute to FM's TPRM framework and align with standards (NIST, ISO 27001, NYDFS).

Skills

Cybersecurity
TPRM
Vendor security
Cloud security
IAM

Job description

FM is seeking a Senior Information Security Analyst specializing in Third-Party Risk Management (TPRM). You will lead end-to-end risk assessments of external vendors, SaaS platforms, and cloud solutions, focusing on data handling, storage, and integration with internal systems.

You will partner with business, technology, and procurement teams to identify risks and implement practical mitigation strategies, guiding risk governance and alignment with regulatory expectations.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security Risk Analyst
Senior Information Security Risk Analyst

FM • Johnston (RI)

On-site
USD 110,000 - 150,000
Senior Third-Party Risk & Vendor Manager (Hybrid)
Senior Third-Party Risk & Vendor Manager (Hybrid)

Spectraforce Technologies • Westlake (TX)

Hybrid
USD 120,000 - 150,000
Senior Manager, Third-Party Risk & Vendor Security
Senior Manager, Third-Party Risk & Vendor Security

Jobtailor • Sterling (VA)

On-site
USD 140,000 - 190,000
Senior Manager, Third Party Risk Management
Senior Manager, Third Party Risk Management

Jobtailor • Sterling (VA)

On-site
USD 140,000 - 190,000
Senior Third-Party Risk Analyst – Security GRC
Senior Third-Party Risk Analyst – Security GRC

Anthropic • United States

Hybrid
USD 255,000 - 270,000
Competitive compensation
Generous vacation & parental leave
Equity donation matching
+1
Senior Vendor Risk Analyst - Cybersecurity & TPRM (Hybrid)
Senior Vendor Risk Analyst - Cybersecurity & TPRM (Hybrid)

Synergis • Atlanta (GA)

Hybrid
USD 80,000 - 100,000
Senior - Third-Party Cybersecurity & Risk Management
Senior - Third-Party Cybersecurity & Risk Management

TechDigital Group • Mount Laurel Township (NJ)

On-site
USD 90,000 - 120,000
TPRM Program Lead: AI-Driven Cyber Risk
TPRM Program Lead: AI-Driven Cyber Risk

Wolters Kluwer • Chicago (IL)

Hybrid
USD 118,300 - 207,400
Bonus eligible
Comprehensive benefits
Remote Senior Third-Party Risk & Security Analyst
Remote Senior Third-Party Risk & Security Analyst

NTT DATA North America • Plano (TX)

On-site
Medical insurance
Dental insurance
Vision insurance
+5
Information Security Vendor Management Analyst
Information Security Vendor Management Analyst

Centreville Bank • West Warwick (RI)

On-site
USD 75,000 - 100,000