1

Operational Risk Jobs in Connecticut (NOW HIRING)

Vendor Risk Manager Dalio Family Office Dalio Family Office Overview: The Dalio Family Office (DFO) supports Barbara and Ray Dalio and their family in their ventures, investments, and philanthropic ...

Vendor Risk Manager Dalio Family Office Dalio Family Office Overview: The Dalio Family Office (DFO) supports Barbara and Ray Dalio and their family in their ventures, investments, and philanthropic ...

Vendor Risk Manager Dalio Family Office Dalio Family Office Overview: The Dalio Family Office (DFO) supports Barbara and Ray Dalio and their family in their ventures, investments, and philanthropic ...

Vendor Risk Manager Dalio Family Office Dalio Family Office Overview: The Dalio Family Office (DFO) supports Barbara and Ray Dalio and their family in their ventures, investments, and philanthropic ...

This Vice President, Enterprise Risk role is a key member of the Enterprise Risk Management (ERM) team. Primary responsibilities include managing execution of the enterprise-wide Risk Appetite ...

Senior Risk Analyst

Hartford, CT ยท On-site

$107K - $127K/yr

Enterprise Risk Management (ERM) operates as an independent second line of defense, responsible for maintaining and enforcing Talcott's risk management framework across all subsidiaries. One of our ...

Showing results 41-60

Operational Risk information

See Connecticut salary details

$37.1K

$81.7K

$147.4K

How much do operational risk jobs pay per year?

As of Aug 14, 2026, the average yearly pay for operational risk in Connecticut is $81,658.00, according to ZipRecruiter salary data. Most workers in this role earn between $62,300.00 and $99,400.00 per year, depending on experience, location, and employer.

How does an operational risk professional typically interact with other departments within an organization?

Operational Risk professionals work closely with a variety of teams, such as compliance, internal audit, IT, and business units, to identify and assess risks that could impact the organization's operations. They often facilitate risk assessments, lead training sessions on risk awareness, and collaborate on developing controls and mitigation strategies. Building strong relationships and communicating effectively across departments is essential, as much of the role involves influencing others and ensuring risk management practices are integrated into daily operations.

What is operational risk?

Operational risk refers to the potential for losses resulting from inadequate or failed internal processes, people, systems, or external events. Unlike credit or market risk, operational risk is related to the day-to-day operations of a business and can include issues such as fraud, system failures, natural disasters, or human error. Managing operational risk is essential for organizations to ensure business continuity, regulatory compliance, and to protect their reputation and assets.

What is the difference between Operational Risk vs Credit Analyst?

AspectOperational RiskCredit Analyst
Required CredentialsCertifications like FRM, PRM often preferredCertifications such as CFA, credit-specific courses
Work EnvironmentBanking, financial institutions, risk management departmentsBanking, lending institutions, financial services
Employer & Industry UsageUsed across financial sectors to manage risksUsed in lending to assess creditworthiness
Comparison Search IntentUnderstanding risk management rolesAssessing credit risk and loan eligibility

Operational Risk focuses on identifying and mitigating risks within business operations, including processes, systems, and people. Credit Analysts evaluate the creditworthiness of individuals or companies to determine loan eligibility. While both roles are within the financial industry, Operational Risk professionals concentrate on risk management frameworks, whereas Credit Analysts focus on credit assessment and lending decisions.

What are the key skills and qualifications needed to thrive as an operational risk professional, and why are they important?

To thrive as an Operational Risk professional, you need strong analytical skills, risk assessment expertise, and a background in finance, business, or risk management, often supported by relevant certifications such as FRM or ORM. Familiarity with risk management frameworks, data analysis tools, and governance, risk, and compliance (GRC) systems is typically required. Exceptional communication, attention to detail, and problem-solving abilities are crucial soft skills for identifying risks and collaborating across departments. These skills ensure that operational risks are effectively identified, assessed, and mitigated, protecting the organization from potential losses and regulatory issues.

What are the most commonly searched types of Operational Risk jobs in Connecticut?

The most popular types of Operational Risk jobs in Connecticut are:

What are popular job titles related to Operational Risk jobs in Connecticut?

For Operational Risk jobs in Connecticut, the most frequently searched job titles are:

What job categories do people searching Operational Risk jobs in Connecticut look for?

The top searched job categories for Operational Risk jobs in Connecticut are:

What cities in Connecticut are hiring for Operational Risk jobs?

Cities in Connecticut with the most Operational Risk job openings:

Infographic showing various Operational Risk job openings in Connecticut as of August 2026, with employment types broken down into 83% Full Time, 11% Part Time, 3% Temporary, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $81,658 per year, or $39.3 per hour.

Vendor Risk Manager

Dalio Family Office

Westport, CT โ€ข Hybrid

Full-time

Dental, Vision, Life, Retirement, PTO

Re-posted 12 days ago


Job description

Vendor Risk Managerย 

Dalio Family Officeย 

Dalio Family Office Overview:ย ย 

The Dalio Family Office (DFO) supports Barbara and Ray Dalio and their family in their ventures, investments, and philanthropic efforts under Dalio Philanthropies, which includes OceanX, Dalio Education, Endless Network, and the Beijing Dalio Foundation. The core of the DFO's culture is built around meaningful work and meaningful relationships and the family's commitment to giving back. The office is headquartered in Westport, CT with regional offices in New York City, Singapore, and Abu Dhabi.ย 

Position Summary:ย ย 

The Vendor Risk Manager owns the end-to-end third-party risk lifecycle, onboarding, diligence, monitoring, and exit across a high-volume, diverse vendor portfolio. You will synthesize risk across cybersecurity, AI, privacy, financial, and AML/CFT/sanctions domains into clear, actionable risk positions, performing structured threat modeling for high-exposure vendors. ย 

Day-to-day responsibilities would include a combination of the following:ย 

  • Own the VRM program end-to-end: strategy, policy, procedure, workflow, tooling, metrics, and executive reporting for CISO/CRO/board visibility.
  • Lead holistic vendor risk assessments across cybersecurity, AI risk, privacy, financial, AML/CFT/sanctions.
  • Document residual risk acceptances with named accountable executives and time-boxed review dates; coordinate with IT, Legal, Finance, and Compliance as appropriate.ย 
  • Evaluate and monitor vendor security controls based on data sensitivity and business criticality, leveraging industry frameworks and evidence such as SOC 2, ISO 27001, penetration testing, and security assessments.ย 
  • Conduct structured threat models (STRIDE, PASTA) for high risk vendors, and document findings as durable artifacts informing contracting, monitoring, and exit planning.ย 
  • Translate threat model outputs into concrete, testable control requirements drawing from OWASP (ASVS, API Security Top 10, LLM/Agentic Top 10), NIST (SP 800-53, SP 800-161, CSF 2.0, SP 800-207), and MITRE ATT&CK; scale requirements to vendor tier.ย 
  • Partner with Legal to translate identified risks into enforceable contractual requirements.
  • Apply FAIR or comparable quantitative methods for high-impact vendor decisions, expressing cyber risk in loss-exposure terms that resonate with senior leadership.ย 
  • Advise IT, Engineering and business teams on vendor integration architecture (SSO/SCIM, OAuth, conditional access, DLP, segmentation, BYOK, VPC peering) and maintain approved reference patterns.
  • Drive automation and tooling maturity to handle high vendor volume without proportional headcount growth; produce program dashboards tracking throughput, cycle time, recertification compliance, and remediation aging.ย 

The ideal candidate will possess the following knowledge, skills, attributes, and values:ย 

  • Expert knowledge of third-party/vendor risk management ย 
  • Strong risk assessment and analytical skills ย 
  • Technical understanding of enterprise security architecture ย 
  • Excellent communication and stakeholder management skills ย 
  • Proven ability to lead and optimize vendor risk programs ย 

Illustrative Benefits:ย ย ย ย ย 

  • 100% company paid medical premiums ย 
  • 17 company paid holidays ย 
  • Friday summer hours ย 
  • ย Monthly community happy hoursย ย 
  • Hybrid work environment ย 
  • ย Free catered food services for in-office daysย ย 
  • Generous PTO offeringย  ย 
  • Casual dress code ย 
  • 150% 401(k) match up to $7,500 and 100% match above $7,500 ($15k match limit) ย 
  • Gym reimbursement, back up childcare services, insurance, financial, and legal services, and much more! ย 

Qualifications:ย 

  • Bachelor's degree in Information Security, Risk Management, Computer Science, Cybersecurity, or a related discipline.ย 
  • At least 7 years of progressive experience across vendor risk management, cybersecurity architecture, security engineering, GRC, audit, or related fields. ย 
  • Experience managing the full third-party/vendor risk lifecycle, including vendor onboarding, due diligence, risk assessments, continuous monitoring, recertification, remediation tracking, and vendor exit planning, with at least 2 years owning an end-to-end TPRM program. ย 
  • Strong technical knowledge of cybersecurity frameworks, standards, and methodologies including NIST, ISO 27001/27002, OWASP, MITRE ATT&CK, Shared Assessments, threat modeling approaches (STRIDE/PASTA), and risk management practices. ย 
  • Hands-on experience evaluating enterprise security controls, cloud and integration architectures, SOC 2 Type II reports, ISO certifications, penetration testing results, data protection requirements, and third-party security risks across complex technology environments. ย 
  • Ability to communicate complex technical and risk concepts to executive stakeholders, collaborate effectively across business functions
  • 10% travel as required based on business needs.ย 

Compensation:ย 

Compensation for the role includes a competitive salary in the range from $175,000 -$260,000 (inclusive of a merit-based bonus, dependent on years of experience, level of education obtained, as well as applicable skillset) and an excellent benefits package, including paid time off ranging from 15 to 25 days based on years of service, paid sick and safe leave, dental, vision, life and disability insurance, paid parental time off, birth mother recovery pay, sick family member pay, parental ramp back up program, gym reimbursement and generous employer match for 401k.ย 

Please note we are unable to provide immigration sponsorship for this position.ย 

At the DFO, we believe our biggest asset is our people. We are proud to be an equal opportunity employer, hiring and developing individuals from diverse backgrounds and experiences to add to our collaborative culture. The DFO treats all candidates and employees with respect and does not discriminate in our recruiting, hiring, and promoting processes and general treatment during employment, including on the basis of actual or perceived race, creed, color, religion, sex, age, sexual orientation, gender identity and/or expression, alienage or national origin, ancestry, citizenship status, marital status, veteran status, or disability.ย