1

Vendor Risk Manager Jobs in Massachusetts (NOW HIRING)

Manage vendor profile records and ensure information is up-to-date using a GRC platform ... or vendor risk background. Technical Skills: Experience with GRC platforms such as Archer or ...

Develop and implement vendor risk mitigation plans and corrective actions. * Ensure supplier ... Vendor Quality Management * Supplier Quality Management * GMP (Good Manufacturing Practices) * GDP ...

You will help manage third-party vendor risk reviews, and operational requests, in cross-functional security compliance workflows. Success in this role requires strong attention to detail ...

You will help manage third-party vendor risk reviews, and operational requests, in cross-functional security compliance workflows. Success in this role requires strong attention to detail ...

You will help manage third-party vendor risk reviews, and operational requests, in cross-functional security compliance workflows. Success in this role requires strong attention to detail ...

You will help manage third-party vendor risk reviews, and operational requests, in cross-functional security compliance workflows. Success in this role requires strong attention to detail ...

next page

Showing results 1-20

Vendor Risk Manager information

See Massachusetts salary details

$56.2K

$121.8K

$185.7K

How much do vendor risk manager jobs pay per year?

As of Jul 20, 2026, the average yearly pay for vendor risk manager in Massachusetts is $121,833.00, according to ZipRecruiter salary data. Most workers in this role earn between $98,300.00 and $140,900.00 per year, depending on experience, location, and employer.

What is the difference between Vendor Risk Manager vs Vendor Compliance Analyst?

AspectVendor Risk ManagerVendor Compliance Analyst
CertificationsCertified Third Party Risk Professional (CTPRP), Certified Information Systems Auditor (CISA)Certified Compliance & Ethics Professional (CCEP), Certified Regulatory Compliance Manager (CRCM)
Work EnvironmentRisk management teams, procurement, legal departmentsCompliance departments, audit teams, legal units
Industry UsageFinance, healthcare, technology, retailFinance, healthcare, manufacturing, technology
Primary FocusIdentifying, assessing, and mitigating vendor risksEnsuring vendor adherence to compliance standards and policies

The Vendor Risk Manager focuses on evaluating and mitigating risks associated with vendors, while the Vendor Compliance Analyst concentrates on ensuring vendors meet regulatory and internal compliance standards. Both roles are essential in managing vendor relationships but differ in their core responsibilities and focus areas.

How does a Vendor Risk Manager typically collaborate with other departments within an organization?

A Vendor Risk Manager works closely with departments like procurement, legal, IT, and compliance to ensure that vendors meet the organization's security and regulatory standards. This collaboration often involves reviewing contracts, assessing potential risks, and implementing mitigation strategies. Regular communication with stakeholders is essential to keep everyone informed about vendor performance and risk status, making cross-functional teamwork a key aspect of the role. Effective collaboration helps streamline risk assessments and supports informed decision-making across the business.

What are the key skills and qualifications needed to thrive as a Vendor Risk Manager, and why are they important?

To thrive as a Vendor Risk Manager, you need expertise in risk assessment, third-party management, and compliance, often backed by a degree in business, finance, or a related field. Familiarity with risk management platforms, contract management tools, and certifications like Certified Third Party Risk Professional (CTPRP) are highly valuable. Strong analytical thinking, negotiation, and clear communication skills help you collaborate with vendors and internal stakeholders effectively. These skills ensure organizations can identify, mitigate, and manage risks arising from third-party relationships, safeguarding business continuity and compliance.

What are Vendor Risk Managers?

Vendor Risk Managers are professionals responsible for identifying, assessing, and mitigating risks associated with third-party vendors that provide goods or services to an organization. They evaluate vendors’ security, compliance, and operational practices to ensure they meet the company’s standards and regulatory requirements. These managers implement frameworks to monitor vendor performance, manage contracts, and respond to potential risks or incidents. Their role is crucial in protecting the organization from financial, reputational, and regulatory harm that can arise from third-party relationships.
What cities in Massachusetts are hiring for Vendor Risk Manager jobs? Cities in Massachusetts with the most Vendor Risk Manager job openings:
Vendor Risk Analyst

Vendor Risk Analyst

Apex Systems

Quincy, MA • On-site

Other

Medical, Dental, Vision, Life, Retirement

This job post has expired today. Applications are no longer accepted.


Job description

Job#: 3040112
Job Description:
Vendor Risk Analyst
Location: Quincy, Massachusetts (Remote)
Role Overview
We are seeking a Vendor Risk Analyst to serve as a security focal point for the business. This role involves acting as a conduit to other security teams to meet business needs and ensuring security coverage throughout the delivery lifecycle. The position will focus on conducting third-party vendor risk assessments and managing the vendor risk evaluation process.
Key Responsibilities
  • Act as a security focal point for the business, coordinating with teams such as Cyber Defense, Identity and Access Management, and Security Architecture.
  • Deliver end-to-end business-centric security consultancy throughout the delivery lifecycle.
  • Formally assess information security risks related to new vendor partners, determine their potential impact, and follow up on remediation efforts.
  • Execute and continuously improve the vendor risk evaluation process to ensure vendors adhere to organizational security requirements.
  • Conduct a high volume of assessments monthly, including sending questionnaires and assisting with analysis.
  • Manage vendor profile records and ensure information is up-to-date using a GRC platform.
  • Communicate with internal parties to confirm vendor activity status.
  • Review documentation and craft follow-up communications.
  • Develop strategies and drive efforts to facilitate business ownership of data, including creating tools and training materials.
  • Conduct business process improvements or targeted training to address security concerns.
Required Qualifications
Experience: 3+ years of experience in an Information Security or vendor risk background.
Technical Skills: Experience with GRC platforms such as Archer or similar tools. Specialized knowledge of Microsoft products, with a focus on Office 365 and related collaboration tools.
Preferred Qualifications
  • Strong oral and written communication skills for interacting with various stakeholders.
  • Recent Master's graduates with relevant internship experience are encouraged to apply.

Everforth Apex is a world-class IT services company that serves thousands of clients across the globe. When you join Everforth Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRateds Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico.
Everforth Apex uses a virtual recruiter as part of the application process. Click for more details. By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Everforth Apex and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at
Everforth Apex Benefits Overview: Everforth Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Everforth Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Everforth Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Everforth Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our 'Welcome Packet' as well, which an Everforth Apex team member can provide.
Everforth Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Everforth Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law.
If you require an accommodation under the Americans with Disabilities Act to participate in an interview with a virtual recruiter or to use our website for a search or application, please contact our Benefits Department at or . Please note that this contact information is strictly to be used for medical ADA accommodations and that no other inquiries will be answered.
UnitedHealthcare creates and publishes the Transparency in Coverage Machine-Readable Files on behalf of Everforth Apex Systems.