1

Senior Vendor Risk Analyst Jobs in Arizona (NOW HIRING)

Model Risk Analyst Location: CityScape What you'll do: Western Alliance Bank (WAL) is seeking a ... SR 26 (including evaluating conceptual soundness, reviewing ongoing monitoring plans and reports ...

We are hiring for an exciting opportunity as a Fraud Risk Analyst 4 within U.S. Bancorp ... senior leadership * Ability to manage multiple priorities in a fastmoving environment ...

Arctic Slope Regional Corporation has an immediate opening for a Senior Risk Management Analyst on a hybrid schedule in either Anchorage, AK or Tempe, AZ. ASRC employs more than 16,000 people ...

next page

Showing results 1-20

Senior Vendor Risk Analyst information

What is a Senior Vendor Risk Analyst?

A Senior Vendor Risk Analyst is a professional responsible for evaluating and managing the risks associated with third-party vendors and suppliers. They assess vendor practices, review compliance with regulations, and ensure that vendors meet an organization's security and operational standards. This role often involves conducting risk assessments, monitoring vendor performance, and collaborating with internal teams to mitigate potential threats to the business. Senior Vendor Risk Analysts typically have a strong background in risk management, information security, and regulatory compliance.

What is the difference between Senior Vendor Risk Analyst vs Vendor Risk Analyst?

AspectSenior Vendor Risk AnalystVendor Risk Analyst
CertificationsCRISC, CISA, or similarEntry-level certifications or none
Experience5+ years in risk management or vendor assessment1-3 years in vendor risk or related fields
Work EnvironmentCorporate, financial, or technology sectorsSimilar industries, often entry-level roles
ResponsibilitiesLeading risk assessments, developing policies, mentoringConducting vendor evaluations, supporting risk processes

The main difference between a Senior Vendor Risk Analyst and a Vendor Risk Analyst lies in experience, responsibilities, and certifications. The senior role involves leadership, advanced risk assessments, and strategic planning, while the vendor risk analyst typically focuses on supporting assessments and data collection. Both roles are vital in managing third-party risks within organizations, but the senior position requires more expertise and oversight.

How does a Senior Vendor Risk Analyst typically collaborate with other departments in the organization?

A Senior Vendor Risk Analyst works closely with departments such as procurement, IT, legal, compliance, and business units to assess and manage third-party risks. Collaboration often involves gathering information on new and existing vendors, coordinating risk assessments, and advising on contract clauses to mitigate potential issues. Effective communication and relationship-building are crucial, as the analyst must ensure all stakeholders understand the risk landscape and their respective responsibilities. This cross-functional teamwork helps maintain a comprehensive risk management approach and supports organizational objectives.

What are the key skills and qualifications needed to thrive as a Senior Vendor Risk Analyst, and why are they important?

To thrive as a Senior Vendor Risk Analyst, you need expertise in risk assessment, vendor management, and compliance, typically backed by a bachelor’s degree in business, finance, or a related field. Familiarity with risk management frameworks (such as ISO 27001), third-party risk assessment tools, and certifications like CISA or CRVPM are highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set candidates apart in this role. These skills are crucial to ensure organizational security, regulatory compliance, and the mitigation of risks posed by third-party vendors.
What are the most commonly searched types of Vendor Risk Analyst jobs in Arizona? The most popular types of Vendor Risk Analyst jobs in Arizona are:
What are popular job titles related to Senior Vendor Risk Analyst jobs in Arizona? For Senior Vendor Risk Analyst jobs in Arizona, the most frequently searched job titles are:
What job categories do people searching Senior Vendor Risk Analyst jobs in Arizona look for? The top searched job categories for Senior Vendor Risk Analyst jobs in Arizona are:
What cities in Arizona are hiring for Senior Vendor Risk Analyst jobs? Cities in Arizona with the most Senior Vendor Risk Analyst job openings:
Senior Cybersecurity Risk Analyst - USA Remote

Senior Cybersecurity Risk Analyst - USA Remote

Danaher

Phoenix, AZ • Remote

$130K - $160K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 7 days ago


Danaher rating

7.7

Company rating: 7.7 out of 10

Based on 29 frontline employees who took The Breakroom Quiz


Job description

Bring more to life.

At Danaher, our work saves lives. And each of us plays a part. Fueled by our culture of continuous improvement, we turn ideas into impact - innovating at the speed of life.

Our 60,000+ associates work across the globe at more than 15 unique businesses within life sciences, diagnostics, and biotechnology.

Are you ready to accelerate your potential and make a real difference? At Danaher, you can build an incredible career at a leading science and technology company, where we're committed to hiring and developing from within. You'll thrive in a culture of belonging where you and your unique viewpoint matter.

Learn about the Danaher Business System which makes everything possible.

The Senior Cybersecurity Risk Analyst is responsible for executing third-party and supplier risk activities across the vendor lifecycle and contributing to enterprise risk register operations across the Danaher operating companies. This role offers opportunities to work at the intersection of cyber risk, supply-chain integrity, and enterprise risk reporting across a global, multi-operating-company environment.

This position is part of the Corporate Information Security and will be located as Remote.

In this role, you will have the opportunity to:

  • Execute the third-party risk management (TPRM) lifecycle end-to-end, including vendor intake, inherent-risk tiering, security and privacy questionnaire administration, evidence collection and review, scoring, and final risk decisioning under the direction of the TPRM Lead

  • Review and provide cybersecurity input on third-party contracts (IS Terms & Conditions, Data Protection Addenda, Standard Contractual Clauses, AI-specific addenda), partnering with Legal, Privacy, and Procurement to land defensible positions and consistent redlines

  • Assess supply-chain and geopolitical risk (including country-of-origin and concentration concerns) and apply AI vendor risk frameworks (NIST AI RMF, ISO/IEC 42001) to AI-enabled products and services in the vendor portfolio

  • Serve as the connective tissue between central TPRM and the OpCo 3rd-Party Questionnaire & Response Coordinators, providing guidance on intake, scoring consistency, escalation paths, and Procurement engagement so vendor risk is handled the same way across the portfolio

  • Contribute to enterprise risk register operations and data quality, including consistent risk capture, cross-OpCo aggregation, and executive-grade reporting that informs the OpCo QBR and CISO updates

The essential requirements of the job include:

  • Strong working knowledge of third-party risk management frameworks and methodologies (e.g., Shared Assessments SIG, NIST SP 800-161, ISO/IEC 27036) and the underlying security and privacy regulatory landscape (GDPR, HIPAA, PCI DSS, SOX)

  • Demonstrated experience administering vendor security questionnaires, reviewing evidence (SOC 2, ISO 27001, penetration test reports), applying scoring consistently at scale, and communicating findings to vendors and internal stakeholders

  • Working familiarity with the cybersecurity provisions in vendor contracts (IS Terms & Conditions, Data Protection Addenda, Standard Contractual Clauses) and the ability to coordinate redlines with Legal, Privacy, and Procurement.

  • Hands-on experience operating an enterprise or program-level risk register, with attention to data quality, aggregation methodology, and reporting fluency for executive audiences.

  • 7+ years of experience in third-party risk, enterprise risk management, vendor security, or related governance work.

It would be a plus if you also possess previous experience in:

  • Experience applying AI vendor risk frameworks such as NIST AI RMF and ISO/IEC 42001, and assessing supply-chain and geopolitical concentration risk including country-of-origin scrutiny.

  • Familiarity with GRC platforms (e.g., OneTrust, ServiceNow IRM, RSA Archer) and vendor risk tooling, along with excellent written and verbal communication skills and proven experience influencing stakeholders at all organizational levels, including senior leadership.

At Danaher we believe in designing a better, more sustainable workforce. We recognize the benefits of flexible, remote working arrangements for eligible roles and are committed to providing enriching careers, no matter the work arrangement. This position is eligible for a remote work arrangement in which you can work remotely from your home. Additional information about this remote work arrangement will be provided by your interview team. Explore the flexibility and challenge that working for Danaher can provide.

The salary range for this role is $130K-$160K. This is the range that we in good faith believe is the range of possible compensation for this role at the time of this posting. We may ultimately pay more or less than the posted range. This range may be modified in the future.

This job is also eligible for bonus/incentive pay. #LI-Remote

We offer comprehensive package of benefits including paid time off, medical/dental/vision insurance and 401(k) to eligible employees.

Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole discretion unless and until paid and may be modified at the Company's sole discretion, consistent with the law.

Join our winning team today. Together, we'll accelerate the real-life impact of tomorrow's science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life.


For more information, visit www.danaher.com.


Danaher Corporation and all Danaher Companies are committed to equal opportunity regardless of race, color, national origin, religion, sex, age, marital status, disability, veteran status, sexual orientation, gender identity, or other characteristics protected by law.


The U.S. EEO posters are available here.


For candidates who are based outside of New York City or who are applying for roles outside of New York City, for more information about conditions of any job offer please click here


We comply with federal and state disability laws and make reasonable accommodations for applicants and employees with disabilities. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact:1-202-419-7762 or applyassistance@danaher.com.


What Danaher employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Danaher logo

About Danaher

Sourced by ZipRecruiter

We are a science and technology innovator committed to helping our customers solve complex challenges, and improving quality of life around the world. A global family of more than 20 operating companies, we drive meaningful innovation in some of today's most dynamic, growing industries.

Industry

Medical equipment and supplies manufacturing

Company size

10,000+ Employees

Headquarters location

Washington, DC, US

Year founded

1984