Samsara11.03.2026

Специалист по автоматизации GRC (Governance, Risk & Compliance, TPRM)

Зарплата не указана
РЫНОК
18 043медиана по профессии
RPA Developer · 6 вакансий с указанной зарплатой
10 417половина предложений: 14 854–19 16721 158
Работодатель не указал зарплату — сравните с рынком сами.
London

Обязанности

  • 01Work with the Manager and Sr. Director of Platform Security and Compliance to provide programmatic updates and communicate program, third-party, and technical risk to the broader Information Security leadership team
  • 02Drive automation and efficiency in the TPRM program through the use of third-parties such as Zip and Vanta, and creating native solutions; ensuring security reviews and reassessments scale with company growth
  • 03Partner with Procurement, Legal, and Privacy to ensure vendor risks are identified, documented, and mitigated throughout the vendor lifecycle
  • 04Champion, role model, and embed Samsara’s cultural principles (Focus on Customer Success, Build for the Long Term, Adopt a Growth Mindset, Be Inclusive, Win as a Team) as we scale globally and across new offices
  • 05Work with legal or procurement teams to discuss ongoing vendor reviews, build and refine AI-enabled workflows to scale the vendor risk program, and collaborate with business teams to understand vendor use cases and data flows

Требования

  • 012-4 years of experience in the governance, risk, and compliance space
  • 02Experience implementing or maintaining vendor-risk programs
  • 03Experience performing security and maturity assessments
  • 04Supporting the creation or maintenance of risk registers, compliance inventories, and control mappings across internal and external systems
  • 05Ability to work with systems teams to collaboratively implement security controls across a diverse range of systems, such as Okta, Slack, Salesforce, and internal tooling
  • 06Professional experience coordinating and interacting with external auditors, internal engineering teams, business stakeholders, senior leadership, and security operations teams on procurement activities, audit controls and compliance requirements
  • 07Experience conducting vendor risk assessments, including reviewing security certifications, penetration tests, and policies
  • 08Strong understanding of vendor integration risks and permission scoping across SaaS platforms (e.g., Slack, Google Workspace, and Salesforce)
  • 09Ability to translate complex technical findings and requirements into clear business risks and requirements for non-technical stakeholders
  • 10Experience working with NIST Cybersecurity Framework profiles, SOC 2, ISO 27001, or similar frameworks
  • 11Experience creating workflows through automation and AI assistance
  • 12Experience working within common GRC and procurement platforms such as Zip and Vanta
  • 13Experience managing high volumes of vendor requests and competing priorities
  • 14Prior assessment experience in the Software-as-a-Service industry

Условия

  • 01Above-market total compensation through base salary, performance-based bonus/variable pay, and equity (for eligible roles)
  • 02Flexible, employee-led remote work model
  • 03Professional development stipend
  • 04Comprehensive health and parental leave plans
  • 05Opportunities for rapid career development and experimentation in a hyper-growth environment