21 third party risk manager jobs at 18 companies in Martinez, CA
1mo
Save
Mark Applied
Hide
1mo
Third Party Risk Management and Customer Trust Lead
Foster City, California, United States
$210k-$270k/yrHybridFull Time
SolutionBox Insight: Agentic software creation platform that lets anyone build applications using natural language.
8+ YOE8+ years in third-party/vendor risk or GRC, ability to assess vendor risk from SOC 2/pen tests/architecture, contract review/redlining, knowledge of GDPR/CCPA, cross-functional collaboration, and building scalable vendor review processes.
SOC 2, GDPR, CCPA, NIST AI RMF, ISO 42001, EU AI Act
Milwaukee or Chicago or New York City or San Francisco or Phoenix or Austin or United States
$133k-$195k/yrRemoteFull Time
DoorDashNYSE: DASH: Technology enabling local on-demand delivery and commerce.
7+ YOERequires 7+ years in security-focused TPRM, a bachelor's or master's degree, risk assessment and remediation experience, cloud and AI vendor expertise, GRC framework experience, and excellent communication skills.
Milwaukee or Chicago or New York City or San Francisco or Phoenix or Austin or United States
$133k-$195k/yrRemoteFull Time
DoorDashNASDAQ: DASH: On-demand delivery platform connecting consumers with local merchants.
7+ YOE7+ years in security-focused TPRM, experience with vendor risk assessments, cloud/SaaS/AI security reviews, program building, audits, and remediation tracking; Bachelor's or Master's degree in related field.
CAIQ, SIG, SOC 2 Type 2, Penetration Test, NIST, ISO 27001, PCI-DSS, AWS, Azure, GCP, Covey Scout
Applied MaterialsNASDAQ: AMAT: Produces equipment and services for chip and display manufacturing.
3+ YOEBachelor's degree and 3–5+ years in product management, procurement technology, or risk/compliance systems; experience with OneTrust or similar GRC platforms; experience configuring enterprise SaaS and integrations/APIs.
Applied MaterialsNASDAQ: AMAT: Manufacturers of equipment for semiconductor and display production.
3+ YOEBachelor's degree and 3–5+ years in product management or procurement/risk systems; experience with OneTrust or similar GRC platforms, configuring enterprise SaaS, integrations/APIs, and strong stakeholder and analytical skills.
Moody's CorporationNYSE: MCO: Global integrated risk assessment firm and provider of financial analytics.
10+ YOE10+ years in corporate compliance or third-party risk management; expertise in compliance frameworks and risk solutions; strong client-facing communication; willingness to travel up to 50%; bachelor's degree required.
Staff Security Engineer - Enterprise & Third Party Risk Management
Mountain View, California, United States
$156k-$255k/yrHybridFull Time
LinkedInNASDAQ: MSFT: Professional social network for career development and job recruitment.
5+ YOERequires a technical degree or equivalent experience, 5+ years in security engineering, third-party risk assessments, and security design reviews, plus programming and automation experience.
10+ YOEBachelor's degree and 10+ years in corporate compliance, third-party risk, supplier due diligence, or related fields. Requires compliance expertise, client advisory, communication, presentation, and relationship management skills.
Privacy Program Manager, Third Party Risk Measurement - PDPO
San Jose, California, United States
$134k-$236k/yrOnsiteFull Time
TikTok: Short-form mobile video and social media platform.
5+ YOE5+ years GRC/privacy experience, knowledge of controls frameworks, data privacy regulations, risk identification and mitigation, strong communication and cross-functional collaboration skills.
Reflection AI: Private AI research lab building open foundation models and agentic software for enterprise, government, and regulated-industry users.
15+ YOE15+ years in risk operations, compliance, internal audit or information security with leadership experience; experience building controls assurance, third-party risk, incident response, and AI safety; familiarity with auditors/regulators and GRC platforms.
Field Marketing Manager, Third Party & Partner Events
San Francisco or New York City
$105k-$245k/yrHybridFull Time
FigmaNew York Stock Exchange: FIG: Collaborative interface design and prototyping software for teams.
4+ YOERequires 4+ years in event logistics, event operations, or field marketing; vendor and contract negotiation, complex project planning, live-event risk management, and excellent written and verbal communication.
Senior Software Engineer, Trust and Third Party Risk Management
United States or Toronto or San Francisco or New York City or London or Dublin or Tel Aviv or Sydney
$195k-$263k/yrRemoteFull Time
Vanta: Private software that helps businesses automate compliance, manage risk, and prove security trust.
5+ YOE5+ years software engineering experience; strong TypeScript/React or backend Node.js skills; experience building production web applications; solid database and REST/GraphQL API design knowledge; collaboration and technical leadership.
Governance, Risk Management and Compliance, Senior Director
San Jose, California, United States
$225k-$250k/yrOnsiteFull Time
Astera LabsNASDAQ: ALAB: Designs connectivity solutions for cloud and AI infrastructure.
10+ YOE5+ Mgmt10+ years in GRC/internal audit with 5+ years leading teams; experience with SOX, ERM, SOC 2/ISO 27001/NIST, third-party risk, and executive/Board reporting.
EliseAI: Agentic AI platform automating housing and healthcare communications and workflows for property managers, owners, and healthcare providers.
8+ YOE3+ Mgmt8+ years in GRC or related field with 3+ years leadership; deep expertise in SOC1/SOC2/PCI/HIPAA/ISO/HITRUST; audit program management; vendor risk and third‑party due diligence experience; able to work onsite 4–5 days/week.
Thunes: Global infrastructure for real-time cross-border payments and collections.
7+ YOEBachelor’s degree and 7+ years in partnerships, business development, vendor management, procurement, or third-party risk within payments, fintech, banking, or financial services; strong contract, compliance, and stakeholder skills.
Baseten: Private AI infrastructure provider that trains, deploys, and serves artificial-intelligence models for businesses.
5+ YOE5+ years GRC or security compliance experience in SaaS/cloud; strong knowledge of SOC 2, ISO 27001, NIST, GDPR; audit and certification management; third-party risk and cross-functional collaboration.
SierraNYSE: TJX: Enterprise AI platform for customer experience automation.
10+ YOE10+ years in information security with vendor/third-party risk in regulated environments; cloud security; ISO 27001/NIST 800-53/SOC 2/PCI DSS; automation and AI security interest.
FiservNew York Stock Exchange: FI: Provides financial technology and payment processing services to institutions.
8+ YOE8+ years partnering/vendor management experience in fintech or regulated environments, proven third-party onboarding and governance, cross-functional collaboration with legal/compliance/risk/engineering, bachelor's or equivalent, ability to assess AI/automation technologies.
Farmers & Merchants Bank of Central CaliforniaOTCQX: FMCB: Locally owned California community bank serving businesses, agricultural customers, and families with banking and financial services.
2+ YOE2+ years vendor management/procurement/risk experience preferred, familiarity with third-party risk frameworks, contract/SLA review, strong Excel/Word skills, analytical and communication abilities.
Microsoft Excel, Microsoft Word, vendor management systems