Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Analyst, Third-Party Risk Management (TPRM)

$132.6k - $195k
Full-time

DoorDash USA

About the Team

Come help us build the world's most trusted on-demand logistics engine for delivery! We're building a team of great minds to help us secure and maintain a 24x7, no-downtime, global infrastructure system that powers DoorDash’s multi-sided marketplace of consumers, merchants, and drivers.

About the Role

The Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in a fast-paced environment, taking ownership, and driving improvements in our security posture, we want to talk to you! You will report to the Manager, GRC within our Security organization.

You’re excited about this opportunity because you will…

  • Drive the continuous maturation of our TPRM program , transforming it from a reactive, compliance-focused function into a proactive, strategic security partnership.
  • Architect and govern the security strategy for our BPO and contingent worker ecosystem , from developing and operationalizing continuous security standards to implementing & monitoring robust technical controls and ensuring strict compliance through rigorous due diligence and regular audit cycles.
  • Design and build process automations, optimizing and scaling the TPRM program to meet the business’s fast-moving priorities.
  • Pioneer and lead the Supplier Security AI Governance framework , evaluating critical third-party AI risks to ensure the secure implementation of AI tools across the business.
  • Establish and own core program governance and build a centralized reporting function , delivering actionable key metrics, risk dashboards, and progress updates to leadership for continuous visibility into third-party risk exposure.
  • Partner cross-functionally with security engineering, procurement, business, privacy, and legal teams to provide security advisory and lead risk assessments.
  • Lead the end-to-end issues and remediation tracking process , following up on all security findings and exceptions from assessments to ensure accountability and timely closure of remediation items.
  • Execute the core TPRM lifecycle (perform risk assessments, due diligence questionnaires, new vendor onboarding, contract and data protection agreement reviews) and partner with internal SMEs (Sourcing, Enterprise Security, IT) to refine internal policies and frameworks for scale.

We’re excited about you because you have…

  • 7+ years of progressive experience in security-focused TPRM methodologies, including owning or successfully leading a TPRM program for a fast-paced, high-growth company.
  • Bachelor’s or Master’s degree in Information Security, Computer Science, Business Administration, or related field.
  • Experience with program building, conducting security and/or assurance audits, controls, and risk assessments, and remediation management.
  • Deep technical understanding and experience conducting comprehensive security risk and gap assessments of cloud, SaaS, including Artificial Intelligence (AI) solutions, and infrastructure vendors, and evaluating risks that impact data security and application resilience.
  • Proficiency in the technical review of core security assurance documentation. This encompasses, but is not limited to, CAIQ, SIG, SOC 2 Type 2 reports, Penetration Test reports, and compliance attestations (e.g., ISO 27001, PCI-DSS, etc).
  • Experience in the technical vetting of complex vendor solutions. This involves scrutiny of API integrations with critical internal systems ('crown-jewels'), security of cloud-native services (AWS/Azure/GCP), and assessing agentic/generative AI platforms for vulnerabilities, data leakage, and system resilience.
  • Practical experience in assessing the unique risks associated with AI/ML models, including analysis of data provenance, identification of model poisoning risks, and ensuring the secure handling of proprietary data used for model training or fine-tuning.
  • Experience with implementing major information security, privacy, and risk management frameworks (e.g. NIST, ISO, SOC 2).
  • Experience managing security and compliance programs across broad GRC disciplines within a complex, global public company environment.
  • Experience solving complex, systemic issues that require creative thinking and cross-functional collaboration.
  • Experience managing vendor risk across the full relationship lifecycle, including periodic re-assessments, amendments, scope changes, and continuous monitoring.
  • Excellent verbal and written communication skills with the ability to effectively translate technical risk findings into a clear business context for diverse audiences, including executive leadership.
  • CISA, CISSP, CISM, or other industry certifications are a plus.


We expect this position to be filled by 9/13/26.

Compensation

The successful candidate’s starting pay will fall within the pay range listed below and is determined based on job-related factors including, but not limited to, skills, experience, qualifications, work location, and market conditions. Base salary is localized according to an employee’s work location. Ranges are market-dependent and may be modified in the future.

In addition to base salary, the compensation for this role includes opportunities for equity grants. Talk to your recruiter for more information.

DoorDash cares about you and your overall well-being. That’s why we offer a comprehensive benefits package to all regular employees, which includes a 401(k) plan with employer matching, 16 weeks of paid parental leave, wellness benefits, commuter benefits match, paid time off and paid sick leave in compliance with applicable laws (e.g. Colorado Healthy Families and Workplaces Act). DoorDash also offers medical, dental, and vision benefits, 11 paid holidays, disability and basic life insurance, family-forming assistance, and a mental health program, among others.

To learn more about our benefits, visit our careers page here.

See below for paid time off details:

  • For salaried roles: flexible paid time off/vacation, plus 80 hours of paid sick time per year.
  • For hourly roles: vacation accrued at about 1 hour for every 25.97 hours worked (e.g. about 6.7 hours/month if working 40 hours/week; about 3.4 hours/month if working 20 hours/week), and paid sick time accrued at 1 hour for every 30 hours worked (e.g. about 5.8 hours/month if working 40 hours/week; about 2.9 hours/month if working 20 hours/week).

The national base pay range for this position within the United States, including Illinois and Colorado.

$132,600—$195,000 USD

About DoorDash

At DoorDash, our mission to empower local economies shapes how our team members move quickly, learn, and reiterate in order to make impactful decisions that display empathy for our range of users—from Dashers to merchant partners to consumers. We are a technology and logistics company that started by enabling door-to-door delivery, and we are looking for team members who can help us go from a company that is known as the place you order food to a company that people turn to for any and all goods.

DoorDash is growing rapidly and changing constantly, which gives our team members the opportunity to share their unique perspectives, solve new challenges, and own their careers. We're committed to supporting employees’ happiness, healthiness, and overall well-being by providing comprehensive benefits and perks including premium healthcare, wellness expense reimbursement, paid parental leave and more.

Our Commitment to Diversity and Inclusion

We’re committed to growing and empowering a more inclusive community within our company, industry, and cities. That’s why we hire and cultivate diverse teams of people from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has room at the table and the tools, resources, and opportunity to excel.

Statement of Non-Discrimination: In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital/domestic partner status, sexual orientation, gender identity or expression, disability status, or veteran status. Above and beyond discrimination and harassment based on “protected categories,” we also strive to prevent other subtler forms of inappropriate behavior (i.e., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at DoorDash. We value a diverse workforce – people who identify as women, non-binary or gender non-conforming, LGBTQIA+, American Indian or Native Alaskan, Black or African American, Hispanic or Latinx, Native Hawaiian or Other Pacific Islander, differently-abled, caretakers and parents, and veterans are strongly encouraged to apply. Thank you to the Level Playing Field Institute for this statement of non-discrimination.

Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation.

If you need any accommodations, please inform your recruiting contact upon initial connection.

Notice to Applicants for Jobs Located in NYC or Remote Jobs Associated With Office in NYC Only

We used Covey as part of our hiring and/or promotional process for jobs in NYC and certain features may qualify it as an AEDT in NYC. As part of the hiring and/or promotion process, we provided Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound from August 21, 2023, through December 21, 2023. We resumed using Covey Scout for Inbound again on June 29, 2024, and ceased using Covey Scout for Inbound on April 30, 2026.

The Covey tool has been reviewed by an independent auditor. Results of the audit may be viewed here:

Vacancy posted 11 days ago
Similar jobs that could be interesting for youBased on the Senior Analyst, Third-Party Risk Management (TPRM) in New York, NY vacancy
  • Atlas Search is seeking a Third Party Risk Specialist in New York to enhance its enterprise-wide vendor risk management program. This individual will oversee third-party risk processes across various teams including Compliance and Operations. With over 10 years of experience... 
    Senior

    Atlas Search

    New York, NY
    1 day ago
  •  ...Third-Party Risk Management Senior Analyst (MRA Remediation Support) - VP Level New York City, NY or Tampa, FL (Hybrid) 6-12 Months Contract Web Cam Interview $70-$75/Hr on W2 Third Party Risk is a global, first line team within the Markets Operational Risk & Control... 
    Senior
    Contract work

    Syntricate Technologies

    New York, NY
    4 days ago
  • Citi is seeking a Lead Analyst in New York to manage third-party risk and operational resilience. This role will involve overseeing risk frameworks and providing insights to senior leadership. Candidates should have over 6 years of experience in risk management and a strong... 
    Senior

    Citi

    New York, NY
    4 days ago
  •  ...A global risk management firm is seeking an experienced Risk Officer for their New York office...  ...drive compliance and risk oversight of third-party relationships, alongside managing strategic...  ...deliverables to enhance the firm's TPRM framework. Ideal applicants will have 4... 
    Suggested
    Work at office

    Judit Inc

    New York, NY
    1 day ago
  • Credit Agricole Corporate & Investment Bank is hiring for a Third Party Risk Management support role in New York, focusing on mitigating supplier...  ...assessments, onboarding verification, and data upkeep in the TPRM tool. The position requires coordination with internal and... 
    Suggested

    Crédit Agricole Group

    New York, NY
    1 day ago
  •  ...are creative, low-ego and team-spirited. Role summary As a Senior Third-Party Risk Specialist , you will be responsible for identifying,...  ...and Operational teams to embed a proactive third-party risk management approach into our business processes. What you will do Develop... 
    Senior
    Contract work
    For subcontractor
    Relocation package

    Mistral

    New York, NY
    5 days ago
  •  ...1540 Broadway, New York, NY 10036 Department Corporate Controllership - Third-Party Risk Management (TPRM) Reports to Director of Third-Party Risk Governance & Awareness Position Summary The Senior TPRM Consultant is responsible for supporting the development and management... 
    Senior

    Adobe

    New York, NY
    1 day ago
  • Focus Financial Partners seeks a proactive Senior Risk Operations Specialist to bolster our Cybersecurity program, focusing on vulnerability and third-party risk management and policy development. Based in New York or St. Louis, you’ll work with cross-functional teams to... 
    Senior

    Focus Financial Partners Inc.

    New York, NY
    4 days ago
  • $102.4k - $191.8k

    Job Title: Senior TPRM ConsultantLocation: 1540 Broadway, New York, NY 10036Department: Corporate Controllership - Third-Party Risk Management (TPRM)Reports to: Director of Third-Party Risk Governance & AwarenessPosition Summary:The Senior TPRM Consultant supports the design... 
    Senior
    Full time
    Temporary work
    For subcontractor
    Local area
    Worldwide

    Adobe Systems

    New York, NY
    2 days ago
  • $102.4k - $191.8k

    Senior TPRM Consultant (Partner Engagements)Location: 1540 Broadway, New York, NY 10036Department: Corporate Controllership - Third-Party Risk Management (TPRM)Reports to: Director of Third-Party Risk Governance & AwarenessPosition Summary:The Senior TPRM Consultant is... 
    Senior
    Full time
    Temporary work
    For subcontractor
    Local area
    Worldwide

    Adobe Systems

    New York, NY
    5 days ago
  •  ...The Security Governance, Risk, and Compliance (GRC) team is...  ...the business by proactively managing information security risks and...  ...regulatory expectations. Third-party ecosystem risk is a core part...  ..., or hands-on ownership of a TPRM platform (e.g. OneTrust, ProcessUnity... 
    Full time
    Work experience placement
    Local area

    Plaid

    New York, NY
    15 days ago
  • $110k - $230k

     ...Senior ActuaryA-CAP is a leading provider of capital and third-party asset management solutions. Through our synergistic platform of insurance carriers, reinsurers, and asset...  ...is demonstrated through the industry-leading risk-adjusted returns we achieve, and the... 
    Senior
    Full time
    Temporary work
    Immediate start
    Work visa
    Monday to Friday

    A-CAP

    New York, NY
    4 days ago
  • $190.9k - $254.6k

    Procurement Senior Manager - Third Party Risk Strategy Job ID: 110961 Atlanta Connecticut - Darien Denver London Miramar New...  ...responsible for shaping and advancing a unified, end-to-end TPRM framework that supports a diverse and global third-party... 
    Senior
    Hourly pay
    Apprenticeship
    Work at office

    McKinsey & Company

    New York, NY
    4 days ago
  • $102.4k - $191.8k

    Job Title: Senior TPRM Governance & Awareness Consultant Location: 1540 Broadway, New York, NY 10036 Department: Corporate Controllership - Third-Party Risk Management (TPRM) Reports to: Director of Third-Party Risk Governance & Awareness Position Summary The Senior... 
    Senior
    Temporary work
    Local area

    Adobe

    New York, NY
    4 days ago
  •  ...alternative investment platform is seeking a Third Party Risk Specialist to support and enhance its enterprise-wide vendor risk management program. This individual will play a key...  ...-paced, collaborative environment with senior cross-functional stakeholders. #J-18808-Ljbffr... 

    Atlas Search

    New York, NY
    1 day ago
  • Mistral is seeking a Senior Third-Party Risk Specialist to identify, assess, and mitigate risks in vendor relationships. You will partner with Legal, Procurement, Security, and Ops to embed risk management into processes and governance. You will lead due diligence, compliance... 
    Senior

    Mistral

    New York, NY
    5 days ago
  • Crowe is seeking a dynamic professional for the role of Third Party Risk Management Lead in New York. This position involves managing third-party assessments and leading teams to identify risks and remediation strategies for clients. The ideal candidate should have 5-8+... 
    Senior
    Remote job

    Crowe

    New York, NY
    1 day ago
  •  ...staffing, Payrolling/EOR, Independent Contractor Compliance, and Managed Services. For almost 30 years, we've helped shape our...  ...Privacy Policy, information obtained will not be shared with third parties for marketing or promotional purposes. Message frequency may vary... 
    Senior
    Contract work
    For contractors

    Equiliem

    New York, NY
    1 day ago
  • $125k - $160k

     ...client is a real estate firm/family office. They seek a Senior Analyst, Asset Management to join their Manhattan, NY office.ResponsibilitiesSupport...  ...in accordance with reporting requirementsReview third-party management reports and analyze property operating performanceCoordinate... 
    Senior
    Work at office

    Abacus Group

    New York, NY
    6 days ago
  • $100k - $133.6k

     ...support capital raising efforts and fund management teams.Effectively communicate specific...  ...global knowledge, taking calculated risks aligned with our convictions to exceed...  ...workforce diversity.No calls or emails from third parties at this time please.Job SummaryJob ID:... 
    Senior
    Work at office
    Local area

    Hines

    New York, NY
    4 days ago
  • $110k - $125k

     ...worth paying for. About the roleAs the Senior Analyst, Total Rewards (Data Insights & Modeling...  ...for the New York Times workforce.Manage participation in external compensation...  ...for payment, and will not refer you to a third party to do so. You should never send money to... 
    Senior
    Local area

    The New York Times

    New York, NY
    4 days ago
  • $75k - $100k

     ...available at Who are we hiring? The Senior Analyst will be responsible for assisting with...  ..., equity investments and the management of existing portfolio of equity investments...  ...coordinate external communications with key third-party partners and advisors as well internal... 
    Senior
    Full time
    Work at office
    Local area
    Flexible hours
    Shift work

    Sphere Entertainment Group, LLC

    New York, NY
    2 days ago
  • $78k - $124.75k

     ...bonus + benefitsJob Function: Risk ManagementSchedule: Full...  ...objective of the USCS Control Management Risk ID & Assessment team is...  ...enhancement.USCS is looking for a Sr. Analyst of Risk ID & Assessment...  ...personalization, automation, third-party integrations, and new product... 
    Senior

    American Express

    New York, NY
    2 days ago
  • $80.55k - $115k

    Join to apply for the Third Party Risk Analyst : Advisory role at Jack Henry Join to apply for the...  ...Jack Henry’s Third-Party Risk Management (TPRM) program, providing strategic oversight...  ...Management (TPRM) strategy. Partner with senior leadership to evaluate and enhance... 
    Full time
    Work at office
    Local area
    Remote work

    Jack Henry

    New York, NY
    4 days ago
  •  ...and enterprises use to access, manage, and optimize their AI usage...  ...users. About the Role Most third-party risk roles hand you a mature program...  ...be the first security risk analyst at OpenRouter, building the vendor...  .... Design and stand up the TPRM program: intake, tiering,... 

    OpenRouter

    New York, NY
    1 day ago
  •  ...Senior Analyst, Streaming Third-Party Research A leading media and entertainment company is seeking a Senior Analyst, Streaming Third-Party Research...  ...skills. ~ High attention to detail and ability to manage multiple priorities. ~ Bachelor's degree or equivalent... 
    Senior

    Solomon Page

    New York, NY
    1 day ago
  • $101k - $114k

     ...paying for. About the RoleThe New York Times is looking for a Senior Analyst to join the Data and Insights Group (DIG).As part of the...  ...financial information or for payment, and will not refer you to a third party to do so. You should never send money to anyone who suggests... 
    Senior
    Local area
    Flexible hours

    The New York Times

    New York, NY
    2 days ago
  • $75 per hour

    Third Party Risk Management - Senior Specialist This is a hybrid role. Candidates can be located in one of two locations. NY or Philadelphia. Please notate...  ...a Senior Specialist, Third-Party Risk Management (TPRM), to support the identification, assessment, and oversight... 
    Senior
    For contractors

    Excelgens

    New York, NY
    3 days ago
  • Adobe Inc. in New York is seeking a Senior TPRM Consultant to develop and manage the third-party risk program for the sales partner ecosystem, including solution partners, system integrators, resellers, and distributors. You will independently drive risk discussions, set... 
    Senior

    Adobe

    New York, NY
    5 days ago
  • Adobe seeks a Senior TPRM Consultant to lead development and management of the Third-Party Risk Management program for the sales partner ecosystem. You will drive risk conversations, set agendas, hold stakeholders to timelines, and push issues to closure, partnering with... 
    Senior

    Adobe

    New York, NY
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Analyst, Third-Party Risk Management (TPRM). Be the first to apply!