Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr. Cyber Governance, Risk & Compliance Analyst

$117k - $151k

Vuori, Inc

Job Description

Job Description

Company Description

Vuori is re-defining what athletic apparel looks like: built to move and sweat in but designed with a casual aesthetic to transition into everyday life. We draw inspiration from an active coastal California lifestyle; an integration of fitness, creative expression and life. Our high energy fast paced retail environment is reflected in the clothes we make. We aim to inspire others to take on all aspects of their lives with clarity, enthusiasm and purpose…while having a lot of fun along the way. We are proud to be an outlet for opportunity and for personal growth and success.

Job Description

The Senior Cyber Governance, Risk & Compliance Analyst is a senior level security professional whose primary responsibility is to design, operate, and continuously mature the organization’s Third‑Party / Vendor Risk Management (TPRM) program. In this role, the analyst serves as an embedded risk partner to the business, driving consistent, high‑quality vendor risk outcomes across the full third‑party lifecycle. 

While TPRM is the core focus of this role, the analyst is also expected to contribute meaningfully across other Information Security and Privacy domains as needed, including privacy operations, cyber governance, risk and compliance (GRC), and security operations. This role is ideal for a practitioner who enjoys vendor risk but is comfortable flexing across adjacent security functions in a fast-moving environment. 

What you'll get to do: 

Third‑Party / Vendor Risk Management (Primary Focus) 

  • Design, implement, operate, and continuously mature the Third‑Party Risk Management program, evolving it from a reactive, compliance driven function into a proactive, risk-based capability. 
  • Execute and oversee the full third-party risk lifecycle, including onboarding, inherent and residual risk assessments, due diligence, periodic reviews, contract risk review, issue management, remediation tracking, and ongoing monitoring. 
  • Perform deep technical security and risk assessments of third parties, including cloud services, SaaS platforms, infrastructure providers, and technology vendors. 
  • Review and interpret security assurance artifacts such as SOC 2 Type II reports, penetration test reports, CAIQ, SIG, ISO certifications, and other compliance attestations. 
  • Evaluate complex vendor solutions, including API integrations with critical internal systems, cloud native architectures (AWS, Azure, GCP), and AI/ML platforms. 
  • Assess and manages emerging third-party risks, including artificial intelligence risks such as data provenance, model integrity, data leakage, and secure handling of proprietary or regulated data. 
  • Lead end-to-end issue and remediation management, ensuring accountability, effectiveness, and timely closure of identified control gaps. 
  • Develop and maintain TPRM standards, playbooks, governance models, escalation paths, and operating procedures aligned with regulatory expectations and business needs. 
  • Build and deliver meaningful reporting, dashboards, and metrics that provide leadership with clear visibility into third-party risk posture, trends, and decision points. 

Privacy & Data Protection (Primary Focus) 

  • Support privacy operations, including Data Subject Requests (DSRs), Data Protection Impact Assessments (DPIAs), and data mapping initiatives. 
  • Partner with Privacy and Legal stakeholders to assess vendor and internal data processing risks and ensure appropriate safeguards are in place. 
  • Contribute to privacy related risk assessments, controls validation, and remediation tracking as needed. 

Cyber Governance, Risk & Compliance (Supporting Responsibility) 

  • Support cyber GRC activities, including tracking information security risks, risk exceptions, and remediation plans. 
  • Assist with the implementation and ongoing operation of security and risk management frameworks (e.g., NIST, ISO, SOC 2). 
  • Contribute to audit and assurance activities by providing risk assessments, evidence, and clear articulation of control posture. 

Security Operations & Enablement (Supporting Responsibility) 

  • Provide support to information security operations as needed, including incident response activities, impact analysis, and post incident follow‑up. 
  • Contribute to security awareness and training initiatives, helping translate risk themes into actionable guidance for the business. 
  • Assist with cross functional security initiatives during periods of increased demand or emerging risk. 

Business Partnership & Advisory 

  • Serve as a trusted risk advisor to vendor relationship owners and senior stakeholders, reducing their operational burden while preserving clear risk ownership and accountability. 
  • Partner closely with Legal, Compliance, Procurement, Technology, and Security teams to synthesize requirements and deliver practical, risk‑appropriate solutions. 
  • Review vendor contracts and summarize risk‑relevant provisions, control obligations, and gaps, partnering with Legal to support risk‑informed contract decisions. 
  • Escalate material risks, delays, or control gaps thoughtfully and early, framing issues in clear business terms and presenting well‑defined options for decision‑making. 
Qualifications

Who you are: 

  • 7+ years of progressive experience in Information Security, Third‑Party Risk Management, Vendor Risk Management, GRC, or Operational Risk. 
  • Demonstrated experience owning, building, or leading a Third‑Party / Vendor Risk Management program. 
  • Bachelor's degree in information security, Computer Science, Business Administration, or a related field or equivalent practical experience. 
  • Strong experience conducting security risk assessments, assurance reviews, audits, and remediation management. 
  • Deep technical understanding of cloud, SaaS, infrastructure, and AI vendor risk. 
  • Hands on experience reviewing SOC 2, ISO 27001, penetration test reports, CAIQ, SIG, and similar security documentation. 
  • Strong written and verbal communication skills, with the ability to translate technical risk into a clear business context for diverse audiences, including senior leadership. 
  • Proven ability to work autonomously, manage competing priorities, and drive outcomes in a fast paced environment. 

Additional Information

Our investment in you:

At Vuori, we’re proud to offer the following to our employees: 

  • Health Insurance 
  • Savings and Retirement Plan  
  • Employee Assistance Program 
  • Generous Vuori Discount & Industry Perks 
  • Paid Time Off  
  • Wellness & Fitness benefits  

The salary range for this role is $117,000 per year - $151,000 per year. This role is bonus eligible. 

Vuori is proud to be an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.  

All your information will be kept confidential according to EEO guidelines.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Sr. Cyber Governance, Risk & Compliance Analyst in Carlsbad, CA vacancy
  • $73.5k - $104.4k

     ...would love to meet you. ROLE OVERVIEW and PURPOSE The Compliance and Risk Analyst plays a pivotal role in upholding Neighborhood’s policy...  ...Knowledgeable about and experience with regulatory requirements governing healthcare programs in California, including Medicare and... 
    Suggested
    Work at office
    Immediate start

    Neighborhood Healthcare

    Escondido, CA
    8 days ago
  • $92.5k - $120k

     ...professional journey. To support the continued growth of our Risk Advisory for State & Local Government ( practice, an opportunity has been created for a...  ...to deliver solutions over operational and regulatory compliance risks, supporting them in the areas of internal audit,... 
    Senior
    Work experience placement
    Work at office
    Local area
    Remote work

    Cherry Bekaert

    Carlsbad, CA
    6 days ago
  •  ...Vuori is hiring a Risk and Insurance Analyst to support their risk management function and manage claims across various programs. The role involves financial analysis and budgeting, requiring strong analytical skills and a solid insurance foundation. Candidates should... 
    Suggested

    Vuori, Inc.

    Carlsbad, CA
    3 days ago
  •  ...Vuori, Inc in Carlsbad, California, is seeking a Risk and Insurance Analyst to support its risk management function. The role involves managing claims across property's insurance programs and providing financial analysis for budgeting. The ideal candidate should have... 
    Suggested

    Vuori, Inc.

    Carlsbad, CA
    4 days ago
  • $74.9k - $96.29k

     ...Job Description The Risk and Insurance Analyst support Vuori's risk management function by combining hands-on claims management with financial...  ...and completed transactions _Legal Affairs & Corporate Compliance Management _ Support the operational compliance of certain... 
    Suggested

    Vuori, Inc.

    Carlsbad, CA
    13 hours ago
  • $73.5k - $104.4k

    Nhcare is seeking a Compliance and Risk Analyst to uphold policy expectations and patient safety standards. You will manage incident reporting, conduct investigations, and engage in compliance initiatives. The ideal candidate holds a bachelor's degree in a related field... 

    Nhcare

    Escondido, CA
    4 days ago
  •  ...The City of Oceanside, CA is looking for an entry-level Risk Analyst I to support risk management initiatives. This position develops foundational skills in risk assessment with potential for advancement based on performance. You will handle safety, public liability,... 

    City of Oceanside

    Oceanside, CA
    4 days ago
  •  ...The City of Oceanside is seeking a Risk Analyst I/II who will perform specialized duties in Risk Management programs. This role is designed for career development, with potential advancement based on proficiency. Responsibilities include data analysis and preparing reports... 

    City of Oceanside

    Oceanside, CA
    20 hours ago
  • $6,103 - $8,187 per month

     ...Salary Risk Analyst I: $6,103 to $8,187 per month. Risk Analyst II: $6,958 to $9,327 per month...  ...for public safety employees. Ensure compliance with Federal, State, and local laws and...  ...analysis Public Liability / Loss Control Government Code related to tort claims Insurance... 
    Temporary work
    Work at office
    Local area

    City of Oceanside

    Oceanside, CA
    3 days ago
  • $6,103 - $8,187 per month

     ...PM Pacific Introduction *Risk Analyst I : $6,103/mo. to $8,187/mo.* Risk Analyst...  ...and methods to ensure regulatory compliance; provide training sessions in health and...  ...LOSS CONTROL (in addition to above): Government Code as it relates to tort claims;... 
    Hourly pay
    Weekly pay
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Immediate start
    Flexible hours

    City of Oceanside

    Oceanside, CA
    5 days ago
  • $84k - $156k

     ...connecting the space, air, land, sea and cyber domains in the interest of national...  ...Job Title: Senior Specialist, Trade Compliance Job Code: 39671 Job Location: Carlsbad...  ...conditional offer of employment may be subject to government security investigation(s) and must meet... 
    Cyber
    Senior
    Local area
    Flexible hours

    L3Harris

    Carlsbad, CA
    4 days ago
  • $80.5k - $149.5k

     ...connecting the space, air, land, sea and cyber domains in the interest of national...  ...collaborative, and independent In compliance with pay transparency requirements, the...  ...conditional offer of employment may be subject to government security investigation(s) and must meet... 
    Cyber
    Senior
    Local area
    Flexible hours

    L3Harris

    Carlsbad, CA
    2 days ago
  • $115k - $173.58k

     ...specializing in modeling and simulation, cyber transformation, air vehicle mission integration...  ...between requirements, design elements, risks, schedules, and verification artifacts....  ...TS/SCI. An active and transferable U.S. government-issued DODTS/SCI with the ability to... 
    Cyber
    Senior
    Full time
    Contract work
    Temporary work
    Local area
    Relocation package
    Flexible hours

    KBR

    Carlsbad, CA
    13 hours ago
  • $67k - $124k

     ...the space, air, land, sea and cyber domains in the interest of...  ...logistics processes, and maintain compliance with company, customer, and...  ...to analyze data, identify risks, and drive issue resolution in...  ...employment may be subject to government security investigation(s) and... 
    Cyber
    Senior
    Work at office
    Local area
    Flexible hours

    L3Harris

    Carlsbad, CA
    3 days ago
  •  ...Harris Geospatial Solutions is seeking a Senior Specialist in Trade Compliance located in Carlsbad, California. This role involves guiding U.S. import and export compliance for controlled goods and fostering international growth while ensuring adherence to regulations... 
    Senior

    Harris Geospatial Solutions

    Carlsbad, CA
    20 hours ago
  • $140.5k - $221.5k

     ...than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries around the globe communicate. We're looking for...  ...have a stong focus on networking, storage, compute, cloud, and cyber security. The day-to-day As part of this team you will be... 
    Cyber

    ViaSat

    Carlsbad, CA
    4 days ago
  •  ...35 years, Viasat has helped shape how consumers, businesses, governments and militaries around the globe communicate. We’re looking for...  ...impact to join our team. What you'll do The Global Trade Compliance (GTC) team supports Viasat’s business and growth by being compliant... 
    Senior
    Contract work
    Remote work
    Worldwide

    ViaSat

    Carlsbad, CA
    1 day ago
  • $143k - $190k

     ...Sr Manager, IT in BID As part of the Thermo Fisher Scientific team, you'll discover...  ..., and success metrics Identify risks, dependencies, and trade-offs early and drive...  ...priorities Drive alignment to existing PMO and governance processes across the BID Commercial &... 
    Senior
    Temporary work

    Thermo Fisher

    Carlsbad, CA
    1 day ago
  • $230k - $363k

     ...shape how consumers, businesses, governments and militaries around the...  ...What you'll do The Lead Cyber Security Engineer is a senior...  ...policies, procedures, and ensure compliance with frameworks like NIST, ISO...  ...and ability to analyze risk in the application of security... 
    Cyber

    ViaSat

    Carlsbad, CA
    13 hours ago
  • $121k - $191k

     ...shape how consumers, businesses, governments and militaries around the...  ...evidence collection to ensure compliance and alignment to security...  ...Bachelor’s degree or higher in Cyber Security, Information Technology...  ...to translate technical risks into business terms. Proficiency... 
    Cyber
    Work at office

    ViaSat

    Carlsbad, CA
    1 day ago
  • $95k - $149.5k

     ...Specialist to join their security team. This hybrid position focuses on network monitoring, incident response, and collaboration with the Cyber Threat Intelligence team. The ideal candidate will have a Bachelor's degree in Information Security and 2+ years in cyber security... 
    Cyber

    ViaSat

    Carlsbad, CA
    20 hours ago
  • Job Posting This position will be developing data related rules and requirements for our clients. Analysis and designing the method of Data integration whilst working with Engineering. Knowledge of ETL concepts and Data Warehousing Experience writing requirements...
    Senior

    Black Swan Search

    Carlsbad, CA
    1 day ago
  • $35 - $45 per hour

     ...collaborative consumer protection litigation firm focused on helping clients navigate consumer finance disputes from identity theft or cyber fraud, credit reporting disputes, and related civil litigation matters.  We’re looking for an experienced litigation paralegal to... 
    Cyber

    Barthel Legal

    Carlsbad, CA
    4 days ago
  • $165k - $260.5k

     ...shape how consumers, businesses, governments and militaries around the...  ...controls, ensuring regulatory compliance, and integrating security...  ...to align with ever-evolving risks. Train and educate internal...  ...Bachelor's degree or higher in Cyber Security, Information Technology... 
    Cyber

    ViaSat

    Carlsbad, CA
    1 day ago
  • $119k - $188.5k

     ...35 years, Viasat has helped shape how consumers, businesses, governments and militaries around the globe communicate. We're looking for...  ...submission to customers ~ Prior experience as a Program Control Analyst, Program Scheduler, or Program Finance Analyst ~ Attention... 
    Senior
    For subcontractor

    ViaSat

    Carlsbad, CA
    3 days ago
  •  ...Ensure integrations comply with security, data privacy, and compliance standards. Collaborate with cross-functional teams, including...  ...handovers, and business continuity planning. Identify integration risks or data issues and support resolution. Technical... 
    Senior
    Work at office
    Worldwide

    Callaway Golf

    Carlsbad, CA
    20 days ago
  • $120k - $130k

     ...accommodation or an alternative application process. Sr. Technical Manager Full Time Carlsbad, CA...  ..., ensuring business continuity and compliance with data retention policies. Develop,...  ..., resource allocations, budgets, and risk mitigation strategies. Communicate project... 
    Senior
    Full time

    The Upper Deck Company

    Carlsbad, CA
    3 days ago
  • $45 - $55 per hour

     ...monitoring of Hosts/System Perform defensive cyber operation duties including, but not limited to, ensuring server compliance with Marine Corps IAVM, and Tenable...  ...supporting architecture. Develop and execute Government approved security policies, plans, and procedures... 
    Cyber
    Senior
    Hourly pay
    Local area
    Immediate start

    Leidos

    Rancho Santa Fe, CA
    13 hours ago
  • Proper Voltage in Carlsbad, CA is seeking a Principal Firmware/Software Engineer to lead the firmware development for advanced battery management systems. Candidates should have 8+ years of embedded firmware experience, with expertise in ARM Cortex-M microcontrollers, ...
    Senior

    Proper Voltage

    Carlsbad, CA
    4 days ago
  • $38 - $48 per hour

     ...9 is seeking an experienced Senior Paralegal to join its legal team in Del Mar, CA. This hybrid role involves managing corporate governance, real estate, and litigation matters, requiring strong knowledge of California law. The ideal candidate will possess at least 5 years... 
    Senior

    Tech9

    Del Mar, CA
    2 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr. Cyber Governance, Risk & Compliance Analyst. Be the first to apply!