1

Vendor Risk Assessment Jobs in Virginia (NOW HIRING)

... assessment reports, and support due diligence to document infrastructure maturity and improvement ... vendor teams to document project requirements, ensuring effective collaboration • Develop a ...

Reporting to the Chief Risk Information Officer (CIRO), this role serves as a critical second line ... assessment and monitoring of critical technology vendors and third-party service providers, and (c ...

ServiceNow IRM Practice Lead

Arlington, VA · On-site

$19 - $22.25/hr

Cyber Risk Register and Risk Assessments * Common and Inherited Controls * Policy and Compliance ... Third-Party / Vendor Risk Management * Business Continuity Management and contingency planning (CP ...

ServiceNow IRM Practice Lead

Arlington, VA · On-site +1

$19 - $22.25/hr

Cyber Risk Register and Risk Assessments * Common and Inherited Controls * Policy and Compliance ... Third-Party / Vendor Risk Management * Business Continuity Management and contingency planning (CP ...

ServiceNow IRM Practice Lead

Arlington, VA

$19 - $22.25/hr

Cyber Risk Register and Risk Assessments * Common and Inherited Controls * Policy and Compliance ... Third-Party / Vendor Risk Management * Business Continuity Management and contingency planning (CP ...

ServiceNow IRM Practice Lead

Arlington, VA · On-site +1

$19 - $22.25/hr

Cyber Risk Register and Risk Assessments * Common and Inherited Controls * Policy and Compliance ... Third-Party / Vendor Risk Management * Business Continuity Management and contingency planning (CP ...

IT and Security Manager

Ashburn, VA · On-site

$120 - $190/hr

Assessments & audits: Internal audits, vendor risk reviews, external assessor support. * Training & awareness: Security and CUI handling enablement across teams. On-Site Responsibilities * Hands-on ...

Risk Manager

Alexandria, VA · On-site

$119 - $130/hr

The Risk Manager will identify, assess, and mitigate potential risks that could impact the company ... Communicate subcontractor and vendor insurance requirements to the third-party compliance vendor ...

Conducts annual risk assessments, training, monitoring, & auditing, control assessment, reporting, investigation, root cause analysis, and corrective action oversight. Performs vendor quality ...

Conducts annual risk assessments, training, monitoring, & auditing, control assessment, reporting, investigation, root cause analysis, and corrective action oversight. * Performs vendor quality ...

Showing results 41-60

Vendor Risk Assessment information

What is a vendor risk assessment?

A Vendor Risk Assessment is a process used by organizations to evaluate and manage the potential risks associated with outsourcing services or products to third-party vendors. The assessment typically examines areas such as data security, regulatory compliance, financial stability, and operational practices of the vendor. Its purpose is to identify potential vulnerabilities or threats that could impact the organization if the vendor fails to meet expectations or is compromised. Regular vendor risk assessments help ensure that third-party relationships do not expose the company to undue risk and that appropriate controls are in place.

What are the key skills and qualifications needed to thrive as a vendor risk assessment professional?

To thrive in Vendor Risk Assessment, you need a solid understanding of risk management principles, third-party due diligence, and regulatory compliance, often supported by a degree in business, IT, or a related field. Familiarity with risk assessment tools, governance frameworks (like ISO 27001), and platforms such as GRC (Governance, Risk, and Compliance) systems is typically required. Strong analytical thinking, attention to detail, and effective communication skills help professionals assess vendor risks and collaborate across departments. These skills are crucial for identifying, mitigating, and communicating risks that could impact an organization’s operations, security, or reputation.

What are some common challenges faced in a vendor risk assessment role, and how can I prepare to address them?

Professionals in Vendor Risk Assessment often encounter challenges such as managing large volumes of vendor data, ensuring compliance with evolving regulations, and effectively communicating risks to both internal stakeholders and vendors. To prepare for these challenges, it's important to develop strong organizational and analytical skills, stay informed about regulatory changes, and build effective communication strategies. Collaborating closely with procurement, legal, and IT teams is also essential for gathering accurate information and implementing risk mitigation measures.

What is the difference between Vendor Risk Assessment vs Vendor Compliance Analyst?

AspectVendor Risk AssessmentVendor Compliance Analyst
Primary FocusEvaluating risks associated with vendors and third-party providersEnsuring vendors comply with policies, regulations, and contractual obligations
CertificationsCertifications like CISSP, CISA, or vendor risk management coursesCertifications such as CCEP, CISA, or compliance-specific credentials
Work EnvironmentRisk management teams, procurement, cybersecurity departmentsCompliance teams, legal, procurement, and audit departments
Industry UsageCommon in finance, healthcare, and IT sectorsPrevalent in regulated industries like finance, healthcare, and manufacturing

Vendor Risk Assessment focuses on identifying and mitigating risks posed by vendors, while Vendor Compliance Analysts ensure vendors adhere to policies and regulations. Both roles are essential for managing third-party relationships but differ in their primary objectives and activities.

What cities in Virginia are hiring for Vendor Risk Assessment jobs?

Cities in Virginia with the most Vendor Risk Assessment job openings:

Infographic showing various Vendor Risk Assessment job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 86% Full Time, 10% Part Time, and 3% Contract. Highlights an 87% Physical, 4% Hybrid, and 9% Remote job distribution.

Risk Adjustment Coder

Sentara Healthcare Inc

Virginia Beach, VA • On-site

$60 - $80/hr

Other

Posted 4 days ago


Sentara Health rating

6.8

Company rating: 6.8 out of 10

Based on 417 frontline employees who took The Breakroom Quiz

497th of 898 rated healthcare providers


Job description

Sentara Medical Group is now hiring a full-time hybrid Risk Adjustment Coder in Virginia Beach, VA!

Hours: Monday - Friday, 8:00AM -5:00PM, dayshift.

This is a hybrid position that offers a combination of remote and onsite work, with a requirement to be in the office one to two days each week. The role also includes travel as needed to support business objectives and team collaboration.

Overview

Performs compliance activities focused on risk adjustment in accordance with Centers for Medicare & Medicaid Services (CMS) and U.S. Department of Health & Human Services (HHS). Performs prospective/retrospective medical record reviews (MMR) & CMS/HHS Risk Adjustment Data Validation (RADV) audits. Reviews provider coding for professional & inpatient/outpatient services to ensure capture of diagnostic conditions supported within the provider's documentation for CMS/HHS Hierarchical Condition Categories (HCC). Supports risk adjustment data validation (RADV), medical record retrieval, vendor coding audits, provider engagement, & all risk adjustment ICD-10-CM coding-related activities. Conducts annual risk assessments, training, monitoring, & auditing, control assessment, reporting, investigation, root cause analysis, and corrective action oversight. Performs vendor quality oversight audits; reviews and/or makes final coding determination for non-agreeable coding. Makes final decision on vendor-to-vendor diagnosis coding rebuttal concerns. Serves as subject matter expert on risk adjustment diagnosis coding guidelines. Coordinates risk adjustment gap elimination with clinical and quality gap elimination Maintains a reasonable fluency in workings & financial implications of applicable risk adjustment models.

Education
  • Associate degree (Required)
Experience
  • Medical Records Data - 1 year (Required)
  • Coding - 2 years (Required)
Certifications:

One of the following certifications are required: Certified Professional Coder (CPC), Certified Outpatient Coder (COC), Certified Inpatient Coder (CIC), Certified Coding Specialist-Physician-based (CCS-P), Certified Coding Specialist (CCS), Registered Health Information Technician (RHIT), or Registered Health Information Administrator (RHIA).

Must obtain Certified Risk Adjustment Coder (CRC) certification within two years of employment.

Keywords:

Risk Adjustment Coding & Documentation Specialist, Talroo-Allied Health, Medical Office

#J-18808-Ljbffr

What Sentara Health employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom