2

Remote Vendor Risk Analyst Jobs in Georgia (NOW HIRING)

This is a fully remote position open to Contract or Full-Time candidates. Key Responsibilities ... Perform vendor and third-party risk assessments and document risk acceptance decisions * Build and ...

New

... a remote contract engagement. In this role, you will serve as the primary driver of the ... Oversee third-party vendor risk management activities including assessments, due diligence, and ...

New

Insider Risk Lead

Dallas, GA · On-site +1

$200K - $225K/yr

The position requires high judgment, confidentiality, and excellent analytical and communication ... Recruiting Vendor Disclosure Statement Brown & Brown does not accept unsolicited resumes from ...

Insider Risk Lead

Atlanta, GA · On-site +1

$200K - $225K/yr

The position requires high judgment, confidentiality, and excellent analytical and communication ... Recruiting Vendor Disclosure Statement Brown & Brown does not accept unsolicited resumes from ...

... Remote Skills / Qualifications Required: * 2 - 5 years of GIS project experience * BA/BS in GIS ... Experience with FEMA's Risk MAP and National Flood Insurance Program (strongly preferred)

Senior Actuarial Analyst

Atlanta, GA · Remote

$91K - $120K/yr

This is a remote position, open to candidates who reside in: Atlanta, GA. You will be fully remote ... Maintain and enhance core risk adjustment reporting and forecasting models, ensuring consistency ...

Partner with (coach) analyst i's, senior analysts and/or associates to complete assignments Our ... Remote -Atlanta, GA, Charlotte, NC, Nashville, TN, Raleigh, NC If this resonates with you, we ...

Atlanta, GA - 303 Peachtree Street No Full Remote/Telecommute. No Relocation Assistance. Following ... Prepare risk reporting content and supporting analysis for management routines, risk program ...

next page

Showing results 1-20

Remote Vendor Risk Analyst information

Can a risk analyst work remotely?

A remote Vendor Risk Analyst can work from home or any location with internet access, depending on the employer’s policies. Many organizations in this role utilize digital tools and require strong communication skills, making remote work feasible and common in the field.

What is a vendor risk analyst?

A vendor risk analyst is a professional responsible for assessing and managing risks associated with third-party vendors and suppliers. They evaluate vendor security, compliance, and performance, often using risk management tools and frameworks to ensure organizational safety and regulatory adherence.

Is risk analyst a good career?

A risk analyst role involves identifying and assessing potential threats to an organization, often requiring strong analytical skills and knowledge of industry regulations. It is considered a stable career with opportunities for advancement, especially in finance, insurance, and cybersecurity sectors. The role may require certifications such as FRM or CRM and proficiency with data analysis tools.

Is risk analyst an entry level job?

A risk analyst role can be entry level or require several years of experience, depending on the organization. Entry-level risk analyst positions typically require a bachelor's degree in finance, business, or a related field, and may involve basic data analysis skills and familiarity with risk management tools. Advanced roles may require certifications like FRM or CRM and more extensive experience.
What are the most commonly searched types of Vendor Risk Analyst jobs in Georgia? The most popular types of Vendor Risk Analyst jobs in Georgia are:
What are popular job titles related to Remote Vendor Risk Analyst jobs in Georgia? For Remote Vendor Risk Analyst jobs in Georgia, the most frequently searched job titles are:
What job categories do people searching Remote Vendor Risk Analyst jobs in Georgia look for? The top searched job categories for Remote Vendor Risk Analyst jobs in Georgia are:
What cities in Georgia are hiring for Remote Vendor Risk Analyst jobs? Cities in Georgia with the most Remote Vendor Risk Analyst job openings:

GRC Analyst

Merci Technologies - Talent

Atlanta, GA • Remote

Full-time

Posted 15 hours ago


Job description

About the Role
Merci Technologies is seeking a GRC Analyst to support the governance, risk, and compliance program for one of our enterprise clients. This role sits at the intersection of security, audit, and business operations, translating complex regulatory and framework requirements into practical controls that teams can actually implement and sustain. You will be the person who knows where the control gaps are, what the auditors are going to ask for, and how to keep the organization audit-ready year round rather than scrambling at assessment time.

The work is varied and visible. In a given month you might run a control assessment against NIST CSF, prepare evidence for a SOC 2 examination, complete a vendor risk review for a new SaaS purchase, and brief stakeholders on the status of open findings. You will maintain the policy library, track risk to closure, and act as a trusted advisor to engineering and business teams who need to understand what compliance requires of them. This is a strong fit for someone who is organized, detail-driven, and comfortable holding teams accountable to commitments. This is a fully remote position open to Contract or Full-Time candidates.

Key Responsibilities

  • Conduct control assessments and gap analyses against frameworks including NIST CSF, NIST 800-53, ISO 27001, SOC 2, and CMMC
  • Plan and support internal and third-party audits, including scoping, evidence collection, and walkthroughs
  • Track audit and assessment findings to remediation and closure, escalating risks where needed
  • Develop, maintain, and version-control security policies, standards, and procedures
  • Perform vendor and third-party risk assessments and document risk acceptance decisions
  • Build and maintain the risk register and report risk posture to leadership and stakeholders
  • Support regulatory, customer, and compliance reporting requests
  • Help operationalize new framework or regulatory requirements as they emerge

Required Qualifications

  • 3 to 5 years of experience in governance, risk, and compliance, IT audit, or information security
  • Working knowledge of one or more frameworks: NIST CSF, NIST 800-53, ISO 27001, SOC 2, or CMMC
  • Demonstrated experience supporting audit cycles and risk assessments end to end
  • Ability to read a control requirement and translate it into clear, actionable guidance
  • Strong documentation, organization, and stakeholder communication skills

Preferred Qualifications

  • CISA, CRISC, ISO 27001 Lead Auditor, or CISSP certification
  • Hands-on experience with GRC platforms such as Archer, ServiceNow GRC, or OneTrust
  • Familiarity with defense, healthcare, or financial-services compliance requirements
  • Experience with CMMC readiness and assessment preparation

What You Will Bring
You are the kind of person who reads the fine print and keeps the spreadsheet honest. You can push a remediation owner for an update without burning the relationship, and you can explain to a busy engineer why a control matters in language they care about. You treat compliance as a way to make the organization genuinely more secure, not just to pass an audit.