Senior Vendor Risk Analyst
$100k - $130kFortress Information Security
Senior Vendor Risk Analyst Location: Hybrid - Candidates must be based in one of the following areas Naperville, IL / Birmingham, AL / Atlanta, GA. You will work out of the client site closest to your location three days per week, with an expectation of four days per week later in 2026.
Compensation: $100,000 - $130,000 per year, depending on experience and qualifications.
Employment Type: Full-Time Travel : Less than 15%, occasional travel for industry collaboration or professional development What you can expect as the Senior Vendor Risk Analyst at Fortress The Senior Vendor Risk Analyst plays a pivotal role within the Supply Chain Risk Management (SCRM) team, leading third-party vendor risk assessments and shaping how a major energy organization manages supply chain cyber risk. Working directly with vendor relationship owners and cross-functional stakeholders across Legal, Supply Chain, Cybersecurity, and Technology, this role drives continuous improvement of the Third-Party Risk Management (TPRM) program and directly influences leadership-level business decisions. This position provides meaningful exposure to critical infrastructure protection under NERC CIP standards and offers a mission-driven opportunity to help secure systems that society depends on. This is an ideal role for an experienced risk professional seeking broad organizational influence, visibility, and impact. This role offers the opportunity to work closely with a major energy sector client in a highly integrated capacity. Based on performance, business needs, and client discretion, there may be future opportunities to transition into direct employment with the client organization. Job Responsibilities:
For positions located in the US, the following conditions apply. If you are made a conditional offer of employment, you will have to undergo a drug test. ADA Disclaimer: In developing this job description care was taken to include all competencies needed to successfully perform in this position. However, for Americans with Disabilities Act (ADA) purposes, the essential functions of the job may or may not have been described for purposes of ADA reasonable accommodation. All reasonable accommodation requests will be reviewed and evaluated on a case-by-case basis.
Pay Range: $100,000 - $130,000 per year
Compensation: $100,000 - $130,000 per year, depending on experience and qualifications.
Employment Type: Full-Time Travel : Less than 15%, occasional travel for industry collaboration or professional development What you can expect as the Senior Vendor Risk Analyst at Fortress The Senior Vendor Risk Analyst plays a pivotal role within the Supply Chain Risk Management (SCRM) team, leading third-party vendor risk assessments and shaping how a major energy organization manages supply chain cyber risk. Working directly with vendor relationship owners and cross-functional stakeholders across Legal, Supply Chain, Cybersecurity, and Technology, this role drives continuous improvement of the Third-Party Risk Management (TPRM) program and directly influences leadership-level business decisions. This position provides meaningful exposure to critical infrastructure protection under NERC CIP standards and offers a mission-driven opportunity to help secure systems that society depends on. This is an ideal role for an experienced risk professional seeking broad organizational influence, visibility, and impact. This role offers the opportunity to work closely with a major energy sector client in a highly integrated capacity. Based on performance, business needs, and client discretion, there may be future opportunities to transition into direct employment with the client organization. Job Responsibilities:
- In coordination with the customers vendor relationship owners, manage assessments of vendors' security controls to identify shortfalls.
- Communicate remediation options to the vendors
- Collaborate with TPRM team members and business partners to complete assessments and determine risk mitigation strategies
- Become an expert of the TPRM platform to identify and direct necessary customizations, enhancements, and record maintenance to a vendor-supported platform that enable relevant reporting and Program maturation
- Develop an appreciation and understanding of various business units while employing your knowledge of security fundamentals to effectively communicate customer risk resulting from assessment findings
- Proactively propose and implement changes to customer Program policy/practice to ensure a risk-informed approach to vendor/supply chain management
- Collaborate across Supply Chain, Legal, Cybersecurity, and the Technology Organizations to create a shared picture of supplier risk
- Support cross-functional teams to investigate, analyze, and make recommendations to leadership or process owners regarding technology solutions, security architecture, or security vulnerabilities
- When appropriate, collaborate across Cyber org to identify compensating controls for significant vendor-specific risks to the company and its customers
- Review vendor-proposed modifications to Master Service Agreements or Application Service Provider Agreements on behalf of customer to identify any unacceptable security risks associated with new language
- Understand, relate, and transform regulatory requirements into information security policy, standards, procedures, and guidelines
- Maintain current knowledge of information security concepts, technologies, and practices
- Apply deep cybersecurity expertise to assess vendors' security controls, identify cyber risk gaps, and translate technical findings into actionable business recommendations.
- Other duties as assigned
- United States citizenship is required
- 7-10 years experience in security risk assessment, risk management, compliance or auditing
- Strong knowledge of cybersecurity control frameworks (e.g., NIST SP 800-53, ISO/IEC 27001:2013), with direct cybersecurity experience conducting or overseeing security assessments, control design reviews, or cybersecurity audits
- Ability to communicate clearly, confidently, and knowledgeably to internal and external stakeholders regarding the Program and assessment results
- Demonstrated history of critical, independent, and creative thinking to enable continuous improvement or business success within the constraints of security imperatives
- Ability to holistically assess the risk of a third party engagement, considering control gaps, the nature of the vendor relationship, and the way a vendor's products/services are leveraged required
- Must have demonstrated history of critical, independent, and creative thinking with high attention to detail; this will enable continuous improvement and ensure auditable record trail for all assessment data
- Prior experience overseeing one or more people in support of a technology solution or program
- Demonstrated ability to work with and in cross-functional teams
- One or more of the following certifications: TPCRA, C3PRMP, CTPRA CISSP, CASP, CISA, CISM, GIAC, PMP
- Must be able to pass NERC CIP and Insider Threat Program background screening due to access to sensitive critical infrastructure and information regarding security capabilities
- Occasional travel for industry collaboration/influence or professional development is expected
- This is a hybrid role but three days per week in the office (Naperville, IL, Birmingham, AL or Atlanta, GA) is expected initially but will grow to four days per week in office during 2026. In-office expectations may change over time depending on organizational policy and supervisor's requirements.
- Bachelor's degree or equivalent experience in a related field required
- Experience working in a highly regulated industry
- Prior experience advocating security policies, practices, controls, and standards to business and IT teams
- Familiarity with basic requirements for architecting secure information systems
- Familiarity with NERC's Critical Infrastructure Protection (CIP) standards
- Experience with non-IT risk such as operational, financial, Compliance and Regulatory, Strategic Risk, Legal Risk, and ESG risk (Environmental, Social, and Governance)
- Remote and Hybrid working environment
- Competitive pay structure
- Medical, dental, vision plans with employees covered up to 90% with highly progressive options for dependents and families
- Company paid life, short- and long-term disability insurance
- Employee Assistance Program
- 401(k) match
- Flexible Paid Time Off
- Parental Leave
- We provide each employee with professional growth opportunities through succession planning, up-skilling, and certifications
- Tuition and certification reimbursement
- Employee Referral Programs
- Company Sponsored Events
For positions located in the US, the following conditions apply. If you are made a conditional offer of employment, you will have to undergo a drug test. ADA Disclaimer: In developing this job description care was taken to include all competencies needed to successfully perform in this position. However, for Americans with Disabilities Act (ADA) purposes, the essential functions of the job may or may not have been described for purposes of ADA reasonable accommodation. All reasonable accommodation requests will be reviewed and evaluated on a case-by-case basis.
Pay Range: $100,000 - $130,000 per year
Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Senior Vendor Risk Analyst in Atlanta, GA vacancy
$85k - $110k
The Mutual Group in Atlanta, GA is seeking an individual contributor for AI and Technology Risk Governance. This hands-on role focuses on vendor AI governance, ensuring compliance across insurance carriers. Responsibilities include tracking AI usage and supporting various...SuggestedFlexible hours- InComm Payments is seeking a professional with expertise in Vendor Risk Management in Sandy, Utah. The role involves collaborating with business units for comprehensive risk assessments and ensuring compliance with vendor management policies. Candidates should have a minimum...Suggested
- Cooper Lighting Solutions is seeking a Technical Risk Assessment Analyst in Atlanta, GA. This on-site role involves evaluating risks from third-party suppliers and managing vendor connectivity for enhanced security. The candidate should have a Bachelor's degree and over...Senior
$85k - $110k
...Overview Execute day‑to‑day operations of AI and Technology Risk Governance, with primary responsibility for vendor AI governance and detection across The Mutual Group and its member insurance carriers. This is a fully hands‑on individual contributor role responsible for...SuggestedTemporary workWork at officeRemote workHome officeFlexible hours- ...of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM) is a risk focused, highly analytical... ...the Role Assumes operational ownership of the 3rd Party Vendor Risk Management program identifying, assessing, and mitigating...SeniorImmediate startFlexible hours
- The Federal Home Loan Bank of Atlanta is seeking a qualified individual to conduct collateral verification reviews and analyze pledges to support lending. This role includes preparing evaluations of mortgage loans, interacting with member institutions, and offering guidance...SeniorRemote workFlexible hours
- ...verification reviews. Provides guidance to less experienced Collateral Risk Analysts in Collateral Services department policies, procedures, and... ...the Bank’s collateral policies. Conducts exit meetings with senior management of member institutions summarizing collateral...SeniorFor contractorsWork experience placementWork at officeRemote workVisa sponsorshipWork visaFlexible hoursNight shift
- Gilder Search Group is looking for a Sr. GRC Analyst focusing on Third-Party & Human Risk Management in Atlanta, Georgia. This role involves risk analysis, compliance assessments, vendor management, and developing security awareness training. The ideal candidate has 6-8...Senior
- Cooper Lighting Solutions in Atlanta is looking for a seasoned professional to support their ERP and finance data integration initiatives. This pivotal role demands robust technical skills alongside excellent communication, facilitating collaboration across different teams...Senior
- A leading banking institution is seeking a Senior Operations Risk Analyst in Atlanta, GA. This role will focus on identifying, assessing, and mitigating operational risks while ensuring compliance and strengthening the internal control environment. Candidates should have...Senior
- ...professional to support an enterprise initiative focused on delivering integrations between their ERP platform and enterprise finance and risk data warehouse. This role will handle business requirements, collaborate with line teams, and contribute to data analytics and...Senior
- Regions Bank is seeking an Enterprise Compliance and Operational Risk Analyst in Atlanta, GA. This position requires a Bachelor's degree and at least six years of experience in risk management or related fields, aiming to develop a strong risk culture across the organization...Senior
- Senior Operations Risk Analyst page is loaded## Senior Operations Risk Analystlocations: GA-Atlanta-3500PiedmontRdtime type: Full timeposted on: Posted Todayjob requisition id: SENIO006338**Ameris Bank** is a purpose-driven company, dedicated to bringing financial peace...SeniorFlexible hours
- Position Summary The Senior Risk Analyst, Business Analytics, will be responsible for utilizing advanced analytical techniques and tools to provide data and reporting to various departments to facilitate the identification, documentation, analysis, monitoring, mitigation...SeniorWork at officeMonday to FridayWeekend work
- Fortress in Atlanta is hiring a Senior Vendor Risk Analyst to lead vendor risk assessments and drive third-party risk management. This role involves collaboration with various teams to enhance security practices and ensure compliance within the supply chain. Candidates...Senior
$120k - $150k
...Risk Manager / Senior Risk Analyst Location: Atlanta, Orlando or Tampa (Hybrid) — Remote flexibility available for the right candidate Division : Dealer General Warranty About CV Family & Dealer General Warranty The CV Family Organization is a privately...SeniorContract workRemote work$91.66k - $120.3k
...Hi, we're Oscar. We're hiring a Senior Actuarial Analyst to join our Actuarial team. Oscar is the first... ...function, focusing specifically on risk adjustment across all Affordable Care... ...trends across plan designs, providers, vendors, and markets. Stakeholder Engagement:...SeniorFull timeWork at officeRemote work- HYUNDAI Translead, Inc is seeking a Sr. Manager of Payment Excellence in Atlanta, GA, responsible for leading vendor management and payment processing initiatives. You will cultivate a positive coaching culture and ensure vendors meet compliance requirements. The ideal...Senior
- WestRock Company is seeking a Senior Treasury Analyst to join their North America Group Treasury Operations team in Atlanta, GA. This middle-office role focuses on managing intercompany loans, bank account administration, compliance with Sarbanes-Oxley, and supporting payment...SeniorWork at office
- Lewis | James Professional seeks a Business Analyst for Risk and Compliance in Atlanta, Georgia. The role involves supporting banking merger initiatives and creating business requirement documents. Ideal candidates will have a Bachelor’s degree in a related field and over...Senior
- Oldcastle Infrastructure in Atlanta, GA is looking for a Senior Accounts Payable Specialist to join their team. The role involves vendor processing and ensuring productivity in a high-transaction volume environment. The ideal candidate will have over 4 years of experience...Senior
- Reserv Claims Analysis, LLC in Atlanta, Georgia, is hiring a Vendor Manager to enhance vendor relationships and streamline processes. The role involves overseeing vendor lifecycle, compliance, and strategic partnerships. Candidates should have a Bachelor's degree and over...SeniorRemote job
- Motion Recruitment Partners LLC is seeking a Senior Technical Project Manager in Atlanta, GA. The role involves managing multiple IT projects for a local bank, with a focus on vendor management, Agile and Waterfall methodologies. Ideal candidates will have 5+ years as an...SeniorContract workLocal area
$45 - $52 per hour
...Global is seeking a highly analytical Sr. Financial & Contract Analyst to join a major healthcare system in Atlanta. This role focuses... ...supporting complex budgeting and financial oversight while managing vendor-related financial activities. The ideal candidate should have...SeniorHourly payContract work- Hyundai Capital America is seeking a Sr. Manager, Payment Excellence to oversee strategic initiatives related to Payment Processing vendor operations. This role involves fostering a coaching culture, monitoring vendor performance to achieve quality targets, and ensuring...Senior
$80k
Fulton County is seeking a qualified candidate for an IT position focused on vendor management and contract negotiation. The role requires a Bachelor's degree in a relevant field along with five years of experience in strategic partnerships management. Candidates will...SeniorContract work- ..., Georgia is looking for an Accounts Payable Specialist III to ensure accurate financial operations through invoice processing and vendor management. The role requires candidates with a High School diploma and at least two years of relevant experience. Responsibilities...Senior
- UKG (Ultimate Kronos Group) is seeking a Senior Corporate Counsel to manage complex vendor transactions and drive innovation in contracting processes. The ideal candidate will have 7-12 years of relevant experience in commercial contract negotiation and expertise in data...SeniorContract work
- ...Twitter, Facebook, or Instagram. About This Opportunity The Vendor Risk Management (VRM) team partners with business units to assess... ...agility in operations. Responsibilities The Analyst I, Vendor Risk works closely with vendor relationship owners to...Contract workLocal areaWorldwide
$143k - $243k
A healthcare company seeking a Senior Principal Actuary to lead actuarial direction and create innovative pricing strategies. This fully remote role requires 10 years of actuarial experience and a Bachelor's degree in Math or related fields. The ideal candidate will have...SeniorRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Vendor Risk Analyst. Be the first to apply!
Related searches
- governance risk & compliance analyst Atlanta, GA
- senior quantitative risk analyst Atlanta, GA
- risk analyst Atlanta, GA
- it risk analyst Atlanta, GA
- transaction risk analyst Atlanta, GA
- operational risk consultant Atlanta, GA
- risk officer Atlanta, GA
- risk consultant Atlanta, GA
- risk compliance officer Atlanta, GA
- third party risk analyst Atlanta, GA

