19 third party risk manager jobs at 16 companies in Atherton, CA
1mo
Save
Mark Applied
Hide
1mo
Third Party Risk Management and Customer Trust Lead
Foster City, California, United States
$210k-$270k/yrHybridFull Time
SolutionBox Insight: Agentic software creation platform that lets anyone build applications using natural language.
8+ YOE8+ years in third-party/vendor risk or GRC, ability to assess vendor risk from SOC 2/pen tests/architecture, contract review/redlining, knowledge of GDPR/CCPA, cross-functional collaboration, and building scalable vendor review processes.
SOC 2, GDPR, CCPA, NIST AI RMF, ISO 42001, EU AI Act
Milwaukee or Chicago or New York City or San Francisco or Phoenix or Austin or United States
$133k-$195k/yrRemoteFull Time
DoorDashNYSE: DASH: Technology enabling local on-demand delivery and commerce.
7+ YOERequires 7+ years in security-focused TPRM, a bachelor's or master's degree, risk assessment and remediation experience, cloud and AI vendor expertise, GRC framework experience, and excellent communication skills.
Milwaukee or Chicago or New York City or San Francisco or Phoenix or Austin or United States
$133k-$195k/yrRemoteFull Time
DoorDashNYSE: DASH: Technology enabling local on-demand delivery and commerce.
7+ YOE7+ years in security-focused TPRM, experience with vendor risk assessments, cloud/SaaS/AI security reviews, program building, audits, and remediation tracking; Bachelor's or Master's degree in related field.
CAIQ, SIG, SOC 2 Type 2, Penetration Test, NIST, ISO 27001, PCI-DSS, AWS, Azure, GCP, Covey Scout
Applied MaterialsNASDAQ: AMAT: Produces equipment and services for chip and display manufacturing.
3+ YOEBachelor's degree and 3–5+ years in product management, procurement technology, or risk/compliance systems; experience with OneTrust or similar GRC platforms; experience configuring enterprise SaaS and integrations/APIs.
Applied MaterialsNASDAQ: AMAT: Global leader in materials engineering for the semiconductor industry.
3+ YOEBachelor's degree and 3–5+ years in product management or procurement/risk systems; experience with OneTrust or similar GRC platforms, configuring enterprise SaaS, integrations/APIs, and strong stakeholder and analytical skills.
Moody's CorporationNYSE: MCO: Global integrated risk assessment firm and provider of financial analytics.
10+ YOE10+ years in corporate compliance or third-party risk management; expertise in compliance frameworks and risk solutions; strong client-facing communication; willingness to travel up to 50%; bachelor's degree required.
Staff Security Engineer - Enterprise & Third Party Risk Management
Mountain View, California, United States
$156k-$255k/yrHybridFull Time
LinkedInNASDAQ: MSFT: Professional social network for career development and job recruitment.
5+ YOERequires a technical degree or equivalent experience, 5+ years in security engineering, third-party risk assessments, and security design reviews, plus programming and automation experience.
10+ YOEBachelor's degree and 10+ years in corporate compliance, third-party risk, supplier due diligence, or related fields. Requires compliance expertise, client advisory, communication, presentation, and relationship management skills.
Privacy Program Manager, Third Party Risk Measurement - PDPO
San Jose, California, United States
$134k-$236k/yrOnsiteFull Time
TikTok: Short-form mobile video and social media platform.
5+ YOE5+ years GRC/privacy experience, knowledge of controls frameworks, data privacy regulations, risk identification and mitigation, strong communication and cross-functional collaboration skills.
Field Marketing Manager, Third Party & Partner Events
San Francisco or New York City
$105k-$245k/yrHybridFull Time
FigmaNYSE: FIG: Collaborative design and product development platform.
4+ YOERequires 4+ years in event logistics, event operations, or field marketing; vendor and contract negotiation, complex project planning, live-event risk management, and excellent written and verbal communication.
Senior Software Engineer, Trust and Third Party Risk Management
United States or Toronto or San Francisco or New York City or London or Dublin or Tel Aviv or Sydney
$195k-$263k/yrRemoteFull Time
Vanta: Private software that helps businesses automate compliance, manage risk, and prove security trust.
5+ YOE5+ years software engineering experience; strong TypeScript/React or backend Node.js skills; experience building production web applications; solid database and REST/GraphQL API design knowledge; collaboration and technical leadership.
Governance, Risk Management and Compliance, Senior Director
San Jose, California, United States
$225k-$250k/yrOnsiteFull Time
Astera LabsNASDAQ: ALAB: Provider of connectivity solutions for AI data centers.
10+ YOE5+ Mgmt10+ years in GRC/internal audit with 5+ years leading teams; experience with SOX, ERM, SOC 2/ISO 27001/NIST, third-party risk, and executive/Board reporting.
EliseAI: Agentic AI platform automating housing and healthcare communications and workflows for property managers, owners, and healthcare providers.
8+ YOE3+ Mgmt8+ years in GRC or related field with 3+ years leadership; deep expertise in SOC1/SOC2/PCI/HIPAA/ISO/HITRUST; audit program management; vendor risk and third‑party due diligence experience; able to work onsite 4–5 days/week.
Thunes: Private B2B payments infrastructure serving businesses and financial institutions with cross-border payment services.
7+ YOEBachelor’s degree and 7+ years in partnerships, business development, vendor management, procurement, or third-party risk within payments, fintech, banking, or financial services; strong contract, compliance, and stakeholder skills.
Baseten: Private AI infrastructure provider that trains, deploys, and serves artificial-intelligence models for businesses.
5+ YOE5+ years GRC or security compliance experience in SaaS/cloud; strong knowledge of SOC 2, ISO 27001, NIST, GDPR; audit and certification management; third-party risk and cross-functional collaboration.
SierraNYSE: TJX: Enterprise AI platform for customer experience automation.
10+ YOE10+ years in information security with vendor/third-party risk in regulated environments; cloud security; ISO 27001/NIST 800-53/SOC 2/PCI DSS; automation and AI security interest.
FiservNew York Stock Exchange: FI: Provides financial technology and payment processing services to institutions.
8+ YOE8+ years partnering/vendor management experience in fintech or regulated environments, proven third-party onboarding and governance, cross-functional collaboration with legal/compliance/risk/engineering, bachelor's or equivalent, ability to assess AI/automation technologies.
Austin or Chicago or New York City or Salt Lake City or San Francisco
$117k-$185k/yrOnsiteFull Time
Gong: AI OS for Revenue Teams
7+ YOE7+ years in third‑party/vendor risk management or GRC; strong knowledge of security/privacy frameworks, vendor assessments, and TPRM tooling; excellent communication and risk translation skills.