1

Vendor Risk Analyst Jobs in Houston, TX (NOW HIRING)

The Risk Analyst will assist in the placement and administration of the corporate insurance program, including assisting in the preparation of underwriting submissions and presentations, reviewing ...

The Risk Analyst will assist in the placement and administration of the corporate insurance program, including assisting in the preparation of underwriting submissions and presentations, reviewing ...

Reporting into the Supply Chain Manager, this role will directly manage the Vendor Compliance Risk Analyst and will partner closely with internal stakeholders to ensure contracts, supplier ...

Aramco Trading Americas Market Risk Analyst (1935) Market Risk Staff - Houston, TX. - Full Time SUMMARY The Market Risk Analyst primary role is to support trading by monitoring daily trading activity ...

To conduct Cost / Schedule Risk Analysis Workshop sessions, facilitating workshops building bespoke models and interpreting associated outputs for communication / review. * To educate, encourage and ...

Senior Analyst, Risk - Houston, Texas Company Information: Alpha Generation manages and operates power generation facilities that are well positioned to provide reliable, secure, safe, and ...

Senior Analyst, Risk - Houston, Texas Company Information: Alpha Generation manages and operates power generation facilities that are well positioned to provide reliable, secure, safe, and ...

Market Risk Analyst

Houston, TX · On-site

$125K - $152K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

Calculate and interpret market risk metrics such as value at risk (VaR), backtests, and stress and scenario analyses to assess portfolio performance against risk appetite and highlight emerging risks ...

Senior Risk Analyst

Houston, TX · On-site

$110 - $170/hr

To educate, encourage and support managers and business in the use of decision risk analysis techniques on projects where applicable. * Present and provide training on a range or RM topics to ...

New

Arthur Lawrence is looking for a Sr Risk Analyst Supervisor one of our clients in San Houston, TX. Please find the below and send us your updated resume if interested: Must-Have Skills: * 7+ years of ...

next page

Showing results 1-20

Vendor Risk Analyst information

See Houston, TX salary details

$14

$38

$62

How much do vendor risk analyst jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for vendor risk analyst in Houston, TX is $38.66, according to ZipRecruiter salary data. Most workers in this role earn between $28.46 and $47.07 per hour, depending on experience, location, and employer.

What is a vendor risk analyst?

A Vendor Risk Analyst is a professional responsible for assessing and managing risks associated with third-party vendors that provide products or services to an organization. They evaluate vendor practices, security protocols, and compliance with regulations to minimize potential risks such as data breaches, financial losses, or operational disruptions. Their work helps organizations ensure that vendors meet required standards and do not pose undue risk to business operations. Vendor Risk Analysts often use questionnaires, audits, and ongoing monitoring to perform their assessments.

How does a vendor risk analyst typically collaborate with other departments within an organization?

Vendor Risk Analysts work closely with various departments such as procurement, legal, IT security, and compliance to assess and manage risks associated with third-party vendors. They facilitate communication between teams to ensure vendor contracts meet security and regulatory requirements. Regularly, they coordinate risk assessments, share findings, and help develop mitigation strategies, ensuring that vendor relationships support the organization's risk tolerance and business goals.

What are the key skills and qualifications needed to thrive as a vendor risk analyst, and why are they important?

To thrive as a Vendor Risk Analyst, you need strong analytical skills, knowledge of risk management frameworks, and a relevant degree in business, finance, or a related field. Familiarity with third-party risk management platforms, regulatory compliance tools, and certifications like Certified Third Party Risk Professional (CTPRP) are often required. Excellent communication, attention to detail, and problem-solving abilities help you effectively assess vendor risks and collaborate with cross-functional teams. These competencies ensure your organization can identify, mitigate, and manage risks associated with external vendors, protecting both operational integrity and regulatory compliance.

Is risk analyst an entry level job?

A risk analyst role can be entry level or require several years of experience, depending on the organization. Entry-level risk analyst positions typically require a bachelor's degree in finance, economics, or a related field, and may involve basic data analysis skills and familiarity with risk management tools. More advanced roles may require professional certifications and prior experience in risk assessment or related areas.

What does a vendor risk analyst do?

A vendor risk analyst evaluates the risks associated with third-party vendors to ensure they meet security, compliance, and operational standards. They review vendor contracts, conduct risk assessments, and monitor vendor performance using tools like risk management software to protect their organization from potential threats and vulnerabilities.

What are the most commonly searched types of Vendor Risk Analyst jobs in Houston, TX?

The most popular types of Vendor Risk Analyst jobs in Houston, TX are:

What are popular job titles related to Vendor Risk Analyst jobs in Houston, TX?

For Vendor Risk Analyst jobs in Houston, TX, the most frequently searched job titles are:

What job categories do people searching Vendor Risk Analyst jobs in Houston, TX look for?

The top searched job categories for Vendor Risk Analyst jobs in Houston, TX are:

What cities near Houston, TX are hiring for Vendor Risk Analyst jobs?

Cities near Houston, TX with the most Vendor Risk Analyst job openings:

Infographic showing various Vendor Risk Analyst job openings in Houston, TX as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 9% Part Time, and 3% Contract. Highlights an 89% Physical, 4% Hybrid, and 7% Remote job distribution, with an average salary of $80,418 per year, or $38.7 per hour.

Client & Vendor Risk Manager

Baker Botts Llp

Houston, TX • On-site

Full-time

Re-posted 12 days ago


Job description

ABOUT BAKER BOTTS

Baker Botts is a leading international law firm recognized for its deep understanding of the industries it serves. With offices across major global markets, the firm delivers sophisticated legal services while cultivating a collaborative, inclusive culture where both attorneys and professional staff contribute to client success and organizational excellence.

ABOUT THE ROLE

The Information Security Client & Vendor Risk Manager leads the firm’s client due diligence program and oversees all information security vetting for third party vendors across the firm. This role requires deep expertise in security frameworks, strong riskassessment judgment, and the ability to influence senior stakeholders, including internal stakeholders, and client security teams. The Manager acts as a key liaison between the firm’s clients, internal leadership, IT Security, Procurement, and Risk Management, ensuring the firm meets the heightened expectations of our clients.

WHAT YOU'LL DO

Primary Responsibilities

  • Own and mature the firmwide client and vendor duediligence program, ensuring consistency, accuracy, and alignment with the firm’s security posture and regulatory obligations.
  • Serve as the firm’s subjectmatter expert on informationsecurity controls, certifications, and risk posture during client audits, RFPs, and reviews or client engagement terms.
  • Lead complex vendorrisk assessments for highimpact technology and service providers, including review of SOC 2 reports, ISO 27001 certifications, penetrationtest results, cloudsecurity controls, dataprotection, privacy, and retention practices.
  • Develop and maintain the firm’s vendorrisk management framework, including riskscoring methodologies, onboarding workflows, and continuousmonitoring processes.
  • Partner with Procurement, IT, and Office of General Counsel to evaluate vendor contracts, negotiate security requirements, and recommend riskmitigation strategies.
  • Prepare the firm for client audits and regulatory reviews, coordinating evidence collection, documentation, and SME participation across multiple departments.
  • Represent the firm in clientfacing security discussions, including responding to escalated inquiries from corporate counsel, privacy officers, and client security teams.
  • Monitor emerging risks and regulatory developments relevant to the legal industry (e.g., SEC cybersecurity rules, state privacy laws, international datatransfer requirements).
  • Mentor junior analysts and contribute to the professional development of the broader Risk and Compliance team.
  • Drive continuous improvement, identifying opportunities to streamline duediligence workflows, enhance tracking and remediation of client-identified risks, and strengthen the firm’s security posture.

Additional Responsibilities

  • Provide management with periodic reports & briefings on evolving topics within their area of responsibility.
  • Other related projects and duties as assigned by the Director of Information Security.

WHAT YOU'LL BRING

Required

  • 6+ years of experience in information security, vendor risk management, compliance, or legalindustry operations, ideally within an Am Law 200 firm or similarly regulated environment.
  • Deep understanding of security frameworks and standards (SOC 2, ISO 27001, NIST CSF, HIPAA, GLBA, state privacy laws).
  • Experience conducting or leading vendorrisk assessments for enterpriselevel technology providers.
  • Strong communication skills, including the ability to brief partners, respond to client security teams, and translate technical concepts for nontechnical audiences.
  • Demonstrated ability to work independently, manage sensitive information, and lead crossfunctional initiatives in a highpressure environment.
  • Professional certifications such as CTPRA, ISO 27001 Lead Implementer or Lead Auditor and CISSP, CISM, CRISC, or CISA required.
  • Experience with legalindustry technologies (DMS, ediscovery platforms, cloudbased practicemanagement tools) is a plus.

HOW YOU'LL WORK

Extent of Contact

This position requires contact with individuals within the firms as follows:

  • Daily contact with staff from the Firm’s Information Technology, Client Development and Office of the General Counsel teams.
  • Moderate contact with Firm’s attorneys and client representatives.
  • Occasional contact with Firm Management.

This position requires contact with individuals outside the firm as follows:

  • Moderate contact with Firm vendors or potential vendors.
  • Moderate contact with Firm clients

Physical Requirements

  • Must be able to routinely lift and carry event materials and other items up to 10 pounds.
  • Must be able to work at a computer for extensive periods of time.
  • Position requires extensive telephone use.
  • Must be able to lift, squat, kneel and bend.
  • Position requires the ability to visit face-to-face and on the phone with firm lawyers.

Working Conditions and Environment

  • Position is full-time and requires a five-day work week and standard hours as outlined in the Firm policy manual. Additional hours, including weekend and evening hours may be required to perform the essential functions of the job.
  • Must be able to perform essential duties of the position with time constraints and frequent interruptions. 
  • Ability to work well in high pressure environments.
  • 24x7 communication access is required.
  • This position is fully remote. You will be required to come to the office periodically for team meetings or when there is a business or client need.
  • There is potential for travel when needed for team meetings, onsite assessments etc. when there is a business or client need.
  • When working remotely, you must have secure and reliable internet service and a safe, private workspace from which to work.

Baker Botts L.L.P. is an equal opportunity employer and considers all qualified applicants for employment without regard to race, color, gender, sex, age, religion, creed, national origin, citizenship, marital status, sexual orientation, disability, medical condition, military and veteran status, gender identity or expression, genetic information, or any other basis protected by federal, state, or local law.