1

Vendor Risk Jobs in Newnan, GA (NOW HIRING)

Oversee third-party vendor risk management activities including assessments, due diligence, and ongoing monitoring * Develop and deliver security awareness and compliance training programs for ...

The ideal candidate will conduct application and vendor risk assessments, produce risk remediation reports and/or risk waivers, assist in addressing any network security corrective actions, and work ...

Senior Director, Vendor Management

Atlanta, GA · On-site

$179.60 - $299.40/hr

Establish and maintain a vendor portfolio governance framework covering risk, performance, compliance, and spend -- with a particular focus on rapid evaluation and onboarding of AI tools. * Partner ...

Perform vendor and third-party risk assessments and document risk acceptance decisions * Build and maintain the risk register and report risk posture to leadership and stakeholders * Support ...

Risk Manager

Atlanta, GA · On-site

$150K - $165K/yr

... vendor and proprietary tools • Deliver written memos and presentations to committees and fund ... Provide risk analytic insight that enhances the investment process. • Contribute to the ...

Risk Manager

Atlanta, GA · Hybrid

$150K - $165K/yr

Perform risk analysis on portfolios and their benchmarks, reporting on market, liquidity and ... both vendor and proprietary tools Deliver written memos and presentations to committees and fund ...

Business Risk Analyst

Atlanta, GA · On-site +1

$70K - $98K/yr

We are seeking an experienced detail-oriented and proactive Business Risk Analyst to support the ... Prior experience managing process workflows within TPRM due diligence cycles and vendor/partner ...

Showing results 21-40

Vendor Risk information

See Newnan, GA salary details

$13

$27

$66

How much do vendor risk jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for vendor risk in Newnan, GA is $27.38, according to ZipRecruiter salary data. Most workers in this role earn between $17.60 and $34.95 per hour, depending on experience, location, and employer.

What is the difference between Vendor Risk vs Vendor Compliance?

AspectVendor RiskVendor Compliance
FocusIdentifying and mitigating risks associated with vendorsEnsuring vendors meet regulatory and contractual requirements
CertificationsRisk management certifications (e.g., CRISC, FAIR)Compliance certifications (e.g., ISO 27001, SOC 2)
Work EnvironmentRisk assessment teams, procurement, security departmentsLegal, compliance, audit teams
Industry UsageFinancial, healthcare, technology sectorsFinancial services, healthcare, regulated industries

Vendor Risk and Vendor Compliance roles often overlap but serve different purposes. Vendor Risk focuses on identifying and mitigating potential risks posed by vendors, while Vendor Compliance ensures vendors adhere to legal and contractual standards. Both are essential for managing vendor relationships effectively and maintaining organizational security and compliance.

What cities near Newnan, GA are hiring for Vendor Risk jobs?

Cities near Newnan, GA with the most Vendor Risk job openings:

GRC Manager

Merci Technologies - Talent

Atlanta, GA • Remote

Full-time

Re-posted 26 days ago


Job description

About the Role

Merci Technologies is seeking an experienced GRC Manager to lead governance, risk, and compliance initiatives for one of our enterprise clients on a remote contract engagement. In this role, you will serve as the primary driver of the organization's GRC program — overseeing policy development, risk assessments, audit readiness, and regulatory compliance across a complex technology environment.

The GRC Manager will work closely with legal, IT security, operations, and executive leadership to ensure the organization maintains a strong and defensible compliance posture while enabling business objectives.

Responsibilities

  • Lead the design, implementation, and ongoing management of the enterprise GRC program including policies, standards, and procedures
  • Conduct and oversee enterprise risk assessments, identify control gaps, and develop risk treatment plans aligned to business priorities
  • Manage audit and assessment activities including SOC 2, ISO 27001, NIST CSF, CMMC, or equivalent frameworks
  • Develop and maintain the organization's risk register, tracking remediation progress and reporting status to senior leadership
  • Collaborate with IT, legal, and business teams to ensure compliance with applicable regulations including GDPR, CCPA, HIPAA, or industry-specific requirements
  • Oversee third-party vendor risk management activities including assessments, due diligence, and ongoing monitoring
  • Develop and deliver security awareness and compliance training programs for internal stakeholders
  • Prepare executive-level reports, dashboards, and presentations on risk posture, compliance status, and program maturity
  • Mentor and guide junior GRC analysts and contribute to team capability development
  • Stay current on emerging regulatory developments and industry best practices and translate them into actionable program updates

Required Qualifications

  • 7–10 years of experience in GRC, information security, or risk management roles with at least 2 years in a leadership or management capacity
  • Deep knowledge of GRC frameworks and standards including NIST CSF, NIST 800-53, ISO 27001, SOC 2, and CIS Controls
  • Hands-on experience managing compliance programs across regulated industries such as healthcare, finance, energy, or government
  • Strong understanding of third-party and vendor risk management practices
  • Experience leading internal and external audit engagements from preparation through closure
  • Excellent written and verbal communication skills with demonstrated ability to present to executive and board-level audiences
  • Strong project management skills with ability to manage multiple concurrent initiatives in a remote environment
  • Must be legally authorized to work in the United States without employer sponsorship

Preferred Qualifications

  • Active certifications such as CISA, CRISC, CISM, CISSP, or ISO 27001 Lead Auditor
  • Experience with GRC platforms such as ServiceNow GRC, Archer, OneTrust, or equivalent
  • Familiarity with CMMC, NERC CIP, or FedRAMP compliance requirements
  • Experience supporting M&A security due diligence or post-merger integration activities
  • Background working in a managed services or consulting environment