ONE
Helping people save and grow their money.
Third Party Risk Analyst
Location
United States
Posted
122 days ago
Salary
$125K - $190K / year
Bachelor Degree5 yrs expEnglish
Job Description
• Conduct vendor risk reviews and evaluate third-party attestations such as SOC 2, ISO 2700x, and other security certifications.
• Analyze vendor contracts and identify potential risk clauses or data security implications.
• Support annual high-risk vendor audits and maintain documentation to meet compliance requirements.
• Collaborate cross-functionally with Legal, Procurement, Engineering, and Compliance teams to assess risk exposure and mitigation plans.
• Provide technical insight into vendor integrations, authentication, and infrastructure security controls.
Job Requirements
- 5–8+ years of experience in information security, vendor risk management, or related technical risk roles.
- Strong understanding of security frameworks and certifications (SOC 2, ISO 2700x, NIST, etc.).
- Familiarity with authentication, disaster recovery, and infrastructure security concepts.
- Ability to interpret and challenge vendor-provided attestations and control summaries.
- Comfort reviewing contracts and identifying clauses impacting data handling or access control.
- Excellent communication and analytical skills, with the ability to ask critical questions and present findings clearly.
- Drive and proactivity – everyone here is a builder and executor.
Benefits
- Offers Equity
Related Guides
Related Categories
Related Job Pages
More Risk Jobs
Risk127 days ago
Full TimeRemoteTeam 11-50Since 2017H1B No Sponsor
Data Governance Specialist defining data management best practices
AWSAzureCloudGoogle Cloud PlatformInformaticaNoSQLSQL
United States
Risk128 days ago
Full TimeRemoteTeam 1,001-5,000Since 1996H1B Sponsor
Analista de Processos e Governança de Dados na Keyrus
United States
Risk Consultant, Worker's Compensation
Synergistic Systems, Inc DBA SynergisticITAI-based Talent Search + Industry Knowledge = Superior Talent.
Risk130 days ago
ContractRemoteTeam 11-50Since 2007H1B No Sponsor
Workers’ Compensation Compliance Consultant supporting insurance clients remotely for 1-year contract
Risk131 days ago
Full TimeRemoteTeam 11-50Since 2017H1B No Sponsor
Data Governance Specialist managing insurance client's data assets
United States