2

Remote Vendor Risk Management Jobs in Massachusetts

IT Risk & Compliance Analyst

Andover, MA · On-site +1

$95K - $95K/yr

This position reports to the Manager, IT Risk & Compliance. This role is remote and may be based anywhere within the United States. Primary Job Duties and Responsibilities * Coordinate IT compliance, ...

... platform management, and defining operational excellence in dynamic, high-pressure settings ... remote vendor support mechanisms for infrastructure access. * Developing comprehensive business ...

Safety Scientist

Waltham, MA · On-site +1

$127K - $155K/yr

For a remote role, travel to headquarters may be required at discretion of management ... Risk Management: Develop and implement risk management plans to mitigate potential safety risks

Senior IT Manager (Boston)

Boston, MA · On-site +1

$150K - $190K/yr

Lead, mentor, and grow a high-performing IT team (help desk, sysadmins; onsite & remote) * Build ... vendor risk for IT suppliers Key Requirements: * Minimum of 8 years of experience in IT management, ...

Over 750 teammates are dispersed throughout Boston, Raleigh, New York, Lisbon, Singapore, and remote Position Overview Bitsight is a cyber risk management leader transforming how companies manage ...

IT Operations & Security Manager

Boston, MA · On-site +1

$110K - $135K/yr

Strong understanding of information security best practices and risk management. * Excellent ... Remote-friendly culture that empowers you to do your best work from anywhere. ⌚️ Flexible time ...

IT Operations & Security Manager

Boston, MA · On-site +1

$110K - $135K/yr

Strong understanding of information security best practices and risk management. * Excellent ... Remote-friendly culture that empowers you to do your best work from anywhere. Flexible time off ...

Support the development, implementation, and ongoing management of the company's enterprise risk ... Review and provide guidance on material contracts , including corporate agreements, vendor ...

Showing results 21-40

Remote Vendor Risk Management information

What is the difference between Remote Vendor Risk Management vs Remote Vendor Compliance Specialist?

AspectRemote Vendor Risk ManagementRemote Vendor Compliance Specialist
Primary FocusAssessing and mitigating risks associated with vendorsEnsuring vendors comply with policies and regulations
Key ResponsibilitiesRisk assessments, vendor evaluations, mitigation strategiesPolicy enforcement, compliance audits, documentation
Required CredentialsCertifications like CTPRP, vendor management experienceCompliance certifications like CCEP, audit experience
Work EnvironmentRemote, cross-functional teams, vendor interactionsRemote, regulatory and policy-focused tasks

While both roles involve working with vendors remotely, Remote Vendor Risk Management primarily focuses on identifying and reducing vendor-related risks, whereas Remote Vendor Compliance Specialists concentrate on ensuring vendors adhere to policies and regulations. Both roles require similar certifications and often collaborate to maintain vendor integrity and security.

What are some common challenges faced in a remote vendor risk management role, and how can they be addressed?

In a remote vendor risk management role, one common challenge is maintaining clear and consistent communication with both internal teams and external vendors, especially when operating across different time zones. Additionally, ensuring thorough due diligence and risk assessments without in-person site visits can be difficult. These challenges can be addressed by leveraging secure collaboration platforms, setting well-defined processes for virtual assessments, and building strong relationships through regular check-ins and transparent reporting. Proactive organization and adaptability are key to managing risks effectively in a remote environment.

What are the key skills and qualifications needed to thrive in remote vendor risk management?

To excel in Remote Vendor Risk Management, you need expertise in risk assessment, third-party due diligence, and compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management platforms (like Archer or LogicManager), knowledge of regulatory frameworks (such as GDPR or SOC 2), and relevant certifications (e.g., CRVPM, CTPRP) are typically required. Strong analytical thinking, effective communication, and the ability to collaborate virtually are valuable soft skills for this role. These abilities ensure organizations can identify, assess, and mitigate vendor-related risks while maintaining regulatory compliance in a remote work environment.
What are popular job titles related to Remote Vendor Risk Management jobs in Massachusetts? For Remote Vendor Risk Management jobs in Massachusetts, the most frequently searched job titles are:
What job categories do people searching Remote Vendor Risk Management jobs in Massachusetts look for? The top searched job categories for Remote Vendor Risk Management jobs in Massachusetts are:
What cities in Massachusetts are hiring for Remote Vendor Risk Management jobs? Cities in Massachusetts with the most Remote Vendor Risk Management job openings:
Infographic showing various Remote Vendor Risk Management job openings in Massachusetts as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 13% Part Time, and 3% Contract. Highlights an 87% Physical, 3% Hybrid, and 10% Remote job distribution.

IT Risk & Compliance Analyst

Watts Water Technologies AERCO Brand

North Andover, MA • Remote

$100K - $101K/yr

Full-time

Medical, Dental, Retirement, PTO

Re-posted yesterday


Job description

We're Watts. Together, we're reimagining the future of water.

We feel proud every day about what we do. We're all part of the same crucial mission, no matter what function we support -- it's to provide safe, clean water for the world, and to protect our planet's most valuable resource.

What we do:

For 150 years, Watts has built best-in-class products that are trusted bycustomers in residential and commercial settings across the world.We areat theforefront of innovation, working with cutting-edge technology to provide smart andconnected, sustainable water solutions for the future. Watts is a leading brand with aquality reputation - and we have a dynamic future ahead.

Scope of Position

The IT Risk & Compliance Analyst, as part of the Information Security organization, is responsible for supporting the execution of Watts' IT compliance, audit readiness, cybersecurity findings management, and risk management activities. This role coordinates audit and compliance efforts across Information Security, IT, Internal Audit, business stakeholders, and external assessors while supporting SOX IT General Controls (ITGCs), cybersecurity compliance obligations, and continuous process improvement initiatives.

This position reports to the Manager, IT Risk & Compliance. This role is remote and may be based anywhere within the United States.

Primary Job Duties and Responsibilities

  • Coordinate IT compliance, audit-related activities, and cybersecurity findings management efforts across Information Security, IT, Internal Audit, business control owners, and external assessors.

  • Support SOX IT General Controls (ITGC) activities, including planning, evidence collection, documentation review, auditor inquiries, testing support, and issue resolution.

  • Administer and maintain compliance, audit, findings, and risk management information within Optro (AuditBoard) and other systems of record.

  • Track audit findings, remediation plans, risk items, action plans, and stakeholder commitments to ensure timely completion and closure.

  • Support internal and external audits, assessments, walkthroughs, control testing activities, and evidence requests.

  • Assist with compliance and risk management activities related to cybersecurity disclosures, privacy requirements, data protection regulations, and external security assessments.

  • Partner with control owners, process owners, and risk owners to clarify compliance requirements, facilitate evidence collection, and support remediation activities.

  • Monitor timelines, milestones, dependencies, and deliverables across multiple concurrent compliance and audit workstreams.

  • Prepare organized documentation, status reports, metrics, dashboards, and management reporting materials to support decision-making and audit readiness.

  • Maintain accurate records of controls, risks, findings, remediation activities, and supporting evidence.

  • Assist in mapping controls, risks, findings, and supporting documentation to the NIST Cybersecurity Framework and other applicable regulatory frameworks.

  • Identify opportunities to improve compliance processes through workflow enhancements, reporting automation, evidence reuse, standardization, and other process improvements.

  • Support the development of compliance documentation, procedural guidance, stakeholder communications, and training materials as needed.

  • Collaborate with cross-functional teams to promote compliance awareness, accountability, and continuous improvement across the organization.

  • Maintain confidentiality and exercise discretion when handling sensitive compliance, audit, risk, and cybersecurity information.

  • Assume responsibility for other projects and duties as assigned by the Manager, IT Risk & Compliance or Company management.

  • Responsibility directly tied to Watts Value: Integrity, Accountability, Continuous Improvement, and Transparency.

Travel Requirements: Approximately 10% travel for meetings, audits, training, and other business-related activities.

Required Qualifications

  • Bachelor's degree in accounting, Finance, Information Systems, Business Administration, Risk Management, Compliance, Cybersecurity, or a related field; or equivalent combination of education and relevant work experience.

  • Three to five years of experience in IT compliance, IT audit, internal audit, risk management, controls, governance, risk and compliance (GRC), or information security compliance.

  • Working knowledge of IT General Controls (ITGCs) and SOX compliance requirements.

  • Experience utilizing GRC, audit management, risk management, ticketing, or evidence management platforms such as Optro (AuditBoard), ServiceNow GRC, Archer, MetricStream, Jira, or similar solutions.

  • Demonstrated ability to coordinate activities across Information Security, IT, Internal Audit, external assessors, and business stakeholders.

  • Strong organizational skills with the ability to manage multiple priorities, deadlines, and workstreams simultaneously.

  • Strong written and verbal communication skills with the ability to present information clearly and professionally.

  • Experience documenting processes, maintaining audit evidence, and supporting compliance activities in a regulated environment.

  • Ability to identify process improvement opportunities and contribute to increased efficiency and standardization.

  • Understanding of and adherence to applicable laws, codes, policies, regulations, and security practices and procedures.

  • Must successfully establish employment eligibility and satisfactorily complete background checks and required pre-employment testing as a condition of employment.

Preferred Qualifications

  • Direct experience administering Optro (AuditBoard), including workflows, evidence requests, testing documentation, issue management, risk tracking, dashboards, and reporting.

  • Familiarity with the NIST Cybersecurity Framework, NIST SP 800-53, ISO 27001, GDPR, U.S. privacy regulations, and SEC cybersecurity disclosure requirements.

  • Experience coordinating external cybersecurity assessments, penetration testing findings, vulnerability remediation efforts, risk reviews, or security exception processes.

  • Professional certification such as CISA, CRISC, CIA, CISSP, or active pursuit of one of these certifications.

  • Experience utilizing automation and reporting tools such as Power Automate, SQL, Python, APIs, or similar technologies.

  • Experience supporting compliance program implementations, procedural documentation development, stakeholder training, or governance initiatives.

General Applicable Company Competencies

  • Commitment to Watts' values of integrity, accountability, continuous improvement and innovation, and transparency.

  • Punctuality and dependability.

  • Ability to be flexible and adapt to changing work priorities and stressful conditions.

  • Adherence to all personnel policies, procedures, and standards of process as implemented by Watts.

  • Maintain productive and collaborative relationships with other Watts employees.

  • Adherence to Watts' seven cultural beliefs: Growth Mindset, Customer-Focused Innovation, Constant Communication, Clear Goals, Collaborate Globally, Be Inclusive, and Take Action.

Working Conditions

While performing the job duties, you will be working remotely in an office environment. You may be required to occasionally travel to and work in the office at the Andover, MA location for meetings, trainings, or as otherwise required by Company management.

Physical Requirements: Specific physical abilities required for this position include, but are not limited to:

  • Ability to remain seated at a desk or workstation for extended periods.

  • Ability to perform repetitive tasks like typing on a keyboard or using a mouse for extended periods.

  • Ability to physically move around the office, organize or transport files, packages, or other office-related materials.

  • Ability to read documents, use a computer, and perform data entry tasks.

  • Ability to communicate clearly with management and coworkers, particularly in meetings or phone calls.

  • Ability to operate standard office equipment such as computers, printers, phones, and copiers.

  • Ability to occasionally lift and carry light objects, such as office supplies, documents, or small equipment.

Pay Range

The expected salary range for this position is $84,000- $94,000 yearly. Actual compensation will be dependent upon individual skills, experience, qualifications, and applicable law.

Nothing in this job description restricts Watts' right to assign or reassign duties, responsibilities, and working hours/conditions to this position at any time. This position is "at will," which means that either the employee or Watts may terminate the employment relationship at any time, with or without notice, and for any lawful reason.

#LIRemote

Watts in it for you:

Please note that the following benefits apply only to permanent roles and do not apply to internship roles.

  • Competitive compensation based on your skills, qualifications and experience
  • Comprehensive medical and dental coverage, retirement benefits
  • Family building benefits, including paid maternity/paternity leave
  • 10 paid holidays and Paid Time Off
  • Continued professional development opportunities and educational reimbursement
  • Additional perks such as fitness reimbursements and employee discount programs
  • Learn more about our benefit offerings here: https://tapintowattsbenefits.com/

How we work:

At Watts, our culture is team-oriented and supportive. Employees here genuinely care about the quality of their work, and about each other. Our people are the heart of who we are and contribute to our longevity and continued success.

And this is a place where you can have a big career. No matter your role, there are opportunities for learning and development, and your daily contributions make a meaningful impact on the lives of people who use our products and on the future of water.

Watts is committed to equal employment opportunity. We follow a policy of administering all employment decisions and personnel actions without regard to race, color, religion, creed, sex, pregnancy, national origin, sexual orientation, age, physical or mental disability, genetic disposition or carrier status, marital status, military or veteran status, minorities, or any other category protected under applicable federal, state, or local law. Consistent with the obligations of state and federal law, Watts will make reasonable accommodations for qualified individuals with disabilities. Any employee who needs a reasonable accommodation should contact Human Resources.