ABOUT THE ROLE The Information Security Client & Vendor Risk Manager leads the firm's client due diligence program and oversees all information security vetting for third party vendors across the ...
ABOUT THE ROLE The Information Security Client & Vendor Risk Manager leads the firm's client due diligence program and oversees all information security vetting for third party vendors across the ...
Manager, Supplier Management
Houston, TX · On-site
Lead and manage the organization's vendor lifecycle management program from supplier onboarding ... Coordinate vendor risk assessments across information security, financial stability, regulatory ...
Manager, Supplier Management
Houston, TX · On-site
Lead and manage the organization's vendor lifecycle management program from supplier onboarding ... Coordinate vendor risk assessments across information security, financial stability, regulatory ...
Lead and manage the organization's vendor lifecycle management program from supplier onboarding ... Coordinate vendor risk assessments across information security, financial stability, regulatory ...
Lead and manage the organization's vendor lifecycle management program from supplier onboarding ... Coordinate vendor risk assessments across information security, financial stability, regulatory ...
Environmental Risk Manager
The Woodlands, TX · On-site
$107K - $110K/yr
The Environmental Risk Manager's primary responsibility will be the assessment of environmental ... vendors and obtain approval from relationship managers to engage. - Responsible for tracking all ...
Environmental Risk Manager
The Woodlands, TX · On-site
$107K - $110K/yr
The Environmental Risk Manager's primary responsibility will be the assessment of environmental ... vendors and obtain approval from relationship managers to engage. - Responsible for tracking all ...
Environmental Risk Manager
The Woodlands, TX · On-site
$104K - $108K/yr
... vendors and obtain approval from relationship managers to engage. - Responsible for tracking all ... risk and lending teams. - Assess the scope of work for Phase II subsurface investigations and ...
Environmental Risk Manager
The Woodlands, TX · On-site
$104K - $108K/yr
... vendors and obtain approval from relationship managers to engage. - Responsible for tracking all ... risk and lending teams. - Assess the scope of work for Phase II subsurface investigations and ...
... Risk Review teams ... Key responsibilities include managing a portfolio of technology vendors, software platforms, and ...
... Risk Review teams ... Key responsibilities include managing a portfolio of technology vendors, software platforms, and ...
Director of Risk Management
Houston, TX · On-site
Risk Manager Risk Management Strategy • Develop and implement a comprehensive risk management ... party vendors. • Oversee claims management process for property damage, liability, and tenant ...
Director of Risk Management
Houston, TX · On-site
Risk Manager Risk Management Strategy • Develop and implement a comprehensive risk management ... party vendors. • Oversee claims management process for property damage, liability, and tenant ...
Director of Risk Management
Houston, TX · On-site
Risk Manager Risk Management Strategy • Develop and implement a comprehensive risk management ... party vendors. • Oversee claims management process for property damage, liability, and tenant ...
Director of Risk Management
Houston, TX · On-site
Risk Manager Risk Management Strategy • Develop and implement a comprehensive risk management ... party vendors. • Oversee claims management process for property damage, liability, and tenant ...
Key responsibilities include managing a portfolio of technology vendors, software platforms, and ... Maintaining the vendor risk register and tracking dashboards - keeping records accurate and current ...
Key responsibilities include managing a portfolio of technology vendors, software platforms, and ... Maintaining the vendor risk register and tracking dashboards - keeping records accurate and current ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Sr GRC Analyst - w2
Texas City, TX · On-site
Ability to configure and/or maintain 3rd party vendor risk management tools (such as OneTrust vendor assessment or a similar tool ) for third party risk assessments is a plus One or more ...
Quick apply
Sr GRC Analyst - w2
Texas City, TX · On-site
Ability to configure and/or maintain 3rd party vendor risk management tools (such as OneTrust vendor assessment or a similar tool ) for third party risk assessments is a plus One or more ...
Role: Merchant Acquiring Risk & Governance Manager Location: Spring, TX (Hybrid) Job type ... Partner with fintechs, ISOs, PayFacs, processors, and third-party vendors to ensure compliance and ...
Quick apply
Role: Merchant Acquiring Risk & Governance Manager Location: Spring, TX (Hybrid) Job type ... Partner with fintechs, ISOs, PayFacs, processors, and third-party vendors to ensure compliance and ...
Director of Risk Management
Houston, TX · On-site
$150 - $210/hr
Risk Manager Risk Management Strategy * Develop and implement a comprehensive risk management ... vendor paperwork, and audits. Experience * Must bring deep knowledge of real‑estate risk ...
Director of Risk Management
Houston, TX · On-site
$150 - $210/hr
Risk Manager Risk Management Strategy * Develop and implement a comprehensive risk management ... vendor paperwork, and audits. Experience * Must bring deep knowledge of real‑estate risk ...
... Contractor & Vendor Insurance Compliance for national development and construction project ... Relevant certifications (e.g., Certified Risk Manager, Certified Financial Risk Manager) are a plus.
... Contractor & Vendor Insurance Compliance for national development and construction project ... Relevant certifications (e.g., Certified Risk Manager, Certified Financial Risk Manager) are a plus.
... Contractor & Vendor Insurance Compliance for national development and construction project ... Relevant certifications (e.g., Certified Risk Manager, Certified Financial Risk Manager) are a plus.
... Contractor & Vendor Insurance Compliance for national development and construction project ... Relevant certifications (e.g., Certified Risk Manager, Certified Financial Risk Manager) are a plus.
The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and ... Experience in negotiating and managing vendor contracts (buy-side) for third-party software ...
The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and ... Experience in negotiating and managing vendor contracts (buy-side) for third-party software ...
IT Vendor Financials & Contract Manager
Houston, TX · On-site +1
Third-Party Risk Management (TPRM) * Service Level Management (SLM) * Contract Management Pro ... Experience managing vendor SLA compliance and SLO frameworks * Experience establishing or ...
IT Vendor Financials & Contract Manager
Houston, TX · On-site +1
Third-Party Risk Management (TPRM) * Service Level Management (SLM) * Contract Management Pro ... Experience managing vendor SLA compliance and SLO frameworks * Experience establishing or ...
... audit findings, vendor risk, and resilience needs, then connecting those priorities to RSM ... Forecast and manage the cyber and risk consulting pipeline, including opportunity sizing ...
... audit findings, vendor risk, and resilience needs, then connecting those priorities to RSM ... Forecast and manage the cyber and risk consulting pipeline, including opportunity sizing ...
VP Information Security
$149K - $187K/yr
This position will own the company's security posture, mature our risk management capabilities, and ... Budget and vendor management experience.
Quick apply
VP Information Security
$149K - $187K/yr
This position will own the company's security posture, mature our risk management capabilities, and ... Budget and vendor management experience.
As a Vendor Management Specialist, you will be responsible for: * Collecting vendor data and ... Identifying high-risk vendors and ensuring they comply with high-risk regulations. * Processing ...
As a Vendor Management Specialist, you will be responsible for: * Collecting vendor data and ... Identifying high-risk vendors and ensuring they comply with high-risk regulations. * Processing ...
Vendor Risk Manager information
See Houston, TX salary details
$49.2K - $59.5K
4% of jobs
$59.5K - $69.8K
6% of jobs
$69.8K - $80K
11% of jobs
$83.9K is the 25th percentile. Wages below this are outliers.
$80K - $90.3K
11% of jobs
The median wage is $98.5K / yr.
$90.3K - $100.6K
23% of jobs
$100.6K - $110.9K
13% of jobs
$117.7K is the 75th percentile. Wages above this are outliers.
$110.9K - $121.2K
12% of jobs
$121.2K - $131.5K
8% of jobs
$131.5K - $141.8K
6% of jobs
$141.8K - $152.1K
4% of jobs
$152.1K - $162.3K
2% of jobs
$49.2K
$106.5K
$162.3K
How much do vendor risk manager jobs pay per year?
What is a vendor risk manager?
What are the key skills and qualifications needed to thrive as a vendor risk manager?
How does a vendor risk manager typically collaborate with other departments within an organization?
What is the difference between Vendor Risk Manager vs Vendor Compliance Analyst?
| Aspect | Vendor Risk Manager | Vendor Compliance Analyst |
|---|---|---|
| Certifications | Certified Third Party Risk Professional (CTPRP), Certified Information Systems Auditor (CISA) | Certified Compliance & Ethics Professional (CCEP), Certified Regulatory Compliance Manager (CRCM) |
| Work Environment | Risk management teams, procurement, legal departments | Compliance departments, audit teams, legal units |
| Industry Usage | Finance, healthcare, technology, retail | Finance, healthcare, manufacturing, technology |
| Primary Focus | Identifying, assessing, and mitigating vendor risks | Ensuring vendor adherence to compliance standards and policies |
The Vendor Risk Manager focuses on evaluating and mitigating risks associated with vendors, while the Vendor Compliance Analyst concentrates on ensuring vendors meet regulatory and internal compliance standards. Both roles are essential in managing vendor relationships but differ in their core responsibilities and focus areas.
What cities near Houston, TX are hiring for Vendor Risk Manager jobs?
Cities near Houston, TX with the most Vendor Risk Manager job openings:

Job description
ABOUT BAKER BOTTS
Baker Botts is a leading international law firm recognized for its deep understanding of the industries it serves. With offices across major global markets, the firm delivers sophisticated legal services while cultivating a collaborative, inclusive culture where both attorneys and professional staff contribute to client success and organizational excellence.
ABOUT THE ROLE
The Information Security Client & Vendor Risk Manager leads the firm’s client due diligence program and oversees all information security vetting for third party vendors across the firm. This role requires deep expertise in security frameworks, strong riskassessment judgment, and the ability to influence senior stakeholders, including internal stakeholders, and client security teams. The Manager acts as a key liaison between the firm’s clients, internal leadership, IT Security, Procurement, and Risk Management, ensuring the firm meets the heightened expectations of our clients.
WHAT YOU'LL DO
Primary Responsibilities
- Own and mature the firmwide client and vendor duediligence program, ensuring consistency, accuracy, and alignment with the firm’s security posture and regulatory obligations.
- Serve as the firm’s subjectmatter expert on informationsecurity controls, certifications, and risk posture during client audits, RFPs, and reviews or client engagement terms.
- Lead complex vendorrisk assessments for highimpact technology and service providers, including review of SOC 2 reports, ISO 27001 certifications, penetrationtest results, cloudsecurity controls, dataprotection, privacy, and retention practices.
- Develop and maintain the firm’s vendorrisk management framework, including riskscoring methodologies, onboarding workflows, and continuousmonitoring processes.
- Partner with Procurement, IT, and Office of General Counsel to evaluate vendor contracts, negotiate security requirements, and recommend riskmitigation strategies.
- Prepare the firm for client audits and regulatory reviews, coordinating evidence collection, documentation, and SME participation across multiple departments.
- Represent the firm in clientfacing security discussions, including responding to escalated inquiries from corporate counsel, privacy officers, and client security teams.
- Monitor emerging risks and regulatory developments relevant to the legal industry (e.g., SEC cybersecurity rules, state privacy laws, international datatransfer requirements).
- Mentor junior analysts and contribute to the professional development of the broader Risk and Compliance team.
- Drive continuous improvement, identifying opportunities to streamline duediligence workflows, enhance tracking and remediation of client-identified risks, and strengthen the firm’s security posture.
Additional Responsibilities
- Provide management with periodic reports & briefings on evolving topics within their area of responsibility.
- Other related projects and duties as assigned by the Director of Information Security.
WHAT YOU'LL BRING
Required
- 6+ years of experience in information security, vendor risk management, compliance, or legalindustry operations, ideally within an Am Law 200 firm or similarly regulated environment.
- Deep understanding of security frameworks and standards (SOC 2, ISO 27001, NIST CSF, HIPAA, GLBA, state privacy laws).
- Experience conducting or leading vendorrisk assessments for enterpriselevel technology providers.
- Strong communication skills, including the ability to brief partners, respond to client security teams, and translate technical concepts for nontechnical audiences.
- Demonstrated ability to work independently, manage sensitive information, and lead crossfunctional initiatives in a highpressure environment.
- Professional certifications such as CTPRA, ISO 27001 Lead Implementer or Lead Auditor and CISSP, CISM, CRISC, or CISA required.
- Experience with legalindustry technologies (DMS, ediscovery platforms, cloudbased practicemanagement tools) is a plus.
HOW YOU'LL WORK
Extent of Contact
This position requires contact with individuals within the firms as follows:
- Daily contact with staff from the Firm’s Information Technology, Client Development and Office of the General Counsel teams.
- Moderate contact with Firm’s attorneys and client representatives.
- Occasional contact with Firm Management.
This position requires contact with individuals outside the firm as follows:
- Moderate contact with Firm vendors or potential vendors.
- Moderate contact with Firm clients
Physical Requirements
- Must be able to routinely lift and carry event materials and other items up to 10 pounds.
- Must be able to work at a computer for extensive periods of time.
- Position requires extensive telephone use.
- Must be able to lift, squat, kneel and bend.
- Position requires the ability to visit face-to-face and on the phone with firm lawyers.
Working Conditions and Environment
- Position is full-time and requires a five-day work week and standard hours as outlined in the Firm policy manual. Additional hours, including weekend and evening hours may be required to perform the essential functions of the job.
- Must be able to perform essential duties of the position with time constraints and frequent interruptions.
- Ability to work well in high pressure environments.
- 24x7 communication access is required.
- This position is fully remote. You will be required to come to the office periodically for team meetings or when there is a business or client need.
- There is potential for travel when needed for team meetings, onsite assessments etc. when there is a business or client need.
- When working remotely, you must have secure and reliable internet service and a safe, private workspace from which to work.
Baker Botts L.L.P. is an equal opportunity employer and considers all qualified applicants for employment without regard to race, color, gender, sex, age, religion, creed, national origin, citizenship, marital status, sexual orientation, disability, medical condition, military and veteran status, gender identity or expression, genetic information, or any other basis protected by federal, state, or local law.
About Baker Botts
Sourced by ZipRecruiter
Industry
Law firms
Company size
1,001 - 5,000 Employees
Headquarters location
Houston, TX, US
Year founded
1840