Vendor Risk & Due Diligence Analyst

Integrity

Dallas (TX)

On-site

USD 70,000 - 100,000

Full time

7 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Integrity, based in Dallas, Texas, is seeking a Third-Party Risk Management Analyst to lead the vendor due diligence program on the enterprise risk platform. You’ll focus on reducing the population of unassessed suppliers and establishing sustainable ongoing monitoring, serving as the first gate in the vendor intake process.

This role requires detail orientation, familiarity with assessment frameworks, and the ability to coordinate with procurement, contracting, legal, and cybersecurity.

Qualifications

  • Bachelor’s degree in Business, Risk Management, Information Systems, Cybersecurity, or related field.
  • 1–4 years of experience in third-party risk, vendor management, compliance, or security governance risk and compliance; internship experience will be considered
  • Familiarity with vendor assessment frameworks and security questionnaire methodologies
  • Understanding of how vendor access to systems, data, or facilities translates into organizational risk
  • Experience working to defined service level targets across a queue of concurrent requests
  • Strong analytical thinking and attention to detail, with accurate work across platforms and spreadsheets
  • Strong written and verbal communication, including direct interaction with external vendors
  • Organizational skills sufficient to manage a large assessment queue without items aging out
  • Ability to read a security report and identify what actually matters to the organization
  • Collaborative approach across procurement, legal, cybersecurity, and business unit stakeholders
  • Proficiency in Microsoft Office Suite, with strong Excel capability
  • Hands-on experience with a third-party risk platform such as Whistic, Archer, ServiceNow, or similar
  • Professional certification such as CTPRP, CRISC, or similar
  • Experience in insurance, financial services, or other regulated industries
  • Familiarity with SOC 2 reports, NIST, ISO 27001, or HITRUST
  • Exposure to procurement or contract management systems
  • Experience supporting sanctions or denied-party screening processes

Responsibilities

  • Run vendor intake, inherent risk tiering, and due diligence assessment on the enterprise third-party risk platform
  • Reduce the backlog of suppliers that have not been formally risk assessed, working to an agreed prioritization based on access and criticality
  • Assess vendors with access to enterprise systems, data, or physical facilities, ensuring no in-scope category is omitted
  • Process vendor security questionnaires to closure within service level targets, coordinating with vendors and internal stakeholders to obtain required documentation
  • Partner with Cybersecurity on technical vendor reviews and with Contracting and Legal on risk-relevant terms
  • Serve as the first assessment gate in the vendor intake workflow so downstream functions engage only on vendors that clear
  • Support integration between the third-party risk platform and the procurement system to avoid duplicated effort across teams
  • Handle inbound due diligence requests and carrier annual audit responses through the trust center
  • Establish and execute ongoing monitoring and periodic reassessment based on vendor tier
  • Absorb the vendor population arriving through acquisitions and bring it into the assessment program
  • Feed third-party risk findings into the enterprise risk register and reporting
  • Maintain assessment documentation to an audit-ready standard suitable for control testing
  • Support sanctions and denied-party screening activity in coordination with Procurement, and support documentation of how flagged results are reviewed and resolved

Skills

Analytical thinking
Attention to detail
Written and verbal communication
Organizational skills
Excel proficiency
Office Suite

Education

Bachelor's degree in Business, Risk Management, Information Systems, Cybersecurity, or related field

Tools

Whistic
Archer
ServiceNow

Job description

Integrity, based in Dallas, Texas, is seeking a Third-Party Risk Management Analyst to lead the vendor due diligence program on the enterprise risk platform. You’ll focus on reducing the population of unassessed suppliers and establishing sustainable ongoing monitoring, serving as the first gate in the vendor intake process.

This role requires detail orientation, familiarity with assessment frameworks, and the ability to coordinate with procurement, contracting, legal, and cybersecurity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vendor Risk & Intake Analyst
Vendor Risk & Intake Analyst

Insurance Administrative Solutions, L.l.c. • Dallas (TX)

On-site
USD 70,000 - 100,000
Vendor Risk Analyst: Drive Third-Party Security
Vendor Risk Analyst: Drive Third-Party Security

Inceed • Lewisville (TX)

On-site
USD 50,000 - 55,000
TPRM Analyst
TPRM Analyst

Integrity • Dallas (TX)

On-site
USD 70,000 - 100,000
Vendor Risk & Third-Party Oversight Analyst
Vendor Risk & Third-Party Oversight Analyst

Phyton Talent Advisors • Red Bank (NJ)

On-site
USD 90,000 - 130,000
VP, Third-Party Risk & Due Diligence Leader
VP, Third-Party Risk & Due Diligence Leader

Morgan-Stanley • Dallas (TX)

On-site
USD 130,000 - 182,500
Vendor Risk & Partnerships Program Manager (Remote)
Vendor Risk & Partnerships Program Manager (Remote)

United States Digital Space LLC • United States

Remote
USD 56,000 - 73,000
Director, Third-Party Risk & Due Diligence
Director, Third-Party Risk & Due Diligence

Morgan Stanley • Dallas (TX)

On-site
USD 130,000 - 182,500
Vendor Risk & Contract Compliance Analyst
Vendor Risk & Contract Compliance Analyst

Addison Group • Chicago (IL)

On-site
USD 70,000 - 90,000
Third party Risk Specialist
Third party Risk Specialist

Atlas Search • New York (NY)

On-site
USD 100,000 - 130,000
Global Due Diligence & Risk Investigator
Global Due Diligence & Risk Investigator

Control-Risks • San Francisco (CA)

Hybrid
USD 140,000 - 150,000
Hybrid working
Competitive compensation
Medical benefits