1

Vendor Risk Management Analyst Jobs in Michigan (NOW HIRING)

Job Summary The Third-Party Risk Analyst supports the team in carrying out third-party risk management activities throughout the vendor lifecycle. This role supports ongoing monitoring of third ...

Job Summary The Third-Party Risk Analyst supports the team in carrying out third-party risk management activities throughout the vendor lifecycle. This role supports ongoing monitoring of third ...

Risk Management Specialist

Flint, MI · On-site

$35.60 - $39.47/hr

... City-wide Risk and Safety Programs. Develop and manage Safety, Loss Control, Property/Liability ... Review and analyze policies to ensure compliance with regulations. Prepares comprehensive reports ...

... Risk Management, Audit Management, Vendor Risk, Business Continuity). - Partner with stakeholders to gather requirements and translate them into ServiceNow IRM solutions. - Develop and maintain ...

... Risk Management, Audit Management, Vendor Risk, Business Continuity). - Partner with stakeholders to gather requirements and translate them into ServiceNow IRM solutions. - Develop and maintain ...

next page

Showing results 1-20

Vendor Risk Management Analyst information

See Michigan salary details

$31.8K

$71.8K

$120.3K

How much do vendor risk management analyst jobs pay per year?

As of Jun 28, 2026, the average yearly pay for vendor risk management analyst in Michigan is $71,758.00, according to ZipRecruiter salary data. Most workers in this role earn between $54,500.00 and $78,900.00 per year, depending on experience, location, and employer.

What is a Vendor Risk Management Analyst?

A Vendor Risk Management Analyst is a professional responsible for assessing, monitoring, and mitigating risks associated with third-party vendors and suppliers. They evaluate vendor practices, ensure compliance with company policies and regulations, and help protect the organization from financial, operational, and reputational risks. Their work often involves conducting risk assessments, reviewing contracts, and collaborating with other departments to ensure vendors meet required security and performance standards.

What are the key skills and qualifications needed to thrive as a Vendor Risk Management Analyst, and why are they important?

To thrive as a Vendor Risk Management Analyst, you need expertise in risk assessment, third-party due diligence, and a solid understanding of compliance regulations, typically supported by a bachelor’s degree in business, finance, or a related field. Proficiency with risk management software, vendor management platforms, and knowledge of frameworks like ISO 27001 or SOC 2 are commonly required, along with certifications such as CTPRP or CISA. Strong analytical thinking, attention to detail, and effective communication skills are essential for building relationships and reporting risks clearly. These skills ensure organizations can identify, mitigate, and manage risks associated with third-party vendors, protecting operational integrity and regulatory compliance.

How does a Vendor Risk Management Analyst typically interact with other departments within an organization?

Vendor Risk Management Analysts often collaborate closely with departments such as Procurement, Legal, IT Security, and Compliance to assess and mitigate risks associated with third-party vendors. They facilitate information sharing, coordinate risk assessments, and ensure that contract terms align with the organization's risk tolerance. Regular communication and cross-functional meetings are common, as these analysts play a key role in ensuring that vendor relationships do not expose the organization to undue risk.

What is the difference between Vendor Risk Management Analyst vs Procurement Analyst?

AspectVendor Risk Management AnalystProcurement Analyst
CertificationsCertifications like CTPRP, CRISC, or vendor risk management coursesCPM, CPSM, or purchasing certifications
Work EnvironmentFocus on risk assessment, compliance, and vendor evaluationsFocus on sourcing, purchasing, and supplier negotiations
Industry UsageCommon in finance, healthcare, and technology sectorsPrevalent across manufacturing, retail, and corporate sectors

The main difference is that a Vendor Risk Management Analyst specializes in assessing and mitigating risks associated with vendors, ensuring compliance and security. In contrast, a Procurement Analyst primarily handles sourcing and purchasing activities. Both roles require analytical skills and industry knowledge but focus on different aspects of vendor and supply chain management.

What are popular job titles related to Vendor Risk Management Analyst jobs in Michigan? For Vendor Risk Management Analyst jobs in Michigan, the most frequently searched job titles are:
What job categories do people searching Vendor Risk Management Analyst jobs in Michigan look for? The top searched job categories for Vendor Risk Management Analyst jobs in Michigan are:
Infographic showing various Vendor Risk Management Analyst job openings in Michigan as of June 2026, with employment types broken down into 1% As Needed, 83% Full Time, 15% Part Time, and 1% Temporary. Highlights an 89% Physical, 3% Hybrid, and 8% Remote job distribution, with an average salary of $71,758 per year, or $34.5 per hour.
IT Securtity Risk Specialist

IT Securtity Risk Specialist

Epitec, Inc.

Southfield, MI

Full-time

Posted 15 days ago


Job description

Company Description

.

Job Description

This position will be responsible for completing Vendor Assessments for the Vendor Risk Management team.
This role will primarily focus on the following specific areas of responsibility:
-Day-to-day management of Information Security risk identification, mitigation and acceptance processes in coordination with security operations and maintaining program requirements language
-Execution of training, education and awareness of all users, managers and board members regarding Information Security vendor requirements and expectations
-Operational risk planning, mitigation and remediation to address Information Security deficiencies
-Identifying new vendor engagements and renewal of existing vendor assessments. Coordinating distribution and completion of vendor assessment questionnaire
-Reviewing on-site assessment reports, examining risks and controls associated with all aspects of the vendor
-Drafting preliminary findings reports
-Conducting preliminary results meeting with BCBSM and its subsidiaries stakeholders and management staff
-Receiving and review vendor response-action plan, if necessary
-Communicates the results of assessment and-or projects in a clear and concise manner to all levels of management
-Designs and operate key operational and executive metrics, reports and dashboards

Qualifications

 5+ years of Vendor Risk Management in the Healthcare space
- Strong knowledge of HIPAA and other applicable Healthcare laws
- Strong understanding of the development and operation of a Risk Management program

Additional Information
 Extensive experience building and managing a diverse and inclusive team environment with strong commitment to respect, equality and teaming.
- Strong understanding of IT Audit/Information Security control review and remediation plans
- Strong understanding of Information Security and the relationship between threat, vulnerability and information
- Good understanding of risk-based decision-making (i.e. risk analysis, mitigation, resolution, acceptance, etc.)
- Possess a good understanding of appropriate leading-edge governance-enabling technologies.
- Possess a good understanding of regulatory and best practice frameworks in the information security context (HITRUST, HIPAA, HITECH, ISO, etc)
- Strong written and verbal communication skills