1

Vendor Risk Management Jobs in Dallas, TX (NOW HIRING)

Knowledge of IT service management, IT asset management, software asset management, vendor risk, and technology governance best practices. * Excellent communication, negotiation support, analytical ...

... management, and third-party/vendor risk oversight. * Conduct compliance testing, monitoring activities, and risk assessments to evaluate adherence to applicable laws, regulations, and internal ...

... management, and third-party/vendor risk oversight. * Conduct compliance testing, monitoring activities, and risk assessments to evaluate adherence to applicable laws, regulations, and internal ...

Showing results 21-40

Vendor Risk Management information

See Dallas, TX salary details

$43.2K

$103K

$166.4K

How much do vendor risk management jobs pay per year?

As of Sep 12, 2026, the average yearly pay for vendor risk management in Dallas, TX is $103,024.00, according to ZipRecruiter salary data. Most workers in this role earn between $72,000.00 and $131,100.00 per year, depending on experience, location, and employer.

What is vendor risk management?

A Vendor Risk Management (VRM) job involves assessing, monitoring, and mitigating risks associated with third-party vendors and suppliers. Professionals in this role evaluate vendor security, compliance, and operational risks to protect their organization from potential disruptions, data breaches, or regulatory violations. They work closely with procurement, legal, and IT teams to establish risk management frameworks and ensure vendors meet contractual and security standards. Their responsibilities often include conducting risk assessments, reviewing vendor contracts, and developing risk mitigation strategies. Effective VRM helps organizations reduce exposure to risks while maintaining productive vendor relationships.

What are some common challenges faced in vendor risk management?

Professionals in Vendor Risk Management often encounter the challenge of assessing and monitoring a wide range of vendors, each with unique risk profiles and compliance requirements. Balancing multiple projects, managing deadlines, and ensuring clear communication between internal stakeholders and vendors can also be demanding. Staying updated on evolving regulatory standards and quickly adapting to new risks is essential in this role. Overcoming these challenges requires strong organizational skills, continual learning, and proactive relationship management.

What are the key skills and qualifications needed to thrive in vendor risk management?

To thrive in Vendor Risk Management, you need a solid background in risk assessment, contract analysis, and supply chain management, often supported by a degree in business, finance, or a related field. Familiarity with risk management software, vendor management systems, and relevant certifications such as Certified Third Party Risk Professional (CTPRP) are highly valued. Strong attention to detail, excellent communication, and negotiation skills help build effective vendor relationships and navigate complex scenarios. These capabilities are crucial for ensuring organizational compliance, minimizing third-party risks, and maintaining strong supplier performance.

How to do vendor risk management?

Vendor risk management involves identifying, assessing, and mitigating risks associated with third-party vendors to ensure they meet security, compliance, and performance standards. It typically includes conducting due diligence, evaluating vendor controls, and monitoring ongoing performance using tools like risk assessment frameworks and audits. Strong communication and documentation are essential for effective management.

What does a vendor risk management do?

A vendor risk management professional assesses and monitors the risks associated with third-party vendors to ensure compliance, security, and operational integrity. They evaluate vendor security practices, contractual obligations, and potential vulnerabilities, often using risk assessment tools and frameworks to mitigate potential threats to the organization.

What are the most commonly searched types of Vendor Risk Management jobs in Dallas, TX?

The most popular types of Vendor Risk Management jobs in Dallas, TX are:

What are popular job titles related to Vendor Risk Management jobs in Dallas, TX?

For Vendor Risk Management jobs in Dallas, TX, the most frequently searched job titles are:

What job categories do people searching Vendor Risk Management jobs in Dallas, TX look for?

The top searched job categories for Vendor Risk Management jobs in Dallas, TX are:

What cities near Dallas, TX are hiring for Vendor Risk Management jobs?

Cities near Dallas, TX with the most Vendor Risk Management job openings:

Infographic showing various Vendor Risk Management job openings in Dallas, TX as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 13% Part Time, and 3% Contract. Highlights an 84% Physical, 2% Hybrid, and 14% Remote job distribution, with an average salary of $103,024 per year, or $49.5 per hour.

Senior AI Governance Risk Compliance Analyst

Dallas, TX • On-site

The University of Texas Southwestern Medical Center
Hospitals • 10K+ employees

Other

Medical, Retirement, PTO

Posted 9 days ago


Job description

Job Description - Senior AI Governance Risk Compliance Analyst (968575)

Job Description

Senior AI Governance Risk Compliance Analyst - ( 968575 )

Description

WHY UT SOUTHWESTERN?

With over 75 years of excellence in Dallas-Fort Worth, Texas, UT Southwestern is committed to excellence, innovation, teamwork, and compassion. As a world-renowned medical and research center, we strive to provide the best possible care, resources, and benefits for our valued employees. Ranked as the number 1 hospital in Dallas-Fort Worth according to U.S. News & World Report , we invest in you with opportunities for career growth and development to align with your future goals. Our highly competitive benefits package offers healthcare, PTO and paid holidays, on-site childcare, wage, merit increases and so much more. We invite you to be a part of the UT Southwestern team where you'll discover a culture of teamwork, professionalism, and a rewarding career!

JOB SUMMARY

This position will support AI risk management within the Department of Information Security. This role develops, implements and operationalizes the Information Security governance and risk management functions to ensure the Program is compliant with established security controls frameworks, regulatory and legal requirements, policies and standards. Ensures that Information Security risk to the institution is appropriately managed. Subject matter expert on mature security governance structures and processes, risk management processes (enterprise and third party), and contractual, regulatory compliance requirements. Leads and executes enterprise-wide security assessments and strategic projects to mature the Program. This position focuses on AI governance, risk, and compliance, leading the design and implementation of an AI framework to evaluate, validate, and monitor artificial intelligence models across all UTSW environments in accordance with state regulations and institutional standards.

BENEFITS

UT Southwestern is proud to offer a competitive and comprehensive benefits package to eligible employees. Our benefits are designed to support your overall wellbeing, and include:

  • PPO medical plan, available day one at no cost for full-time employee-only coverage
  • Paid Time Off, available day one
  • Retirement Programs through the Teacher Retirement System of Texas (TRS)
  • Paid Parental Leave Benefit
  • Wellness programs
  • Tuition Reimbursement
  • Public Service Loan Forgiveness (PSLF) Qualified Employer
  • Education
    Bachelor's Degree in computer science, information technology, or related field
  • Experience
    8 years of progressively responsible technology governance experience
    Additional years of directly related experience may be substituted for stated degree on a year for year basis.
PreferredExperience

Possession of an industry certification, such as CRISC, CGRC, AIGP, CISAProgressively responsible experience establishing Information Security frameworks and aligning security controls (e.g. CIS, NIST, HIPAA, PCI), framework and Control gap analysis and remediation, project management, threat and risk modeling, building and maintaining a risk register.

Ability to respond to and audits, and leverage GRC tools (e.g. Archer, Logic Manager, Optro).

Experience creating framework based risk assessments and consulting with technical and non technical staff to implement and advance GRC initiatives based on best practices.

JOB DUTIES
  • Risk Management: Implements established risk frameworks for the Information Security program.
  • Risk Assessments: Establishes and operationalizes formal security risk assessment frameworks to quantify and qualify risk including for third-party vendor risk, technology procurement (ISAC) and internal security controls. Leads and executes enterprise-wide security assessments and strategic projects to mature the Program.
  • Audit & Compliance: Tracks audit findings, coordinates creation of audit deliverables and ensures audit compliance. Ensures Information Security Program compliance with established security controls framework, and regulatory and legal requirements, policies and standards.
  • Metrics, KPIs and Reporting: Develops metrics and KPIs for Information Security Program maturity and operational and executive reporting.
  • Program Governance: Assists with creation and management of program governance.
  • Interfaces with departments, Information Resources, third-party vendors, and business partners to identify areas of risk and assist with development of plans to establish and maintain ongoing compliance.
  • Assists with various Information Security projects. Stays up to date with regulatory changes, modern technology & security controls and practices.
  • Performs other duties as assigned.
SECURITY AND EEO STATEMENTSecurity

Security This position is security-sensitive and subject to Texas Education Code 51.215, which authorizes UT Southwestern to obtain criminal history record information. To the extent this position requires the holder to research, work on, or have access to critical infrastructure as defined in Section 117.001(2) of the Texas Business and Commerce Code, the ability to maintain the security or integrity of the critical infrastructure is a minimum qualification to be hired and to continue to be employed in the position.

EEO

UT Southwestern Medical Center is committed to an educational and working environment that provides equal opportunity to all members of the University community. As an equal opportunity employer, UT Southwestern prohibits unlawful discrimination, including discrimination on the basis of race, color, religion, national origin, sex, sexual orientation, gender identity, gender expression, age, disability, genetic information, citizenship status, or veteran status.

UT Southwestern Medical Center is committed to an educational and working environment that provides equal opportunity to all members of the University community. In accordance with federal and state law, the University prohibits unlawful discrimination, including harassment, on the basis of: race; color; religion; national origin; gender, including sexual harassment; age; disability; citizenship; and veteran status. In addition, it is UT Southwestern policy to prohibit discrimination on the basis of sexual orientation, gender identity, or gender expression.

Copyright 2017.The University of Texas Southwestern Medical Center5323 Harry Hines Blvd., Dallas, Texas 75390Phone 214-648-3111

#J-18808-Ljbffr

University of Texas Southwestern Medical Center logo

About University of Texas Southwestern Medical Center

Sourced by ZipRecruiter

The University of Texas Southwestern Medical Center (UT Southwestern), located in Dallas, Texas, United States, operates in the healthcare and higher education sectors. It's renowned as one of the leading academic medical centers globally, focusing on medical care, research, and education. Its official website is utsouthwestern.edu. Founded in 1943, it's dedicated to improving health care in their community, the region, and around the globe.

Industry

Hospitals

Company size

10,000+ Employees

Headquarters location

Dallas, TX, US

Year founded

1943