Sr. Cyber Governance, Risk & Compliance Analyst
$117k - $151kVuori, Inc
Job Description
Job Description
Company Description
Vuori is re-defining what athletic apparel looks like: built to move and sweat in but designed with a casual aesthetic to transition into everyday life. We draw inspiration from an active coastal California lifestyle; an integration of fitness, creative expression and life. Our high energy fast paced retail environment is reflected in the clothes we make. We aim to inspire others to take on all aspects of their lives with clarity, enthusiasm and purpose…while having a lot of fun along the way. We are proud to be an outlet for opportunity and for personal growth and success.
Job DescriptionThe Senior Cyber Governance, Risk & Compliance Analyst is a senior level security professional whose primary responsibility is to design, operate, and continuously mature the organization’s Third‑Party / Vendor Risk Management (TPRM) program. In this role, the analyst serves as an embedded risk partner to the business, driving consistent, high‑quality vendor risk outcomes across the full third‑party lifecycle.
While TPRM is the core focus of this role, the analyst is also expected to contribute meaningfully across other Information Security and Privacy domains as needed, including privacy operations, cyber governance, risk and compliance (GRC), and security operations. This role is ideal for a practitioner who enjoys vendor risk but is comfortable flexing across adjacent security functions in a fast-moving environment.
What you'll get to do:
Third‑Party / Vendor Risk Management (Primary Focus)
- Design, implement, operate, and continuously mature the Third‑Party Risk Management program, evolving it from a reactive, compliance driven function into a proactive, risk-based capability.
- Execute and oversee the full third-party risk lifecycle, including onboarding, inherent and residual risk assessments, due diligence, periodic reviews, contract risk review, issue management, remediation tracking, and ongoing monitoring.
- Perform deep technical security and risk assessments of third parties, including cloud services, SaaS platforms, infrastructure providers, and technology vendors.
- Review and interpret security assurance artifacts such as SOC 2 Type II reports, penetration test reports, CAIQ, SIG, ISO certifications, and other compliance attestations.
- Evaluate complex vendor solutions, including API integrations with critical internal systems, cloud native architectures (AWS, Azure, GCP), and AI/ML platforms.
- Assess and manages emerging third-party risks, including artificial intelligence risks such as data provenance, model integrity, data leakage, and secure handling of proprietary or regulated data.
- Lead end-to-end issue and remediation management, ensuring accountability, effectiveness, and timely closure of identified control gaps.
- Develop and maintain TPRM standards, playbooks, governance models, escalation paths, and operating procedures aligned with regulatory expectations and business needs.
- Build and deliver meaningful reporting, dashboards, and metrics that provide leadership with clear visibility into third-party risk posture, trends, and decision points.
Privacy & Data Protection (Primary Focus)
- Support privacy operations, including Data Subject Requests (DSRs), Data Protection Impact Assessments (DPIAs), and data mapping initiatives.
- Partner with Privacy and Legal stakeholders to assess vendor and internal data processing risks and ensure appropriate safeguards are in place.
- Contribute to privacy related risk assessments, controls validation, and remediation tracking as needed.
Cyber Governance, Risk & Compliance (Supporting Responsibility)
- Support cyber GRC activities, including tracking information security risks, risk exceptions, and remediation plans.
- Assist with the implementation and ongoing operation of security and risk management frameworks (e.g., NIST, ISO, SOC 2).
- Contribute to audit and assurance activities by providing risk assessments, evidence, and clear articulation of control posture.
Security Operations & Enablement (Supporting Responsibility)
- Provide support to information security operations as needed, including incident response activities, impact analysis, and post incident follow‑up.
- Contribute to security awareness and training initiatives, helping translate risk themes into actionable guidance for the business.
- Assist with cross functional security initiatives during periods of increased demand or emerging risk.
Business Partnership & Advisory
- Serve as a trusted risk advisor to vendor relationship owners and senior stakeholders, reducing their operational burden while preserving clear risk ownership and accountability.
- Partner closely with Legal, Compliance, Procurement, Technology, and Security teams to synthesize requirements and deliver practical, risk‑appropriate solutions.
- Review vendor contracts and summarize risk‑relevant provisions, control obligations, and gaps, partnering with Legal to support risk‑informed contract decisions.
- Escalate material risks, delays, or control gaps thoughtfully and early, framing issues in clear business terms and presenting well‑defined options for decision‑making.
Who you are:
- 7+ years of progressive experience in Information Security, Third‑Party Risk Management, Vendor Risk Management, GRC, or Operational Risk.
- Demonstrated experience owning, building, or leading a Third‑Party / Vendor Risk Management program.
- Bachelor's degree in information security, Computer Science, Business Administration, or a related field or equivalent practical experience.
- Strong experience conducting security risk assessments, assurance reviews, audits, and remediation management.
- Deep technical understanding of cloud, SaaS, infrastructure, and AI vendor risk.
- Hands on experience reviewing SOC 2, ISO 27001, penetration test reports, CAIQ, SIG, and similar security documentation.
- Strong written and verbal communication skills, with the ability to translate technical risk into a clear business context for diverse audiences, including senior leadership.
- Proven ability to work autonomously, manage competing priorities, and drive outcomes in a fast paced environment.
Our investment in you:
At Vuori, we’re proud to offer the following to our employees:
- Health Insurance
- Savings and Retirement Plan
- Employee Assistance Program
- Generous Vuori Discount & Industry Perks
- Paid Time Off
- Wellness & Fitness benefits
The salary range for this role is $117,000 per year - $151,000 per year. This role is bonus eligible.
Vuori is proud to be an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.
All your information will be kept confidential according to EEO guidelines.
$73.5k - $104.4k
...would love to meet you. ROLE OVERVIEW and PURPOSE The Compliance and Risk Analyst plays a pivotal role in upholding Neighborhood’s policy... ...Knowledgeable about and experience with regulatory requirements governing healthcare programs in California, including Medicare and...SuggestedWork at officeImmediate start$92.5k - $120k
...professional journey. To support the continued growth of our Risk Advisory for State & Local Government ( practice, an opportunity has been created for a... ...to deliver solutions over operational and regulatory compliance risks, supporting them in the areas of internal audit,...SeniorWork experience placementWork at officeLocal areaRemote work- ...Vuori is hiring a Risk and Insurance Analyst to support their risk management function and manage claims across various programs. The role involves financial analysis and budgeting, requiring strong analytical skills and a solid insurance foundation. Candidates should...Suggested
- ...Vuori, Inc in Carlsbad, California, is seeking a Risk and Insurance Analyst to support its risk management function. The role involves managing claims across property's insurance programs and providing financial analysis for budgeting. The ideal candidate should have...Suggested
$74.9k - $96.29k
...Job Description The Risk and Insurance Analyst support Vuori's risk management function by combining hands-on claims management with financial... ...and completed transactions _Legal Affairs & Corporate Compliance Management _ Support the operational compliance of certain...Suggested$73.5k - $104.4k
Nhcare is seeking a Compliance and Risk Analyst to uphold policy expectations and patient safety standards. You will manage incident reporting, conduct investigations, and engage in compliance initiatives. The ideal candidate holds a bachelor's degree in a related field...- ...The City of Oceanside, CA is looking for an entry-level Risk Analyst I to support risk management initiatives. This position develops foundational skills in risk assessment with potential for advancement based on performance. You will handle safety, public liability,...
- ...The City of Oceanside is seeking a Risk Analyst I/II who will perform specialized duties in Risk Management programs. This role is designed for career development, with potential advancement based on proficiency. Responsibilities include data analysis and preparing reports...
$6,103 - $8,187 per month
...Salary Risk Analyst I: $6,103 to $8,187 per month. Risk Analyst II: $6,958 to $9,327 per month... ...for public safety employees. Ensure compliance with Federal, State, and local laws and... ...analysis Public Liability / Loss Control Government Code related to tort claims Insurance...Temporary workWork at officeLocal area$6,103 - $8,187 per month
...PM Pacific Introduction *Risk Analyst I : $6,103/mo. to $8,187/mo.* Risk Analyst... ...and methods to ensure regulatory compliance; provide training sessions in health and... ...LOSS CONTROL (in addition to above): Government Code as it relates to tort claims;...Hourly payWeekly payFull timeContract workTemporary workWork at officeLocal areaImmediate startFlexible hours$84k - $156k
...connecting the space, air, land, sea and cyber domains in the interest of national... ...Job Title: Senior Specialist, Trade Compliance Job Code: 39671 Job Location: Carlsbad... ...conditional offer of employment may be subject to government security investigation(s) and must meet...CyberSeniorLocal areaFlexible hours$80.5k - $149.5k
...connecting the space, air, land, sea and cyber domains in the interest of national... ...collaborative, and independent In compliance with pay transparency requirements, the... ...conditional offer of employment may be subject to government security investigation(s) and must meet...CyberSeniorLocal areaFlexible hours$115k - $173.58k
...specializing in modeling and simulation, cyber transformation, air vehicle mission integration... ...between requirements, design elements, risks, schedules, and verification artifacts.... ...TS/SCI. An active and transferable U.S. government-issued DODTS/SCI with the ability to...CyberSeniorFull timeContract workTemporary workLocal areaRelocation packageFlexible hours$67k - $124k
...the space, air, land, sea and cyber domains in the interest of... ...logistics processes, and maintain compliance with company, customer, and... ...to analyze data, identify risks, and drive issue resolution in... ...employment may be subject to government security investigation(s) and...CyberSeniorWork at officeLocal areaFlexible hours- ...Harris Geospatial Solutions is seeking a Senior Specialist in Trade Compliance located in Carlsbad, California. This role involves guiding U.S. import and export compliance for controlled goods and fostering international growth while ensuring adherence to regulations...Senior
$140.5k - $221.5k
...than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries around the globe communicate. We're looking for... ...have a stong focus on networking, storage, compute, cloud, and cyber security. The day-to-day As part of this team you will be...Cyber- ...35 years, Viasat has helped shape how consumers, businesses, governments and militaries around the globe communicate. We’re looking for... ...impact to join our team. What you'll do The Global Trade Compliance (GTC) team supports Viasat’s business and growth by being compliant...SeniorContract workRemote workWorldwide
$143k - $190k
...Sr Manager, IT in BID As part of the Thermo Fisher Scientific team, you'll discover... ..., and success metrics Identify risks, dependencies, and trade-offs early and drive... ...priorities Drive alignment to existing PMO and governance processes across the BID Commercial &...SeniorTemporary work$230k - $363k
...shape how consumers, businesses, governments and militaries around the... ...What you'll do The Lead Cyber Security Engineer is a senior... ...policies, procedures, and ensure compliance with frameworks like NIST, ISO... ...and ability to analyze risk in the application of security...Cyber$121k - $191k
...shape how consumers, businesses, governments and militaries around the... ...evidence collection to ensure compliance and alignment to security... ...Bachelor’s degree or higher in Cyber Security, Information Technology... ...to translate technical risks into business terms. Proficiency...CyberWork at office$95k - $149.5k
...Specialist to join their security team. This hybrid position focuses on network monitoring, incident response, and collaboration with the Cyber Threat Intelligence team. The ideal candidate will have a Bachelor's degree in Information Security and 2+ years in cyber security...Cyber- Job Posting This position will be developing data related rules and requirements for our clients. Analysis and designing the method of Data integration whilst working with Engineering. Knowledge of ETL concepts and Data Warehousing Experience writing requirements...Senior
$35 - $45 per hour
...collaborative consumer protection litigation firm focused on helping clients navigate consumer finance disputes from identity theft or cyber fraud, credit reporting disputes, and related civil litigation matters. We’re looking for an experienced litigation paralegal to...Cyber$165k - $260.5k
...shape how consumers, businesses, governments and militaries around the... ...controls, ensuring regulatory compliance, and integrating security... ...to align with ever-evolving risks. Train and educate internal... ...Bachelor's degree or higher in Cyber Security, Information Technology...Cyber$119k - $188.5k
...35 years, Viasat has helped shape how consumers, businesses, governments and militaries around the globe communicate. We're looking for... ...submission to customers ~ Prior experience as a Program Control Analyst, Program Scheduler, or Program Finance Analyst ~ Attention...SeniorFor subcontractor- ...Ensure integrations comply with security, data privacy, and compliance standards. Collaborate with cross-functional teams, including... ...handovers, and business continuity planning. Identify integration risks or data issues and support resolution. Technical...SeniorWork at officeWorldwide
$120k - $130k
...accommodation or an alternative application process. Sr. Technical Manager Full Time Carlsbad, CA... ..., ensuring business continuity and compliance with data retention policies. Develop,... ..., resource allocations, budgets, and risk mitigation strategies. Communicate project...SeniorFull time$45 - $55 per hour
...monitoring of Hosts/System Perform defensive cyber operation duties including, but not limited to, ensuring server compliance with Marine Corps IAVM, and Tenable... ...supporting architecture. Develop and execute Government approved security policies, plans, and procedures...CyberSeniorHourly payLocal areaImmediate start- Proper Voltage in Carlsbad, CA is seeking a Principal Firmware/Software Engineer to lead the firmware development for advanced battery management systems. Candidates should have 8+ years of embedded firmware experience, with expertise in ARM Cortex-M microcontrollers, ...Senior
$38 - $48 per hour
...9 is seeking an experienced Senior Paralegal to join its legal team in Del Mar, CA. This hybrid role involves managing corporate governance, real estate, and litigation matters, requiring strong knowledge of California law. The ideal candidate will possess at least 5 years...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr. Cyber Governance, Risk & Compliance Analyst. Be the first to apply!
- senior brand designer Carlsbad, CA
- senior business analyst contract Carlsbad, CA
- senior database analyst Carlsbad, CA
- legal senior counsel family office Carlsbad, CA
- senior aws cloud engineer Carlsbad, CA
- senior financial analyst remote Carlsbad, CA
- senior accountant Carlsbad, CA
- senior vmware engineer Carlsbad, CA
- senior consulting engineer Carlsbad, CA
- senior human factors engineer Carlsbad, CA




