1

Vendor Risk Assessment Jobs in Atlanta, GA (NOW HIRING)

Senior Security Engineer

Atlanta, GA · On-site

$110K - $151K/yr

... vendor risk assessments. • Experience across Information Security domains such as governance & compliance, incident response, identity & access management, penetration testing, or e-discovery ...

Risk Analyst

Atlanta, GA · On-site +1

$87K - $110K/yr

Perform third-party security and compliance risk assessments for new and existing vendors, evaluating risk exposure, control effectiveness, business impact, and remediation requirements * Review SOC ...

... vendor relationships in the role of Staff Risk Analyst. The ideal candidate will have proven ... Create and conduct supplier assessments and development plans including supplier evaluation ...

... vendor relationships in the role of Staff Risk Analyst. The ideal candidate will have proven ... Create and conduct supplier assessments and development plans including supplier evaluation ...

New

... vendor relationships in the role of Staff Risk Analyst. The ideal candidate will have proven ... Create and conduct supplier assessments and development plans including supplier evaluation ...

The ideal candidate will conduct application and vendor risk assessments, produce risk remediation reports and/or risk waivers, assist in addressing any network security corrective actions, and work ...

next page

Showing results 1-20

Vendor Risk Assessment information

See Atlanta, GA salary details

$49.5K

$107.3K

$163.5K

How much do vendor risk assessment jobs pay per year?

As of Sep 1, 2026, the average yearly pay for vendor risk assessment in Atlanta, GA is $107,279.00, according to ZipRecruiter salary data. Most workers in this role earn between $86,500.00 and $124,100.00 per year, depending on experience, location, and employer.

What is a vendor risk assessment?

A Vendor Risk Assessment is a process used by organizations to evaluate and manage the potential risks associated with outsourcing services or products to third-party vendors. The assessment typically examines areas such as data security, regulatory compliance, financial stability, and operational practices of the vendor. Its purpose is to identify potential vulnerabilities or threats that could impact the organization if the vendor fails to meet expectations or is compromised. Regular vendor risk assessments help ensure that third-party relationships do not expose the company to undue risk and that appropriate controls are in place.

What are the key skills and qualifications needed to thrive as a vendor risk assessment professional?

To thrive in Vendor Risk Assessment, you need a solid understanding of risk management principles, third-party due diligence, and regulatory compliance, often supported by a degree in business, IT, or a related field. Familiarity with risk assessment tools, governance frameworks (like ISO 27001), and platforms such as GRC (Governance, Risk, and Compliance) systems is typically required. Strong analytical thinking, attention to detail, and effective communication skills help professionals assess vendor risks and collaborate across departments. These skills are crucial for identifying, mitigating, and communicating risks that could impact an organization’s operations, security, or reputation.

What are some common challenges faced in a vendor risk assessment role, and how can I prepare to address them?

Professionals in Vendor Risk Assessment often encounter challenges such as managing large volumes of vendor data, ensuring compliance with evolving regulations, and effectively communicating risks to both internal stakeholders and vendors. To prepare for these challenges, it's important to develop strong organizational and analytical skills, stay informed about regulatory changes, and build effective communication strategies. Collaborating closely with procurement, legal, and IT teams is also essential for gathering accurate information and implementing risk mitigation measures.

What is the difference between Vendor Risk Assessment vs Vendor Compliance Analyst?

AspectVendor Risk AssessmentVendor Compliance Analyst
Primary FocusEvaluating risks associated with vendors and third-party providersEnsuring vendors comply with policies, regulations, and contractual obligations
CertificationsCertifications like CISSP, CISA, or vendor risk management coursesCertifications such as CCEP, CISA, or compliance-specific credentials
Work EnvironmentRisk management teams, procurement, cybersecurity departmentsCompliance teams, legal, procurement, and audit departments
Industry UsageCommon in finance, healthcare, and IT sectorsPrevalent in regulated industries like finance, healthcare, and manufacturing

Vendor Risk Assessment focuses on identifying and mitigating risks posed by vendors, while Vendor Compliance Analysts ensure vendors adhere to policies and regulations. Both roles are essential for managing third-party relationships but differ in their primary objectives and activities.

Senior Information Security Risk Analyst (3rd Party Vendor Risk)

Warner Bros. Discovery

Atlanta, GA • On-site

Full-time

Re-posted 5 days ago


Warner Bros. Discovery rating

7.7

Company rating: 7.7 out of 10

Based on 55 frontline employees who took The Breakroom Quiz

32nd of 78 rated media


Job description

Welcome to Warner Bros. Discovery... the stuff dreams are made of.
Who We Are...
When we say, "the stuff dreams are made of," we're not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD's vast portfolio of iconic content and beloved brands, are the storytellers bringing our characters to life, the creators bringing them to your living rooms and the dreamers creating what's next...
From brilliant creatives, to technology trailblazers, across the globe, WBD offers career defining opportunities, thoughtfully curated benefits, and the tools to explore and grow into your best selves. Here you are supported, here you are celebrated, here you can thrive.
*Must work a hybrid schedule (3 days onsite) out of our Atlanta office.*
THE JOB:
The Senior Information Security Risk Analyst will support the assessment of information security risks across all of Warner Bros. Discovery's (WBD's) third party suppliers/vendors. This role requires the ability to understand and assess information security risks posed by third parties and clearly communicate those risks to the business. It will apply global IT industry best practices to ensure WBD uses third party information security risk management to foster business-enabling insights.
RISK ASSESSMENTS:
  • Use WBD processes and tools to perform 3rd party vendor risk assessments, for new and existing vendors
  • Work with business to understand the "what" and "how" of services provided by vendor to assess level of risk and scope of assessment
  • Perform timely assessments of Vendor controls to identify, document, and communicate key deficiencies to the business and Information Security management
  • Report on assessment outcomes, risk level and associated recommendations to remediate issues
  • Perform 2nd-level peer reviews of assessment outputs, prior to reports being finalized, to drive consistency and completeness of findings based on risk of engagement
  • Assist with follow-up on documentation requests for initial and periodic assessments

FINDINGS MANAGEMENT:
  • Monitor corrective action plans against agreed upon timelines
  • Review of remediation evidence for closure of findings

CONTRACT REVIEWS:
  • Review contracts to ensure appropriate data security terms are included
  • Provide comment and acceptable alternatives to vendor contract revisions, in alignment with defined guidance
  • Escalate provision changes, as needed

OTHER:
  • Assist with contract intake to ensure pipeline of assessments is managed in a timely and efficient manner
  • Provide periodic status updates
  • Maintain accurate and complete data within the identified system of record
  • Contribute to the team's continuous improvement efforts by identifying opportunities and helping to implement them

THE ESSENTIALS:
  • BS/BA degree required
  • 3-5 years' experience in information security, with at least one (1) year experience in third party risk management
  • Knowledge of IP network infrastructure (firewalls, intrusion detection/prevention), access control, data encryption and physical security; Cloud security knowledge a plus
  • Excellent communication skills, including the ability to communicate effectively in English, both written and verbal
  • Ability to present complex topics in clear, non-technical language
  • Ability to work collaboratively within team and across business and technology functions
  • Detail-oriented individual with critical thinking, analytical, and problem-solving skills
  • Demonstrated ability to be proactive and take ownership of and solve problems
  • Active learner - able to enhance personal, professional, and business growth through new knowledge and experiences
  • Ability to handle multiple assignments concurrently within an iterative environment

THE NICE TO HAVES:
  • One or more of the following certifications: CISSP, CRISC, CISA
  • 2+ years of prior experience in a related field (media, entertainment, business development or streaming services industry experience a plus)
  • Familiarity with streaming and similar products/services
  • Experience working in a national or global company

How We Get Things Done...
This last bit is probably the most important! Here at WBD, our guiding principles are the core values by which we operate and are central to how we get things done. You can find them at www.wbd.com/guiding-principles/ along with some insights from the team on what they mean and how they show up in their day to day. We hope they resonate with you and look forward to discussing them during your interview.
Championing Inclusion at WBD
Warner Bros. Discovery embraces the opportunity to build a workforce that reflects a wide array of perspectives, backgrounds and experiences. Being an equal opportunity employer means that we take seriously our responsibility to consider qualified candidates on the basis of merit, without regard to race, color, religion, national origin, gender, sexual orientation, gender identity or expression, age, mental or physical disability, and genetic information, marital status, citizenship status, military status, protected veteran status or any other category protected by law.
If you're a qualified candidate with a disability and you require adjustments or accommodations during the job application and/or recruitment process, please visit our accessibility page for instructions to submit your request.

What Warner Bros. Discovery employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom