... audit findings, vendor risk, and resilience needs, then connecting those priorities to RSM ... Forecast and manage the cyber and risk consulting pipeline, including opportunity sizing ...
... audit findings, vendor risk, and resilience needs, then connecting those priorities to RSM ... Forecast and manage the cyber and risk consulting pipeline, including opportunity sizing ...
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
Senior IT Category Manager
Detroit, MI · On-site
Coordinate vendor risk assessments and develop plans to track and address significant risks ... Manage contracts and collaborate effectively with Corporate Compliance, Legal, Audit and Risk ...
Senior IT Category Manager
Detroit, MI · On-site
Coordinate vendor risk assessments and develop plans to track and address significant risks ... Manage contracts and collaborate effectively with Corporate Compliance, Legal, Audit and Risk ...
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
Quick apply
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
In this dynamic role, you will lead and inspire a talented team to secure high-value goods and services, shape cost-saving strategies, and manage vendor risk with diligent oversight. Collaborate with ...
New
In this dynamic role, you will lead and inspire a talented team to secure high-value goods and services, shape cost-saving strategies, and manage vendor risk with diligent oversight. Collaborate with ...
New
Risk Transformation & Delivery Analyst
Southfield, MI · Hybrid
$94K - $134K/yr
Budget, Vendor, and Resource Management * Assist the Head of Risk Transformation in managing the Risk organization's budget, including forecasting, tracking, and variance analysis. * Support vendor ...
Risk Transformation & Delivery Analyst
Southfield, MI · Hybrid
$94K - $134K/yr
Budget, Vendor, and Resource Management * Assist the Head of Risk Transformation in managing the Risk organization's budget, including forecasting, tracking, and variance analysis. * Support vendor ...
Principal IT Vendor Manager
Detroit, MI · On-site
$107K - $172K/yr
Manage the overall vendor relationship and governance for complex or high profile/critical IT ... vendor related risk to prevent operational and organizational disruption. * Facilitate formal ...
Principal IT Vendor Manager
Detroit, MI · On-site
$107K - $172K/yr
Manage the overall vendor relationship and governance for complex or high profile/critical IT ... vendor related risk to prevent operational and organizational disruption. * Facilitate formal ...
Risk Transformation & Delivery Analyst
Southfield, MI · Hybrid
$94K - $134K/yr
Budget, Vendor, and Resource Management * Assist the Head of Risk Transformation in managing the Risk organization's budget, including forecasting, tracking, and variance analysis. * Support vendor ...
Risk Transformation & Delivery Analyst
Southfield, MI · Hybrid
$94K - $134K/yr
Budget, Vendor, and Resource Management * Assist the Head of Risk Transformation in managing the Risk organization's budget, including forecasting, tracking, and variance analysis. * Support vendor ...
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
The Vehicle Marshalling and Vendor Manager is responsible for overseeing operational performance ... Partner cross-functionally with remarketing, servicing, risk, and auction partners to align ...
Job Title: IT Risk & Controls Manager Job Location: Detroit, MI Job Level: Mid - Senior Level Job ... determine vendor risks that arise within their structure Qualifications SKILL SET: Financial ...
Job Title: IT Risk & Controls Manager Job Location: Detroit, MI Job Level: Mid - Senior Level Job ... determine vendor risks that arise within their structure Qualifications SKILL SET: Financial ...
Strong understanding of ITSM, service level management, operational governance, vendor management, contract governance, issue/risk management, and continuous improvement. * Commercial acumen and ...
Strong understanding of ITSM, service level management, operational governance, vendor management, contract governance, issue/risk management, and continuous improvement. * Commercial acumen and ...
Evaluate vendor controls across identity and access management, network security, cloud security, application security, data protection, encryption, vulnerability management, endpoint protection ...
Evaluate vendor controls across identity and access management, network security, cloud security, application security, data protection, encryption, vulnerability management, endpoint protection ...
Evaluate vendor controls across identity and access management, network security, cloud security, application security, data protection, encryption, vulnerability management, endpoint protection ...
Evaluate vendor controls across identity and access management, network security, cloud security, application security, data protection, encryption, vulnerability management, endpoint protection ...
Director, Information Technology (Government Solutions)
$199K - $241K/yr
Manage IT budgets, resource allocation, vendors, service priorities, and financial accountability ... Own information security, compliance, and risk management practices across the organization
Quick apply
Director, Information Technology (Government Solutions)
$199K - $241K/yr
Manage IT budgets, resource allocation, vendors, service priorities, and financial accountability ... Own information security, compliance, and risk management practices across the organization
Coordinate with courts, government agencies, insurers, clients, lenders, vendors, tenants, and ... risk management, and corporate legal matters. * Proven ability to manage complex litigation ...
Coordinate with courts, government agencies, insurers, clients, lenders, vendors, tenants, and ... risk management, and corporate legal matters. * Proven ability to manage complex litigation ...
Coordinate with courts, government agencies, insurers, clients, lenders, vendors, tenants, and ... risk management, and corporate legal matters. * Proven ability to manage complex litigation ...
Coordinate with courts, government agencies, insurers, clients, lenders, vendors, tenants, and ... risk management, and corporate legal matters. * Proven ability to manage complex litigation ...
Vice President of Risk
Novi, MI · On-site
$140 - $230/hr
Partnering closely with executive leadership and business units, this leader will oversee enterprise risk management, regulatory compliance, business continuity, vendor management, and operational ...
Vice President of Risk
Novi, MI · On-site
$140 - $230/hr
Partnering closely with executive leadership and business units, this leader will oversee enterprise risk management, regulatory compliance, business continuity, vendor management, and operational ...
VP of Risk
Novi, MI · On-site
$130 - $210/hr
Maintains oversight of vendor management program * Collaborate with Chief Financial Officer to ... Assesses the risk potential of controls, activities, policies, and procedures, and aids in ...
VP of Risk
Novi, MI · On-site
$130 - $210/hr
Maintains oversight of vendor management program * Collaborate with Chief Financial Officer to ... Assesses the risk potential of controls, activities, policies, and procedures, and aids in ...
Vendor Risk Manager information
See Detroit, MI salary details
$47.1K - $57K
4% of jobs
$57K - $66.8K
6% of jobs
$66.8K - $76.7K
11% of jobs
$80.4K is the 25th percentile. Wages below this are outliers.
$76.7K - $86.5K
11% of jobs
The median wage is $94.4K / yr.
$86.5K - $96.4K
23% of jobs
$96.4K - $106.3K
13% of jobs
$112.8K is the 75th percentile. Wages above this are outliers.
$106.3K - $116.1K
12% of jobs
$116.1K - $126K
8% of jobs
$126K - $135.8K
6% of jobs
$135.8K - $145.7K
4% of jobs
$145.7K - $155.5K
2% of jobs
$47.1K
$102.1K
$155.5K
How much do vendor risk manager jobs pay per year?
What is the difference between Vendor Risk Manager vs Vendor Compliance Analyst?
| Aspect | Vendor Risk Manager | Vendor Compliance Analyst |
|---|---|---|
| Certifications | Certified Third Party Risk Professional (CTPRP), Certified Information Systems Auditor (CISA) | Certified Compliance & Ethics Professional (CCEP), Certified Regulatory Compliance Manager (CRCM) |
| Work Environment | Risk management teams, procurement, legal departments | Compliance departments, audit teams, legal units |
| Industry Usage | Finance, healthcare, technology, retail | Finance, healthcare, manufacturing, technology |
| Primary Focus | Identifying, assessing, and mitigating vendor risks | Ensuring vendor adherence to compliance standards and policies |
The Vendor Risk Manager focuses on evaluating and mitigating risks associated with vendors, while the Vendor Compliance Analyst concentrates on ensuring vendors meet regulatory and internal compliance standards. Both roles are essential in managing vendor relationships but differ in their core responsibilities and focus areas.
How does a vendor risk manager typically collaborate with other departments within an organization?
What are the key skills and qualifications needed to thrive as a vendor risk manager?
What is a vendor risk manager?

Full-time
Re-posted 15 days ago
Job description
We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. You'll find an environment that inspires and empowers you to thrive both personally and professionally. There's no one like you and that's why there's nowhere like RSM.
ESSENTIAL DUTIES
Cyber & Risk Account Leadership & Planning
- Develop and execute strategic account plans for assigned cyber and risk consulting accounts, establishing clear revenue targets, relationship milestones, and cross-sell initiatives aligned with client enterprise risk priorities, regulatory obligations, cyber maturity goals, and resilience roadmaps.
- Conduct quarterly account reviews with internal stakeholders, including cyber strategy, technology risk, IT audit, governance risk and compliance, privacy, third-party risk, cloud security, incident response, and managed security leaders to identify expansion opportunities and design integrated risk advisory solutions.
- Establish and maintain executive relationship mapping for each account, identifying CISOs, CIOs, CROs, CFOs, General Counsel, audit committee members, compliance leaders, privacy officers, and business unit executives to enable multi-threaded engagement around cyber risk and enterprise resilience.
- Lead the transition of single-service cyber or risk clients into integrated advisory partnerships by connecting security, compliance, operational resilience, technology risk, privacy, and third-party risk challenges to RSM's broader cyber and risk consulting portfolio.
Revenue Growth & Service Expansion
- Drive year-over-year organic revenue growth within assigned accounts through renewals, upsells, and cross-sells of cyber and risk services, including cyber strategy and governance, technology risk, IT audit, regulatory compliance, privacy, data protection, third-party risk management, cloud security, incident readiness, and managed risk services.
- Identify and qualify high-value expansion opportunities by analyzing client risk maturity, cyber program effectiveness, regulatory pressure, threat exposure, control gaps, audit findings, vendor risk, and resilience needs, then connecting those priorities to RSM's integrated advisory capabilities.
- Develop and present multi-service value propositions to CISO, CIO, CRO, CFO, General Counsel, audit committee, and board-level audiences, using risk assessments, maturity benchmarks, regulatory drivers, cyber risk quantification, business impact scenarios, and resilience roadmaps to justify investment.
- Forecast and manage the cyber and risk consulting pipeline, including opportunity sizing, probability weighting, close forecasting, and quarterly reviews across cyber strategy, technology risk, IT audit, compliance, privacy, third-party risk, cloud security, incident response, and managed risk services.
Client Relationship & Executive Engagement
- Serve as the primary point of contact and trusted cyber and risk advisor for assigned accounts, building relationships grounded in a deep understanding of the client's business model, threat landscape, control environment, regulatory obligations, and enterprise risk priorities.
- Conduct QBRs and executive business reviews with CISO, CIO, CRO, CFO, General Counsel, audit committee, and C-suite leadership, presenting account performance, cyber maturity insights, risk themes, regulatory developments, control improvement opportunities, and recommendations for expanded advisory support.
- Maintain consistent engagement through strategic calls, risk briefings, cyber trend updates, control workshops, tabletop exercises, and in-person visits focused on evolving risk priorities, program maturity, regulatory readiness, and resilience needs.
- Build multi-threaded relationships across executive leadership, cyber and IT leadership, compliance, legal, finance, internal audit, procurement, and business unit stakeholders to reduce single-point-of-contact risk and increase strategic influence.
- Cultivate client advocacy through cyber program success stories, risk transformation case studies, board and peer referrals, and thought leadership engagement; establish accounts as referenceable clients for RSM's cyber and risk consulting practice.
Cyber & Risk Consulting Service Integration
- Lead the identification and launch of integrated cyber and risk initiatives that position RSM as the primary advisory partner across cyber strategy, governance, technology risk, IT audit, regulatory compliance, privacy, third-party risk, resilience, cloud security, and managed risk services.
- Collaborate with cyber strategists, risk advisors, IT audit professionals, compliance specialists, privacy practitioners, cloud security architects, incident response leaders, and managed services teams to design and scope integrated solutions addressing clients' highest-priority cyber and enterprise risk challenges.
- Manage the internal sales process, including proposal development, competitive assessments, multi-discipline client presentations, and unified positioning of RSM's cyber and risk advisory capabilities.
- Track and report on service line penetration within each account, establishing adoption goals across cyber strategy, technology risk, IT audit, compliance, privacy, third-party risk, incident readiness, and managed risk services.
Client Risk Success & Account Health
- Develop and monitor a composite account health score that incorporates relationship breadth, renewal and expansion status, cyber and risk maturity progression, delivery satisfaction, competitive positioning, regulatory urgency, and service expansion pipeline.
- Proactively identify at-risk accounts by monitoring engagement levels, risk roadmap alignment, audit findings, cyber incidents, regulatory pressure, delivery satisfaction, competitive threats, and renewal status; design interventions to stabilize and expand relationships.
- Work closely with delivery teams and cyber and risk practice leaders to ensure service delivery excellence, measurable risk reduction, control improvement, regulatory readiness, resilience outcomes, and realization of agreed client success criteria.
- Manage contract renewals and expansion discussions, ensuring on-time renewal execution and leveraging renewal conversations to expand service scope, improve cyber maturity, address emerging risk needs, and capture incremental advisory revenue.
Cyber, Risk & Regulatory Intelligence
- Develop deep industry, cyber, and risk expertise relevant to assigned accounts, staying abreast of threat trends, regulatory developments, privacy requirements, control frameworks, resilience expectations, cloud security concerns, third-party risk, and technology risk management practices.
- Bring curated cyber threat intelligence, risk trends, regulatory updates, maturity benchmarks, control improvement insights, and board-level business impact analyses to client conversations, positioning RSM as a strategic cyber and risk advisor.
- Identify and communicate emerging cyber and risk challenges, including ransomware exposure, cloud misconfiguration, identity and access risk, data privacy obligations, vendor risk, regulatory scrutiny, operational resilience, and audit readiness that create opportunities for expanded RSM engagement.
Metrics, Forecasting & Accountability
- Manage account portfolio to deliver individual and team revenue targets, expansion KPIs, service breadth, net revenue retention, renewal rate, and client satisfaction metrics for cyber and risk consulting services.
- Maintain accurate and timely account data within Salesforce, including opportunity pipeline, account plans, forecast assumptions, client interaction history, risk maturity assessments, regulatory drivers, and service adoption tracking.
- Prepare monthly and quarterly account performance reports, including revenue trends, service adoption, renewal status, cyber and risk opportunities, account health assessments, risk themes, and forecast updates.
- Achieve and maintain KPI targets including annual revenue growth, strong renewal performance, net revenue retention, multi-service cyber and risk engagement, adjacent service sell-through, and high client satisfaction for assigned accounts.
Required Qualifications:
- Bachelor's degree OR direct relevant past selling experience
- Minimum 5 years of professional services sales and/or account management
- Minimum 2 years of professional experience representing, client serving, managing or selling services
- Proficient in Microsoft Office suite (Word, Excel, PowerPoint)
- CRM experience for sales and/or account management application and requirements
- Formal sales process training (consultative selling, solution-based selling, complex sales or related consultative selling approaches)
- Demonstrated ability to lead a comprehensive and often complex sales process involving multiple internal resources and external decision-makers. Leadership in this role is largely based on influence and subject matter expertise rather than formal leadership roles or reporting lines
Preferred Qualifications:
- Experience within a consulting firm/accounting firm environment
- 7+ years of account management, cyber and risk consulting account leadership, advisory sales, or strategic client relationship experience in professional services, consulting, risk advisory, cybersecurity, or technology risk environments.
- Strong organizational and project management skills; ability to orchestrate cross-functional internal teams across cyber, risk, compliance, privacy, IT audit, incident response, managed services, and industry advisory practices.
At RSM, we offer a competitive benefits and compensation package for all our people.We offer flexibility in your schedule, empowering you to balance life's demands, while also maintaining your ability to serve clients.Learn more about our total rewards at https://rsmus.com/careers/working-at-rsm/benefits.
All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law.
Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership.RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at 800-274-3978 or send us an email at careers@rsmus.com.
RSM does not intend to hire entry level candidates who will require sponsorship now OR in the future (i.e. F-1 visa holders). If you are a recent U.S. college / university graduate possessing 1-2 years of progressive and relevant work experience in a same or similar role to the one for which you are applying, excluding internships, you may be eligible for hire as an experienced associate.
RSM will consider for employment qualified applicants with arrest or conviction records. For those living in California or applying to a position in California, please click here for additional information.
At RSM, an employee's pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.
Compensation Range: $102,800 - $176,000