2

Remote Vendor Risk Management Jobs in Highlands Ranch, CO

Senior Security Engineer

Lafayette, CO · On-site +1

$119K - $163K/yr

Lead security assessments for new vendors, SaaS platforms, cloud services, and third-party integrations; administer third party vendor management (TPVM) and support ongoing vendor risk management.

Senior Security Engineer

Lafayette, CO · Remote

$117K - $160K/yr

Lead security assessments for new vendors, SaaS platforms, cloud services, and third-party integrations; administer third party vendor management (TPVM) and support ongoing vendor risk management.

Remote AI Data Architect - Public Sector Location: Preferably Colorado Duration: 6 months We are ... Risk Management: Identify and mitigate risks, including data privacy issues, algorithmic bias, and ...

Cyber and Tech Risk UW SR

Arvada, CO · On-site +1

$100K - $119K/yr

Position will be Remote - US based About the Role The Senior Cyber & Technology Risk Underwriter is ... This role builds and manages strong broker relationships, provides market insight in a rapidly ...

Showing results 21-40

Remote Vendor Risk Management information

See Highlands Ranch, CO salary details

$54.1K

$117.1K

$178.4K

How much do remote vendor risk management jobs pay per year?

As of Aug 15, 2026, the average yearly pay for remote vendor risk management in Highlands Ranch, CO is $117,090.00, according to ZipRecruiter salary data. Most workers in this role earn between $94,500.00 and $135,400.00 per year, depending on experience, location, and employer.

What is the difference between Remote Vendor Risk Management vs Remote Vendor Compliance Specialist?

AspectRemote Vendor Risk ManagementRemote Vendor Compliance Specialist
Primary FocusAssessing and mitigating risks associated with vendorsEnsuring vendors comply with policies and regulations
Key ResponsibilitiesRisk assessments, vendor evaluations, mitigation strategiesPolicy enforcement, compliance audits, documentation
Required CredentialsCertifications like CTPRP, vendor management experienceCompliance certifications like CCEP, audit experience
Work EnvironmentRemote, cross-functional teams, vendor interactionsRemote, regulatory and policy-focused tasks

While both roles involve working with vendors remotely, Remote Vendor Risk Management primarily focuses on identifying and reducing vendor-related risks, whereas Remote Vendor Compliance Specialists concentrate on ensuring vendors adhere to policies and regulations. Both roles require similar certifications and often collaborate to maintain vendor integrity and security.

What are some common challenges faced in a remote vendor risk management role, and how can they be addressed?

In a remote vendor risk management role, one common challenge is maintaining clear and consistent communication with both internal teams and external vendors, especially when operating across different time zones. Additionally, ensuring thorough due diligence and risk assessments without in-person site visits can be difficult. These challenges can be addressed by leveraging secure collaboration platforms, setting well-defined processes for virtual assessments, and building strong relationships through regular check-ins and transparent reporting. Proactive organization and adaptability are key to managing risks effectively in a remote environment.

What are the key skills and qualifications needed to thrive in remote vendor risk management?

To excel in Remote Vendor Risk Management, you need expertise in risk assessment, third-party due diligence, and compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management platforms (like Archer or LogicManager), knowledge of regulatory frameworks (such as GDPR or SOC 2), and relevant certifications (e.g., CRVPM, CTPRP) are typically required. Strong analytical thinking, effective communication, and the ability to collaborate virtually are valuable soft skills for this role. These abilities ensure organizations can identify, assess, and mitigate vendor-related risks while maintaining regulatory compliance in a remote work environment.

What job categories do people searching Remote Vendor Risk Management jobs in Highlands Ranch, CO look for?

The top searched job categories for Remote Vendor Risk Management jobs in Highlands Ranch, CO are:

What cities near Highlands Ranch, CO are hiring for Remote Vendor Risk Management jobs?

Cities near Highlands Ranch, CO with the most Remote Vendor Risk Management job openings:

Senior Security Engineer

KPA

Lafayette, CO • On-site, Remote

$119K - $163K/yr

Full-time

Posted 13 days ago


Job description

Position Description:
KPA is seeking a Senior Security Engineer to serve as the senior technical counterpart to the Director of Security & Technology. This role owns KPA's security platforms, cloud security, identity, automation, and technical security initiatives. The ideal candidate is a hands-on security engineer with strong cloud and infrastructure experience who can independently lead complex security projects, partner effectively with IT Operations and DevOps, and continuously improve KPA's security posture.
Responsibilities:
  • Own KPA's enterprise security platforms, including CrowdStrike, Rapid7 (InsightIDR, InsightVM, InsightAppSec, MDR), Cisco Umbrella, Cisco Duo, KnowBe4, and related technologies.
  • Lead vulnerability management and remediation, endpoint security, identity security, privileged access, penetration testing, and security hardening initiatives.
  • Lead security incident response, investigations, containment, remediation, and post-incident reviews.
  • Own the ongoing operation of SOC 2 controls, security audit requirements, and technical compliance initiatives.
  • Own Cisco Meraki security, VPN infrastructure, network security controls, and secure cloud connectivity.
  • Secure Azure, AWS, Microsoft 365, Entra ID, AWS Identity Center, Auth0, and cloud-native workloads using modern security best practices.
  • Administer and improve identity governance across Microsoft Entra ID, Cisco Duo, AWS Identity Center, Auth0, SSO, SCIM, Conditional Access, PIM, privileged accounts, service accounts, and authentication architecture.
  • Partner with DevOps to integrate security into CI/CD pipelines, Infrastructure as Code, containers, Kubernetes, and cloud workloads, including SAST, DAST, Snyk, and other application security technologies.
  • Own and continually improve KPA's cloud security posture management, workload protection, identity controls, logging, alerting, detection engineering, and remediation processes.
  • Own email security across Microsoft 365, SendGrid, Amazon SES, SPF, DKIM, DMARC, and phishing protection.
  • Build security automation using PowerShell, Python, Microsoft Graph, REST APIs, and AI-assisted development.
  • Lead security assessments for new vendors, SaaS platforms, cloud services, and third-party integrations; administer third party vendor management (TPVM) and support ongoing vendor risk management.
  • Administer and improve KPA's security awareness program, security policies, standards, and technical procedures.
  • Support AI security and governance initiatives, including ChatGPT Enterprise, Claude, MCP, and emerging AI technologies.
  • Support security architecture reviews for new cloud services, platforms, integrations, and technical initiatives.
  • Proactively identify security gaps, technical debt, and opportunities to improve KPA's security posture through automation, AI, and modern engineering practices.

Qualifications:
  • 5+ years of experience in security engineering, cloud security, infrastructure security, or a related senior technical role.
  • Strong knowledge of identity security, endpoint security, vulnerability management, network security, incident response, and zero trust principles.
  • Experience securing Azure, AWS, Microsoft 365, Entra ID, Windows, and Linux.
  • Familiarity with CI/CD pipelines, Kubernetes, container security, application security scanning, and DevSecOps practices.
  • Scripting and automation experience using PowerShell, Python, REST APIs, or similar technologies.
  • Experience supporting SOC 2 & NIST CSF or comparable security and compliance frameworks.
  • Relevant certifications such as CompTIA Security+, CISSP, CCSP, AWS Certified Security, or equivalent certifications are preferred.
  • Excellent communication, documentation, project leadership, and problem-solving skills.
  • Bachelor's degree in Computer Science, Information Technology or Cybersecurity or equivalent experience.

Success Criteria:
  • Work ethic that aligns with KPA's core values:
    • Trust: earning trust through integrity, expertise, and acting in the client's best interest.
    • Innovation: continuously seeking out ways to better serve clients.
    • Excellence: holding ourselves to high standards in everything we do.
    • Results: moving with purpose to deliver meaningful outcomes.
  • Owns and continually improves KPA's enterprise security platforms and technical security controls.
  • Improves KPA's security posture across endpoints, identity, networking, cloud, and DevOps environments.
  • Delivers complex security initiatives with strong planning, communication, documentation, testing, and post-implementation validation.
  • Reduces manual security work through automation and modern engineering practices.
  • Serves as the senior escalation point for complex security incidents and technical security issues.
  • Partners effectively with IT Operations and DevOps to embed security into operational and development workflows.

Physical Requirements:
Physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
  • Working at a computer typing and view a screen - Constantly
  • Stationary sitting or standing - Constantly
  • Visual Recognition - Constantly
  • Hearing/Listening - Occasionally
  • Communicating verbally and/or in writing - Occasionally
  • Travel - Seldom

Compensation:
  • Annual base salary range between $110-130k commensurate with experience.
  • Bonus potential of 10% annually