1

Senior Vendor Risk Analyst Jobs in Silver Spring, MD

... vendor teams to document project requirements, ensuring effective collaboration • Develop a ... Required Skill and Experience The ideal candidate is a highly organized Risk Analyst with strong ...

next page

Showing results 1-20

Senior Vendor Risk Analyst information

See Silver Spring, MD salary details

$55.3K

$113.6K

$147.3K

How much do senior vendor risk analyst jobs pay per year?

As of Sep 14, 2026, the average yearly pay for senior vendor risk analyst in Silver Spring, MD is $113,557.00, according to ZipRecruiter salary data. Most workers in this role earn between $93,600.00 and $141,600.00 per year, depending on experience, location, and employer.

What is a senior vendor risk analyst?

A Senior Vendor Risk Analyst is a professional responsible for evaluating and managing the risks associated with third-party vendors and suppliers. They assess vendor practices, review compliance with regulations, and ensure that vendors meet an organization's security and operational standards. This role often involves conducting risk assessments, monitoring vendor performance, and collaborating with internal teams to mitigate potential threats to the business. Senior Vendor Risk Analysts typically have a strong background in risk management, information security, and regulatory compliance.

What are the key skills and qualifications needed to thrive as a senior vendor risk analyst?

To thrive as a Senior Vendor Risk Analyst, you need expertise in risk assessment, vendor management, and compliance, typically backed by a bachelor’s degree in business, finance, or a related field. Familiarity with risk management frameworks (such as ISO 27001), third-party risk assessment tools, and certifications like CISA or CRVPM are highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set candidates apart in this role. These skills are crucial to ensure organizational security, regulatory compliance, and the mitigation of risks posed by third-party vendors.

How does a senior vendor risk analyst typically collaborate with other departments in the organization?

A Senior Vendor Risk Analyst works closely with departments such as procurement, IT, legal, compliance, and business units to assess and manage third-party risks. Collaboration often involves gathering information on new and existing vendors, coordinating risk assessments, and advising on contract clauses to mitigate potential issues. Effective communication and relationship-building are crucial, as the analyst must ensure all stakeholders understand the risk landscape and their respective responsibilities. This cross-functional teamwork helps maintain a comprehensive risk management approach and supports organizational objectives.

What is the difference between Senior Vendor Risk Analyst vs Vendor Risk Analyst?

AspectSenior Vendor Risk AnalystVendor Risk Analyst
CertificationsCRISC, CISA, or similarEntry-level certifications or none
Experience5+ years in risk management or vendor assessment1-3 years in vendor risk or related fields
Work EnvironmentCorporate, financial, or technology sectorsSimilar industries, often entry-level roles
ResponsibilitiesLeading risk assessments, developing policies, mentoringConducting vendor evaluations, supporting risk processes

The main difference between a Senior Vendor Risk Analyst and a Vendor Risk Analyst lies in experience, responsibilities, and certifications. The senior role involves leadership, advanced risk assessments, and strategic planning, while the vendor risk analyst typically focuses on supporting assessments and data collection. Both roles are vital in managing third-party risks within organizations, but the senior position requires more expertise and oversight.

What are popular job titles related to Senior Vendor Risk Analyst jobs in Silver Spring, MD?

For Senior Vendor Risk Analyst jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Senior Vendor Risk Analyst jobs in Silver Spring, MD look for?

The top searched job categories for Senior Vendor Risk Analyst jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Senior Vendor Risk Analyst jobs?

Cities near Silver Spring, MD with the most Senior Vendor Risk Analyst job openings:

Infographic showing various Senior Vendor Risk Analyst job openings in Silver Spring, MD as of July 2026, with employment types broken down into 1% As Needed, 81% Full Time, 15% Part Time, and 3% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $113,557 per year, or $54.6 per hour.

Senior Risk Analyst (Data Risk)

Vienna, VA • On-site

Navy Federal Credit Union
Finance and Insurance • 10K+ employees

Other

Posted 4 days ago


Navy Federal Credit Union rating

8.1

Company rating: 8.1 out of 10

Based on 276 frontline employees who took The Breakroom Quiz


Job description

Overview
Navy Federal Credit Union currently does not provide sponsorship for this role. Applicants must be authorized to work in the United States without the need for current or future sponsorship.
This senior individual-contributor role sits in the First Line of Defense and translates enterprise risk, data governance, technology, information security, privacy, and records management requirements into practical execution for HR. Workstream leadership, executive reporting, and decision support make up the largest share of the work, alongside risk assessment and governance analysis. You will own assigned work independently and produce management-ready deliverables with limited rework.
Deep expertise across every risk discipline is not expected.
Responsibilities
Risk analysis and governance
  • Lead HR data risk assessments, reviews, and governance activities, and analyze what enterprise policies, standards, and controls mean for HR processes, applications, reporting, analytics, vendors, and technology.
  • Assess materiality and recommend proportionate responses grounded in control objectives, business impact, and applicable requirements.
  • Evaluate control objectives, evidence, ownership, dependencies, issues, exceptions, and remediation; identify gaps, inconsistencies, emerging risks, and unresolved questions.
  • Frame complex issues into clear management decisions with options, tradeoffs, and a recommended path forward - not just a list of problems.
  • Escalate material risk decisions, unresolved ownership, exceptions, significant dependencies, and matters requiring formal governance or management acceptance.
  • Work spans access and information security; data governance, quality, and reporting; data sharing, lifecycle, and records management; third-party and vendor risk; and analytics, AI, cloud, and emerging technology.

Workstream leadership
  • Independently lead the risk analysis and execution coordination for assigned HR Data Risk projects and workstreams.
  • Turn ambiguous assignments into clear outcomes, milestones, actions, dependencies, deliverables, and definitions of completion.
  • Distinguish governance, oversight, and decision responsibilities from execution owned by business, technology, vendor, or enterprise partners - and surface dependencies rather than absorbing work that belongs elsewhere.
  • Coordinate across HR, Technology, Risk, and other enterprise partners; facilitate working sessions, document decisions and actions, and drive follow-up.
  • Identify blockers, changing requirements, ownership gaps, and competing priorities, and escalate appropriately.
  • Right-size scope where practical minimum requirements still maintain appropriate risk coverage.

Executive reporting and decision support
  • Build polished, visually effective presentations, dashboards, scorecards, and portfolio reporting for management and executive audiences.
  • Synthesize complex, fragmented, or incomplete information into clear analysis, recommendations, and decision materials.
  • Translate detailed workstream information into concise leadership narratives focused on what changed, why it matters, and what decision or action is required - covering risk posture, key risks and dependencies, operational impact, upcoming milestones, and recommendations.
  • Analyze across workstreams to surface trends, recurring issues, emerging risks, and capacity or dependency concerns requiring management attention.

Quality and ways of working
  • Review risk documentation, presentations, dashboards, and trackers for accuracy, completeness, consistency, and unsupported conclusions before materials advance.
  • Build reusable templates, trackers, playbooks, and decision tools, and identify opportunities to automate, standardize, or simplify recurring reporting, tracking, and evidence collection.

Qualifications
  • Five or more years of progressively responsible experience in risk management, operational or technology risk, information security risk, data governance, compliance, audit, controls, risk transformation, or a related discipline; or an equivalent combination of education and experience.
  • Demonstrated risk and control judgment - applying risk identification, control objectives, evidence, issues, remediation, exceptions, and escalation in practice, not familiarity with the concepts alone.
  • Demonstrated experience independently leading complex projects, assessments, workstreams, or cross-functional initiatives through to defined outcomes.
  • Proven ability to assess materiality, organize ambiguous or incomplete information, and develop practical, proportionate recommendations.
  • Strong project-management skills across milestones, dependencies, actions, risks, decisions, and competing priorities.
  • Advanced PowerPoint skills for executive-ready presentations, and strong Excel skills with experience building dashboards, scorecards, or management reporting.
  • Strong written and verbal communication, with the ability to translate complex risk, business, or technical information into clear, concise language.
  • Strong facilitation and stakeholder-management skills, including working across organizational boundaries.
  • Sound judgment handling highly sensitive and confidential information.
  • Ability to work independently while recognizing when a matter requires escalation, additional expertise, or a management decision.

Desired Qualifications
  • HR risk, employee data, or another domain governed by heightened confidentiality, employment law, and/or privacy constraints
  • Financial services or another highly regulated industry
  • First Line of Defense risk management
  • RCSA, issue management, control assessments, or risk transformation
  • Data governance, data quality, reporting, or records management
  • Identity and access management, or data sharing and transfer risk
  • Third-party or vendor risk
  • Cloud, analytics, or AI governance
  • Power BI and/or comparable visualization tools; Azure DevOps, Jira, or comparable work-management tools; SharePoint; Microsoft Copilot or other approved AI productivity tools

Additional Information
Hours:
  • Monday - Friday, 8:00AM - 4:30PM

Location:
  • 820 Follin Lane, Vienna, VA 22180
  • 5510 Heritage Oaks Drive, Pensacola, FL 32526
  • 141 Security Drive, Winchester, VA 22602

About Us
Navy Federal provides much more than a job. We provide a meaningful career experience, including a culture that is energized, engaged and committed; and fierce appreciation for our teams, who are rewarded with highly competitive pay and generous benefits and perks.
Our approach to careers is simple yet powerful: Make our mission your passion.
FORTUNE 100 Best Companies to Work For 2026
Yello and WayUp Top 100 Internship Programs 2025
Computerworld Best Places to Work in IT 2026
Most Loved Workplace - America's Top Most Loved Workplaces 2025
2025 PEOPLE Companies That Care
Newsweek Most Trustworthy Companies in America 2026
Military Times 2025 Best for Vets Employers
Forbes 2026 America's Best Large Employers
Forbes 2025 America's Best Employers for New Grads
Forbes 2025 America's Best Employers for Tech Workers
2025 RippleMatch Campus Forward Award Winner for Overall Excellence
Military.com Top Military Spouse Employers 2025
2026 Handshake Early Talent Award
Newsweek America's Greatest Workplaces for Culture, Belonging and Community 2026
From Fortune Magazine. 2026 Fortune Media IP Limited. All rights reserved. Used under license. Fortune and Fortune 100 Best Companies to Work For are registered trademarks of Fortune Media IP Limited and are used under license. Fortune Magazine, Fortune Media (USA) Corporation, and its affiliates are not affiliated with, and do not endorse products or services of, Navy Federal Credit Union.
Equal Employment Opportunity: All qualified applicants will receive consideration for employment without regard to age, race, sex, color, religion, national origin, disability, veteran status, pregnancy, sexual orientation, genetic information, gender identity or any other basis protected by applicable law.
Accommodations: If you need accommodation or assistance for a qualifying condition to complete the online application (or during any stage of the hiring process), you can contact Navy Federal's Medical Accommodations team at or by calling 1-. This team cannot provide any information on job postings or application status.
Disclaimers: Navy Federal reserves the right to fill this role at a higher/lower grade level based on business need. An assessment may be required to compete for this position. Job postings are subject to close early or extend out longer than the anticipated closing date at the hiring team's discretion based on qualified applicant volume. Navy Federal Credit Union assesses market data to establish salary ranges that enable us to remain competitive. You are paid within the salary range, based on your experience, location and market position. For additional details regarding compensation and benefits, review the Benefits page of the Navy Federal Career Site.
Protect Yourself from Job Scams: Navy Federal Credit Union jobs are posted on our career site, jobs.navyfederal.org and reputable job boards (e.g., LinkedIn, Indeed). We do not post jobs on social media marketplaces, messaging apps or unverified websites. We will never ask candidates for payment, bank details or personal financial information during the hiring process.
Bank Secrecy Act: Remains cognizant of and adheres to Navy Federal policies and procedures, and regulations pertaining to the Bank Secrecy Act.

What Navy Federal Credit Union employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Navy Federal Credit Union logo

About Navy Federal Credit Union

Sourced by ZipRecruiter

Navy Federal Credit Union, based in Vienna, Virginia, United States, is a significant player in the financial services industry. Their official website is navyfederal.org. With its roots dating back to 1933, it was initially established to provide credit to Navy members. Over the years, Navy Federal has magnified its scope, evolving into a full-service credit union serving all branches of the military, the Department of Defense, veterans, and their families. The company’s core values include integrity, service, education, and leadership. Navy Federal aims to be the most preferred and trusted financial institution serving the military and their families.

Industry

Finance and insurance

Company size

10,000+ Employees

Headquarters location

Vienna, VA, US

Year founded

1933