Vendor Risk Specialist
Salt Lake City, UT
A rapidly growing financial technology organization is seeking a Vendor Risk Specialist to join its Information Security team. This individual will be part of a small team responsible for evaluating and managing risks associated with third-party vendors and service providers.
The role focuses on assessing information security, operational, financial, regulatory, and business continuity risks. The successful candidate will work closely with internal stakeholders and external vendors to gather documentation, evaluate controls, identify risks, and support remediation efforts.
Responsibilities
- Conduct third-party vendor risk assessments, including reviews of security controls, policies, procedures, and independent audit reports.
- Partner with internal business owners and external vendors to collect required documentation and responses to due diligence questionnaires.
- Evaluate vendor security programs and recommend mitigating or compensating controls when necessary.
- Track identified risks and remediation activities with vendors and internal stakeholders.
- Escalate unresolved or high-risk findings to leadership for review and acceptance.
- Maintain reporting and metrics related to the vendor risk management program.
- Support broader governance, risk, and compliance initiatives as needed.
Qualifications
- 5+ years of experience in technology, information security, risk management, or a related field.
- 2โ3 years of experience specifically focused on vendor risk management, third-party risk, or security assessments.
- Bachelor's degree in Computer Science, Information Security, Information Systems, or a related discipline.
- Familiarity with vendor governance, risk, and compliance (GRC) platforms.
- Understanding of security frameworks such as ISO 27001, NIST, or comparable standards.
- Knowledge of regulatory, privacy, and compliance requirements impacting third-party risk management.
- Experience assessing cloud-based service providers and modern technology environments.
- Strong analytical, organizational, and communication skills.
- Detail-oriented with the ability to manage multiple assessments simultaneously.
- Self-motivated with a desire to continuously learn and develop expertise.
Compensation & Benefits
The organization offers a competitive compensation package that may include base salary, annual bonus opportunities, long-term incentive programs, and a comprehensive benefits package. Benefits include healthcare coverage, retirement savings programs, paid time off, parental leave, and additional wellness resources.
Work Environment
This position works in office Monday through Thursday with the option of Fridays at home.
PrincePerelson & Associates is an Equal Opportunity Employer and complies with all provisions of the EEO and ADA laws. We do not discriminate in our employment practices on the basis of race, color, religion, national origin, sex (including sexual orientation and sexual identity), age, genetic information, parental status, military status, disability, or any non-merit-based factors or other federal, state, or locally protected class. All applicants applying for U.S. job openings must be authorized to work in the United States.