1

Vendor Risk Manager Jobs (NOW HIRING)

Security Manager

Dallas, TX · On-site

$150K - $165K/yr

A highly respected professional services organization is seeking a Client & Vendor Risk Manager to lead information security due diligence, third-party risk assessments, and client-facing security ...

In this role, you will lead a team responsible for vendor due diligence, onboarding risk support ... Manage colleagues responsible for vendor due diligence, onboarding risk support, ongoing oversight ...

Showing results 21-40

Vendor Risk Manager information

See salary details

$51.5K

$111.6K

$170K

How much do vendor risk manager jobs pay per year?

As of Aug 9, 2026, the average yearly pay for vendor risk manager in the United States is $111,556.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,000.00 and $129,000.00 per year, depending on experience, location, and employer.

What is the difference between Vendor Risk Manager vs Vendor Compliance Analyst?

AspectVendor Risk ManagerVendor Compliance Analyst
CertificationsCertified Third Party Risk Professional (CTPRP), Certified Information Systems Auditor (CISA)Certified Compliance & Ethics Professional (CCEP), Certified Regulatory Compliance Manager (CRCM)
Work EnvironmentRisk management teams, procurement, legal departmentsCompliance departments, audit teams, legal units
Industry UsageFinance, healthcare, technology, retailFinance, healthcare, manufacturing, technology
Primary FocusIdentifying, assessing, and mitigating vendor risksEnsuring vendor adherence to compliance standards and policies

The Vendor Risk Manager focuses on evaluating and mitigating risks associated with vendors, while the Vendor Compliance Analyst concentrates on ensuring vendors meet regulatory and internal compliance standards. Both roles are essential in managing vendor relationships but differ in their core responsibilities and focus areas.

How does a vendor risk manager typically collaborate with other departments within an organization?

A Vendor Risk Manager works closely with departments like procurement, legal, IT, and compliance to ensure that vendors meet the organization's security and regulatory standards. This collaboration often involves reviewing contracts, assessing potential risks, and implementing mitigation strategies. Regular communication with stakeholders is essential to keep everyone informed about vendor performance and risk status, making cross-functional teamwork a key aspect of the role. Effective collaboration helps streamline risk assessments and supports informed decision-making across the business.

What are the key skills and qualifications needed to thrive as a vendor risk manager?

To thrive as a Vendor Risk Manager, you need expertise in risk assessment, third-party management, and compliance, often backed by a degree in business, finance, or a related field. Familiarity with risk management platforms, contract management tools, and certifications like Certified Third Party Risk Professional (CTPRP) are highly valuable. Strong analytical thinking, negotiation, and clear communication skills help you collaborate with vendors and internal stakeholders effectively. These skills ensure organizations can identify, mitigate, and manage risks arising from third-party relationships, safeguarding business continuity and compliance.

What is a vendor risk manager?

Vendor Risk Managers are professionals responsible for identifying, assessing, and mitigating risks associated with third-party vendors that provide goods or services to an organization. They evaluate vendors’ security, compliance, and operational practices to ensure they meet the company’s standards and regulatory requirements. These managers implement frameworks to monitor vendor performance, manage contracts, and respond to potential risks or incidents. Their role is crucial in protecting the organization from financial, reputational, and regulatory harm that can arise from third-party relationships.
More about Vendor Risk Manager jobs
What cities are hiring for Vendor Risk Manager jobs? Cities with the most Vendor Risk Manager job openings:
What states have the most Vendor Risk Manager jobs? States with the most job openings for Vendor Risk Manager jobs include:
Infographic showing various Vendor Risk Manager job openings in the United States as of August 2026, with employment types broken down into 88% Full Time, 11% Part Time, and 1% Contract. Highlights an 85% Physical, 2% Hybrid, and 13% Remote job distribution, with an average salary of $111,556 per year, or $53.6 per hour.

Security Manager

Robert Half

Dallas, TX • On-site

$150K - $165K/yr

Full-time

Posted 16 days ago


Job description

A highly respected professional services organization is seeking a Client & Vendor Risk Manager to lead information security due diligence, third-party risk assessments, and client-facing security reviews.


This individual will serve as a key liaison between Information Security, Legal, Procurement, Risk Management, business stakeholders, clients, and external vendors while helping strengthen and mature enterprise risk management processes.





Lead client security due diligence and security questionnaire responses.

• Manage third-party vendor risk assessments and ongoing monitoring activities.

• Evaluate vendor security controls, certifications, and risk posture.

• Review SOC 2 reports, ISO 27001 certifications, penetration test results, privacy controls, and cloud security practices.

• Develop and improve vendor risk methodologies, onboarding processes, and monitoring programs.

• Support client audits, assessments, and regulatory reviews.

• Partner with Legal, Information Security, Procurement, and business teams to evaluate contracts and security requirements.

• Participate in client-facing discussions involving information security and risk management.

• Monitor cybersecurity, privacy, and regulatory developments.

• Develop reporting and provide risk-related recommendations to leadership.

• Mentor junior team members and contribute to overall risk maturity initiatives.

6+ years of experience in Information Security, Third-Party Risk Management, Vendor Risk Management, Compliance, Governance, Risk & Compliance (GRC), or related disciplines.

• Experience conducting vendor risk assessments for enterprise technology providers.

• Strong understanding of security frameworks and standards including:

 - SOC 2

 - ISO 27001

 - NIST

 - HIPAA

 - Privacy and regulatory frameworks

• Experience reviewing security controls, risk reports, and compliance documentation.

• Ability to communicate effectively with technical and non-technical stakeholders.

• Experience presenting findings, recommendations, and risk assessments to leadership.

• Ability to work independently and lead cross-functional initiatives.


Preferred


• CISSP

• CISM

• CRISC

• CISA

• ISO 27001 Lead Auditor

• ISO 27001 Lead Implementer

• CTPRA


Ideal Backgrounds


• Vendor Risk Manager

• Third-Party Risk Manager

• Information Security Risk Manager

• Cybersecurity Governance Manager

• GRC Manager

• Security Compliance Manager

• Information Security Analyst (Senior)

• Security Risk & Compliance Lead

• IT Risk Manager


Robert Half logo

About Robert Half

Sourced by ZipRecruiter

Founded in 1948, Robert Half pioneered the idea of professional talent solutions to connect opportunities at great companies with highly skilled job seekers. As business needs changed, we evolved to offer specialized talent solutions for finance and accounting, technology, administrative and customer support, creative and marketing, and legal fields. In 2002, we introduced our subsidiary, Protiviti, a global independent risk consulting and internal audit service, to support companies as they faced more strategic business challenges.

Industry

Recruiting and staffing services

Company size

10,000+ Employees

Headquarters location

San Ramon, CA, US

Year founded

1948