1

Senior Vendor Risk Management Jobs in Texas (NOW HIRING)

Senior Security Engineer

Dallas, TX · On-site

$113K - $155K/yr

Lead AI third-party risk management: Evaluate and onboard third-party AI/ML tools and vendors against security, privacy, and compliance criteria; document AI-specific vendor and contract requirements ...

Establish and track key risk indicators (KRIs) and present regular risk dashboards to senior ... and vendor agreements, equipment leases, joint ventures, and professional service agreements.

The Risk Management Coordinator provides functional and administrative support to the Company ... Dispute resolution, guest or vendor incident management * Support accident investigation activities ...

The Risk Management Coordinator provides functional and administrative support to the Company ... Collaborate with vendors and third-party providers such as the insurance brokers, insurance ...

The Risk Management Coordinator provides functional and administrative support to the Company ... Dispute resolution, guest or vendor incident management* Support accident investigation activities ...

Manager will provide operational assistance to Sr. Director, Global Insurance and Risk Management ... Manage activities of third-party vendors associated with assigned insurance programs. Property Risk ...

Senior Risk Management Specialist

Austin, TX · On-site

$97K/yr

Senior Risk Management Specialist Expected Duration: 22 Months Location: Austin, TX (Hybrid. Candidate must be local to Austin, TX) Summary: The client is looking for Risk Management Specialist with ...

Showing results 21-40

Senior Vendor Risk Management information

What does a senior vendor risk management professional do?

A Senior Vendor Risk Management professional is responsible for overseeing an organization’s third-party vendors to identify, assess, and mitigate risks that could impact business operations, data security, or regulatory compliance. They develop and implement vendor risk assessment frameworks, conduct thorough due diligence, and collaborate with other departments to ensure vendors meet company standards and legal requirements. Additionally, they monitor ongoing vendor relationships, manage risk remediation efforts, and often report findings to senior leadership or regulatory bodies.

What are the key skills and qualifications needed to thrive as a senior vendor risk management professional, and why are they important?

To thrive as a Senior Vendor Risk Management professional, you need expertise in risk assessment, third-party due diligence, and a solid understanding of regulatory compliance, often supported by a bachelor's degree in business, finance, or a related field. Familiarity with risk management platforms, vendor management systems, and certifications like CISA or CRVPM is commonly expected. Strong analytical thinking, communication, and negotiation skills are crucial for building effective relationships and addressing vendor issues. These skills and qualifications are essential for mitigating risks, ensuring compliance, and safeguarding organizational interests in vendor relationships.

What are some common challenges faced by senior vendor risk management professionals, and how can they be addressed?

Senior Vendor Risk Management professionals often encounter challenges such as navigating complex regulatory requirements, managing relationships with a diverse range of vendors, and ensuring consistent due diligence across all third parties. Addressing these challenges typically involves staying updated on relevant regulations, implementing robust risk assessment frameworks, and fostering strong communication with both internal stakeholders and vendors. Building cross-functional collaboration with legal, compliance, and procurement teams is also crucial for effectively mitigating vendor-related risks.

What is the difference between Senior Vendor Risk Management vs Vendor Risk Analyst?

AspectSenior Vendor Risk ManagementVendor Risk Analyst
CertificationsCRISC, CISA, or similarCRISC, CISA, or similar
Work EnvironmentStrategic, leadership-focused, cross-departmentalOperational, data analysis, risk assessment
Employer & Industry UsageFinancial, healthcare, technology firmsFinancial, retail, technology sectors

Senior Vendor Risk Management roles typically involve strategic oversight and leadership in managing vendor risks, requiring advanced certifications and experience. Vendor Risk Analysts focus on data collection, risk assessment, and supporting vendor evaluations. While both roles require similar credentials, the senior role emphasizes strategy and management, whereas the analyst role is more operational and detail-oriented.

What are the most commonly searched types of Vendor Risk Management jobs in Texas?

The most popular types of Vendor Risk Management jobs in Texas are:

What job categories do people searching Senior Vendor Risk Management jobs in Texas look for?

The top searched job categories for Senior Vendor Risk Management jobs in Texas are:

What cities in Texas are hiring for Senior Vendor Risk Management jobs?

Cities in Texas with the most Senior Vendor Risk Management job openings:

Infographic showing various Senior Vendor Risk Management job openings in Texas as of June 2026, with employment types broken down into 84% Full Time, 15% Part Time, and 1% Nights. Highlights an 89% Physical, 3% Hybrid, and 8% Remote job distribution.

Senior Security Engineer

Cetera

Dallas, TX • On-site

$113K - $155K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 12 days ago


Job description

At Cetera, our Information Security organization protects employees, advisors, and clients from evolving cyber threats across cloud, SaaS, and emerging AI-enabled technologies. As artificial intelligence capabilities expand across the enterprise, Cetera is building a formal AI risk and compliance program - grounded in industry-recognized AI risk management frameworks - to ensure innovation aligns with regulatory, security, and third-party risk expectations.

We are seeking an AI Risk and Compliance Engineer to operationalize AI governance controls, manage AI-related third-party and vendor risk, and lead adversarial threat modeling for AI/ML systems using the MITRE ATLAS framework. This role serves as a key bridge across IT Risk, Cloud Security, Legal/Procurement, and AI/ML Engineering teams, translating AI risk management framework requirements into practical, auditable processes within a regulated financial services environment.

What will you do:

    Operationalize AI governance controls: Implement and maintain controls aligned to recognized AI risk management frameworks (spanning governance, mapping, measurement, and management of AI risk), including control documentation, risk-control matrices (RCM), and evidence collection to support audits and regulatory exams.
    Lead AI third-party risk management: Evaluate and onboard third-party AI/ML tools and vendors against security, privacy, and compliance criteria; document AI-specific vendor and contract requirements, SLAs, and fourth-party disclosures; support due diligence for AI vendors and data provenance reviews.
    Maintain AI/vendor risk inventories: Build and maintain documentation of third-party AI components (models, datasets, APIs, pre-trained/foundation models) covering provenance, functionality, and known limitations, and map internal controls to those components.
    Run ongoing AI risk assessments: Conduct recurring vendor risk and compliance assessments covering AI system performance, data quality, algorithmic bias, and security controls; monitor pre-trained/foundation model drift and SLA adherence; assess concentration and dependency risk across AI vendors.
    Perform AI threat modeling: Design and execute threat models for AI/ML systems using the MITRE ATLAS framework to identify adversarial tactics and techniques - including prompt injection, data/model poisoning, model evasion, model extraction, and supply-chain risk in ML pipelines - across the AI development and deployment lifecycle.
    Coordinate adversarial testing: Plan and coordinate red-teaming, adversarial testing, and penetration testing of AI/ML systems, and drive ongoing threat assessments informed by current threat intelligence and prior incidents.
    Integrate AI into vulnerability management: Ensure AI-specific vulnerabilities and security findings are captured, prioritized, and remediated through existing enterprise vulnerability management processes.
    Identify and assess unsanctioned AI usage: Support discovery and risk assessment of unsanctioned (shadow) AI tool usage across the enterprise and recommend remediation or approval pathways.
    Partner cross-functionally: Work closely with IT Risk, Cloud Security, Legal, Procurement, and Application/AI Engineering teams to embed AI risk and compliance requirements into intake, procurement, and development processes.
    Support governance and audit activities: Develop and maintain AI risk standards, control narratives, and runbooks; support internal and external audits and regulatory compliance activities (e.g., FINRA) by producing control evidence tied to the organization's AI risk management framework.

What you will have:

    8-10+ years of experience in IT/cyber risk, GRC, security engineering, or a related discipline, with direct exposure to AI/ML systems
    Working knowledge of AI risk and control frameworks (e.g., NIST AI RMF or similar industry AI risk management frameworks) and OWASP Top 10 for LLMs
    Practical experience with, or strong working knowledge of, threat modeling methodologies for AI/ML systems, including familiarity with MITRE ATT&CK and MITRE ATLAS
    Experience building or operating third-party/vendor risk management processes - due diligence, contracting/SLAs, ongoing monitoring, and issue remediation
    Understanding of AI-specific attack techniques (prompt injection, data/model poisoning, model evasion, model extraction/inversion) and associated mitigations
    Ability to translate technical risk findings into control objectives, policy language, and audit-ready documentation
    Experience in regulated environments (financial services or FINRA preferred)
    Strong communication skills across technical, risk, legal, and compliance stakeholders

Preferred Qualifications:

    Experience with GRC platforms (e.g., Archer, ServiceNow GRC) for control and risk-register management
    Certifications such as CRISC, CISSP, CCSP, or IAPP AIGP (AI Governance Professional)
    Experience with AWS Bedrock or other cloud AI/ML platforms and cloud-native AI security
    Familiarity with model cards, data lineage/provenance tooling, and AI bill-of-materials (AI-BOM) concepts
    Prior participation in red team, purple team, or adversarial testing exercises involving ML systems
    Exposure to AI governance committees or model risk management (MRM) functions
 

About Us

What we give you in return:

Not many teams can say that they support people's dreams coming to life. We happen to do that every day. And as important as we know your career is, we recognize that there's a whole lot more to life. To ensure that our employees can make the most of their time outside of working hours, we offer a competitive salary and for full-time roles, a benefits package including:

  • Inclusive health, dental, vision, and life insurance plans built to support diverse lifestyles, offer preventative care, and protect against hardship.
  • Easy access to mental health benefits to meet our team members and their families where they are.
  • 20+ days of paid time off (PTO), paid holidays, and 2 paid wellness days to give our employees the time they need to stay close with their loved ones, recharge, and give back to their communities.
  • 401(k) savings plan with a generous company contribution (up to 5%), and access to a financial professional to offer our employees the opportunity to plan-ahead for a strong financial future well beyond their working years.
  • Paid parental leave to support all team members with birth, adoption, and fostering.
  • Health Savings and Flexible Spending Account options to help you save money on healthcare, daycare, commuting, and more.
  • Employee Assistance Program (EAP), LifeLock, Pet Insurance and more.
  • Paid caregiver leave to provide time away from work when caring for an ill or recovering family member.
  • Additional benefits such as an Employee Assistance Program (EAP), identity theft protection (LifeLock), pet insurance, and other voluntary benefits to provide extra peace of mind

About Cetera

Cetera Financial Group (Cetera) is a leading network of independent retail broker-dealers and registered investment advisers empowering the delivery of objective financial advice to individuals, families, and company retirement plans across the country through trusted financial advisors and financial institutions. Cetera is one of the largest independent financial advisor networks in the nation and a leading provider of retail services to the investment programs of banks and credit unions.

Advisor support resources offered through Cetera include award-winning wealth management and advisory platforms, comprehensive broker-dealer and registered investment adviser services, practice management support, and innovative technology.

Cetera Financial Group (Cetera) is a network of independent retail firms, including those that are members of FINRA/SIPC: Cetera Advisors LLC; Cetera Wealth Services, LLC (formerly known as Cetera Advisor Networks); Cetera Investment Services LLC (marketed as Cetera Financial Institutions or Cetera Investors); and Cetera Financial Specialists LLC. Entities registered as investment advisers with the Securities and Exchange Commission include Cetera Investment Management LLC and Cetera Investment Advisers LLC. Cetera's principal office is located at 655 W. Broadway, 11th Floor, San Diego, CA 92101. Avantax Planning Partners, Inc. is an SEC registered investment adviser within the Aretec Group, Inc. (dba Cetera Holdings, an affiliate of Cetera). All the referenced entities are under common ownership.

Cetera Financial Group is committed to providing an equal employment opportunity for all applicants and employees. For us, this is the only acceptable way to do business. Accordingly, all employment decisions at Cetera Financial Group, including those relating to hiring, promotion, transfers, benefits, compensation, and placement, will be made without regard to race, color, ancestry, national origin, citizenship, age, physical and/or mental disability, medical condition, pregnancy, genetic characteristics, religion, religious dress and/or grooming, gender, gender identity, gender expression, sexual orientation, marital status, U.S. military status, political affiliation, or any other class protected by state and/or federal law.

Agencies please note: this recruitment assignment is being managed directly by Cetera's Talent Acquisition team. We will reach out to our preferred agency partners in the rare instance we require additional talent options. Your respect for this process is appreciated.

Please review our Workforce Privacy Policy for further details on what information we collect and the purposes for collection.