1

Vendor Risk Jobs in Utah (NOW HIRING)

Risk Analyst

South Jordan, UT · On-site

$57K - $85K/yr

Knowledge and experience in the areas of Enterprise Risk Management and/or Stress Testing and/or Vendor Risk Management and/or Model Risk Management preferred. Knowledge and experience in all aspects ...

Knowledge and experience in the areas of Enterprise Risk Management and/or Stress Testing and/or Vendor Risk Management and/or Model Risk Management preferred. Knowledge and experience in all aspects ...

Risk Analyst

South Jordan, UT · On-site

$57K - $85K/yr

Knowledge and experience in the areas of Enterprise Risk Management and/or Stress Testing and/or Vendor Risk Management and/or Model Risk Management preferred. Knowledge and experience in all aspects ...

Risk Analyst

South Jordan, UT · On-site

$57K - $85K/yr

Knowledge and experience in the areas of Enterprise Risk Management and/or Stress Testing and/or Vendor Risk Management and/or Model Risk Management preferred. Knowledge and experience in all aspects ...

Vendor Risk Management: Own Trovy's third-party risk management program -- conducting initial and ongoing vendor due diligence, maintaining the vendor inventory, assessing compliance and regulatory ...

next page

Showing results 1-20

Vendor Risk information

What is the difference between Vendor Risk vs Vendor Compliance?

AspectVendor RiskVendor Compliance
FocusIdentifying and mitigating risks associated with vendorsEnsuring vendors meet regulatory and contractual requirements
CertificationsRisk management certifications (e.g., CRISC, FAIR)Compliance certifications (e.g., ISO 27001, SOC 2)
Work EnvironmentRisk assessment teams, procurement, security departmentsLegal, compliance, audit teams
Industry UsageFinancial, healthcare, technology sectorsFinancial services, healthcare, regulated industries

Vendor Risk and Vendor Compliance roles often overlap but serve different purposes. Vendor Risk focuses on identifying and mitigating potential risks posed by vendors, while Vendor Compliance ensures vendors adhere to legal and contractual standards. Both are essential for managing vendor relationships effectively and maintaining organizational security and compliance.

What are the most commonly searched types of Vendor Risk jobs in Utah? The most popular types of Vendor Risk jobs in Utah are:
Infographic showing various Vendor Risk job openings in Utah as of July 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution.

Third Party Risk Specialist - Associate

iCapital

Salt Lake City, UT • Hybrid

$70K - $90K/yr

Other

Medical, Dental, Vision, Retirement, PTO

Re-posted 15 days ago


Job description

About the Role

iCapital is looking to hire a Vendor Risk Specialist to join the Information Security team. This role works on a small team to evaluate the risk of third-party vendors. Vendor risk includes information security, financial, business continuity, and regulatory risk.  The vendor risk process includes engaging internal vendor relationship owners and vendor contacts to obtain various artifacts and question and answers for review. This will identify any outstanding risks which are presented to management for risk acceptance. 

Responsibilities

  • Perform third-party vendor security assessment activities including evaluation of vendor controls, practices, process enhancements, and independent audit service reports via a vendor risk system.
  • Communicates directly with third party vendors to obtain artifacts and answers to iCapital diligence questions (DDQs).
  • Recommend mitigating and compensating controls for vendor security programs.
  • Communicate and track remediation plans with third-party vendors, business and technology partners.
  • Escalate outstanding risk items to management.
  • Maintain and present metrics on the vendor risk program to management.
  • Assist the Assurance team with client DDQs as vendor risk and client assurance are related programs.

Qualifications

  • 5 years experience in a technology role with 2-3 years in a vendor risk role
  • Bachelor's degree in computer science, technology or an information security-related field
  • Experience with Upguard or other vendor GRC tools is a plus
  • Experience with RiskRecon or other security risk measurements tools is a plus
  • Understanding of ISO-27001 or NIST 800 based security program standards
  • Knowledge of relevant legal requirements, regulatory requirements, and privacy laws
  • Knowledge of security risks pertaining to cloud (i.e. IaaS, SaaS, AaaS)
  • Quick learner with desire to continuously learn
  • Excellent communication skills including strong English writing skills
  • Detail oriented, ensuring that all requirements are met and documented

Benefits

The base salary range for this role is $70,000 to $90,000.  iCapital offers a compensation package which includes salary, equity for all full-time employees, and an annual performance bonus. Employees also receive a comprehensive benefits package that includes an employer matched retirement plan, generously subsidized healthcare with 100% employer paid dental, vision, telemedicine, and virtual mental health counseling, parental leave, and unlimited paid time off (PTO).

We believe the best ideas and innovation happen when we are together. Employees in this role will work in the office Monday-Thursday, with the flexibility to work remotely on Friday.

For additional information on iCapital, please visit https://www.icapitalnetwork.com/about-us  Twitter: @icapitalnetwork | LinkedIn: https://www.linkedin.com/company/icapital-network-inc | Awards Disclaimer: https://www.icapitalnetwork.com/about-us/recognition/

iCapital is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender, sexual orientation, gender identity, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.