Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
AAA

Third Party Vendor Risk Management Specialist

AAA

Third-party vendor risk specialist assessing suppliers and strengthening controls for AAA insurer CSAA Insurance Group. Reducing enterprise vendor risk through due diligence, mitigation, contracts, reporting, and training.

Posted 9/11/2026full-timeRemote • Alabama, Arizona, California, Colorado, Connecticut, District of Columbia, Florida, Idaho, Illinois, Iowa, Kansas, Kentucky, Louisiana, Maine, Maryland, Massachusetts, Minnesota, Mississippi, Missouri, Montana, Nevada, New Hampshire, New Jersey, New Mexico, New York, North Carolina, Ohio, Oklahoma, Oregon, Pennsylvania, Rhode Island, South Carolina, South Dakota, Tennessee, Texas, Utah, Vermont, Virginia, Washington, West Virginia, Wisconsin • 🇺🇸 United StatesMid-LevelSenior💰 $105,345 - $140,550 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Third Party Risk Management, including risk assessments, compliance with legal and regulatory requirements, and the development of risk mitigation strategies. Strong communication and organizational skills are essential for managing supplier relationships and presenting findings to stakeholders.

Highest-signal resume keywords
Third Party Risk ManagementRisk AssessmentCompliance ManagementSupplier ProfilingInformation Security

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Risk Mitigation StrategiesDue DiligenceRegulatory ComplianceRisk GovernanceInformation SecurityCyber SecurityBusiness ContinuityEnterprise Risk ManagementProcurement FunctionsTraining Development
Soft Skills
Communication SkillsRelationship-BuildingOrganizational SkillsSelf-Directed WorkTeam Collaboration
Tools & Technologies
AravoArcherServiceNowCoupa Risk Assess
Industry Keywords
Property Casualty InsuranceLegal ComplianceRisk DomainsSupplier ControlsRisk Posture

Tech Stack

Tools & technologies
Cyber SecurityServiceNow

About the role

Key responsibilities & impact
  • Assess risks introduced by third-party supplier relationships and evaluate supplier controls against CSAA tolerance
  • Perform supplier profiling, assessments, and issues management using established processes and criteria
  • Conduct comprehensive third-party risk assessments across multiple risk domains
  • Perform due diligence to ensure suppliers meet organizational standards and regulatory requirements
  • Develop and implement risk mitigation strategies and controls
  • Collaborate with Legal and Procurement to include appropriate risk mitigation provisions in contracts
  • Prepare and present third-party risk reports to senior management and stakeholders
  • Communicate findings, recommendations, and mitigation strategies across the organization
  • Monitor relevant laws, regulations, and industry best practices
  • Ensure compliance with applicable regulations and address changes or updates
  • Develop and deliver training on third-party risk policies, procedures, and best practices
  • Support senior executives in adopting a more rigorous risk posture and reducing the third-party vendor risk portfolio

Requirements

What you’ll need
  • Related bachelor’s degree or equivalent combination of education and experience required
  • 6+ years of related experience
  • Minimum of 4+ years’ experience in Third Party Risk Management or information security
  • Self-directed and able to work independently and within a team
  • Communication and relationship-building skills with internal business partners
  • Organizational skills to manage a high volume of simultaneous assessments
  • Knowledge and experience with third-party risk management governance, policies, and organizational structures
  • Understanding of relevant legal and compliance requirements
  • Experience or education in information security, cyber security, IT architecture, business continuity, legal, enterprise risk management, or another relevant risk domain
  • Experience in or knowledge of procurement functions
  • Experience in the property casualty insurance industry
  • Familiarity with Aravo, Archer, ServiceNow, Coupa Risk Assess, or similar platform
  • Ability to travel as needed, including for divisional/team meetings and other in-person meetings
  • Authorization to work indefinitely in the United States
  • Must not require immigration support or visa sponsorship

Benefits

Comp & perks
  • Annual bonus eligibility for most roles
  • 401(k) with a company match
  • Career growth, leadership and mentoring support
  • Development opportunities
  • Remote-first flexible workplace
  • Flexibility to work from various locations including CSAA offices
  • Employee resource groups and volunteering opportunities
  • Reasonable accommodations for qualified applicants and employees with disabilities or other limitations