GRC CareersAGJ, the AI governance job boardPost a Job

Jobs › Supervisor, IT Security Vendor Risk Management

Supervisor, IT Security Vendor Risk Management

Raymond James

Job at a glance

Category
GRC
Work arrangement
Hybrid
Location
St. Petersburg, FL
Posted
Jul 31, 2026
Apply for this jobApplications go directly to Raymond James
Applying today? Most GRC roles fill fast. Get the next ones the day they post, in St. Petersburg, FL.

Free. One click to unsubscribe. We never share your address.

ShareEmailLinkedInXFacebookPrint / Save PDF

Raymond James is hiring a Supervisor, IT Security Vendor Risk Management in St. Petersburg, FL. This is a GRC job in the governance, risk, and compliance field. Review the full details below and apply directly with Raymond James.

Job Description Summary This role provides essential leadership oversight to ensure consistent coverage and quality of IT Security Vendor Risk Assessments while improving coordination, standardization, and risk‑based prioritization. Dedicated supervision will drive measurable time reduction through operational efficiencies, reduce rework and process overhead, and enable senior leaders to focus on program strategy and regulatory readiness. Job Description This position follows our hybrid workstyle policy: Expected to be in a Raymond James office location a minimum of 10-12 days a month. Please note: This role is not eligible for Work Visa sponsorship, either currently or in the future. Technical Skills/Experience: Foundational experience in IT security, vendor risk management, third party risk, or similar risk functions Working knowledge of core information security and technology risk domains sufficient to review assessments, identify gaps, and escalate complex issues appropriately. Familiarity with internal policies, standards, and common regulatory expectations impacting third party risk management, with the ability to follow established procedures and recognize potential non compliance trends for escalation. Ability to apply basic risk concepts (inherent risk, control effectiveness, residual risk) to support consistent risk ratings and clear, defensible assessment outcomes. Experience reviewing and validating the work of others for completeness, accuracy, and adherence to standards, and providing constructive feedback to improve assessment quality and consistency. Developing people leadership skills, including task prioritization, workload coordination, coaching junior team members, and tracking team deliverables against defined timelines and objectives. Strong written and verbal communication skills, with the ability to summarize assessment results and risks in clear, business appropriate language for stakeholders and management. Responsibilities: Leads a team responsible for conducting risk based due diligence assessments for third party supplier engagements Oversees the evaluation of information security and technology risks associated with vendors, products, and services Ensures vendor risk outcomes align with the firm’s risk appetite and regulatory obligations Accountable for the quality, consistency, and timeliness of vendor risk assessments Translates technical and regulatory findings into clear risk conclusions and actionable recommendations

Full responsibilities and requirements are on Raymond James's application page.

Apply for this job →
About Raymond James
Hiring for governance, risk, and compliance jobs on GRC Careers.
Search all Raymond James jobs →

Location and market context

This job is based in St. Petersburg, FL on a hybrid schedule. Local candidates benefit from being close to Raymond James's teams and regional hiring market, while the hybrid arrangement offers some flexibility. Confirm the exact in-office expectation and any relocation support with the employer.

About third-party risk jobs

Third-party and vendor risk teams assess and monitor the security, privacy, and compliance posture of suppliers, an area under sharp regulatory and operational focus as AI vendors proliferate. Jobs like this one are typically evaluated against frameworks such as third-party risk frameworks, SOC 2, ISO/IEC 27001, and vendor due-diligence and monitoring practices.

How to position yourself for this third-party risk job

Strong candidates emphasize vendor due diligence and assessment, ongoing monitoring, contract and control requirements, and coordinating across security, privacy, and procurement. In your resume and outreach, tie your experience to how Raymond James would apply third-party risk frameworks, SOC 2, ISO/IEC 27001, and vendor due-diligence and monitoring practices, and lead with concrete outcomes rather than duties.

Similar GRC jobs

Supervisor Supply Management Specialist (Chief Supply Chain Officer)
Veterans Health Administration
Johnson City, Tennessee$126k to $164k
Counsel - Third Party Risk Management
Everest Re Group
London, UK
Central Outsourcing Control Office (COCO)
Morgan Stanley
Frankfurt, Germany
Director, 3rd Party Security Risk
HealthEquity
$152k
Cybersecurity and Third-Party Risk Manager
Lord Abbett
Jersey City, NJ$95k to $110k
Risk Business Partner - Third Party Risk Management
FNZ
Edinburgh, UK
Get more jobs like this by email
We will email you new GRC jobs in St. Petersburg, FL as they post. Free and confidential, one click to unsubscribe.

Know your GRC? Take the 2-minute AI Governance Challenge. No signup needed.
Play now →

More GRC jobs: All GRC jobs · Search by category & location

Need help applying for this job?

Most people send the same résumé to forty roles and hear nothing. These three do something about that.

Free
Career Intelligence tools
Five AI tools: rank your matches, see what the role really demands, find the recruiter behind the posting, build an interview-ready company brief, and know your number before they ask.
Use the free tools →
$75
Résumé review by a GRC professional
A working GRC professional reads it line by line: what clears the ATS, what a hiring manager actually looks for, and which of your experience you are underselling.
Book a résumé review →
$75/hr
Coaching through your search
Someone who has run executive searches for 28 years, working your actual search with you: targeting, positioning, interviews and negotiation.
Book a coaching session →

Free tools need no account. Paid services are delivered by a person, not a template.