Vendor Risk Management Intern
Rimini Street · California, United States · 5 days ago
RemoteRemoteSales$25/hrFull-time
About the role
The Vendor Risk Management Intern will support the organization’s third-party risk management program by assisting with vendor onboarding, due diligence, risk assessments, documentation, reporting, and ongoing monitoring activities.
Key Responsibilities
- Assist with vendor onboarding and due diligence activities, including collection and review of security, compliance, privacy, and business documentation.
- Support vendor risk assessments by helping evaluate questionnaires, SOC reports, insurance certificates, data handling practices, and other required evidence.
- Maintain accurate vendor records, assessment status, contract dates, remediation items, and supporting documentation in designated tracking tools.
- Help monitor vendor risk findings, open issues, remediation plans, and follow-up actions to ensure timely closure.
- Prepare summaries, dashboards, and reports that communicate vendor risk status, trends, and key issues to management.
- Collaborate with internal stakeholders such as Security, IT, Procurement, Legal, Compliance, and business owners to gather information and support risk reviews.
- Research vendor risk management practices, cybersecurity frameworks, regulatory expectations, and emerging third-party risk trends.
- Support process improvement efforts by identifying opportunities to streamline vendor assessment workflows, templates, and reporting.
Qualifications
- Currently enrolled in a college or university program, preferably pursuing a degree in Cybersecurity, Information Technology, Business, Risk Management, Finance, Supply Chain, Legal Studies, or a related field.
- Strong interest in vendor risk management, cybersecurity, compliance, procurement, or enterprise risk management.
- Basic understanding of cybersecurity concepts, risk management principles, data protection, or compliance frameworks is preferred.
- Strong written and verbal communication skills with the ability to summarize information clearly and professionally.
- High attention to detail, strong organizational skills, and ability to manage multiple tasks and deadlines.
- Proficiency with Microsoft Office tools, especially Excel, Word, PowerPoint, and Outlook.
- Ability to work independently while also collaborating effectively with cross-functional teams.
Preferred Skills
- Familiarity with third-party risk management, vendor management, procurement, or compliance processes.
- Exposure to frameworks or standards such as SOC 2, ISO 27001, PCI DSS, NIST, or privacy regulations.
- Experience organizing data, building spreadsheets, preparing status reports, or creating presentation materials.
- Curiosity, professionalism, and willingness to learn in a fast-paced business environment.