1

Vendor Risk Management Analyst Jobs in Washington, DC

The Risk Management Analyst supports the identification, assessment, and communication of discrete and overall program and project risk across cost, schedule, and performance dimensions within a ...

The Risk Management Analyst supports the identification, assessment, and communication of discrete and overall program and project risk across cost, schedule, and performance dimensions within a ...

Risk Management Analyst

Mclean, VA · On-site

$69 - $158/hr

R0244360 Risk Management Analyst The Opportunity: Use your industry or domain expertise to assess risk posture to develop innovative solutions to complex problems supporting a dynamic Navy Middle ...

next page

Showing results 1-20

Vendor Risk Management Analyst information

See Washington, DC salary details

$41.3K

$93.2K

$156.3K

How much do vendor risk management analyst jobs pay per year?

As of Aug 30, 2026, the average yearly pay for vendor risk management analyst in Washington, DC is $93,246.00, according to ZipRecruiter salary data. Most workers in this role earn between $70,800.00 and $102,500.00 per year, depending on experience, location, and employer.

What is a vendor risk management analyst?

A Vendor Risk Management Analyst is a professional responsible for assessing, monitoring, and mitigating risks associated with third-party vendors and suppliers. They evaluate vendor practices, ensure compliance with company policies and regulations, and help protect the organization from financial, operational, and reputational risks. Their work often involves conducting risk assessments, reviewing contracts, and collaborating with other departments to ensure vendors meet required security and performance standards.

How does a vendor risk management analyst typically interact with other departments within an organization?

Vendor Risk Management Analysts often collaborate closely with departments such as Procurement, Legal, IT Security, and Compliance to assess and mitigate risks associated with third-party vendors. They facilitate information sharing, coordinate risk assessments, and ensure that contract terms align with the organization's risk tolerance. Regular communication and cross-functional meetings are common, as these analysts play a key role in ensuring that vendor relationships do not expose the organization to undue risk.

What are the key skills and qualifications needed to thrive as a vendor risk management analyst, and why are they important?

To thrive as a Vendor Risk Management Analyst, you need expertise in risk assessment, third-party due diligence, and a solid understanding of compliance regulations, typically supported by a bachelor’s degree in business, finance, or a related field. Proficiency with risk management software, vendor management platforms, and knowledge of frameworks like ISO 27001 or SOC 2 are commonly required, along with certifications such as CTPRP or CISA. Strong analytical thinking, attention to detail, and effective communication skills are essential for building relationships and reporting risks clearly. These skills ensure organizations can identify, mitigate, and manage risks associated with third-party vendors, protecting operational integrity and regulatory compliance.

What is the difference between Vendor Risk Management Analyst vs Procurement Analyst?

AspectVendor Risk Management AnalystProcurement Analyst
CertificationsCertifications like CTPRP, CRISC, or vendor risk management coursesCPM, CPSM, or purchasing certifications
Work EnvironmentFocus on risk assessment, compliance, and vendor evaluationsFocus on sourcing, purchasing, and supplier negotiations
Industry UsageCommon in finance, healthcare, and technology sectorsPrevalent across manufacturing, retail, and corporate sectors

The main difference is that a Vendor Risk Management Analyst specializes in assessing and mitigating risks associated with vendors, ensuring compliance and security. In contrast, a Procurement Analyst primarily handles sourcing and purchasing activities. Both roles require analytical skills and industry knowledge but focus on different aspects of vendor and supply chain management.

What are popular job titles related to Vendor Risk Management Analyst jobs in Washington, DC?

For Vendor Risk Management Analyst jobs in Washington, DC, the most frequently searched job titles are:

What job categories do people searching Vendor Risk Management Analyst jobs in Washington, DC look for?

The top searched job categories for Vendor Risk Management Analyst jobs in Washington, DC are:

Infographic showing various Vendor Risk Management Analyst job openings in Washington, DC as of August 2026, with employment types broken down into 1% As Needed, 75% Full Time, 22% Part Time, and 2% Contract. Highlights an 79% Physical, 2% Hybrid, and 19% Remote job distribution, with an average salary of $93,246 per year, or $44.8 per hour.

Senior Third-Party Risk Management Analyst - Vendor Risk

Vienna, VA • On-site

Other

This job post has expired today. Applications are no longer accepted.


Job description

🔐 Senior Third-Party Risk Management (TPRM) Analyst – Vendor Risk

📍 Location: Vienna, VA – Hybrid

📅 Duration: 6-Month Contract

💼 Business Unit: Security – Third Party & Relationship Management


We’re looking for a hands-on TPRM / Vendor Risk professional to support security vendor management, third-party risk oversight, contracts, vendor performance, and remediation.


⭐ HM NOTE – KEY REQUIREMENT

The hiring team is specifically seeking candidates with hands-on, end-to-end Third-Party Risk Management (TPRM) experience.

This is not a fit for candidates who have only worked with vendors or participated in security projects. The ideal candidate should have directly managed the third-party risk lifecycle, including vendor due diligence, risk reviews, contracts, SLAs, performance monitoring, and remediation.


🔹 Key Responsibilities

  • Manage vendor relationships, contracts, SLAs, performance, and escalations.
  • Support vendor due diligence, risk reviews, and remediation activities.
  • Partner with Procurement/Vendor Management on sourcing, NDAs, negotiations, and renewals.
  • Monitor vendor performance and maintain metrics, dashboards, and scorecards.
  • Coordinate with Security teams, vendors, and senior stakeholders to resolve issues.
  • Ensure vendors meet organizational security, risk, and contractual requirements.


🔹 What We're Looking For

  • Strong hands-on TPRM / Vendor Risk Management experience.
  • Experience managing the end-to-end third-party risk lifecycle.
  • Strong knowledge of vendor contracts, SLAs, due diligence, and performance management.
  • Experience with procurement, vendor selection, contract monitoring, and issue remediation.
  • Ability to manage multiple complex contracts and competing priorities.
  • Strong stakeholder management, communication, and organizational skills.
  • Bachelor's degree in Business, Finance, or related field, or equivalent experience.


📩 If you have genuine end-to-end TPRM experience and are ready to make an impact in a security-focused environment, apply today!