Lead third-party and vendor security risk assessments and due diligence activities. Compliance ... Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
Lead third-party and vendor security risk assessments and due diligence activities. Compliance ... Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
Lead third-party and vendor security risk assessments and due diligence activities. Compliance ... Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
Lead third-party and vendor security risk assessments and due diligence activities. Compliance ... Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
AI Risk Threshold Analysis * AI system review and risk classification * Governance recommendations ... Vendor AI detection across the full vendor portfolio * FactSheet review, validation, and updates
AI Risk Threshold Analysis * AI system review and risk classification * Governance recommendations ... Vendor AI detection across the full vendor portfolio * FactSheet review, validation, and updates
Risk Manager
Atlanta, GA ยท On-site
$150K - $165K/yr
... vendor and proprietary tools โข Deliver written memos and presentations to committees and fund boards. Present portfolio risk and performance analysis to senior leaders across the firm. โข Have ...
Risk Manager
Atlanta, GA ยท On-site
$150K - $165K/yr
... vendor and proprietary tools โข Deliver written memos and presentations to committees and fund boards. Present portfolio risk and performance analysis to senior leaders across the firm. โข Have ...
Risk Manager
Atlanta, GA ยท Hybrid
$150K - $165K/yr
... vendor and proprietary tools Deliver written memos and presentations to committees and fund boards. Present portfolio risk and performance analysis to senior leaders across the firm. Have strong ...
Risk Manager
Atlanta, GA ยท Hybrid
$150K - $165K/yr
... vendor and proprietary tools Deliver written memos and presentations to committees and fund boards. Present portfolio risk and performance analysis to senior leaders across the firm. Have strong ...
Lead Actuarial Risk Modeler, Cyber
Duluth, GA ยท On-site
$100 - $130/hr
Cyber and Cat Analytics: Expert user of vendor cyber models and applied analytics supporting various functions in risk management and underwriting. * Research and Catastrophe Model Evaluations:
Lead Actuarial Risk Modeler, Cyber
Duluth, GA ยท On-site
$100 - $130/hr
Cyber and Cat Analytics: Expert user of vendor cyber models and applied analytics supporting various functions in risk management and underwriting. * Research and Catastrophe Model Evaluations:
Lead Actuarial Risk Modeler, Cyber
Duluth, GA ยท On-site
Cyber and Cat Analytics : Expert user of vendor cyber models and applied analytics supporting various functions in risk management and underwriting. * Research and Catastrophe Model Evaluations
Lead Actuarial Risk Modeler, Cyber
Duluth, GA ยท On-site
Cyber and Cat Analytics : Expert user of vendor cyber models and applied analytics supporting various functions in risk management and underwriting. * Research and Catastrophe Model Evaluations
Lead Actuarial Risk Modeler, Cyber
Duluth, GA ยท On-site
Cyber and Cat Analytics : Expert user of vendor cyber models and applied analytics supporting various functions in risk management and underwriting. * Research and Catastrophe Model Evaluations
Lead Actuarial Risk Modeler, Cyber
Duluth, GA ยท On-site
Cyber and Cat Analytics : Expert user of vendor cyber models and applied analytics supporting various functions in risk management and underwriting. * Research and Catastrophe Model Evaluations
GRC Manager
Atlanta, GA ยท Remote
Oversee third-party vendor risk management activities including assessments, due diligence, and ... Mentor and guide junior GRC analysts and contribute to team capability development * Stay current ...
Quick apply
GRC Manager
Atlanta, GA ยท Remote
Oversee third-party vendor risk management activities including assessments, due diligence, and ... Mentor and guide junior GRC analysts and contribute to team capability development * Stay current ...
... optimization, risk alignment, and governance maturity across the vendor portfolio. This role ... Support data-driven technology decision-making through analytics and reporting Automation ...
... optimization, risk alignment, and governance maturity across the vendor portfolio. This role ... Support data-driven technology decision-making through analytics and reporting Automation ...
IT Vendor Financials & Contract Manager
Atlanta, GA ยท On-site +1
... optimization, risk alignment, and governance maturity across the vendor portfolio. This role ... Support data-driven technology decision-making through analytics and reporting Automation ...
IT Vendor Financials & Contract Manager
Atlanta, GA ยท On-site +1
... optimization, risk alignment, and governance maturity across the vendor portfolio. This role ... Support data-driven technology decision-making through analytics and reporting Automation ...
Risk & Analytics Manager
Marietta, GA ยท On-site
Yamaha Motor Finance US has an exciting opportunity for a strong Risk & Analytics Manager to lead ... vendors, dealers, and internal stakeholders. * Collaborate cross-functionally on strategic ...
Risk & Analytics Manager
Marietta, GA ยท On-site
Yamaha Motor Finance US has an exciting opportunity for a strong Risk & Analytics Manager to lead ... vendors, dealers, and internal stakeholders. * Collaborate cross-functionally on strategic ...
Lead cybersecurity review of federal contracts, RFPs, client opportunities, software approvals, cloud service reviews, and third-party vendor risk management to support secure technology adoption.
Lead cybersecurity review of federal contracts, RFPs, client opportunities, software approvals, cloud service reviews, and third-party vendor risk management to support secure technology adoption.
Lead cybersecurity review of federal contracts, RFPs, client opportunities, software approvals, cloud service reviews, and third-party vendor risk management to support secure technology adoption.
Lead cybersecurity review of federal contracts, RFPs, client opportunities, software approvals, cloud service reviews, and third-party vendor risk management to support secure technology adoption.
Risk & Analytics Manager
Marietta, GA ยท On-site
Yamaha Motor Finance US has an exciting opportunity for a strong Risk & Analytics Manager to lead ... vendors, dealers, and internal stakeholders. * Collaborate cross-functionally on strategic ...
Risk & Analytics Manager
Marietta, GA ยท On-site
Yamaha Motor Finance US has an exciting opportunity for a strong Risk & Analytics Manager to lead ... vendors, dealers, and internal stakeholders. * Collaborate cross-functionally on strategic ...
Yamaha Motor Finance US has an exciting opportunity for a strong Risk & Analytics Manager to lead ... vendors, dealers, and internal stakeholders. * Collaborate cross-functionally on strategic ...
Yamaha Motor Finance US has an exciting opportunity for a strong Risk & Analytics Manager to lead ... vendors, dealers, and internal stakeholders. * Collaborate cross-functionally on strategic ...
Credit Risk Manager
Duluth, GA ยท On-site
... 3rd party data vendors on established and new initiatives. * Develop analysis to detect and ... risk analytics in consumer lending. * Excellent communication (verbal and written) with the ability ...
Credit Risk Manager
Duluth, GA ยท On-site
... 3rd party data vendors on established and new initiatives. * Develop analysis to detect and ... risk analytics in consumer lending. * Excellent communication (verbal and written) with the ability ...
Security Engineer
Atlanta, GA ยท On-site
The ideal candidate will conduct application and vendor risk assessments, produce risk remediation ... analytical skills Experience with cyber threat intelligence Excellent written and verbal ...
Security Engineer
Atlanta, GA ยท On-site
The ideal candidate will conduct application and vendor risk assessments, produce risk remediation ... analytical skills Experience with cyber threat intelligence Excellent written and verbal ...
Participants who complete the program will receive priority during the following internship recruiting season. * Introduction to Underwriting: Learn the basics of underwriting, risk analysis, and ...
Participants who complete the program will receive priority during the following internship recruiting season. * Introduction to Underwriting: Learn the basics of underwriting, risk analysis, and ...
Participants who complete the program will receive priority during the following internship recruiting season. * Introduction to Underwriting: Learn the basics of underwriting, risk analysis, and ...
Participants who complete the program will receive priority during the following internship recruiting season. * Introduction to Underwriting: Learn the basics of underwriting, risk analysis, and ...
Internship Vendor Risk Analyst information
What is an internship vendor risk analyst?
What are some common challenges internship vendor risk analysts face when assessing third-party vendors?
What are the key skills and qualifications needed to thrive as an internship vendor risk analyst, and why are they important?
What is the difference between Internship Vendor Risk Analyst vs Vendor Risk Analyst?
| Aspect | Internship Vendor Risk Analyst | Vendor Risk Analyst |
|---|---|---|
| Credentials | Typically pursuing or recent graduate, some certifications optional | Usually requires professional certifications like CRISC or CTP |
| Work Environment | Internship setting, entry-level tasks, learning-focused | Full-time role, responsible for ongoing risk assessments |
| Industry Usage | Common in finance, consulting, and tech companies for training | Established position in risk management departments across industries |
The Internship Vendor Risk Analyst is an entry-level role designed for students or recent graduates gaining experience in vendor risk management. In contrast, the Vendor Risk Analyst is a full-time professional responsible for ongoing risk assessments and mitigation strategies. While both roles involve evaluating vendor risks, the internship focuses on learning and support, whereas the analyst role involves independent decision-making and expertise.

Senior Manager - Cybersecurity & Governance, Risk & Compliance (GRC)
Atlanta, GA โข On-site
Full-time
Re-posted 28 days ago
Job description
At FORTNA, we believe in fostering a workplace that isn't just a job but a movement - a collective effort to redefine success and transform challenges into opportunities. "Join the Movement" encapsulates our commitment to a workplace culture that thrives on collaboration, celebrates diversity, and empowers every individual to contribute to something greater than themselves. Our Team. Our Passion. Our Approach.
Position Summary
We are seeking an experienced Senior Manager, Cybersecurity & Governance, Risk & Compliance (GRC) to lead and mature our enterprise cybersecurity governance, risk management, compliance, and security assurance programs. This role is responsible for ensuring cybersecurity risks are effectively identified, managed, and communicated while maintaining compliance with regulatory requirements and industry security frameworks.
The Senior Manager will partner closely with Security Operations, IT, Legal, Privacy, Internal Audit, business leaders, and third-party providers to strengthen the organization's security posture, drive risk-based decision-making, and support business objectives. This position combines strategic leadership with operational oversight across governance, compliance, risk management, incident management, and vendor security programs.
Key Responsibilities
Governance & Cybersecurity Strategy
- Lead the enterprise cybersecurity governance framework, including policies, standards, controls, and procedures.
- Drive cybersecurity strategy and roadmap initiatives aligned with business goals and risk tolerance.
- Provide leadership with visibility into cybersecurity posture, risks, compliance status, and program effectiveness.
- Lead governance committees and facilitate cross-functional cybersecurity initiatives.
Risk Management
- Conduct enterprise cybersecurity risk assessments and oversee risk treatment activities.
- Maintain the cybersecurity risk register and monitor remediation efforts.
- Evaluate emerging threats, vulnerabilities, and business impacts.
- Perform security reviews for new technologies, projects, and strategic initiatives.
- Lead third-party and vendor security risk assessments and due diligence activities.
Compliance & Security Assurance
- Manage cybersecurity compliance programs aligned with frameworks and regulations.
- Coordinate internal and external audits and oversee remediation of audit findings.
- Ensure security controls, documentation, and evidence repositories support ongoing compliance requirements.
- Monitor and report compliance performance and remediation progress.
Security Operations Oversight
- Partner with Security Operations teams and external providers to strengthen monitoring, threat detection, incident response, and vulnerability management programs.
- Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
- Participate in incident response exercises, tabletop simulations, and post-incident reviews.
- Drive continuous improvement of security controls, detection capabilities, and response processes.
- Monitor security metrics, KPIs, KRIs, and operational reporting.
Third-Party Risk & Security Vendor Management
- Manage relationships with MDR, MSSP, SOC-as-a-Service, and other cybersecurity service providers.
- Review vendor assessments, SOC reports, penetration test results, and compliance documentation.
- Ensure third-party providers meet security, compliance, and contractual obligations.
- Lead vendor risk remediation and ongoing security performance reviews.
Leadership & Stakeholder Engagement
- Lead and mentor cybersecurity governance, risk, and compliance professionals.
- Partner with IT, Security, Legal, Privacy, HR, Audit, and business leaders to address cybersecurity risks and compliance requirements.
- Present cybersecurity risks, compliance status, audit results, and strategic recommendations to senior leadership and governance committees.
- Serve as a trusted advisor on cybersecurity governance, risk management, and regulatory compliance.
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
- 12+ years of experience in cybersecurity, information security, risk management, compliance, audit, or security operations.
- 3+ years of leadership or people management experience.
- Experience supporting or partnering with Security Operations (SOC) teams and incident response programs.
- Strong knowledge of cybersecurity frameworks, governance models, and risk management methodologies.
- Experience leading compliance initiatives, audits, and remediation programs.
- Experience managing third-party security assessments and vendor risk programs.
- Strong executive communication, stakeholder management, and presentation skills.
Preferred Qualifications
- Experience with Microsoft security and compliance technologies, including Microsoft Purview and Microsoft Sentinel.
- Experience working with SIEM, SOAR, EDR, MDR, vulnerability management, and GRC platforms.
- Experience within regulated or compliance-driven industries.
- Master's degree in a related discipline.
The base salary range for this role is $133,200 to $199,800. This base salary range represents the low and high end of the base salary range for this position. Actual base salary offered will vary based on various factors including but not limited to location, level, job-related knowledge, skills, experience, and performance.
This job description describes the general nature and level of work expected of a person assigned to this position. All job requirements listed indicate the minimum level of knowledge, skills and/or ability deemed necessary to perform the job proficiently. Employees may be required to perform any other job-related duties as requested by their supervisor.
It is the policy of FORTNA and its affiliated companies to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, pregnancy or pregnancy-related condition, status with regard to public assistance, veteran status, citizenship status (if authorized to work in the U.S.), or any other characteristic protected by federal, state or local law. In addition, FORTNA will provide reasonable accommodations for qualified individuals with disabilities.