Talent.com
Vendor Risk Analyst
Vendor Risk AnalystUniversity of Minnesota • St Paul, MN, United States
Vendor Risk Analyst

Vendor Risk Analyst

University of Minnesota • St Paul, MN, United States
2 days ago
Job type
  • Full-time
  • Part-time
Job description

Apply for Job Job ID 370850

Location Twin Cities

Job Family Information Technology

Full / Part Time Full-Time

Regular / Temporary Regular

Job Code 9702SG

Employee Class Acad Prof and Admin

Add to Favorite Jobs Email this Job

About the Job

Recruitment Title : Vendor Risk Management Analyst

Job Code : 9702SG - IT Pro 2-Sec Gov / Risk / Compl

Please note, this position is not eligible for H-1B or Green Card sponsorship.

The University of Minnesota is committed to fostering local talent through employment

opportunities. While this position utilizes a predominantly remote work modality, prospective

applicants must be located either in the state of Minnesota or near the Wisconsin border or

otherwise open to relocation.

We Offer :

  • University paid contribution (10% of your salary) to your retirement account - vested

immediately.

  • 22 paid vacation days per year, in addition to sick leave and 12 paid holidays.
  • Reduced tuition opportunities covering 75% - 100% of eligible tuition.
  • Excellent and affordable health care benefits (2023 Enrollment Guide).
  • Wellbeing program with opportunity to earn lower health care rates.
  • Free disability insurance and employer-paid life insurance.
  • Public Service Loan Forgiveness (PSLF) opportunity.
  • Financial counseling services.
  • Employee Assistance Program with eight sessions of counseling at no cost.
  • Employee Transit Pass with free or reduced rates in the Twin Cities metro area.
  • Annual merit increase program.
  • Job Responsibilities :

    Execute Vendor Risk Assessments (70%) :

  • Conduct security reviews of third parties in a timely manner, through defined processes and
  • tools, identifying risks where vendor controls do not meet University information security

    requirements.

  • Drive remediation of risks related to completed third party security reviews.
  • Facilitate the vendor management process by working with other information security staff to
  • evaluate vendor risks, coordinating communication with the risk owner and vendor, and

    ensuring proper approval of risk exceptions if necessary.

  • Participate in the Request for Proposal (RFP) / Request for Information (RFI) process.
  • Escalate security issues where appropriate.
  • Maintain strong knowledge of security-related regulations and standards (e.g. HIPAA, PCI DSS, and NIST) and security control structures (e.g. ISO 27001 / 27002).
  • Process and Relationship Management (30%) :

  • Design and implement process improvements to deliver increased operational efficiency.
  • Collaborate with key stakeholders involved in vendor acquisition and governance, including
  • technology, compliance, purchasing, and general counsel offices.

  • Develop vendor assessment,tracking processes and procedures using the University Governance, Risk, and Compliance (GRC) tool.
  • Support internal education and best practices around vendor risk management.
  • Ensure review processes are properly defined and formally documented for consistent
  • execution.

    Qualifications

    Required Qualifications :

  • Bachelor's degree and 2 years of relevant work experience or a comparable combination of
  • education, training, and experience.

  • Demonstrated experience in one or more of the following :
  • Regulatory compliance

    Information security risk assessment

    Third-party vendor review

    Information technology audit

  • Knowledge of diverse IT architectures and enterprise IT data centers, external hosted services,
  • and cloud computing environments.

  • Demonstrated process improvement and / or process design experience
  • Preferred Qualifications :

  • Strong analytical and problem-solving skills.
  • Excellent communication (oral, written, presentation), interpersonal, and consultative skills.
  • Prior experience with HIPAA, FERPA, or PCI Compliance
  • About the Department

    At the University of Minnesota, we are dedicated to changing lives through education, research, and

    outreach. The University Information Security (UIS) Department offers an environment of trust,

    collaboration, and mission-focused work. We seek an individual who will be responsible for continuous

    Vendor Risk Management process improvement, and collaboration with University stakeholders. The

    individual in this role will also perform information security reviews of third parties that collect, manage

  • or access University data, during initial procurement and periodically throughout the contract lifecycle;
  • they will ensure that reviews are in alignment with potential risk, and issues identified through vendor

    reviews are resolved and that agreed-upon controls remain in place.

    Pay and Benefits

    Pay Range : $80,000-$100,000 per year ; depending on education / qualifications / experience

    Time Appointment : 100% Appointment

    Position Type : Academic Prof and Admin Staff

    Please visit the Office of Human Resources website for more information regarding benefit eligibility.

    The University offers a comprehensive benefits package that includes :

  • Competitive wages, paid holidays, and generous time off
  • Continuous learning opportunities through professional training and degree-seeking programs supported by the Regents Tuition Benefit Program
  • Low-cost medical, dental, and pharmacy plans
  • Healthcare and dependent care flexible spending accounts
  • University HSA contributions
  • Disability and employer-paid life insurance
  • Employee wellbeing program
  • Excellent retirement plans with employer contribution
  • Public Service Loan Forgiveness (PSLF) opportunity
  • Financial counseling services
  • Employee Assistance Program with eight sessions of counseling at no cost
  • Employee Transit Pass with free or reduced rates in the Twin Cities metro area
  • How To Apply

    Applications must be submitted online. To be considered for this position, please click the Apply button and follow the instructions. You will be given the opportunity to complete an online application for the position and attach a cover letter and resume. Please document qualifications on resume.

    Additional documents may be attached after application by accessing your "My Job Applications" page and uploading documents in the "My Cover Letters and Attachments" section.

    The University of Minnesota is an Equal Opportunity Educator and Employer.

    To request an accommodation during the application process, please e-mail employ@umn.edu or call (612) 624-8647.

    Diversity

    The University recognizes and values the importance of diversity and inclusion in enriching the employment experience of its employees and in supporting the academic mission. The University is committed to attracting and retaining employees with varying identities and backgrounds.

    The University of Minnesota provides equal access to and opportunity in its programs, facilities, and employment without regard to race, color, creed, religion, national origin, gender, age, marital status, disability, public assistance status, veteran status, sexual orientation, gender identity, or gender expression. To learn more about diversity at the U :

    Employment Requirements

    Any offer of employment is contingent upon the successful completion of a background check. Our presumption is that prospective employees are eligible to work here. Criminal convictions do not automatically disqualify finalists from employment.

    About the U of M

    The University of Minnesota, Twin Cities (UMTC)

    The University of Minnesota, Twin Cities (UMTC), is among the largest public research universities in the country, offering undergraduate, graduate, and professional students a multitude of opportunities for study and research. Located at the heart of one of the nation's most vibrant, diverse metropolitan communities, students on the campuses in Minneapolis and St. Paul benefit from extensive partnerships with world-renowned health centers, international corporations, government agencies, and arts, nonprofit, and public service organizations.

    At the University of Minnesota, we are proud to be recognized by the Star Tribune as a Top Workplace for 2021, as well as by Forbes as Best Employers for Women and one of America's Best Employers (2015, 2018, 2019, 2023), Best Employer for Diversity (2019, 2020), Best Employer for New Grads (2018, 2019), and Best Employer by State (2019, 2022).

    Create a job alert for this search

    Risk Analyst • St Paul, MN, United States

    Related jobs
    Analyst, Market Risk

    Analyst, Market Risk

    Geronimo Power, LLC • Minneapolis, MN, US
    Full-time
    Geronimo Power (formerly National Grid Renewables) develops, owns and operates large-scale power assets throughout America’s Heartland, including solar, wind and energy storage.As a farmer-fo...Show more
    Last updated: 18 days ago • Promoted
    Fraud Risk Analyst - Richfield MN

    Fraud Risk Analyst - Richfield MN

    Best Buy • USA, Minnesota, Minneapolis
    Full-time
    Fraud Risk Analyst Show more
    Last updated: 20 days ago
    Jerry's Corporate - Cybersecurity Analyst Immediate Opening

    Jerry's Corporate - Cybersecurity Analyst Immediate Opening

    Jerry's Enterprises Inc. • Edina, MN
    Full-time
    Cybersecurity Analyst plays a crucial role in maintaining and ensuring the security of Jerry’s Enterprises digital infrastructure by identifying vulnerabilities, implementing protective measures, a...Show more
    Last updated: 2 days ago • Promoted
    Cybersecurity Analyst - Commensurate based on experience Hiring ASAP

    Cybersecurity Analyst - Commensurate based on experience Hiring ASAP

    Jerry's Enterprises Inc. • Edina, MN
    Full-time
    Cybersecurity Analyst plays a crucial role in maintaining and ensuring the security of Jerry’s Enterprises digital infrastructure by identifying vulnerabilities, implementing protective measures, a...Show more
    Last updated: 2 days ago • Promoted
    Risk Analyst

    Risk Analyst

    Minnesota Jobs • Minneapolis, MN, US
    Full-time
    Provide Risk Analyst services in Minneapolis, Minnesota, United States learn more about this role and apply.Show more
    Last updated: 4 days ago • Promoted
    Payments Risk Analyst II, Operations

    Payments Risk Analyst II, Operations

    Coinbase • St Paul, MN, United States
    Full-time
    Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...Show more
    Last updated: 2 days ago • Promoted
    Cybersecurity Analyst - Commensurate based on experience

    Cybersecurity Analyst - Commensurate based on experience

    Jerry's Enterprises Inc. • Edina, MN
    Full-time
    Cybersecurity Analyst plays a crucial role in maintaining and ensuring the security of Jerry’s Enterprises digital infrastructure by identifying vulnerabilities, implementing protective measures, a...Show more
    Last updated: 2 days ago • Promoted
    Risk Analyst

    Risk Analyst

    Xcel Energy • Minneapolis, MN, US
    Full-time
    Are you looking for an exciting job where you can put your skills and talents to work at a company you can feel proud to be a part of? Do you want a workplace that will challenge you and offer you ...Show more
    Last updated: 30+ days ago • Promoted
    Cybersecurity Analyst Immediate Opening

    Cybersecurity Analyst Immediate Opening

    Jerry's Enterprises Inc. • Edina, MN
    Full-time
    Cybersecurity Analyst plays a crucial role in maintaining and ensuring the security of Jerry’s Enterprises digital infrastructure by identifying vulnerabilities, implementing protective measures, a...Show more
    Last updated: 2 days ago • Promoted
    Jerry's Corporate - Cybersecurity Analyst

    Jerry's Corporate - Cybersecurity Analyst

    Jerry's Enterprises Inc. • Edina, MN
    Full-time
    Cybersecurity Analyst plays a crucial role in maintaining and ensuring the security of Jerry’s Enterprises digital infrastructure by identifying vulnerabilities, implementing protective measures, a...Show more
    Last updated: 2 days ago • Promoted
    Jerry's Corporate - Cybersecurity Analyst - Commensurate based on experience

    Jerry's Corporate - Cybersecurity Analyst - Commensurate based on experience

    Jerry's Enterprises Inc. • Edina, MN
    Full-time
    Cybersecurity Analyst plays a crucial role in maintaining and ensuring the security of Jerry’s Enterprises digital infrastructure by identifying vulnerabilities, implementing protective measures, a...Show more
    Last updated: 2 days ago • Promoted
    Sr. Cyber Risk Assurance Analyst

    Sr. Cyber Risk Assurance Analyst

    Minnesota Staffing • Minneapolis, MN, United States
    Full-time
    McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare.We are known for delivering insights, products, and services that make quality care more accessibl...Show more
    Last updated: 1 day ago • Promoted
    Cybersecurity Analyst

    Cybersecurity Analyst

    Jerry's Enterprises Inc. • Edina, MN
    Full-time
    Cybersecurity Analyst plays a crucial role in maintaining and ensuring the security of Jerry’s Enterprises digital infrastructure by identifying vulnerabilities, implementing protective measures, a...Show more
    Last updated: 2 days ago • Promoted
    Sr Risk Analyst

    Sr Risk Analyst

    Ameriprise Financial • Minneapolis, MN, US
    Full-time
    Supports day-to-day risk oversight for assigned business deliverables, project support, change management support and lead process reviews identifying risk and developing solutions while maintainin...Show more
    Last updated: 3 days ago • Promoted
    Fraud Analyst I

    Fraud Analyst I

    Alerus • Minnetonka, MN, United States
    Full-time
    Alerus is a commercial wealth bank and national retirement provider with one core purpose : helping clients achieve their financial goals. We are driven by a shared commitment to always do the right ...Show more
    Last updated: 1 day ago • Promoted
    PayPal Fraud Analyst

    PayPal Fraud Analyst

    TradeJobsWorkforce • 54003 Beldenville, WI, US
    Full-time
    Be part of our success story as a PayPal Fraud Analyst to review transactions and identify suspicious activity.Work with your team to maintain efficiency and high standards.Stay adaptable to changi...Show more
    Last updated: 30+ days ago • Promoted
    Sr. Credit Analyst

    Sr. Credit Analyst

    MidCountry Bank • Bloomington, MN, United States
    Full-time
    The pay range represents the anticipated base pay for this position.Actual pay will be based on factoring including, but not limited to : market data, internal equity, skillset and knowledge, experi...Show more
    Last updated: 2 days ago • Promoted
    Risk Analyst

    Risk Analyst

    Adecco USA • Minneapolis, MN, United States
    Full-time
    Adecco is currently assisting a local customer in their search for a Risk Analyst in Minneapolis, MN.This is a great opportunity to further your existing skills as a Risk Analyst.While learning new...Show more
    Last updated: 2 days ago • Promoted