Third-Party Risk Management Analyst

Samsara

Northern (KY)

Hybrid

USD 111,000 - 167,000

Full time

13 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible working model
Remote work options
Professional development stipend
Health and parental leave

Job summary

Samsara is seeking a Senior Third-Party Risk Management Analyst to own security risk assessments for vendors and partners. You’ll manage the full lifecycle, collaborate with Legal and Procurement, and ensure security requirements are met before onboarding.

This remote role is open to US residents outside select metro areas. Ideal candidates bring 5+ years in TPRM/GRC, experience with risk frameworks (NIST/ISO/SOC), and familiarity with Vanta, ServiceNow, or OneTrust.

Qualifications

  • 5+ years in third-party/vendor risk management, GRC, or information security compliance.
  • Experience using automation, scripting, or low-code workflows to scale vendor risk programs.
  • Hands-on experience running vendor security assessments and administering a vendor tiering program.
  • Experience partnering with Legal and Procurement on vendor contracts and security/privacy terms.
  • Must reside in the US, outside SF Bay Area, NYC Metro, and DC metro areas.

Responsibilities

  • Lead end-to-end third-party security risk assessments and recommend risk ratings.
  • Own vendor reassessment cadence and track remediation of security gaps.
  • Review vendor contracts and onboarding requests to ensure security requirements before go-live.
  • Escalate unresolved vendor risk to Security leadership, legal, and business owners.
  • Support audits (ISO, SOC, FedRAMP) of the vendor risk program.
  • Build dashboards and reports to show Samsara's third-party risk posture.
  • Advise on automation and AI-enabled tools in vendor risk workflows.
  • Mentor junior TPRM resources to keep pace with growth.
  • Champion Samsara's cultural principles across the organization.

Skills

Vendor risk management
GRC
Information security
Automation scripting
Contract security

Education

CISA
CISSP
CRISC
CTPRP

Tools

Vanta
ServiceNow
OneTrust
Archer

Job description

Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, which is a platform that enables organizations that depend on physical operations to harness Internet of Things (IoT) data to develop actionable insights and improve their operations. At Samsara, we are helping improve the safety, efficiency and sustainability of the physical operations that power our global economy. Representing more than 40% of global GDP, these industries are the infrastructure of our planet, including agriculture, construction, field services, transportation, and manufacturing — and we are excited to help digitally transform their operations at scale.

Working at Samsara means you’ll help define the future of physical operations and be on a team that’s shaping an exciting array of product solutions, including Video-Based Safety, Vehicle Telematics, Apps and Driver Workflows, and Equipment Monitoring. As part of a recently public company, you’ll have the autonomy and support to make an impact as we build for the long term.

About the role:

The Samsara Governance, Risk, and Compliance team keeps our organization and customers safe by managing risk across our vendor and partner ecosystem. As a Third-Party Risk Management Analyst, you will own security risk assessments for critical Samsara vendors and partners. You will oversee the complete lifecycle—from tiering and onboarding to ongoing reassessments and remediation. In this role, you will partner closely with Legal, Procurement, and system owners across the business to ensure every vendor relationship meets our security standards.

This is a remote position open to candidates residing in the US except the San Francisco Bay Metro Area, NYC Metro Area, and Washington, D.C. Metro Area.

You should apply if:

  • You want to impact the industries that run our world: Your efforts will result in real-world impact – helping to keep the lights on, get food into grocery stores, reduce emissions, and most importantly, ensure workers return home safely.
  • You are the architect of your own career: If you put in the work, this role won’t be your last at Samsara. We set up our employees for success and have built a culture that encourages rapid career development, countless opportunities to experiment and master your craft in a hyper growth environment.
  • You’re energized by our opportunity: The vision we have to digitize large sectors of the global economy requires your full focus and best efforts to bring forth creative, ambitious ideas for our customers.
  • You want to be with the best: At Samsara, we win together, celebrate together and support each other. Youwill be surrounded by a high-calibre team that will encourage you to do your best.
In this role, you will:
  • Lead end-to-end third-party security risk assessments — using both qualitative and quantitative methods — for Samsara's vendors and partners, and recommend risk ratings and tiering in line with Samsara's Vendor Risk Management Policy.
  • Own the vendor reassessment cadence and track remediation of any security gaps throughout the full lifecycle of the vendor.
  • Partner with Legal, Procurement, and system/relationship owners to review vendor contracts and onboarding requests submitted through Zip, ensuring security requirements (e.g. incident notification, data training, compliance, etc.) are in place before a vendor goes live.
  • Escalate unresolved vendor risk to Security leadership, legal, procurement, and business owners as necessary.
  • Support internal and external audits of the vendor risk program (e.g. ISO, SOC, FedRAMP).
  • Build and maintain the metrics, dashboards, and reporting that give Security leadership visibility into Samsara's third-party risk posture and program performance.
  • Support the GRC team's efforts to bring automation and AI-enabled tools into vendor risk workflows, such as using AI to triage vendor security questionnaires, flag high-risk contract terms, and incorporate industry learnings into the lifecycle.
  • Mentor junior TPRM resource(s) to ensure Samsara’s TPRM program is matching the pace of innovation and velocity of Samsara.
  • Champion, role model, and embed Samsara's cultural principles (Focus on Customer Success, Build for the Long Term, Adopt a Growth Mindset, Be Inclusive, Win as a Team) as we scale globally and across new offices.

Minimum requirements for the role:

  • 5+ years of experience in third-party/vendor risk management, GRC, or information security compliance.
  • Experience using automation, scripting, or low-code workflows to help scale a vendor risk program.
  • Hands-on experience running vendor security assessments and administering a vendor tiering program.
  • Experience partnering with Legal and Procurement on vendor contract security and privacy terms (e.g., Security addendums, DPAs, etc.).
  • Must reside in the US, outside the San Francisco Bay Area, New York City, and Washington, D.C. metro areas.

An ideal candidate also has:

  • Familiarity with implementing and/or operating a risk assessment framework such as NIST CSF, ISO 27001, or SOC 2.
  • Experience with a GRC or vendor risk management platform (e.g., Vanta, ServiceNow, OneTrust, Archer, or similar).
  • A relevant certification such as CTPRP, CISA, CRISC, or CISSP.
  • $110,670 — $167,400 USD

Total Rewards

At Samsara, we build for the people who keep the global economy moving. We want owners, not passengers, which is why our rewards are designed to fuel high-impact builders. Our compensation program delivers above-market total compensation through a combination of base salary, performance-based bonus/variable pay, and equity (for eligible roles) in a high-growth public company. We meaningfully differentiate pay for our top performers, who have the opportunity to earn above-market compensation that can outpace the broader market over time.

Beyond compensation, we provide the foundations that enable long-term success: a flexible, employee-led remote model, a professional development stipend, comprehensive health and parental leave plans, and more. If you’re ready to build for the long term and own the outcome, your journey starts here.

Flexible Working

At Samsara, we embrace a flexible working model that caters to the diverse needs of our teams. Our offices are open for those who prefer to work in-person and we also support remote work where it aligns with our operational requirements. For certain positions, being close to one of our offices or within a specific geographic area is important to facilitate collaboration, access to resources, or alignment with our service regions. In these cases, the job description will clearly indicate any working location requirements. Our goal is to ensure that all members of our team can contribute effectively, whether they are working on-site, in a hybrid model, or fully remotely. All offers of employment are contingent upon an individual’s ability to secure and maintain the legal right to work at the company and in the specified work location, if applicable.

Belonging at Samsara

At Samsara, we welcome everyone regardless of their background. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, gender, gender identity, sexual orientation, protected veteran status, disability, age, and other characteristics protected by law. We depend on the unique approaches of our team members to help us solve complex problems and want to ensure that Samsara is a place where people from all backgrounds can make an impact.

Accommodations

Samsara is an inclusive work environment, and we are committed to ensuring equal opportunity in employment for qualified persons with disabilities. Please email accessibleinterviewing@samsara.com or click here if you require any reasonable accommodations throughout the recruiting process.

Samsara's Mission

Improve the safety, efficiency, and sustainability of the operations that power the global economy.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Offensive Security Engineer
Staff Offensive Security Engineer

Samsara • Northern (KY)

Hybrid
USD 165,000 - 265,000
Sr. Security Engineer I - Enterprise Security
Sr. Security Engineer I - Enterprise Security

Samsara • San Francisco (CA)

Remote
USD 135,000 - 205,000
Flexible working model
Professional development stipend
Comprehensive health plans
Senior Security Operations Engineer I
Senior Security Operations Engineer I

Samsara • United States

Hybrid
USD 135,000 - 183,000
Flexible working model
Professional development stipend
Comprehensive health benefits
Sr. Security Engineer - Enterprise Security
Sr. Security Engineer - Enterprise Security

Samsara • Austin (CO)

On-site
USD 135,000 - 205,000
Flexible working model
Professional development stipend
Comprehensive health benefits
Sr. Manager, Business Operations
Sr. Manager, Business Operations

Samsara • Northern (KY)

Hybrid
USD 119,000 - 180,000
Manager, Mid Market (East)
Manager, Mid Market (East)

Samsara • Atlanta (GA)

Remote
USD 88,000 - 130,000
Remote model
Professional development stipend
Health and parental leave
Manager, Mid Market (Central)
Manager, Mid Market (Central)

Samsara • Chicago (IL), Northern (KY)

Hybrid
USD 88,000 - 130,000
Senior Enablement Specialist
Senior Enablement Specialist

Samsara • United States

Remote
USD 81,000 - 122,000
Flexible working
Remote-friendly
Manager, Mid Market (West)
Manager, Mid Market (West)

Samsara • San Francisco (CA), Northern (KY)

Hybrid
USD 88,000 - 130,000
Sr. Manager, Finance & Strategy
Sr. Manager, Finance & Strategy

Samsara • San Francisco (CA)

Hybrid
USD 118,000 - 212,000