2

Remote Vendor Risk Analyst Jobs in California (NOW HIRING)

Remote within the United States. Occasional travel for client engagements or firm offsites at ... Risk Analyst Contract Application." Applications are reviewed on a rolling basis.

Remote within the United States. Occasional travel for client engagements or firm offsites at ... Risk Analyst Contract Application." Applications are reviewed on a rolling basis.

Analyze risk data to uncover recurring issues, trends, and root causes, and recommend changes to ... Employee is not required to be in or near an office frequently and works from a designated remote ...

Sr. Analyst High Risk EDD

Monterey Park, CA · Remote

$25.85 - $33.65/hr

The Senior High Risk EDD Analyst has an understanding of key topics within the high risk client lifecycle management process, including: Source of Wealth corroboration, negative news and adverse ...

Sr. Analyst High Risk EDD

Monterey Park, CA · Remote

$25.85 - $33.65/hr

The Senior High Risk EDD Analyst has an understanding of key topics within the high risk client lifecycle management process, including: Source of Wealth corroboration, negative news and adverse ...

Corporate Insurance Analyst

Goleta, CA · On-site +1

$80K - $90K/yr

Corporate Insurance Analyst Reports to: Sr. Manager, Corporate Insurance Location ... California Hybrid (Remote + Occasional On-Site) The Role Deckers' Risk Management team protects our ...

Corporate Insurance Analyst

Goleta, CA · On-site +1

$80K - $90K/yr

California Hybrid (Remote + Occasional On-Site) The Role Deckers' Risk Management team protects our ... Maintain and analyze risk-related data including schedules of values (SOVs), COPE data, and ...

... risk landscape. This role will cover Tuesday-Saturday 9:00 am-5:00 pm local time. * Review abuse ... Serve as a consultative partner with our vendor team and provide expertise for processing all types ...

next page

Showing results 1-20

Remote Vendor Risk Analyst information

Can a risk analyst work remotely?

A remote Vendor Risk Analyst can work from home or any location with internet access, depending on the employer’s policies. Many organizations in this role utilize digital tools and require strong communication skills, making remote work feasible and common in the field.

What is a vendor risk analyst?

A vendor risk analyst is a professional responsible for assessing and managing risks associated with third-party vendors and suppliers. They evaluate vendor security, compliance, and performance, often using risk management tools and frameworks to ensure organizational safety and regulatory adherence.

Is risk analyst a good career?

A risk analyst role involves identifying and assessing potential threats to an organization, often requiring strong analytical skills and knowledge of industry regulations. It is considered a stable career with opportunities for advancement, especially in finance, insurance, and cybersecurity sectors. The role may require certifications such as FRM or CRM and proficiency with data analysis tools.

Is risk analyst an entry level job?

A risk analyst role can be entry level or require several years of experience, depending on the organization. Entry-level risk analyst positions typically require a bachelor's degree in finance, business, or a related field, and may involve basic data analysis skills and familiarity with risk management tools. Advanced roles may require certifications like FRM or CRM and more extensive experience.
What are the most commonly searched types of Vendor Risk Analyst jobs in California? The most popular types of Vendor Risk Analyst jobs in California are:
What job categories do people searching Remote Vendor Risk Analyst jobs in California look for? The top searched job categories for Remote Vendor Risk Analyst jobs in California are:
What cities in California are hiring for Remote Vendor Risk Analyst jobs? Cities in California with the most Remote Vendor Risk Analyst job openings:
Security Analyst/Third-Party Risk Management (TPRM) - remote PST

Security Analyst/Third-Party Risk Management (TPRM) - remote PST

Irvine Technology Corporation (ITC)

Long Beach, CA • Remote

$60 - $70/hr

Other

This job post has expired today. Applications are no longer accepted.


Job description

Third-Party Risk Management (TPRM) Security Analyst

Our client is seeking a sharp and driven TPRM Security Analyst to join their Information Security GRC team in a remote capacity. This is a high-impact contract role where you will play a critical part in protecting the organization by assessing vendor cybersecurity posture, managing compliance with key regulatory frameworks, and driving continuous improvement of the vendor risk program. If you thrive in a fast-paced environment, enjoy cross-functional collaboration, and bring deep expertise in third-party risk lifecycle management, this is an opportunity to make a meaningful difference.

As part of our process after applying, you may receive an invitation from our AI Recruiter Avery for a short conversation that lets you share more about your background beyond your resume. For questions, contact .

Job Type: 6-month contract-to-hire

Location: Remote - PST Hours Required

Compensation: This job is expected to pay about $60-70/hr

No Visa Sponsorship Available for this role

What You'll Do:


  • Conduct end-to-end vendor information security assessments, reviewing questionnaires (SIG, CAIQ, custom IRQs), evaluating evidence, assigning risk levels, and tracking remediations to closure.
  • Administer and automate TPRM workflows within ServiceNow GRC, including vendor onboarding, risk scoring, dashboards, and executive reporting for the Vendor Risk Committee.
  • Perform ongoing vendor monitoring, manage vendor records in the contract lifecycle system, and analyze emerging cyber threats to strengthen supplier risk management.
  • Maintain the TPRM risk register and support preparation of materials for internal and external audits, including SOC 2, HITRUST, HIPAA, and PCI.
  • Collaborate cross-functionally with Legal, Procurement, Compliance, and Business Units to embed security requirements into RFPs, contracts, and vendor onboarding processes.

What Gets You the Job:


  • 5+ years in Information Security with 5+ years dedicated to TPRM or InfoSec GRC, including hands-on end-to-end vendor risk lifecycle management.
  • Demonstrated experience administering and automating TPRM workflows in ServiceNow GRC, including risk scoring and vendor onboarding.
  • Working knowledge of NIST CSF, HITRUST CSF, SOC 2, ISO 27001, and HIPAA Security Rule, with an understanding of PHI/ePHI handling and BAA obligations.
  • Experience with vendor security questionnaires (SIG, CAIQ) and evidence-based vendor audits, including CVSS/CCSS vulnerability scoring.
  • Strong communication and stakeholder management skills with the ability to present risk findings to leadership and collaborate across legal, procurement, and clinical teams.

Irvine Technology Corporation (ITC) connects top talent with exceptional opportunities in IT, Security, Engineering, and Design. From startups to Fortune 500s, we partner with leading companies nationwide. Our AI recruiter, Avery helps streamline the first step of your journey-so we can focus on what matters most: helping you grow. Join us. Let us ELEVATE your career!


Irvine Technology logo

About Irvine Technology

Sourced by ZipRecruiter

Since 2000, our Women owned company has been delivering what organizations truly need diverse, talented professionals who will take their business to new heights. ITC serves our clients and elevates our candidates through a distinct and unified team together we achieve unrivaled goals and live life to the fullest. With a proven record of creating a strong pipeline of talented candidates, Our team uplifts confident and capable Technology Specialists from one of a kind backgrounds for contract and full time opportunities across the nation.

Industry

Recruiting and staffing services

Company size

51 - 200 Employees

Headquarters location

Irvine, CA, US

Year founded

2000

Social media