Vendor Governance & Risk Management Officer
Who We Are Looking For
Global Technology Services (GTS) manages a large and complex portfolio of third-party service providers, managed service arrangements, and intra-company service agreements. The Vendor Performance, Governance and Risk Management function is responsible for ensuring these relationships are governed effectively, aligned to business objectives, managed within risk appetite, and compliant with internal policies, contractual obligations, and regulatory requirements. This role works closely with Technology Delivery teams, Global Procurement Services, Third Party Risk Management (TPRM), Risk, Compliance, Legal, Audit, Finance, and vendor partners.
The Officer role provides operational, administrative, and governance support across risk management, outsourcing oversight, Annual Intra-Company IT Recertification, and performance management activities for a global portfolio of technology vendors and managed service providers. The role ensures these processes are managed in a structured, transparent, and auditable manner, with clear ownership of documentation, stakeholder follow-up, meeting coordination, approval tracking, evidence management, and management information reporting.
What You Will Be Responsible For
Vendor Governance & Oversight
Support day-to-day governance and oversight of technology vendors, managed service providers, and outsourcing arrangements.
Monitor vendor performance against contractual commitments, SLAs, KPIs, and service improvement plans.
Coordinate governance forums, operational reviews, service review meetings, and performance discussions.
Maintain vendor governance artifacts, inventories, documentation repositories, and reporting records.
Track vendor issues, risks, actions, escalations, and remediation activities through closure.
Vendor Risk Management
Coordinate Third Party Risk Management (TPRM) activities, including risk assessments, control reviews, due diligence, SOC report reviews, information security assessments, and ongoing monitoring.
Track risk findings, mitigation plans, remediation activities, and compliance obligations.
Support adherence to regulatory, jurisdictional, legal entity, and outsourcing requirements.
Assist with audit, compliance, regulatory, and risk review activities by gathering evidence and governance documentation.
Escalate material risks, control gaps, performance concerns, and compliance issues as appropriate.
Contract & Commercial Governance
Support governance of vendor contracts, statements of work (SOWs), amendments, and change requests.
Monitor compliance with contractual obligations and governance requirements.
Assist with vendor renewal activities, onboarding, transitions, and offboarding processes.
Support financial governance activities, including tracking spend, invoicing oversight, and vendor performance reporting where applicable.
Ensure SLA reporting aligns with contractual commitments and supports service excellence objectives.
Reporting, Data & Process Improvement
Support the production of governance dashboards, scorecards, management information reports, and risk metrics.
Maintain accuracy of vendor inventories, risk registers, action logs, and governance reporting.
Identify opportunities to improve governance processes, increase automation, enhance controls, and simplify workflows.
Support continuous improvement initiatives focused on operational efficiency, data quality, and governance effectiveness.
Annual Intra-Company Agreements (ICA) Recertification
Support completion of annual recertification milestones and associated governance activities.
Maintain accurate tracking of actions, approvals, documentation updates, and outstanding items.
Coordinate stakeholder communications and ensure review cycles are completed within agreed timelines.
Maintain audit-ready records, version control, approval evidence, and executed agreement registers.
Support management reporting, status updates, and escalation of overdue actions.
What We Value
The successful candidate will demonstrate:
Knowledge of vendor governance, outsourcing management, vendor risk management, and third-party oversight practices.
Strong attention to detail, documentation discipline, and control-oriented thinking.
Ability to manage multiple priorities and execute governance processes consistently and accurately.
Strong analytical, problem-solving, and organizational skills.
Effective written and verbal communication skills.
Ability to collaborate across diverse stakeholders and functions.
A proactive mindset with a focus on continuous improvement and operational excellence.
Understanding of regulatory expectations and governance requirements within a financial services environment.
Education & Preferred Qualifications
Required
Bachelor's degree in Technology, Information Systems, Business, Finance, Risk Management, or a related discipline.
3–5 years of relevant experience in Vendor Governance, Third Party Risk Management, Outsourcing Management, Vendor Management, IT Governance, Operational Risk, Procurement Governance, or a related technology governance function.
Experience supporting vendor governance programs, risk assessments, compliance reviews, or outsourcing management activities.
Proficiency with Microsoft Office Suite, including Excel, PowerPoint, Word, Outlook, and SharePoint.
Demonstrated ability to work with governance processes, reporting frameworks, controls, and audit requirements.
Preferred
Experience with Third Party Risk Management (TPRM) platforms, vendor management systems, contract repositories, or governance tools.
Knowledge of outsourcing regulations and vendor risk frameworks.
Familiarity with ITIL, COBIT, Operational Risk Management, or related governance frameworks.
Experience working in a regulated financial services, banking, or large enterprise environment.
Project Management, Agile, Lean, Six Sigma, or risk certification is advantageous.
Experience supporting global stakeholders and geographically diverse teams.
Work Requirement
Onsite 4 days a week in office and one day remote
Standard business hours aligned to project and stakeholder needs(8am to 5pm)
Salary Range:
$65,000 - $113,750 AnnualThe range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.
Employees are eligible to participate in State Street’s comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans.
For a full overview, visit https://hrportal.ehr.com/statestreet/Home.
About State Street
Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.
We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future.
As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law.
Discover more information on jobs at StateStreet.com/careers
Read our CEO Statement
Job Application Disclosure:
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
More jobs at Statestreet
- Production Support Engineer, Senior Associate — Princeton, New Jersey
- Senior PKI Engineer — Quincy, Massachusetts
- Solutions Architecture, Vice President — Irvine, California
- Software Supply Chain Security Engineer — Quincy, Massachusetts
Similar roles
- Sr Systems Security Engineer / Sr. Core Applications Administrator at Snc
- Director, Data Management Advisor at Capitalone
- Director, Enterprise Risk Management Issues & Events at Capitalone
- Project Management Specialist at Caci