×
Register Here to Apply for Jobs or Post Jobs. X

IT Manager, Vendor Risk Management

Job in Atlanta, Fulton County, Georgia, 30383, USA
Listing for: Delta Air Lines, Inc.
Full Time position
Listed on 2026-01-18
Job specializations:
  • IT/Tech
    Cybersecurity, IT Project Manager
Job Description & How to Apply Below

How you'll help us Keep Climbing (overview & key responsibilities)

Join Delta IT on our journey to becoming the best IT organization in the airline industry.

Delta IT is on a journey of transformation. We are changing the way we do business from top to bottom. As thought leaders within Delta, we strive to create meaningful and innovative solutions and are looking for team members to help us realize our vision.

Delta IT employees are thinkers, doers, innovators.

We are proactive.

We are collaborative.

We deliver impact to our customers.

Join us on our transformation journey in becoming a world-class IT organization at the world's best airline!

The Manager of Vendor Risk Management (VRM) is responsible for overseeing the identification, assessment, and mitigation of technology-related risks across all third-party vendors. This role ensures compliance with regulatory requirements and internal security standards by meeting the risk framework set forth by IT Risk. The manager will collaborate with key stakeholders, such as procurement, legal, and IT teams to implement effective controls and drive continuous improvement in vendor risk posture.

Strong leadership and communication skills are essential to manage complex risk scenarios and communicate findings to senior stakeholders. The ideal candidate combines deep knowledge of IT security, vendor governance and risk management practices with the ability to influence strategic decisions.

Key Responsibilities Program Leadership & Strategy
  • Provide leadership and oversight to a high performing team of Information Security professionals to ensure the confidentiality, integrity, and availability of information.

  • Oversee the Vendor Risk Management program, ensuring alignment with enterprise risk and compliance objectives.

  • Effective executive communication on vendor risk with the ability to simplify complexity.

  • Develop and maintain VRM policies, procedures, and governance frameworks.

  • Drive continuous improvement initiatives, including automation and integration of risk tools.

  • Gain and maintain knowledge of existing and emerging supply chain risks. Adjust the program to address/minimize these risks.

  • Meet with staff on a timely basis to conduct performance evaluations and provide feedback. Provide ongoing coaching, mentoring, and training to develop and encourage employee performance and development.

Risk Assessment & Monitoring
  • Lead the team in conducting inherent and residual risk assessments for new and existing vendors.

  • Implement continuous monitoring capabilities to track vendor risk posture in real time.

  • Ensure timely remediation of identified risks and findings, partnering with vendors and internal stakeholders.

Stakeholder Engagement
  • Collaborate with Supply Chain, Legal, and business units to embed security requirements into contracts and onboarding workflows.

  • Provide risk insights and recommendations to senior leadership for informed decision-making.

  • Serve as the primary point of escalation for vendor risk issues.

Reporting & Metrics
  • Deliver regular reports on vendor risk status, trends, and remediation progress to leadership and audit committees.

  • Establish KPIs and dashboards to measure program effectiveness.

Team Leadership
  • Manage and mentor a team of vendor risk analysts, fostering professional growth and collaboration.

  • Promote a culture of accountability, innovation, and continuous learning.

  • Lead with integrity and a positive attitude.

  • Perform special projects as assigned, while effectively managing time with competing priorities.

What you need to succeed (minimum qualifications)
  • 7+ years of experience in vendor risk management, third-party risk, or IT security, with at least 3 years in a leadership role.

  • Skill in conducting Information Security assessments of vendors/third parties.

  • Strong knowledge of regulatory requirements (PCI DSS, SOX, HIPAA) and risk frameworks (NIST, ISO 27001).

  • Experience with GRC platforms and continuous monitoring tools (e.g., Archer, Bit Sight).

  • Effectively communicates Information Security risks to technical and non-technical stakeholders, offers actionable options, and drives resolutions that balance business needs with risk reduction.

  • Ability to lead…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary