1

Internship Vendor Risk Analyst Jobs in Connecticut

Actuarial Analyst (CMH Health)

Windsor, CT · On-site

$60K - $136K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

... risk management, regulatory compliance, data analytics, and business transformation. Job ... Coordinate with Consultants, Managers, Professional Staff, and Interns as a project team to present ...

$22 - $24/hr

  • Retirement

... risk assessment, credit analysis, strategy, operational review/internal audit, and other corporate finance-based roles. Apply the knowledge you gained in the classroom to help solve problems while ...

New

$22 - $24/hr

  • Retirement

... risk assessment, credit analysis, strategy, operational review/internal audit, and other corporate finance-based roles. Apply the knowledge you gained in the classroom to help solve problems while ...

New

$22 - $24/hr

  • Retirement

... risk assessment, credit analysis, strategy, operational review/internal audit, and other corporate finance-based roles. Apply the knowledge you gained in the classroom to help solve problems while ...

New

$22 - $24/hr

  • Retirement

... risk assessment, credit analysis, strategy, operational review/internal audit, and other corporate finance-based roles. Apply the knowledge you gained in the classroom to help solve problems while ...

New

$22 - $24/hr

  • Retirement

... risk assessment, credit analysis, strategy, operational review/internal audit, and other corporate finance-based roles. Apply the knowledge you gained in the classroom to help solve problems while ...

New

$22 - $24/hr

  • Retirement

... risk assessment, credit analysis, strategy, operational review/internal audit, and other corporate finance-based roles. Apply the knowledge you gained in the classroom to help solve problems while ...

Showing results 41-60

Internship Vendor Risk Analyst information

What is an internship vendor risk analyst?

An Internship Vendor Risk Analyst is an entry-level position, often designed for students or recent graduates, that focuses on assessing and managing the risks associated with third-party vendors. Interns in this role help organizations evaluate the security, compliance, and reliability of vendors by analyzing documentation, conducting risk assessments, and supporting ongoing risk monitoring activities. They work under the guidance of senior analysts to ensure vendors meet company standards and regulatory requirements, gaining hands-on experience in risk management and vendor oversight.

What are the key skills and qualifications needed to thrive as an internship vendor risk analyst, and why are they important?

To thrive as an Internship Vendor Risk Analyst, you need a solid understanding of risk assessment, vendor management principles, and basic knowledge of compliance frameworks, often supported by coursework in finance, business, or information security. Familiarity with tools like Excel, risk management software, and platforms such as SAP Ariba or RSA Archer is typically expected. Attention to detail, analytical thinking, and effective communication are standout soft skills for gathering data and collaborating with internal stakeholders. These skills are crucial for identifying potential vendor risks, ensuring regulatory compliance, and supporting organizational decision-making.

What are some common challenges internship vendor risk analysts face when assessing third-party vendors?

Internship Vendor Risk Analysts often encounter challenges such as limited access to comprehensive vendor data, navigating complex regulatory requirements, and balancing multiple stakeholder interests. Interns must learn to evaluate risk with incomplete information and communicate findings clearly to both internal teams and vendors. Building strong analytical and communication skills, as well as understanding the organization's risk appetite, are key to overcoming these challenges and making meaningful contributions during the internship.

What is the difference between Internship Vendor Risk Analyst vs Vendor Risk Analyst?

AspectInternship Vendor Risk AnalystVendor Risk Analyst
CredentialsTypically pursuing or recent graduate, some certifications optionalUsually requires professional certifications like CRISC or CTP
Work EnvironmentInternship setting, entry-level tasks, learning-focusedFull-time role, responsible for ongoing risk assessments
Industry UsageCommon in finance, consulting, and tech companies for trainingEstablished position in risk management departments across industries

The Internship Vendor Risk Analyst is an entry-level role designed for students or recent graduates gaining experience in vendor risk management. In contrast, the Vendor Risk Analyst is a full-time professional responsible for ongoing risk assessments and mitigation strategies. While both roles involve evaluating vendor risks, the internship focuses on learning and support, whereas the analyst role involves independent decision-making and expertise.

What are the most commonly searched types of Vendor Risk Analyst jobs in Connecticut?

The most popular types of Vendor Risk Analyst jobs in Connecticut are:

What cities in Connecticut are hiring for Internship Vendor Risk Analyst jobs?

Cities in Connecticut with the most Internship Vendor Risk Analyst job openings:

Infographic showing various Internship Vendor Risk Analyst job openings in Connecticut as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 9% Part Time, 3% Temporary, and 3% Contract. Highlights an 87% Physical, 4% Hybrid, and 9% Remote job distribution.

Senior Cyber Security & GRC Engineer

Emergent Staffing

Hartford, CT • On-site

$130 - $180/hr

Other

Posted 14 days ago


Job description

**This position is a direct hire for one of our clients. Our ideal candidates live in the Hartford, Connecticut metro area. East coast & TX candidates will be considered with expectations of occasional travel to Connecticut. Eligible candidates must currently reside in the US and authorized to work in the US without visa sponsorship.**

Our client is seeking an experienced Cyber Security & GRC Engineer to lead and mature an enterprise-wide cybersecurity, governance, risk, and compliance (GRC) program across multiple organizations. This is a senior-level, hands‑on leadership role responsible for developing a unified security and compliance framework that supports NIST CSF 2.0, GDPR, and SOX IT General Controls requirements.

The ideal candidate combines strategic leadership with technical expertise, comfortably engaging executive stakeholders and auditors while also administering security tools, managing risks, implementing controls, and driving compliance initiatives. This role will serve as the owner of the enterprise GRC platform, Vanta, ensuring continuous monitoring, audit readiness, and program maturity across all entities.

Responsibilities
  • Own and mature the enterprise cybersecurity and risk management program across a multi‑entity organization.

  • Design, implement, and maintain a harmonized control framework supporting NIST CSF 2.0, GDPR, and SOX ITGC requirements.

  • Lead enterprise governance activities, including risk reviews, KPI/KRI reporting, executive reporting, and steering committee meetings.

  • Serve as the primary liaison for auditors, assessors, clients, and internal stakeholders regarding security and compliance matters.

  • Administer and optimize Vanta as the enterprise GRC system of record.

  • Configure controls, integrations, tests, evidence collection, continuous monitoring, and audit workflows within Vanta.

  • Develop, maintain, and manage enterprise security policies, standards, procedures, exceptions, and policy lifecycle processes.

  • Lead SOX ITGC readiness and compliance efforts.

  • Operationalize GDPR requirements, including records of processing, DPIAs, data subject rights management, vendor oversight, and breach response.

  • Conduct NIST CSF 2.0 assessments, maturity reviews, gap analyses, and remediation planning.

  • Manage enterprise risk assessments, risk registers, third‑party vendor risk programs, and remediation initiatives.

  • Oversee vulnerability management, patch coordination, access reviews, and technical security controls across cloud and on-premises environments.

  • Lead incident response activities, including preparation, detection, containment, recovery, and post‑incident reviews.

  • Provide security architecture guidance for new systems, integrations, cloud solutions, and data platforms.

  • Build and manage security awareness, phishing simulation, and employee training programs.

  • Partner with business and project teams to ensure security and privacy requirements are incorporated into solution design.

Required Qualifications
  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or equivalent experience.

  • 7+ years of information security, cybersecurity, or risk management experience with progression into senior program ownership responsibilities.

  • Hands‑on experience administering a GRC platform, preferably Vanta.

  • Experience implementing, operating, or auditing against NIST CSF, SOX ITGC, and GDPR requirements.

  • Demonstrated success developing and implementing security policies, controls, and governance programs.

  • One or more of the following certifications: CISSP, CISM, CRISC, or CISA.

  • Strong technical knowledge of cloud security, identity and access management, endpoint security, vulnerability management, logging, and security operations.

  • Excellent communication skills with the ability to engage technical teams, business leaders, auditors, and executives.

  • Proven ability to work independently, manage multiple priorities, and drive accountability across stakeholders.

Nice to Have Experience
  • Direct Vanta administration experience.

  • Experience supporting a publicly traded company and SOX Section 404 compliance requirements.

  • Experience leading security programs across multiple organizations or business entities.

  • ISO 27001 Lead Implementer or Lead Auditor certification.

  • SANS/GIAC certifications.

  • Construction, engineering, energy, power generation, or EPC industry experience.

  • Familiarity with AI/ML governance, data security, and secure AI deployment practices.

#J-18808-Ljbffr