Senior Risk & Compliance Engineer (Third Party Risk Management)
Instacart
We're transforming the grocery industry At Instacart, we invite the world to share love through food because we believe everyone should have access to the food they love and more time to enjoy it together. Where others see a simple need for grocery delivery, we see exciting complexity and endless opportunity to serve the varied needs of our community. We work to deliver an essential service that customers rely on to get their groceries and household goods, while also offering safe and flexible earnings opportunities to Instacart Personal Shoppers. Instacart has become a lifeline for millions of people, and we’re building the team to help push our shopping cart forward. If you’re ready to do the best work of your life, come join our table. Instacart is a Flex First team There’s no one-size fits all approach to how we do our best work. Our employees have the flexibility to choose where they do their best work—whether it’s from home, an office, or your favorite coffee shop—while staying connected and building community through regular in-person events. Learn more about our flexible approach to where we work. Overview About the Role - Join Instacart’s Governance, Risk, and Compliance (GRC) team as a Risk & Compliance Engineer specializing in Third Party Risk Management. In this critical role, you will be at the forefront of safeguarding Instacart’s security and privacy posture by managing risks associated with our extensive network of third-party vendors, suppliers, and service providers. You will oversee the entire vendor lifecycle, conducting robust due diligence during onboarding, performing comprehensive recurring reviews, and managing offboarding procedures to assess and quantify third-party information security and privacy risks. Your responsibilities will include identifying and mitigating emerging security risks introduced by technologies such as Artificial Intelligence (AI), Large Language Models (LLMs), data lakes, and data warehouses. Collaborating across teams, you’ll influence decision-makers to mitigate risks while enabling secure business growth. This is an exciting opportunity to drive innovation through advanced risk quantification using models like FAIR-TAM , cutting-edge tooling, and strategic partnerships within Instacart’s diverse, global vendor ecosystem. Your work will directly inform Instacart’s broader security strategies by ensuring vendors align their controls with Instacart’s expectations and stringent regulatory compliance requirements, including GDPR, CCPA, ISO 27001, NIST, and SOC 2. About the Team - The GRC team plays a pivotal role in monitoring, measuring, and informing Instacart’s risk posture. Our team partners with IT, Legal, Security Engineering, and system leaders across various departments to proactively identify and reduce risks. A key priority this year is enabling our business leaders through education and tools to identify and mitigate third-party risks more effectively. We’re a collaborative and forward-thinking group aiming to mature Instacart’s approach to third-party risk management with cutting-edge quantification techniques, automation, and best-in-class tools, fostering active collaboration and data sharing with our third parties. About the Job You’ll play a leading role in building and operating Instacart’s GRC strategies and practices by: Reviewing third-party vendors during onboarding due diligence and recurring evaluation processes, meticulously focusing on identifying and mitigating cybersecurity, data privacy, and compliance risks. Operating and improving Instacart's third-party risk management systems, including leveraging tools like Zip for workflows and Safe Security for risk quantification. Partnering with Legal, Security Engineering, and system owners to embed comprehensive security and privacy requirements directly into third-party contracts and agreements, ensuring alignment with Instacart policies and compliance frameworks (e.g., GDPR, CCPA, SOC2, NIST, etc). Liaising with high-tier vendors to understand their security posture, advocate for aligned improvements, and provide advisory on identified risks. Developing and maintaining processes that enhance the efficiency and scalability of third-party evaluations, continuous monitoring, and offboarding procedures. Identifying and quantifying risks, proposing effective mitigation measures, and influencing internal stakeholders to implement necessary security controls to improve the third-party risk posture. Leading vendor risk documentation, including maintaining a comprehensive third-party risk register, developing risk quantification reports using models like FAIR-TAM, and presenting findings, trends, and action plans for senior leadership. Working with internal security teams to investigate and respond to third-party-related security incidents, defining escalation procedures and remediation requirements. About You - We’re looking for a technically skilled, collaborative, and innovative professional with a passion for reducing third-party risks and enabling scalable solutions. Minimum Qualifications 7+ years of progressive experience in third-party security risk management, vendor audits, or compliance roles, preferably within a technology company. Hands-on experience with third-party risk management (TPRM) and Governance, Risk, and Compliance (GRC) tools (e.g., OneTrust, Archer, Prevalent, Process Unity, Venminder, BitSight, SecurityScorecard, Zip, Safe Security). Expertise in leading compliance standards and industry frameworks (e.g., GDPR, CCPA, SOC2, NIST, ISO 27001). Familiarity with common security concepts, including identity and access controls, firewalls, APIs, vulnerabilities (CVE), and software supply chain risks. Proven ability to review and analyze a variety of vendor security documentation, including audit reports, vulnerability scans, and penetration test results. Previous experience with consumer data protection and privacy risk management, including performing privacy risk assessments and suggesting mitigation plans. Strong communication and stakeholder engagement skills, with a proven ability to influence decision-makers and articulate complex technical risks and control concepts to non-technical stakeholders, including senior executives and audit committees. Preferred Qualifications Professional certifications such as CISSP, CRISC, CISM, CISA, CIPP/US, CIPP/E, CIPM, CIPT, or ISO 27001 Lead Auditor/Implementer. Hands-on experience negotiating vendor contracts with comprehensive security and privacy clauses. Familiarity with and/or hands-on experience applying risk quantification frameworks (e.g., FAIR-TAM) and cybersecurity metrics reporting to assess financial impact. Experience working on innovative risk management programs leveraging automation, AI, and continuous monitoring techniques. Familiarity with AI concepts, tools, policies, and best practices, particularly concerning LLM security risks like prompt injection, training data poisoning, and insecure output handling. Understanding of security and privacy challenges related to data lakes and data warehouses, including large data volumes, unstructured data, complex access controls, and regulatory compliance. #LI-Remote Instacart provides highly market-competitive compensation and benefits in each location where our employees work. This role is remote and the base pay range for a successful candidate is dependent on their permanent work location. Please review our Flex First remote work policy here . Currently, we are only hiring in the following provinces: Ontario, Alberta, British Columbia, and Nova Scotia. Offers may vary based on many factors, such as candidate experience and skills required for the role. Additionally, this role is eligible for a new hire equity grant as well as annual refresh grants. Please read more about our benefits offerings here . For Canadian based candidates, the base pay ranges for a successful candidate are listed below.
CAN $151,000 — $168,000 CAD
#J-18808-Ljbffr Instacart- ...Senior Vice President National Sales About the... ...organization providing risk & integrated business... ...Services Banking Risk Management Specialties... ...affinity first and third party fleet programs healthcare... ...loss adjusting compliance loss prevention...SeniorFull timeWork experience placement
- **Join the Clean Energy Revolution** Become a **Senior Advisor for Safety Risk Management in the Safety Management System** (SMS) department at Southern... ...or more years of experience with health and safety compliance programs, activities, and systems. **Preferred Qualifications...SeniorRemote job
- ...Senior Advisor, Enterprise Vendor Governance About the Company... ...Insurance Retail Risk Management Venture Capital Financial... ...governance program, ensuring compliance with regulatory requirements... ...risks associated with third-party relationships. This role involves...SeniorFull timeContract work
- ...not grow your career in civil engineering while supporting these... ...opportunity entails being responsible managing assigned project(s)... ...projects. Identifying and handling risk and change management independently... .... ............._NOTICE TO THIRD-PARTY AGENCIES:_ _HNTB does not...SeniorFull timeContract workPart timeRemote job
- ...Description:** CDM Smith is seeking a Senior Data Privacy and IT Compliance Specialist to join our Corporate... ...security standards. You will lead third-party risk assessments, support IT General... ...Responsibilities include: Third-Party Risk Management - Conduct and manage end-to-end...SeniorFull timeContract workRemote jobH1bShift work
- ...Senior Vice President of Operations About the Company... ...Prominent provider of third-party logistics solutions... ...strategies, managing operations teams across... ...mitigating operational risks. Applicants must have... ...specific regulations and compliance, as well as experience...SeniorFull time
- ...mark at Plan Group! As ourSenior Project Manager, Electrical Construction, you: Establish... ...objectives. Develop and lead value engineering, cost savings, and pricing initiatives and... ...handling strategies and opportunities for risk management and improved productivity. Follow...SeniorFull timeFor subcontractor
- ...Senior Vice President of Operations About the Company... ...provider of third-party logistics solutions... ...proven track record in managing large-scale operations... ...mitigating operational risks. Applicants for the Senior... ...specific regulations and compliance. The company offers a...SeniorFull time
- ...Senior Advisor, IIT Strategic Vendor and Contracts Management About the Company Leading provincial regulatory gaming & alcohol agency Industry Government... ..., and identifying and mitigating supply chain risks. This role requires a strategic thinker with a proven...SeniorFull timeContract work
- ...the next step in your civil engineering career while supporting these... ...execution of the project management plan while building and maintaining... ...project controls, quality, risk and change management. The... .... ..........._NOTICE TO THIRD-PARTY AGENCIES:_ _HNTB does not accept...SeniorFull timePart time
- ...endless possibilities. As ourSenior Project Manager, Electrical Construction, you will:... ...handover objectives. Develop and lead value engineering, cost savings, and pricing initiatives... ...strategies, and opportunities for risk management and improved productivity. Follow...SeniorFull timeFor contractorsFor subcontractor
- ...Clean Energy Revolution** Become a **Senior Advisor for Management of Change (MoC)** in the Safety Management... ...implemented and do not introduce new risks or gaps to the organization. This... ...of experience with health and safety compliance programs, activities, and systems. **...SeniorRemote job
- ...seeking a dynamic and results-oriented Senior Category Manager to lead our Infrastructure Solutions... ...communication with internal and external parties Contract Management ~ Develop... ...relationships, including ranking and risk assessment. Foster long-term...SeniorFull timeContract work
- ...Senior Advisor, Business Process Management About the Company Acclaimed provider of credit theft prevention... ...identity fraud prevention risk management credit data and financial... ...process management, and ensuring compliance with regulatory standards. The...SeniorFull timeRemote job
- ...your clients, then a role as a Business Relationship Manager is for you. As a Business Relationship Manager Senior (BRM) Deepening banker in Business Banking, you’ll... ...advice with a focus on client experience and risk management while deepening existing relationships...SeniorWork experience placementRemote job
- Business Relationship Manager Senior Deepening - Vice President Join to apply for the Business Relationship Manager Senior Deepening - Vice... ...offering financial advice, emphasizing client experience and risk management while deepening existing relationships and leveraging...SeniorRemote job
- ...difference with. The opportunity Senior Legal Counsel Toronto,... ...Business Partner Support: Manage and oversee a diverse... ...-IP Litigation and Regulatory Compliance: Manage important non-IP litigation... ...advice on contract structure, risk mitigation, and compliance...SeniorContract workWork experience placementPrivate practiceLocal area
- ...your clients, then a role as a Business Relationship Manager is for you. As a Business Relationship Manager Senior (BRM) Deepening banker in Business Banking, you'll... ...advice with a focus on client experience and risk management while deepening existing relationships...SeniorWork experience placementRemote job
- JOB TITLE North America Quality Center - PT/EV Senior Engineer WHAT YOU WILL DO Hyundai Motor Group North America Quality Center (NAQC), based in S. Korea, oversees all quality issues raised in North America. The NAQC Investigation Team aims to identify quality issues...SeniorFor contractors
- ...Title - Senior Automation Engineer Location - Cambridge, Ontario, Canada (onsite only) Experience 7 to 10 years Keywords: PLC,... ...complete replacement of facility controls and equipment. Manages controls projects and provides scope development, cost and...SeniorFull timeFor contractors
- ...connect seemingly unconnected parties To be able to carry out the... ...knowledge of OSHA guidelines compliance safety and food safety auditing... ...and equipment in accident management Serves as a facility contact... ...efforts returntowork programs Risk Management Possesses Knowledge...SeniorHoliday workFull timeTemporary workPart timeFor contractorsLocal area
- ...inMoosonee and Moose Factory Island. As anProject Manager, Mechanical Construction, you will be... ...strategies and opportunities for risk management and improved productivity. Follow... ...strong relationships with clients, GCs and Engineers to positively contribute to the success...Full timeFor subcontractor
- ...Clayton NC **Overview:** The Engineer I - Validation / Engineer II... ...the following:** - Actively manages and completes all phases of... ...acceptability of the data and compliance with the protocol. -... ...oral instructions/procedures. Third Party Agency and Recruiter Notice:...SeniorFull timeInternship
- Senior Account Executive US-CA-Ontario Job ID: 32991 Type: Full-Time # of Openings: 1... ...and technologies from Canon USA and our third-party providers and promote those benefits to... ...functionality to driving backfile conversion and managed print, IT, and automation services. -...SeniorFull timeTemporary workFor contractorsFor subcontractorCasual workLocal areaImmediate start
- ...Senior Vice President, Spa & Wellness About the Company Internationally-acclaimed hotel & resort group Industry Hospitality... ...Leisure Travel Hotel Accommodations Hotel Management Hotels Travel & Leisure Health & Wellness Conferences...SeniorRemote job
- ...Job Summary The Senior Process Engineer supports efforts throughout the company to optimize the operation, performance, and efficiency of... ...efficiencies in the manufacturing process Assist the Energy Management Team with identifying and implementing energy efficiency...SeniorHoliday workFull timeTemporary work
- ...not grow your career in civil engineering while supporting these... ...future. Provides assistance and manages the process from developing... ...projects and support other senior consultants at multiple points... .... . . . . . . . . NOTICE TO THIRD-PARTY AGENCIES: HNTB does not accept...Senior
- ...station and fleet in the areas of business initiatives, project management, refuel outage support, EP duties, and special projects.... ...communication skills PREFERRED QUALIFICATIONS ~ AS/AA in science/engineering or equivalent experience ~7+ years of nuclear power plant...SeniorHoliday workTraineeship
- ...Senior FPGA Design Engineer Burlington, ON Responsibilities You will join the FPGA Design team and actively participate in the new product... ...-group innovation Complete other tasks as assigned by Manager Qualifications Bachelor’s Degree in Electrical or...Senior
$46.88 - $56.25 per hour
...as it relates to hazards, controls, and management. They will need to evaluate how the company... ...identifies and manages their inherent risk factors. Additionally they are expected... ...environmental health and safety, science, engineering, construction, manufacturing, or...SeniorHoliday workFull timeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Risk & Compliance Engineer (Third Party Risk Management). Be the first to apply!
- senior associate vice president Ontario, CA
- five star senior living Ontario, CA
- salesforce senior consultant Ontario, CA
- senior java full-stack developer Ontario, CA
- senior resident engineer Ontario, CA
- senior advisor Ontario, CA
- senior project scheduler Ontario, CA
- international tax senior Ontario, CA
- senior Ontario, CA
- senior software engineer remote Ontario, CA