1

Vendor Risk Assessment Jobs in Tennessee (NOW HIRING)

AVP, Privacy

Nashville, TN · On-site +1

$150K - $185K/yr

Develop and oversee privacy risk management, including risk assessments, incident response, breach ... Deep expertise in HIPAA Privacy, Security, and Breach Notification Rules, vendor risk management ...

HEALTH INFO PRIVACY SPEC

Knoxville, TN · On-site

$95K - $95K/yr

Participates in environment of care rounds / risk assessment rounds to ensure proper privacy and ... Monitors and approves HIPAA Business Associate Agreements (BAAs) with vendors for standard ...

HEALTH INFO PRIVACY SPEC

Knoxville, TN · On-site

$95K - $95K/yr

Participates in environment of care rounds / risk assessment rounds to ensure proper privacy and ... Monitors and approves HIPAA Business Associate Agreements (BAAs) with vendors for standard ...

Showing results 21-40

Vendor Risk Assessment information

What is the difference between Vendor Risk Assessment vs Vendor Compliance Analyst?

AspectVendor Risk AssessmentVendor Compliance Analyst
Primary FocusEvaluating risks associated with vendors and third-party providersEnsuring vendors comply with policies, regulations, and contractual obligations
CertificationsCertifications like CISSP, CISA, or vendor risk management coursesCertifications such as CCEP, CISA, or compliance-specific credentials
Work EnvironmentRisk management teams, procurement, cybersecurity departmentsCompliance teams, legal, procurement, and audit departments
Industry UsageCommon in finance, healthcare, and IT sectorsPrevalent in regulated industries like finance, healthcare, and manufacturing

Vendor Risk Assessment focuses on identifying and mitigating risks posed by vendors, while Vendor Compliance Analysts ensure vendors adhere to policies and regulations. Both roles are essential for managing third-party relationships but differ in their primary objectives and activities.

What are the key skills and qualifications needed to thrive as a vendor risk assessment professional?

To thrive in Vendor Risk Assessment, you need a solid understanding of risk management principles, third-party due diligence, and regulatory compliance, often supported by a degree in business, IT, or a related field. Familiarity with risk assessment tools, governance frameworks (like ISO 27001), and platforms such as GRC (Governance, Risk, and Compliance) systems is typically required. Strong analytical thinking, attention to detail, and effective communication skills help professionals assess vendor risks and collaborate across departments. These skills are crucial for identifying, mitigating, and communicating risks that could impact an organization’s operations, security, or reputation.

What are some common challenges faced in a vendor risk assessment role, and how can I prepare to address them?

Professionals in Vendor Risk Assessment often encounter challenges such as managing large volumes of vendor data, ensuring compliance with evolving regulations, and effectively communicating risks to both internal stakeholders and vendors. To prepare for these challenges, it's important to develop strong organizational and analytical skills, stay informed about regulatory changes, and build effective communication strategies. Collaborating closely with procurement, legal, and IT teams is also essential for gathering accurate information and implementing risk mitigation measures.

What is a vendor risk assessment?

A Vendor Risk Assessment is a process used by organizations to evaluate and manage the potential risks associated with outsourcing services or products to third-party vendors. The assessment typically examines areas such as data security, regulatory compliance, financial stability, and operational practices of the vendor. Its purpose is to identify potential vulnerabilities or threats that could impact the organization if the vendor fails to meet expectations or is compromised. Regular vendor risk assessments help ensure that third-party relationships do not expose the company to undue risk and that appropriate controls are in place.
What are popular job titles related to Vendor Risk Assessment jobs in Tennessee? For Vendor Risk Assessment jobs in Tennessee, the most frequently searched job titles are:
What job categories do people searching Vendor Risk Assessment jobs in Tennessee look for? The top searched job categories for Vendor Risk Assessment jobs in Tennessee are:
What cities in Tennessee are hiring for Vendor Risk Assessment jobs? Cities in Tennessee with the most Vendor Risk Assessment job openings:
Infographic showing various Vendor Risk Assessment job openings in Tennessee as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution.

$107K - $172K/yr

Other

Medical, Dental, Vision, Retirement, PTO

Posted 9 days ago


Blue Cross and Blue Shield of North Carolina rating

7.8

Company rating: 7.8 out of 10

Based on 13 frontline employees who took The Breakroom Quiz

189th of 304 rated insurance


Job description

Job Description

Blue Cross NC is seeking a Principal IT Vendor Manager to manage strong, ongoing relationships between assigned IT vendors and internal stakeholders. This role ensures vendors meet contractual obligations and service level agreements while serving as the primary point of contact for vendor-related matters. The Principal IT Vendor Manager will influence outcomes across all levels of the organization, including executive leadership, and serve as a strategic partner for complex vendor engagements. This individual will help resolve issues, anticipate risks, co-develop mitigation plans, and apply strong program and technical knowledge to support successful vendor performance.

What You'll Do

  • Manage the overall vendor relationship and governance for complex or high profile/critical IT suppliers within a dedicated portfolio. Serves as an escalation point for vendor-related issues.

  • Establish and monitor vendor oversight plans, in alignment with contractual obligations and other defined criteria, to realize value and minimize vendor related risk to prevent operational and organizational disruption.

  • Facilitate formal business reviews, in accordance with vendor guidelines, with assigned vendors to discuss customer feedback, compliance, performance, service level agreements, other contractual expectations, relationship health and corrective action plans (when necessary).

  • Establish and maintain influential relationships with Executive Sponsors, Business/Service Owners, Vendor Service Delivery Manager for assigned vendors for ongoing management and oversight of the dedicated vendor portfolio.

  • Responsible for ensuring ongoing vendor adherence to standard procedures and contracted deliverables and obligations; including change management, business continuity, liabilities, financial health, data access, and security.

  • Partner with business leads to evaluate and assess current vendors relative to expectations, changing capabilities, competitiveness and organizational goals and communicate with vendor to improve or enhance capabilities.

  • Collaborate with Category Management, Strategic Sourcing, and business units to influence RFPs, vendor contract negotiations, SLAs, results and, compliance to align business strategy.

What You Bring

  • Bachelor's degree or advanced degree (where required)

  • 8+ years of experience in related field.

  • In lieu of degree, 10+ years of experience in related field.

Bonus Points

  • Experience working in IT and IT governance

  • Experience managing Technology vendors, including services, hardware, and software

  • Expertise in developing collaborative stakeholder relationships

What You'll Get

  • The opportunity to work at the cutting edge of health care delivery with a team that's deeply invested in the community.

  • Work-life balance, flexibility, and the autonomy to do great work.

  • Medical, dental, and vision coverage along with numerous health and wellness programs.

  • Parental leave and support plus adoption and surrogacy assistance.

  • Career development programs and tuition reimbursement for continued education.

  • 401k match including an annual company contribution.

  • Learn more

Where You'll Work

Our Hybrid Flex approach is built on presence with a purpose - giving you flexibility to work remotely with intentional in-person connection - that supports a workplace that's flexible, connected, and future focused.

In a Hybrid-Flex role, you'll work in the office at least two days a week for collaboration and connection. In a Remote Flex role, you'll work virtually, with a few in-office visits each year for meaningful moments that matter.

Whether your role is Hybrid Flex or Remote Flex depends on the nature of the work and distance from our Durham headquarters. We welcome candidates from outside the local area and in any states listed on this job posting. Onsite expectations will be discussed during the interview process.

Salary Range

At Blue Cross NC, we take great pride in a fair and equitable compensation package that reflects market-price and our starting salaries are typically planned near the middle of the range listed. Compensation decisions are driven by factors including experience and training, specialized skill sets, licensure and certifications and other business and organizational needs.Our base salary is part of a robust Total Rewards package that includes an Annual Incentive Bonus*, 401(k) with employer match, Paid Time Off (PTO), and competitive health benefits and wellness programs.

*Based on annual corporate goal achievement and individual performance.

$107,901.00 - $172,642.00

Skills

Budgeting, Category Management, Communication, Competitor Analysis, Contract Management, Contract Negotiations, Leadership, Negotiation, People Management, Process Improvements, Relationship Building, Stakeholder Management, Strategic Planning, Strategic Sourcing, Vendor Contract Negotiations, Vendor Coordination, Vendor Management

_____________________________________________________________________
JOB ALERT FRAUD: We have become aware of scams from individuals, organizations, and internet sites claiming to represent Blue Cross and Blue Shield of North Carolina in recruitment activities in return for disclosing financial information. Our hiring process does not include text-based conversations or interviews and never requires payment or fees from job applicants. All our career opportunities are published on https://bcbsnc.wd5.myworkdayjobs.com/en-US/BCBSNC. If you have already provided your personal information that you suspect is fraudulent activity, please report it to your local authorities. Any fraudulent activity should be reported to: HR.Staffing@BCBSNC.com.


What Blue Cross and Blue Shield of North Carolina employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom