1

Vendor Risk Jobs (NOW HIRING)

Consistently apply established risk assessment methodologies to evaluate third-party vendors across key areas such as criticality, compliance, cybersecurity, operational resilience, and financial ...

Enterprise Risk Management (ERM) and Third-Party Vendor Risk Management (TPVRM). Reporting to the Senior Enterprise Risk Manager, you will play a hands-on role in executing risk assessments ...

Run substantive third‑party risk management (TPRM), independently evaluating real risk, not just ... Partner with Legal on vendor and AI contract terms, including DPAs, subprocessor agreements, and ...

The Risk Advisor also supports and helps drive our client's third-party risk management (TPRM) program, contributing to vendor risk assessments, escalations, and remediation across the vendor ...

Governance & Risk Analyst

Chicago, IL · On-site

$85K - $95K/yr

Governance & Risk Analyst in the Enterprise will... The GRC Analyst will support the organization ... Review vendor security questionnaires, supporting evidence, and contractual artifacts to assess ...

Position Overview The Senior Manager, Third Party Risk Management leads Asurion's enterprise vendor and supply-chain risk program as a second line of defense. This role owns the end-to-end third ...

Maintain vendor tier classifications and risk profiles using the established tiering framework. * Track remediation items and follow up with vendors. * Distribute, collect, and organize security ...

Showing results 21-40

Vendor Risk information

See salary details

$14

$30

$74

How much do vendor risk jobs pay per hour?

As of Aug 9, 2026, the average hourly pay for vendor risk in the United States is $30.34, according to ZipRecruiter salary data. Most workers in this role earn between $19.47 and $38.70 per hour, depending on experience, location, and employer.

What is the difference between Vendor Risk vs Vendor Compliance?

AspectVendor RiskVendor Compliance
FocusIdentifying and mitigating risks associated with vendorsEnsuring vendors meet regulatory and contractual requirements
CertificationsRisk management certifications (e.g., CRISC, FAIR)Compliance certifications (e.g., ISO 27001, SOC 2)
Work EnvironmentRisk assessment teams, procurement, security departmentsLegal, compliance, audit teams
Industry UsageFinancial, healthcare, technology sectorsFinancial services, healthcare, regulated industries

Vendor Risk and Vendor Compliance roles often overlap but serve different purposes. Vendor Risk focuses on identifying and mitigating potential risks posed by vendors, while Vendor Compliance ensures vendors adhere to legal and contractual standards. Both are essential for managing vendor relationships effectively and maintaining organizational security and compliance.

More about Vendor Risk jobs
What cities are hiring for Vendor Risk jobs? Cities with the most Vendor Risk job openings:
What are the most commonly searched types of Vendor Risk jobs? The most popular types of Vendor Risk jobs are:
What states have the most Vendor Risk jobs? States with the most job openings for Vendor Risk jobs include:
Infographic showing various Vendor Risk job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $63,100 per year, or $30.3 per hour.

Vendor Analyst, AI & Technology Risk

The Mutual Group

Dallas, TX • Hybrid

$85K - $110K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 20 days ago


Job description

Department:

Information Technology

Job Description:

Execute day-to-day operations of AI and Technology Risk Governance, with primary responsibility for vendor AI governance and detection across The Mutual Group and its member insurance carriers.

This is a fully hands-on individual contributor role responsible for ensuring vendor AI usage is identified, tracked, and routed through the AIS Program governance process. The role also supports broader governance activities across AI Systems, Cyber Security, Data Privacy (IT lens), and IT Controls.

Work Arrangement:

  • Employees who live within 30 miles of the TMG home office are expected to follow a hybrid or in-office schedule. The initial training period may require additional inoffice days.

Accountabilities:

Vendor AI Governance (Primary Focus)

  • Execute the vendor-wide AI detection process across the full vendor portfolio:

    • Conduct periodic vendor attestations

    • Track vendor disclosures, updates, and AI usage changes

  • Ensure vendors using AI are:

    • Identified promptly

    • Routed through the AIS Program review framework

  • Maintain and track:

    • Vendor AI inventory

    • FactSheet submissions and updates

  • Support Vendor Management in aligning with third-party risk requirements

AI Governance Operations

  • Support execution of AI intake and governance workflows:

    • Track AIA Forms and FactSheets

    • Ensure completeness and follow-ups

  • Perform initial triage for low-risk AI use cases

  • Support activities of the AIS / Security Governance Team, including documentation and workflow tracking

Monitoring & Validation Support

  • Support twice-annual AI system and vendor review cycles

  • Track:

    • Vendor AI changes

    • Model updates requiring re-review

  • Assist in ensuring monitoring outputs are captured and documented

Documentation & Controls

  • Maintain:

    • AI system inventory

    • Vendor AI tracking logs

    • Governance documentation and audit trails

  • Support:

    • Evidence collection for audits and regulatory reviews

    • Control documentation for IT and security governance

Broader Technology Risk Support (Secondary)

  • Support tracking and documentation for:

    • Cyber security governance activities (NIST CSF, NYDFS)

    • Data privacy controls (CCPA, IT lens)

    • IT general controls and risk register inputs

Reporting & Coordination

  • Assist with preparation of:

    • AIS Committee materials

    • Governance and vendor risk reports

  • Coordinate with:

    • Vendor Management

    • AI / Technology teams

    • Risk and Compliance teams


Qualifications:

  • 3+ years in risk, compliance, IT, security, or vendor risk management

  • Experience with TPRM and GRC tools (like Archer, ServiceNow, OneTrust, Upguard)

  • Experience supporting third-party risk or audit processes preferred

  • Familiarity with:

    • Vendor risk management practices

    • AI governance concepts (preferred)

    • NIST CSF, SOC 2, or similar frameworks

    • Data privacy concepts (CCPA preferred)

  • Strong attention to detail and process discipline

  • Ability to manage multiple workflows and follow-ups

Pay Range:

Anticipated Hiring Range:

  • $85,000 - $110,000 annual base salary depending on experience, qualifications, and geographic location

Benefits:

We are proud to offer our full-time regular employees a robust benefits suite that includes:

  • Competitive base salary plus incentive plans for eligible team members

  • 401(K) retirement plan that includes a company match of up to 6% of your eligible salary

  • Free basic life and AD&D, long-term disability and short-term disability insurance

  • Medical, dental and vision plans to meet your unique healthcare needs

  • Wellness incentives

  • Generous time off program that includes personal, holiday and volunteer paid time off

  • Flexible work schedules and hybrid/remote options for eligible positions

  • Educational assistance

Equal Opportunity Employer

The Mutual Groupis an Equal Opportunity Employer. It is our policy to recruit, hire, train and promote individuals in all job classifications without regard to race, color, religion, sex, national origin, age, veteran status, disability, sexual orientation, gender identity or any other characteristic protected by law.

  • Know Your Rights: Workplace Discrimination is Illegal

  • Your Rights Under USERRA

Applicants requiring a reasonable accommodation due to a disability at any stage of the employment application process should contactTalent@themutualgroup.com.

Employment Verification

The Mutual Group participates in theE-Verifyprogram and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S. You are protected fromemployment discriminationbased on your citizenship status and national origin.

E-Verify Program Overview

E-Verify Participation Poster

All offers of employment are contingent upon the successful completion of a background check.

#TMG