[Hiring] Third-Party Risk Management Analyst @Samsara
Third-Party Risk Management Analyst @Samsara
Compliance
Salary 110670 per year
Remote Location
🇺🇸 USA Only
Employment Type full-time
Posted 2d ago

[Hiring] Third-Party Risk Management Analyst @Samsara

2d ago - Samsara is hiring a remote Third-Party Risk Management Analyst. 💸 Salary: 110670 per year 📍Location: USA

Role Description

The Samsara Governance, Risk, and Compliance team keeps our organization and customers safe by managing risk across our vendor and partner ecosystem. As a Third-Party Risk Management Analyst, you will own security risk assessments for critical Samsara vendors and partners. You will oversee the complete lifecycle—from tiering and onboarding to ongoing reassessments and remediation. In this role, you will partner closely with Legal, Procurement, and system owners across the business to ensure every vendor relationship meets our security standards.

This is a remote position open to candidates residing in the US except the San Francisco Bay Metro Area, NYC Metro Area, and Washington, D.C. Metro Area.

You should apply if:

  • You want to impact the industries that run our world: Your efforts will result in real-world impact – helping to keep the lights on, get food into grocery stores, reduce emissions, and most importantly, ensure workers return home safely.
  • You are the architect of your own career: If you put in the work, this role won’t be your last at Samsara. We set up our employees for success and have built a culture that encourages rapid career development, countless opportunities to experiment and master your craft in a hyper growth environment.
  • You’re energized by our opportunity: The vision we have to digitize large sectors of the global economy requires your full focus and best efforts to bring forth creative, ambitious ideas for our customers.
  • You want to be with the best: At Samsara, we win together, celebrate together and support each other. You will be surrounded by a high-calibre team that will encourage you to do your best.

In this role, you will:

  • Lead end-to-end third-party security risk assessments — using both qualitative and quantitative methods — for Samsara's vendors and partners, and recommend risk ratings and tiering in line with Samsara's Vendor Risk Management Policy.
  • Own the vendor reassessment cadence and track remediation of any security gaps throughout the full lifecycle of the vendor.
  • Partner with Legal, Procurement, and system/relationship owners to review vendor contracts and onboarding requests submitted through Zip, ensuring security requirements (e.g. incident notification, data training, compliance, etc.) are in place before a vendor goes live.
  • Escalate unresolved vendor risk to Security leadership, legal, procurement, and business owners as necessary.
  • Support internal and external audits of the vendor risk program (e.g. ISO, SOC, FedRAMP).
  • Build and maintain the metrics, dashboards, and reporting that give Security leadership visibility into Samsara's third-party risk posture and program performance.
  • Support the GRC team's efforts to bring automation and AI-enabled tools into vendor risk workflows, such as using AI to triage vendor security questionnaires, flag high-risk contract terms, and incorporate industry learnings into the lifecycle.
  • Mentor junior TPRM resource(s) to ensure Samsara’s TPRM program is matching the pace of innovation and velocity of Samsara.
  • Champion, role model, and embed Samsara's cultural principles (Focus on Customer Success, Build for the Long Term, Adopt a Growth Mindset, Be Inclusive, Win as a Team) as we scale globally and across new offices.

Qualifications

  • 5+ years of experience in third-party/vendor risk management, GRC, or information security compliance.
  • Experience using automation, scripting, or low-code workflows to help scale a vendor risk program.
  • Hands-on experience running vendor security assessments and administering a vendor tiering program.
  • Experience partnering with Legal and Procurement on vendor contract security and privacy terms (e.g., Security addendums, DPAs, etc.).
  • Must reside in the US, outside the San Francisco Bay Area, New York City, and Washington, D.C. metro areas.

Requirements

  • Familiarity with implementing and/or operating a risk assessment framework such as NIST CSF, ISO 27001, or SOC 2.
  • Experience with a GRC or vendor risk management platform (e.g., Vanta, ServiceNow, OneTrust, Archer, or similar).
  • A relevant certification such as CTPRP, CISA, CRISC, or CISSP.
Before You Apply
🇺🇸 Be aware of the location restriction for this remote position: USA Only
Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Third-Party Risk Management Analyst @Samsara
Compliance
Salary 110670 per year
Remote Location
🇺🇸 USA Only
Employment Type full-time
Posted 2d ago
Apply for this position
Did not apply
Applied
Sent Follow-Up
Interview Scheduled
Interview Completed
Offer Accepted
Offer Declined
Application Denied
Unlock 120,000+ Remote Jobs
🇺🇸 Be aware of the location restriction for this remote position: USA Only
Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply
Applied
Sent Follow-Up
Interview Scheduled
Interview Completed
Offer Accepted
Offer Declined
Application Denied
Unlock 120,000+ Remote Jobs
×

Apply to the best remote jobs
before everyone else

Access 120,000+ vetted remote jobs and get daily alerts.

4.9 ★★★★★ from 500+ reviews
Unlock All Jobs Now

Maybe later