1

Vendor Risk Analyst Jobs in Baltimore, MD (NOW HIRING)

IRC Analyst

Westminster, MD · On-site

$70K - $110K/yr

Overview Horizon Farm Credit is seeking an IRC Analyst to join our Risk team. Two positions available, qualified candidate may work in any available Horizon Farm Credit branch location. To view ...

IRC Analyst

Westminster, MD · Hybrid

$70K - $110K/yr

Overview Horizon Farm Credit is seeking an IRC Analyst to join our Risk team. Two positions available, qualified candidate may work in any available Horizon Farm Credit branch location. To view ...

The Vendor Management Analyst II is responsible for executing vendor and partner management activities, supporting vendor performance oversight, and producing analysis and reporting to enable ...

The Vendor Management Analyst II is responsible for executing vendor and partner management activities, supporting vendor performance oversight, and producing analysis and reporting to enable ...

The Vendor Management Analyst II is responsible for executing vendor and partner management activities, supporting vendor performance oversight, and producing analysis and reporting to enable ...

Showing results 21-40

Vendor Risk Analyst information

See Baltimore, MD salary details

$15

$40

$65

How much do vendor risk analyst jobs pay per hour?

As of Aug 8, 2026, the average hourly pay for vendor risk analyst in Baltimore, MD is $40.23, according to ZipRecruiter salary data. Most workers in this role earn between $29.62 and $48.94 per hour, depending on experience, location, and employer.

What does a vendor risk analyst do?

A vendor risk analyst evaluates the risks associated with third-party vendors to ensure they meet security, compliance, and operational standards. They conduct risk assessments, review vendor controls, and monitor ongoing vendor performance, often using tools like risk management software. Their work helps organizations mitigate potential threats from external partners.

Is risk analyst an entry level job?

A risk analyst role can be entry level or require several years of experience, depending on the organization. Entry-level risk analyst positions typically require a bachelor's degree in finance, economics, or a related field, and may involve basic data analysis skills and familiarity with risk management tools. Advancement often depends on gaining experience and developing specialized skills or certifications such as FRM or CRM.

What is a vendor risk analyst?

A Vendor Risk Analyst is a professional responsible for assessing and managing risks associated with third-party vendors that provide products or services to an organization. They evaluate vendor practices, security protocols, and compliance with regulations to minimize potential risks such as data breaches, financial losses, or operational disruptions. Their work helps organizations ensure that vendors meet required standards and do not pose undue risk to business operations. Vendor Risk Analysts often use questionnaires, audits, and ongoing monitoring to perform their assessments.

How does a vendor risk analyst typically collaborate with other departments within an organization?

Vendor Risk Analysts work closely with various departments such as procurement, legal, IT security, and compliance to assess and manage risks associated with third-party vendors. They facilitate communication between teams to ensure vendor contracts meet security and regulatory requirements. Regularly, they coordinate risk assessments, share findings, and help develop mitigation strategies, ensuring that vendor relationships support the organization's risk tolerance and business goals.

What are the key skills and qualifications needed to thrive as a vendor risk analyst, and why are they important?

To thrive as a Vendor Risk Analyst, you need strong analytical skills, knowledge of risk management frameworks, and a relevant degree in business, finance, or a related field. Familiarity with third-party risk management platforms, regulatory compliance tools, and certifications like Certified Third Party Risk Professional (CTPRP) are often required. Excellent communication, attention to detail, and problem-solving abilities help you effectively assess vendor risks and collaborate with cross-functional teams. These competencies ensure your organization can identify, mitigate, and manage risks associated with external vendors, protecting both operational integrity and regulatory compliance.
What are the most commonly searched types of Vendor Risk Analyst jobs in Baltimore, MD? The most popular types of Vendor Risk Analyst jobs in Baltimore, MD are:
What are popular job titles related to Vendor Risk Analyst jobs in Baltimore, MD? For Vendor Risk Analyst jobs in Baltimore, MD, the most frequently searched job titles are:
What job categories do people searching Vendor Risk Analyst jobs in Baltimore, MD look for? The top searched job categories for Vendor Risk Analyst jobs in Baltimore, MD are:
What cities near Baltimore, MD are hiring for Vendor Risk Analyst jobs? Cities near Baltimore, MD with the most Vendor Risk Analyst job openings:
Infographic showing various Vendor Risk Analyst job openings in Baltimore, MD as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $83,674 per year, or $40.2 per hour.

Senior Analyst, Technology Risk Oversight

T Rowe Price

Baltimore, MD • Hybrid

Full-time

Re-posted 3 days ago


T. Rowe Price rating

9.1

Company rating: 9.1 out of 10

Based on 21 frontline employees who took The Breakroom Quiz


Job description

Role Summary

We are looking for a seasoned Technology Risk Analyst with more than 5 years' experience in financial services and/or technology industry. The qualified candidate should be well versed in identifying, managing and monitoring technology risks across Technology Resiliency, Technology Change Management, Obsolescence, IT Asset Management, Cybersecurity, and Technology Risks related to Third parties. The position interacts with all levels of management and senior level executives in IT (ie. CTO, CIO, Chief Architect); therefore, exceptional interpersonal and communication skills are essential.

The successful candidate will report into the Global Head of ERM, who reports directly into the Chief Risk Officer and provide Second Line of Defense (SLoD) services to Global Technology Services First Line Organization. Experience with Cyber and Information Security, Cloud Risk Management (AWS, Azure), Enterprise Architecture is a plus.

Responsibilities

  • Risk Identification: Collaborate with IT leaders, Enterprise Process Owners, and First Line of Defense (FLOD) teams to proactively identify, assess, and monitor technology risks-including resiliency, change management, obsolescence, asset management, cybersecurity, and third-party risks-that may impact the organization's strategic objectives.
  • Oversight and Effective Challenge: Provide independent oversight and challenge of FLOD technology risk management activities, ensuring risks and non-compliance with internal and external standards are prudently managed. Advise on the prioritization of risks, mitigation alternatives, and compensating controls.
  • Assessment and Governance: Participate in risk governance forums, monitor technology risk appetite, escalate exceptions, and report breaches. Evaluate the adequacy and effectiveness of risk control and mitigation actions, recommending improvements to strengthen governance and enhance policies, routines, and interaction models.
  • Advisory and Strategic Leadership: Act as a trusted advisor to IT and FLOD leaders, providing expert guidance on technology risk posture, regulatory requirements, and best practices. Support regulatory exams and findings and foster integrated relationships between FLOD and Second Line of Defense (SLOD).
  • Framework Implementation: Drive the adoption and effective implementation of Enterprise Technology Risk Management (ETRM) policies, frameworks, tools, guidelines, and standards across the business, ensuring technology risks are identified and managed in alignment with industry and regulatory expectations.
  • Reporting and Communication: Draft regular updates to executive management and the Board Risk Committee on changes to the company's technology risk profile. Communicate risk management policies and outcomes to stakeholders at all levels.
  • Continuous Monitoring: Utilize enterprise risk and operational risk management tools (MRI, RCSA, KRIs, incident data, loss event data) to monitor the technology control environment, identify potential weaknesses, and address gaps in a timely manner.
  • Subject Matter Expertise: Serve as a subject matter expert in technology risk, controls, compliance, and best practices. Stay abreast of emerging technologies and their impact on the organization's risk profile.

Qualifications

Required

  • Bachelor's degree or the equivalent combination of education and relevant experience
  • 5+ years of relevant experience in risk management, financial services, or related field

Preferred:

  • 8+ years of experience in the financial, and or technology industries
  • This position requires interacting with "C" level suite, so superior communication, interpersonal, negotiation, presentation and intergroup skills are critical for success
  • Ability to translate technical issues into risk terms that business can understand is absolutely necessary
  • Strong understanding of how the use of Artificial Intelligence both introduces risks across a variety of risk categories, as well as provides opportunities for improved monitoring and reporting
  • Experience with regulatory exams and responses is strongly desired
  • Undergraduate in technology disciple or equivalent
  • Thought leadership around technology risks a must
  • Experience in risk management, compliance or audit, including but not limited to experience in design & implementation of control frameworks
  • Working knowledge of industry and regulatory risk and control standards and frameworks - FFIEC, DORA, NIST-CSF, 800-53, COBIT, CCM etc.
  • Collaborative, team player with the ability to navigate a complex organization and influence outcomes
  • Strong analytical, problem solving and critical thinking skills
  • High attention to detail and strong organizational skills

FINRA Requirements

FINRA licenses are not required and will not be supported for this role.

Work Flexibility

This role is eligible for hybrid work, with up to one day per week from home.


What T. Rowe Price employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom