1+ YOE1-3 years in risk, third-party risk, audit, cybersecurity, or compliance; Bachelor's in technology/risk/business (or equivalent experience); familiarity with SOC 1/2, ISO, NIST; strong communication and organizational skills.
Care New England Health System: Integrated non-profit health system providing hospital and medical services.
2+ YOEHigh school diploma and minimum 2 years related healthcare or accounts receivable experience; strong communication and typing skills; knowledge of insurance and government billing guidelines; ability to manage AR aging, resolve claims, and maintain HIPAA compliance.
Anthropic: Developing safe and reliable artificial intelligence systems.
Experience running end-to-end third-party/vendor risk assessments at a technology company; knowledge of risk fundamentals; ability to assess security, privacy, compliance, and operational risk; experience with LLM-backed workflows and procurement/GRC platforms.
T-MobileNASDAQ: TMUS: Provides wireless voice, data, and mobile internet services.
4+ YOEManage and mature a third-party risk program, lead and develop TPRM analysts, review vendor assessments, manage compliance obligations (CCPA, SOX, SEC), and drive tooling and automation improvements. Bachelor's plus related experience required; 4+ years corporate experience.
First Tech Federal Credit Union: Member-owned financial cooperative providing banking and lending services.
4+ YOEBachelor's degree or equivalent experience, 4+ years relevant experience, knowledge of third-party risk and compliance (NCUA, FFIEC, BSA/AML, privacy), strong analytical and communication skills, proficiency with Microsoft Office and risk tools.
First Tech Federal Credit Union: Member-owned financial cooperative providing banking and wealth management services.
4+ YOEBachelor's degree (or equivalent experience), 4+ years relevant experience, knowledge of third-party risk and compliance (NCUA/FFIEC/BSA/AML/privacy), strong analytical and communication skills, proficiency with Microsoft Office and risk tools.
Fortified Health Security: Healthcare-focused provider of managed cybersecurity and risk services.
1+ YOEExperience with information security frameworks, TPRM assessments, report writing, client communication, and knowledge of HIPAA/HITECH and NIST CSF 2.0.
HITRUST CSF, NIST CSF 2.0, ISO 27001, SOC 2 Type 2, HIPAA Security Rule
ToyotaNYSE: TM: Designs and manufactures vehicles and provides automotive financial services.
Bachelor's in CS/IT, experience in information security and third-party risk management, strong analytical and communication skills, ability to review assurance artifacts and present findings.
Thomson ReutersNASDAQ: TRI: Provides professional software, data, and news services globally.
Foundational knowledge of risk and compliance principles, strong analytical attention to detail, stakeholder management experience, effective English communication, and ability to follow processes; bachelor's degree and 2-3+ years experience preferred.
HealthEquityNASDAQ: HQY: Provides health savings accounts and consumer-directed benefit administration services.
5+ YOE5+ years in information security or technical risk roles; bachelor’s in CS/IT/risk; strong knowledge of risk frameworks and GRC tools; experience with AI risk and automation.
Vanta, Archer, ServiceNow, RiskRecon, SecurityScorecard, BitSight, SOC 2 Type II, ISO 27001, HITRUST
Milwaukee or Chicago or New York City or San Francisco or Phoenix or Austin or United States
$133k-$195k/yrRemoteFull Time
DoorDashNASDAQ: DASH: On-demand delivery platform connecting consumers with local merchants.
7+ YOE7+ years in security-focused TPRM, experience with vendor risk assessments, cloud/SaaS/AI security reviews, program building, audits, and remediation tracking; Bachelor's or Master's degree in related field.
CAIQ, SIG, SOC 2 Type 2, Penetration Test, NIST, ISO 27001, PCI-DSS, AWS, Azure, GCP, Covey Scout
OneTrust: Software platform for data privacy, security, and compliance governance.
5+ YOE5+ years hands-on cybersecurity/risk management experience; BA/BS in CS, cybersecurity, information assurance or related; experience reviewing SOC/ISO reports; cloud experience; knowledge of GDPR, CCPA, PCI-DSS, SOC 2, ISO, FedRAMP; strong communication and audit experience.
Caris Life SciencesNASDAQ: CAI: Provides molecular profiling and AI-driven precision medicine diagnostics.
4+ YOEBachelor's or equivalent experience, 4+ years in information security risk management or third‑party risk, knowledge of HIPAA/SOX/GDPR and NIST/ISO/CIS frameworks, strong communication, analytical skills, and proficiency with Excel/PowerPoint.
Microsoft Excel, Microsoft PowerPoint, Compyl, AuditBoard, RSA Archer, LogicGate, AWS, Azure, GCP