In coordination with Information Security Team, assist in Vendor Risk Assessments relating to Privacy risks * Assist with Data Privacy Impact Assessments for new and existing business lines, products ...
In coordination with Information Security Team, assist in Vendor Risk Assessments relating to Privacy risks * Assist with Data Privacy Impact Assessments for new and existing business lines, products ...
In coordination with Information Security Team, assist in Vendor Risk Assessments relating to Privacy risks * Assist with Data Privacy Impact Assessments for new and existing business lines, products ...
In coordination with Information Security Team, assist in Vendor Risk Assessments relating to Privacy risks * Assist with Data Privacy Impact Assessments for new and existing business lines, products ...
IT Vendor Financials & Contract Manager
Omaha, NE · On-site +1
You will oversee key technology vendor relationships to drive performance, financial optimization, risk alignment, and governance maturity across the vendor portfolio. This role combines strategic ...
IT Vendor Financials & Contract Manager
Omaha, NE · On-site +1
You will oversee key technology vendor relationships to drive performance, financial optimization, risk alignment, and governance maturity across the vendor portfolio. This role combines strategic ...
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
Own the third-party risk framework and partner across Procurement, Finance, Legal, Cyber, Risk, and Technology to strengthen vendor governance, manage risk, and inform long-term investment decisions.
IT Procurement Manager
Omaha, NE · On-site
Understanding of vendor risk management and contract governance principles. * Excellent communication and stakeholder management abilities, including the ability to influence and collaborate ...
IT Procurement Manager
Omaha, NE · On-site
Understanding of vendor risk management and contract governance principles. * Excellent communication and stakeholder management abilities, including the ability to influence and collaborate ...
IT Procurement Manager
Omaha, NE · On-site
Understanding of vendor risk management and contract governance principles. * Excellent communication and stakeholder management abilities, including the ability to influence and collaborate ...
IT Procurement Manager
Omaha, NE · On-site
Understanding of vendor risk management and contract governance principles. * Excellent communication and stakeholder management abilities, including the ability to influence and collaborate ...
$109K - $110K/yr
Identifyopportunities for license optimization, consolidation, cost avoidance, and vendor risk mitigation. Demand Intake & Portfolio Governance * Own the single-backlog intake framework, triaging ...
$109K - $110K/yr
Identifyopportunities for license optimization, consolidation, cost avoidance, and vendor risk mitigation. Demand Intake & Portfolio Governance * Own the single-backlog intake framework, triaging ...
Risk ConsultingatAIG AIG Risk Consulting helps AIG's Underwriting teams identify, understand, and ... Must be able to manage outside contractors/vendors, which AIG uses to conduct some of the on-site ...
Risk ConsultingatAIG AIG Risk Consulting helps AIG's Underwriting teams identify, understand, and ... Must be able to manage outside contractors/vendors, which AIG uses to conduct some of the on-site ...
$109K - $110K/yr
Identify opportunities for license optimization, consolidation, cost avoidance, and vendor risk mitigation. Demand Intake & Portfolio Governance * Own the single-backlog intake framework, triaging ...
$109K - $110K/yr
Identify opportunities for license optimization, consolidation, cost avoidance, and vendor risk mitigation. Demand Intake & Portfolio Governance * Own the single-backlog intake framework, triaging ...
Monitors risk ratings, due diligence practices, and ongoing monitoring activities ... Provides credible challenges and escalation of significant vendor risks. * Coordinates reporting to ...
Monitors risk ratings, due diligence practices, and ongoing monitoring activities ... Provides credible challenges and escalation of significant vendor risks. * Coordinates reporting to ...
This includes identifying risks, prioritizing remediation, tracking corrective actions, and validating closure • Own risk register and tracking and run security and vendor risk assessments as the ...
This includes identifying risks, prioritizing remediation, tracking corrective actions, and validating closure • Own risk register and tracking and run security and vendor risk assessments as the ...
Senior Relationship Manager - End User Asset Management Governance & Vendor Management
Omaha, NE · On-site
Risk Management & Compliance * Conduct risk assessments across the asset lifecycle and vendor ecosystem. * Identify control gaps and develop remediation plans. * Ensure compliance with applicable ...
Senior Relationship Manager - End User Asset Management Governance & Vendor Management
Omaha, NE · On-site
Risk Management & Compliance * Conduct risk assessments across the asset lifecycle and vendor ecosystem. * Identify control gaps and develop remediation plans. * Ensure compliance with applicable ...
Senior Relationship Manager - End User Asset Management Governance & Vendor Management
Omaha, NE · On-site
Risk Management & Compliance * Conduct risk assessments across the asset lifecycle and vendor ecosystem. * Identify control gaps and develop remediation plans. * Ensure compliance with applicable ...
Senior Relationship Manager - End User Asset Management Governance & Vendor Management
Omaha, NE · On-site
Risk Management & Compliance * Conduct risk assessments across the asset lifecycle and vendor ecosystem. * Identify control gaps and develop remediation plans. * Ensure compliance with applicable ...
Privacy & AI Governance Program Manager
Omaha, NE · Hybrid
$96K - $123K/yr
Work in coordination with Information Security Team and assist in Vendor Risk Assessments relating to Privacy * Assist with Data Privacy Impact Assessments for new and existing business lines ...
Privacy & AI Governance Program Manager
Omaha, NE · Hybrid
$96K - $123K/yr
Work in coordination with Information Security Team and assist in Vendor Risk Assessments relating to Privacy * Assist with Data Privacy Impact Assessments for new and existing business lines ...
Privacy & AI Governance Program Manager
Omaha, NE · On-site
$96K - $123K/yr
Work in coordination with Information Security Team and assist in Vendor Risk Assessments relating to Privacy * Assist with Data Privacy Impact Assessments for new and existing business lines ...
Privacy & AI Governance Program Manager
Omaha, NE · On-site
$96K - $123K/yr
Work in coordination with Information Security Team and assist in Vendor Risk Assessments relating to Privacy * Assist with Data Privacy Impact Assessments for new and existing business lines ...
Senior GRC Officer
Lincoln, NE · On-site
Own risk management, vendor risk assessment, policy governance, access review, and exception management, including leading the Cloud Vulnerability Task Force. * Plan and support external audits ...
Quick apply
Senior GRC Officer
Lincoln, NE · On-site
Own risk management, vendor risk assessment, policy governance, access review, and exception management, including leading the Cloud Vulnerability Task Force. * Plan and support external audits ...
Senior GRC Officer
Lincoln, NE · On-site +1
Own risk management, vendor risk assessment, policy governance, access review, and exception management, including leading the Cloud Vulnerability Task Force. * Plan and support external audits ...
Senior GRC Officer
Lincoln, NE · On-site +1
Own risk management, vendor risk assessment, policy governance, access review, and exception management, including leading the Cloud Vulnerability Task Force. * Plan and support external audits ...
Manager, Cybersecurity Governance, Risk & Compliance (GRC)
Omaha, NE · On-site
$106K - $143K/yr
Manage resources, budgets, and strategic vendor relationships. Cybersecurity Governance, Risk Management & Reporting * Lead and advance the organization's cybersecurity governance and risk management ...
Manager, Cybersecurity Governance, Risk & Compliance (GRC)
Omaha, NE · On-site
$106K - $143K/yr
Manage resources, budgets, and strategic vendor relationships. Cybersecurity Governance, Risk Management & Reporting * Lead and advance the organization's cybersecurity governance and risk management ...
Manager, Cybersecurity Governance, Risk & Compliance (GRC)
Omaha, NE · On-site
$125K - $182K/yr
Manage resources, budgets, and strategic vendor relationships. Cybersecurity Governance, Risk Management & Reporting * Lead and advance the organization's cybersecurity governance and risk management ...
Manager, Cybersecurity Governance, Risk & Compliance (GRC)
Omaha, NE · On-site
$125K - $182K/yr
Manage resources, budgets, and strategic vendor relationships. Cybersecurity Governance, Risk Management & Reporting * Lead and advance the organization's cybersecurity governance and risk management ...
Coordinating with Strategic Procurement Services, the Office of General Counsel, Independence, Risk ... Supporting vendor setup and administrative activities, including registration, onboarding ...
Coordinating with Strategic Procurement Services, the Office of General Counsel, Independence, Risk ... Supporting vendor setup and administrative activities, including registration, onboarding ...
Vendor Risk information
What is the difference between Vendor Risk vs Vendor Compliance?
| Aspect | Vendor Risk | Vendor Compliance |
|---|---|---|
| Focus | Identifying and mitigating risks associated with vendors | Ensuring vendors meet regulatory and contractual requirements |
| Certifications | Risk management certifications (e.g., CRISC, FAIR) | Compliance certifications (e.g., ISO 27001, SOC 2) |
| Work Environment | Risk assessment teams, procurement, security departments | Legal, compliance, audit teams |
| Industry Usage | Financial, healthcare, technology sectors | Financial services, healthcare, regulated industries |
Vendor Risk and Vendor Compliance roles often overlap but serve different purposes. Vendor Risk focuses on identifying and mitigating potential risks posed by vendors, while Vendor Compliance ensures vendors adhere to legal and contractual standards. Both are essential for managing vendor relationships effectively and maintaining organizational security and compliance.

Full-time
Medical, Dental, Vision, Retirement
Posted 19 days ago
Job description
About this Opportunity:
As a Senior Privacy & AI Risk Analyst, you will be expected to spearhead privacy initiatives and coordinate cross-team collaboration, seeing privacy processes are followed through start to finish. You will also support Orion's AI governance efforts from a privacy standpoint - performing privacy reviews of AI use cases and helping ensure personal information is handled responsibly as the organization adopts AI. As we continue to evolve and live our Orion values, we are looking for someone to grow with us.
It is anticipated that an incumbent in this role will work as a Hybrid employee, with three (3) or more days each week required on-site at one of the listed office locations.
Candidates should be located within a commutable distance to an office. Internal candidates currently aligned to an Orion office location may be given preference; however, internal candidates with varying work arrangements may be considered based on experience and business needs. Work location is subject to change based on business needs.
In this role, you'll get to:
Oversee and direct privacy planning and procedure development across Orion Advisor Solutions, including the management of privacy policies in coordinate with Legal and InfoSec
Identify potential areas of privacy vulnerability and risk, develop correction action plans for resolution of problematic issues, provide guidance of risk mitigation, and provide reporting to the Data Protection Officer
Manage responses to Potential Privacy Incident, in consultation with the Risk Officer, Orion's Legal Department, Information Security Team, and relevant business lines
Implement the Privacy Incident Response Plan, as needed
Manage the Data Subject Rights Request (DSSR) process, including reviewing, validating, and responding to requests and maintaining a repository of requests and responses.
Monitor legal and regulatory activity regarding applicable local, state, and federal privacy laws, rules, and regulations, and coordinate with the legal, information, and business units to implement these requirements
In coordination with Information Security Team, assist in Vendor Risk Assessments relating to Privacy risks
Assist with Data Privacy Impact Assessments for new and existing business lines, products, and services
Participate in Orion committee meetings to provide privacy-related input when necessary
Support Orion's AI governance program from a privacy perspective, helping implement privacy policies, standards, and controls for the use of AI in coordination with the Privacy Program Manager, Legal, and Information Security
Perform privacy reviews and impact assessments for AI and machine-learning use cases that involve personal information, evaluating data minimization, purpose limitation, transparency, and automated decision-making and profiling risks
Help maintain an inventory of AI and automated decision-making systems that process personal information, and complete intake and initial privacy review for new and existing AI use cases
Track emerging AI-privacy requirements (e.g., automated decision-making and profiling rules under CCPA/CPRA and the Colorado AI Act) and escalate potential impacts to the Privacy Program Manager and Legal
We're looking for talent who:
Prioritizes tasks based on importance to drive the success of the business and mitigate the organization's risks
Has knowledge of the investment advisor industry, operations, and regulatory landscape
Has knowledge of federal and state privacy laws, rules, and regulations applicable to investment advisory and fintech business lines
Has a history of developing new policies and procedures based on changes to regulations or business operations
Learns and adapts to new systems and processes with limited direct training
Ability to multi-task while maintaining careful attention to detail
Ability to work effectively both individually and within a team environment
Ability to work with a sense of urgency to meet deadlines and address competing priorities
Proficient skills with Microsoft Office software including Word, Excel, PowerPoint, and Outlook
Effective written, listening, and verbal communication skills
Effective problem solving and organizational skills
Owns and manages relationships with stakeholders directly and work effectively with people at all levels in an organization
Has knowledge of privacy requirements applicable to AI, including automated decision-making and profiling rules under laws such as CCPA/CPRA and the Colorado AI Act
Understands core AI and machine-learning concepts and the associated data-privacy risks, such as the use of personal information in training and inference, profiling, and transparency
Has a minimum of a Bachelor's degree
Preferably has a privacy or AI governance certification (e.g., CIPP/US, CIPM, or AIGP)
Has a minimum of 5+ years of experience in financial compliance, risk, privacy or anti-money laundering program
Has experience preforming privacy reviews of AI use cases, or supporting AI governance from a privacy perspective is a plus
#LI-AP1
#LI-Onsite
#LI-Hybrid
Recommended Skills:
Client-Centric, Compliance Programs, Compliance Support, Due Diligence, Effective Communication, Innovation, Technical Proficiency, Time Management, Work CollaborativelySalary Range:
$72,860.00 - $110,014.00The pay listed in this posting indicates the estimated pay at the time of this posting; however, may vary depending on geographic location, job-related knowledge, skills, and experience. In addition, Orion offers a competitive benefits package which includes health, dental, vision, and disability coverage on day one, 401(k) plan with employer match, paid parentalleave, pet benefits including pawternity leave and pet insurance, student loan repayment and more.
About Us
At Orion, we achieve our best work when we support one another, staying personally accountable to each other and the clients we serve. We create a welcoming environment where everyone is respected, valued, and heard. Our commitment to create raving fans ensures we consistently exceed client expectations. Thinking differently is in our DNA-we innovate always, push boundaries, and reject the status quo to deliver transformative outcomes. Together, we support one another and see it through to success, driving our collective achievements and those of our clients.