Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
RISK MANAGEMENT ANALYST - 40011600
Durham, NC · On-site
$69 - $90/hr
The Risk Management Analyst supports the County's enterprise risk management program through ... Review contracts, agreements, and vendor documentation to verify appropriate insurance requirements ...
RISK MANAGEMENT ANALYST - 40011600
Durham, NC · On-site
$69 - $90/hr
The Risk Management Analyst supports the County's enterprise risk management program through ... Review contracts, agreements, and vendor documentation to verify appropriate insurance requirements ...
Key Responsibilities Third-Party Cybersecurity Management • Vendor Assessments: Conduct cybersecurity assessments of third-party vendors. • Risk Documentation: Document cybersecurity risks ...
Key Responsibilities Third-Party Cybersecurity Management • Vendor Assessments: Conduct cybersecurity assessments of third-party vendors. • Risk Documentation: Document cybersecurity risks ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Evaluate vendor controls across identity and access management, network security, cloud security ... Determine residual risk and provide recommendations for approval, conditional approval, remediation ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Evaluate vendor controls across identity and access management, network security, cloud security ... Determine residual risk and provide recommendations for approval, conditional approval, remediation ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Evaluate vendor controls across identity and access management, network security, cloud security ... Determine residual risk and provide recommendations for approval, conditional approval, remediation ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · Hybrid
$107K - $145K/yr
Evaluate vendor controls across identity and access management, network security, cloud security ... Determine residual risk and provide recommendations for approval, conditional approval, remediation ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Evaluate vendor controls across identity and access management, network security, cloud security ... Determine residual risk and provide recommendations for approval, conditional approval, remediation ...
Sr. Manager of Cybersecurity, Third Party Risk
Raleigh, NC · On-site
$107K - $145K/yr
Evaluate vendor controls across identity and access management, network security, cloud security ... Determine residual risk and provide recommendations for approval, conditional approval, remediation ...
Manager, Insurance Risk Management
Raleigh, NC · Hybrid
$85K - $153K/yr
Review vendor and client contracts to recommend appropriate insurance coverage types and levels, ensuring adequate risk transfer and protection. * Assist with the management of professional liability ...
Manager, Insurance Risk Management
Raleigh, NC · Hybrid
$85K - $153K/yr
Review vendor and client contracts to recommend appropriate insurance coverage types and levels, ensuring adequate risk transfer and protection. * Assist with the management of professional liability ...
Manager, Insurance Risk Management
Raleigh, NC · Hybrid
$85K - $153K/yr
Review vendor and client contracts to recommend appropriate insurance coverage types and levels, ensuring adequate risk transfer and protection. * Assist with the management of professional liability ...
Manager, Insurance Risk Management
Raleigh, NC · Hybrid
$85K - $153K/yr
Review vendor and client contracts to recommend appropriate insurance coverage types and levels, ensuring adequate risk transfer and protection. * Assist with the management of professional liability ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Consider credit risk practices and techniques utilized by other Bank lending groups, industry peers and vendor best practices. 3. Review components of a consumer BU credit risk management processes ...
New
Consider credit risk practices and techniques utilized by other Bank lending groups, industry peers and vendor best practices. 3. Review components of a consumer BU credit risk management processes ...
New
Consider credit risk practices and techniques utilized by other Bank lending groups, industry peers and vendor best practices. 3. Review components of a consumer BU credit risk management processes ...
Consider credit risk practices and techniques utilized by other Bank lending groups, industry peers and vendor best practices. 3. Review components of a consumer BU credit risk management processes ...
Consumer Portfolio and Policy Risk Manager I
Raleigh, NC · On-site
$120 - $180/hr
Consider credit risk practices and techniques utilized by other Bank lending groups, industry peers and vendor best practices. * Review components of a consumer BU credit risk management processes ...
Consumer Portfolio and Policy Risk Manager I
Raleigh, NC · On-site
$120 - $180/hr
Consider credit risk practices and techniques utilized by other Bank lending groups, industry peers and vendor best practices. * Review components of a consumer BU credit risk management processes ...
In this dynamic role, you will lead and inspire a talented team to secure high-value goods and services, shape cost-saving strategies, and manage vendor risk with diligent oversight. Collaborate with ...
In this dynamic role, you will lead and inspire a talented team to secure high-value goods and services, shape cost-saving strategies, and manage vendor risk with diligent oversight. Collaborate with ...
This role develops and implements risk and contingency management processes, facilitates risk ... contacting vendors to obtain quotes for materials and services, and leading change order ...
This role develops and implements risk and contingency management processes, facilitates risk ... contacting vendors to obtain quotes for materials and services, and leading change order ...
MES IT QA Specialist
Raleigh, NC · On-site
... and managing supplier quality • Mitigate vendor risk and create third party contingency plans • Assist in validation of IT systems, evaluation of requirements, and testing. • Assist in the ...
MES IT QA Specialist
Raleigh, NC · On-site
... and managing supplier quality • Mitigate vendor risk and create third party contingency plans • Assist in validation of IT systems, evaluation of requirements, and testing. • Assist in the ...
HCS Info Security Analyst Sr
Morrisville, NC · On-site
$44.56 - $64.06/hr
Experience with vendor risk management and third-party security reviews. Other Information Education Requirements: • Bachelor's degree in Computer Science, Information Systems Management or a ...
HCS Info Security Analyst Sr
Morrisville, NC · On-site
$44.56 - $64.06/hr
Experience with vendor risk management and third-party security reviews. Other Information Education Requirements: • Bachelor's degree in Computer Science, Information Systems Management or a ...
HCS Info Security Analyst Sr
Morrisville, NC · On-site
$61 - $88/hr
Experience with vendor risk management and third-party security reviews. Other Information Education Requirements Bachelor's degree in Computer Science, Information Systems Management or a related ...
New
HCS Info Security Analyst Sr
Morrisville, NC · On-site
$61 - $88/hr
Experience with vendor risk management and third-party security reviews. Other Information Education Requirements Bachelor's degree in Computer Science, Information Systems Management or a related ...
New
... Vendor Risk management module configuration Experience in GRC PA module to configure reports and KPI Integration expertise from GRC to other 3rd party application Drive the standardization and ...
... Vendor Risk management module configuration Experience in GRC PA module to configure reports and KPI Integration expertise from GRC to other 3rd party application Drive the standardization and ...
Vendor Risk Management information
See Raleigh, NC salary details
$42.3K - $53.2K
8% of jobs
$53.2K - $64.2K
14% of jobs
$69.2K is the 25th percentile. Wages below this are outliers.
$64.2K - $75.2K
6% of jobs
$75.2K - $86.1K
8% of jobs
$86.1K - $97.1K
11% of jobs
The median wage is $99.4K / yr.
$97.1K - $108K
13% of jobs
$108K - $119K
11% of jobs
$122.3K is the 75th percentile. Wages above this are outliers.
$119K - $129.9K
15% of jobs
$129.9K - $140.9K
8% of jobs
$140.9K - $151.9K
4% of jobs
$151.9K - $162.8K
2% of jobs
$42.3K
$100.8K
$162.8K
How much do vendor risk management jobs pay per year?
What is vendor risk management?
A Vendor Risk Management (VRM) job involves assessing, monitoring, and mitigating risks associated with third-party vendors and suppliers. Professionals in this role evaluate vendor security, compliance, and operational risks to protect their organization from potential disruptions, data breaches, or regulatory violations. They work closely with procurement, legal, and IT teams to establish risk management frameworks and ensure vendors meet contractual and security standards. Their responsibilities often include conducting risk assessments, reviewing vendor contracts, and developing risk mitigation strategies. Effective VRM helps organizations reduce exposure to risks while maintaining productive vendor relationships.
What are some common challenges faced in vendor risk management?
Professionals in Vendor Risk Management often encounter the challenge of assessing and monitoring a wide range of vendors, each with unique risk profiles and compliance requirements. Balancing multiple projects, managing deadlines, and ensuring clear communication between internal stakeholders and vendors can also be demanding. Staying updated on evolving regulatory standards and quickly adapting to new risks is essential in this role. Overcoming these challenges requires strong organizational skills, continual learning, and proactive relationship management.
What are the key skills and qualifications needed to thrive in vendor risk management?
To thrive in Vendor Risk Management, you need a solid background in risk assessment, contract analysis, and supply chain management, often supported by a degree in business, finance, or a related field. Familiarity with risk management software, vendor management systems, and relevant certifications such as Certified Third Party Risk Professional (CTPRP) are highly valued. Strong attention to detail, excellent communication, and negotiation skills help build effective vendor relationships and navigate complex scenarios. These capabilities are crucial for ensuring organizational compliance, minimizing third-party risks, and maintaining strong supplier performance.
How to do vendor risk management?
What does a vendor risk management do?
What are the most commonly searched types of Vendor Risk Management jobs in Raleigh, NC?
The most popular types of Vendor Risk Management jobs in Raleigh, NC are:
What are popular job titles related to Vendor Risk Management jobs in Raleigh, NC?
For Vendor Risk Management jobs in Raleigh, NC, the most frequently searched job titles are:
What job categories do people searching Vendor Risk Management jobs in Raleigh, NC look for?
The top searched job categories for Vendor Risk Management jobs in Raleigh, NC are:
What cities near Raleigh, NC are hiring for Vendor Risk Management jobs?
Cities near Raleigh, NC with the most Vendor Risk Management job openings:

Full-time
Re-posted 21 days ago
Job description
The Director of Governance and Risk will report to the CISO within Advance Auto Parts and will focus on the defining and deploying governance and risk management frameworks across Advance Auto Parts.
The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and 3rd party risk management. The ideal candidate will combine expertise in both cybersecurity and risk management disciplines and have exceptional communication and stakeholder management skills.
This position is 4 days in office, 1 day remote per week, based at our corporate headquarters in Raleigh, North Carolina (North Hills)
The key responsibilities of the role include:
- Develop a short term and long-term comprehensive Governance and Risk Management Strategy
- Develop, communicate, and implement enterprise-wide security policy, standards, procedures, and guidelines.
- Provide strategic guidance to the CISO for the representation of risks to the Board, Audit committee, and ERM
- Lead a team of cyber specialists, providing direction and supporting their development
- Conduct regular risk assessments, including PCI-DSS and SOX, and develop comprehensive risk management plans for various business units and projects
- Support Internal Audit with engagements requiring technology support.
- Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
- Support the identification, evaluation, and prioritization of cyber risks across the organization
- Oversee production, reporting and evolution of cyber risk metrics, including Key Performance Indicators (KPIs), scorecards, and Key Risk Indicators (KRIs)
- Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
- Drive automation, analytics, and continuous improvement of processes
- Engage with a range of senior stakeholders across Lines of Defense to ensure appropriate oversight and reporting of cybersecurity risks and vulnerabilities
- Collaborate with cross-functional teams on cyber risk remediation activities
- Ensure regulatory compliance with frameworks in NIST, SOC 1&2, PCI, SOX, CCPA
- Maintain the database and reporting platform to ensure compliance to our security policies and standards.
Skills/ Qualifications:
- Bachelor's degree in information security, Computer Science, or a related field; Master's degree preferred
- Minimum of 12 years of experience in cybersecurity, with a focus on risk management
- Expert in the implementation and operational management of OneTrust, working knowledge of Service Now, and Auditboard.
- Process driven with an extensive knowledge of cyber risk management frameworks, tools, and methodologies
- Master in the ability to "tell a story" through PowerPoint leveraging metrics and creativity for various levels of the enterprise (Board, ERM, Steerco, Business and/or tech leaders)
- Proven experience in senior leadership roles, managing teams, and influencing executive stakeholders, driving outcomes
- Experience in establishing and managing regulatory compliance in NIST, PCI-DSS, SOX, SOC 1/2, CCPA, HIPAA
- Deep understanding in cybersecurity metrics programs that are meaningful and risk/risk posture reporting
- Strategic thinker with a strong understanding of cyber risks, vulnerabilities, and risk mitigation options
- Innovative thinker, adaptable to change, self-driven, aggressive, and detail oriented with the ability to establish true partnerships that drives business enablement while managing risk
- Exceptional communication and executive level presentation skills, capable of translating technical risk into business terms
- Must have the ability to drive enterprise aligned roadmaps focusing on top cyber risks, cyber priorities, industry threats that align to the business
- Excellent analytical, problem-solving, and decision-making skills
California Residents click below for Privacy Notice:
About Advance Auto Parts
Sourced by ZipRecruiter
At Advance Auto Parts we have a passion for YES. Each day we are motivated by a passion to help our Customers. We have a commitment to advance the lives of our fellow Team Members, Customers, and the Communities where we live and work.
Industry
Motor vehicle and motor vehicle parts wholesalers, retail, internet and it and elementary and secondary schools
Company size
10,000+ Employees
Headquarters location
Raleigh, NC, US