1

Senior Vendor Risk Analyst Jobs in Silver Spring, MD

Vendor Security Analyst

Washington, DC · On-site

$120K - $146K/yr

The Vendor Security Analyst performs evaluation of third party and vendor engagements to identify ... Evaluate third party risk and steer vendor relationships * Evaluate vendor responses to security ...

Vendor Security Analyst

Washington, DC · On-site

$120K - $146K/yr

Evaluate third party risk and steer vendor relationships * Evaluate vendor responses to security ... Keen attention to detail and accuracy in order to analyze documents * Broad knowledge of risk ...

Prepare comprehensive risk assessment reports and analytical products. * Coordinate the review, quality assurance, and distribution of risk analysis products. * Develop standard operating procedures ...

Risk Manager

Mclean, VA · On-site

$55 - $60/hr

... vendor risk management capabilities * Perform risk tracking, trending, analysis, and executive ... senior management. What You'll Bring with You * 10 years' experience specifically in Risk ...

The Telecommunications Risk Analyst will coordinate with internal DoD stakeholders and DOJ/DHS ... Experience writing for and briefing senior executives/leadership. * Intra-agency and interagency ...

The Telecommunications Risk Analyst will coordinate with internal DoD stakeholders and DOJ/DHS ... Experience writing for and briefing senior executives/leadership. * Intra-agency and interagency ...

Showing results 21-40

Senior Vendor Risk Analyst information

See Silver Spring, MD salary details

$55.3K

$113.6K

$147.3K

How much do senior vendor risk analyst jobs pay per year?

As of Sep 14, 2026, the average yearly pay for senior vendor risk analyst in Silver Spring, MD is $113,557.00, according to ZipRecruiter salary data. Most workers in this role earn between $93,600.00 and $141,600.00 per year, depending on experience, location, and employer.

What is a senior vendor risk analyst?

A Senior Vendor Risk Analyst is a professional responsible for evaluating and managing the risks associated with third-party vendors and suppliers. They assess vendor practices, review compliance with regulations, and ensure that vendors meet an organization's security and operational standards. This role often involves conducting risk assessments, monitoring vendor performance, and collaborating with internal teams to mitigate potential threats to the business. Senior Vendor Risk Analysts typically have a strong background in risk management, information security, and regulatory compliance.

What are the key skills and qualifications needed to thrive as a senior vendor risk analyst?

To thrive as a Senior Vendor Risk Analyst, you need expertise in risk assessment, vendor management, and compliance, typically backed by a bachelor’s degree in business, finance, or a related field. Familiarity with risk management frameworks (such as ISO 27001), third-party risk assessment tools, and certifications like CISA or CRVPM are highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set candidates apart in this role. These skills are crucial to ensure organizational security, regulatory compliance, and the mitigation of risks posed by third-party vendors.

How does a senior vendor risk analyst typically collaborate with other departments in the organization?

A Senior Vendor Risk Analyst works closely with departments such as procurement, IT, legal, compliance, and business units to assess and manage third-party risks. Collaboration often involves gathering information on new and existing vendors, coordinating risk assessments, and advising on contract clauses to mitigate potential issues. Effective communication and relationship-building are crucial, as the analyst must ensure all stakeholders understand the risk landscape and their respective responsibilities. This cross-functional teamwork helps maintain a comprehensive risk management approach and supports organizational objectives.

What is the difference between Senior Vendor Risk Analyst vs Vendor Risk Analyst?

AspectSenior Vendor Risk AnalystVendor Risk Analyst
CertificationsCRISC, CISA, or similarEntry-level certifications or none
Experience5+ years in risk management or vendor assessment1-3 years in vendor risk or related fields
Work EnvironmentCorporate, financial, or technology sectorsSimilar industries, often entry-level roles
ResponsibilitiesLeading risk assessments, developing policies, mentoringConducting vendor evaluations, supporting risk processes

The main difference between a Senior Vendor Risk Analyst and a Vendor Risk Analyst lies in experience, responsibilities, and certifications. The senior role involves leadership, advanced risk assessments, and strategic planning, while the vendor risk analyst typically focuses on supporting assessments and data collection. Both roles are vital in managing third-party risks within organizations, but the senior position requires more expertise and oversight.

What are popular job titles related to Senior Vendor Risk Analyst jobs in Silver Spring, MD?

For Senior Vendor Risk Analyst jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Senior Vendor Risk Analyst jobs in Silver Spring, MD look for?

The top searched job categories for Senior Vendor Risk Analyst jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Senior Vendor Risk Analyst jobs?

Cities near Silver Spring, MD with the most Senior Vendor Risk Analyst job openings:

Infographic showing various Senior Vendor Risk Analyst job openings in Silver Spring, MD as of July 2026, with employment types broken down into 1% As Needed, 81% Full Time, 15% Part Time, and 3% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $113,557 per year, or $54.6 per hour.

Vendor Security Analyst

Washington, DC • On-site

Hogan Lovells
Law Firms • 5 - 10K employees

$120K - $146K/yr

Other

Medical, Dental, Vision, Retirement, PTO

Posted 12 days ago


Job description

Hogan Lovells Cadwalader delivers decisive counsel at the intersection of finance, business, and regulation, helping clients succeed when it matters most. We are a leading global law firm trusted to advise on complex, high stakes matters, combining global scale with local intelligence to help clients move markets, shape industries, define new opportunities, and succeed. With more than 3,100 lawyers worldwide, we bring sharp thinking, deep commercial understanding, and an uncompromising commitment to delivering exceptional outcomes for clients.

The Vendor Security Analyst performs evaluation of third party and vendor engagements to identify and manage vendor risk which may include completion of risk assessments. They will also conduct the technical security reviews of our suppliers and partners. This role reports to the Head of Information Risk.

KEY RESPONSIBILITIES
  • Evaluate third party risk and steer vendor relationships
  • Evaluate vendor responses to security questionnaires
  • Make recommendations on ways to mitigate vendor risk
  • Maintain vendor risk repository of artifacts including regular third party vendor certifications and assign risk scores to firm suppliers and partners
  • Conduct onsite audits of high risk vendors reviewing security and controls
  • Actively support and engage in the firm's Responsible Business initiatives, contributing to our commitments to our people, clients, communities, and the environment.
  • Provide support on emerging priorities and undertake additional responsibilities as needed to meet evolving business requirements.
QUALIFICATIONS

EDUCATION & EXPERIENCE Strong and demonstration information security risk identification (including Cloud services), assessment, and risk ranking experience

Working experience with the following documents used in a risk assessment preferred:

  • SIG (Standardized Information Gathering) questionnaire
  • Penetration test
  • Vulnerability test
  • SOC (Service Organization Control) 1 and 2, Type 2
  • ISO 27001

Bachelor's degree preferred.

SKILLS & ABILITIES
  • Possess a sufficient understanding of technical concepts including systems, networks, and security architecture best practices in order to effectively evaluate risk and assess the effectiveness of controls
  • Confident to make independent decisions
  • Ability to explain technical concepts in layman terms
  • Ability to interact effectively and influence external vendors
  • Keen attention to detail and accuracy in order to analyze documents
  • Broad knowledge of risk management, vulnerability management, and third party risk
WORK SCHEDULES / HOURS

Core hours are generally Monday through Friday, 9:00 a.m. to 5:30 p.m., including an unpaid meal period. This position is based on a standard 37.5-hour workweek. Additional or adjusted hours may be required to meet business needs and must be worked in accordance with applicable overtime requirements and firm policies.

COMPENSATION AND BENEFITS

In Washington, D.C., the expected base salary range for this role is $120,500 to $146,200 per year. This range reflects a good‑faith estimate of pay at the time of posting; the actual compensation offered may vary depending on factors such as the candidate’s qualifications.

This position is eligible for additional forms of compensation, which may include annual discretionary bonuses.

Employees in this role are also eligible for benefits offered by the firm, subject to applicable plan terms and conditions, which currently include medical, dental, and vision insurance; a 401(k)-retirement plan; and paid time off. Please review this link for more information regarding employee benefits in the United States.

This job description sets forth the responsibilities of this position and may be changed from time to time as shall be determined.

EQUAL OPPORTUNITY EMPLOYER

Hogan Lovells Cadwalader is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, age, national origin, disability, sexual orientation, gender identity or expression, marital status, genetic information, protected Veteran status, or other factors protected by law. Hogan Lovells Cadwalader complies with federal and state disability laws and makes reasonable accommodations for applicants and candidates with disabilities. If reasonable accommodation is needed to participate in the job application or interview process, please contact our Benefits Department at LeaveofAbsence_US@hlc.com.

ABOUT THE FIRM

Hogan Lovells Cadwalader brings together more than 3,100 lawyers across 36+ worldwide offices, combining global reach with deep sector expertise. Strategically placed at the intersection of business, finance, and government. Working seamlessly across practice areas and borders. Our combination marks a new chapter. Prepare to join teams of people that want you to succeed, where ideas move quickly, support is shared freely, and colleagues help each other grow, creating an inclusive culture where everyone can belong. You’ll be challenged to perform at the highest level in an environment shaped by precision, judgement, and exceptional standards. It’s a culture that expects excellence and gives you the opportunity to develop in every moment. Hogan Lovells Cadwalader is a global law firm with offices in many jurisdictions and countries. Some of the information displayed may not be applicable to the region in which you are applying, your individual situation or the local legal framework.

The system uses standard terminology that applies irrespective of whether you are/will be an employee, partner or self-employed.

#J-18808-Ljbffr