1

Third Party Risk Manager Jobs in Fremont, CA (NOW HIRING)

Run substantive thirdโ€‘party risk management (TPRM), independently evaluating real risk, not just processing questionnaire responses * Review SOC 2 reports, pen test findings, and architecture ...

Senior Fintech Risk Analyst

San Francisco, CA ยท On-site

$122.72 - $137.50/hr

Risk Team at Lead The Risk team helps Lead innovate responsibly by identifying and managing risk across the business. They own oversight of our strategic third-party partners, risk governance across ...

Senior Fintech Risk Analyst

Sunnyvale, CA ยท On-site

$122.72 - $137.50/hr

Risk Team at Lead The Risk team helps Lead innovate responsibly by identifying and managing risk across the business. They own oversight of our strategic third-party partners, risk governance across ...

Partnerships Manager

San Francisco, CA ยท On-site

$97K - $97K/yr

This hybrid role combines strategic partnership/network expansion with rigorous vendor management and third-party risk governance. In this position, you will be responsible for sourcing, building ...

New

Partnerships Manager

San Francisco, CA ยท Hybrid

$97K - $97K/yr

This hybrid role combines strategic partnership/network expansion with rigorous vendor management and third-party risk governance. In this position, you will be responsible for sourcing, building ...

New

Risk Manager

Sunnyvale, CA ยท On-site

$165K - $207K/yr

Risk Management Opening Date: 08/21/2026 Closing Date: 9/20/2026 11:59 PM Pacific Description RISK ... worker, and third-party administrators; educates managers on policy and legal requirements ...

New

next page

Showing results 1-20

Third Party Risk Manager information

See Fremont, CA salary details

$56.4K

$122.1K

$186.1K

How much do third party risk manager jobs pay per year?

As of Aug 24, 2026, the average yearly pay for third party risk manager in Fremont, CA is $122,117.00, according to ZipRecruiter salary data. Most workers in this role earn between $98,500.00 and $141,200.00 per year, depending on experience, location, and employer.

What is a third party risk manager?

A Third Party Risk Manager is a professional responsible for identifying, assessing, and mitigating risks associated with an organization's external vendors, suppliers, or partners. Their main job is to ensure that third-party relationships do not expose the company to undue financial, operational, regulatory, or reputational risk. This includes evaluating vendor security practices, monitoring compliance with contracts and regulations, and developing risk management policies. Third Party Risk Managers often collaborate with legal, procurement, and IT teams to safeguard the organization's interests. Their work is crucial in today's interconnected business environment, where companies increasingly rely on third-party services and products.

What are the key skills and qualifications needed to thrive as a third party risk manager?

To thrive as a Third Party Risk Manager, you need a strong background in risk assessment, vendor management, and regulatory compliance, often supported by a degree in business, finance, or a related field. Familiarity with risk management frameworks, tools like GRC (Governance, Risk, and Compliance) platforms, and relevant certifications such as CTPRP (Certified Third Party Risk Professional) are highly beneficial. Excellent communication, analytical thinking, and stakeholder management skills set top performers apart in this role. These competencies are crucial for effectively identifying, mitigating, and communicating third-party risks to protect organizational assets and ensure regulatory compliance.

How does a third party risk manager typically collaborate with other departments to manage vendor risks?

A Third Party Risk Manager works closely with teams such as procurement, legal, IT security, and compliance to assess and monitor the risks associated with external vendors. They coordinate with these departments to perform due diligence, review contracts, and establish ongoing monitoring processes. Regular cross-functional meetings and clear communication channels are essential, as the role often requires aligning risk management strategies with organizational objectives and ensuring that vendor-related risks are identified and mitigated promptly.

What is the difference between Third Party Risk Manager vs Vendor Risk Analyst?

AspectThird Party Risk ManagerVendor Risk Analyst
CredentialsCertifications like CRISC, CTPRP often preferredCertifications such as CRISC, CTPRP common
Work EnvironmentOversees multiple vendors and third-party relationships at strategic levelFocuses on assessing specific vendor risks and compliance
Employer & Industry UsageUsed in finance, healthcare, and large corporations managing third-party risksCommon in IT, finance, and procurement departments
Search & Comparison IntentOften compared for broader risk management rolesCompared for detailed vendor risk assessments

The Third Party Risk Manager oversees the overall risk associated with third-party vendors, focusing on strategic risk mitigation. The Vendor Risk Analyst concentrates on evaluating individual vendors' risks and compliance. While both roles require similar certifications and work in related environments, the Risk Manager has a broader scope, whereas the Analyst specializes in detailed assessments.

Is third party risk manager a good career?

A third party risk manager plays a key role in assessing and mitigating risks associated with external vendors and partners, often requiring knowledge of compliance standards and risk management tools. The role offers opportunities for advancement in industries such as finance, healthcare, and technology, with a growing demand for professionals skilled in risk assessment and regulatory requirements. It can be a stable and rewarding career for those with strong analytical skills and attention to detail.

What cities near Fremont, CA are hiring for Third Party Risk Manager jobs?

Cities near Fremont, CA with the most Third Party Risk Manager job openings:

Infographic showing various Third Party Risk Manager job openings in Fremont, CA as of August 2026, with employment types broken down into 87% Full Time, 11% Part Time, and 2% Contract. Highlights an 84% Physical, 2% Hybrid, and 14% Remote job distribution, with an average salary of $122,117 per year, or $58.7 per hour.

Security Analyst, Third-Party Ecosystem Risk Management

MoneyLion

San Francisco, CA โ€ข On-site

$140 - $190/hr

Other

Medical, Dental, Vision, Retirement

Posted 6 days ago


Job description

We believe that the way people interact with their finances will drastically improve in the next few years. Weโ€™re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaidโ€™s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam.

Team:

The Security Governance, Risk, and Compliance (GRC) team is part of Plaidโ€™s security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood and impact of security risks while operating a robust assurance program that builds trust with our customers, consumers, and data partners. We partner closely across the company to ensure Plaidโ€™s platform remains secure, resilient, and aligned with industry and regulatory expectations.

Third-party ecosystem risk is a core part of how we keep Plaid safeโ€”we vet the security of both the vendors we rely on and the customers and partners who connect to our platform, so trust runs in both directions.

Role:

  • You will run security risk assessments for Plaidโ€™s third parties end-to-endโ€”from intake and questionnaire through risk rating, findings, and tracked exceptions.

  • You will assess the security posture of customers and partners onboarding to the platform with the same rigor we apply to vendors.

  • You will keep the third-party risk lifecycle movingโ€”risk tiering, reassessment cadence, remediation follow-through, and a clean, current risk register.

  • You will help mature the programโ€”questionnaires, tiering criteria, intake, and runbooksโ€”so reviews get faster and more consistent as volume grows, drawing on how youโ€™ve improved third-party risk programs before.

  • You will report on ecosystem risk to Security and cross-functional stakeholders, and operate as an AI power user to raise your own throughput.

Responsibilities:

  • Run Vendor Security Risk Assessments: Triage inbound vendor requests, run security reviews scaled to risk tier, rate the risk, and document findings and exceptions. Your assessments keep Plaid from inheriting a vendorโ€™s security gaps and give Procurement, Privacy, and Legal a clear risk signal before contracts are signed.

  • Vet Customer and Partner Security Posture: Review the security practices of customers and partners onboarding to the platform, applying the same standards you use for vendors. Your reviews make sure who connects to Plaid meets the bar before they touch dataโ€”protecting consumers and the ecosystem.

  • Keep the Third-Party Risk Lifecycle Current: Maintain risk tiering, drive reassessments on cadence, chase remediation to closure, and keep the risk register accurate. Your follow-through keeps third-party risk a live, trustworthy picture rather than a point-in-time checkbox.

  • Mature the Program: Improve questionnaires, tiering criteria, intake, and runbooks, and tooling as review volume growsโ€”bringing patterns from third-party risk programs youโ€™ve matured before. Your work moves the function from ad hoc toward fast, consistent, and scalable.

  • Report on Ecosystem Risk: Track assessment cycle times, backlog, open exceptions, and reassessment coverage, and report program health to stakeholders. Your reporting gives leadership real visibility into where third-party risk concentrates.

  • Scale Through AI and Tooling: Build and scale AI-assisted workflows for assessment review, questionnaire analysis, and reportingโ€”and share what works. Your approach sets how the team uses AI to handle more reviews without adding headcount.

Qualifications:

Must-haves

  • 4+ years of experience in vendor risk management
  • Third-party and vendor security risk assessment:
    • Experience running security risk assessments of third partiesโ€”reviewing questionnaires, SOC 2 and ISO reports, and security documentation, and translating them into a defensible risk rating.
    • Familiarity with the third-party risk lifecycle: intake, tiering, exceptions and risk acceptance, remediation tracking, and periodic reassessment.
  • Security and compliance knowledge:
    • Working knowledge of SOC 2, ISO 27001, NIST CSF, and common control domains (access control, encryption, incident response, BC/DR).
    • Ability to read a control environment and tell a real gap from an acceptable compensating control.
  • Program maturation and operational execution:
    • Experience maturing a third-party or vendor risk programโ€”improving how it works (tiering criteria, questionnaires, workflow, automation), not just executing an existing one.
    • Track record running assessments at volume without dropping rigor.
    • Strong analytical and documentation skills: clear findings, clean tracking, and defensible risk decisions others can follow.
  • Communication and cross-functional effectiveness:
    • Clear written and verbal communicationโ€”able to explain a security risk to Procurement, Legal, or a customer without overstating or hand-waving.
    • Comfortable working across Security, Legal, Procurement, and GTM as the third-party risk point of contact.
  • AI fluency and tooling:
    • Demonstrated ability to apply AI tooling to assessment review, questionnaire analysis, and reporting to materially increase throughputโ€”and to share what works with the team.

Nice-to-have

  • A third-party-risk or audit credential (CTPRP, CISA, or CISSP), or hands-on ownership of a TPRM platform (e.g. OneTrust, ProcessUnity, Whistic, SecurityScorecard) beyond using it as an end user.

Our mission at Plaid is to unlock financial freedom for everyone. To support that mission, we seek to build a diverse team of driven individuals who care deeply about making the financial ecosystem more equitable. We recognize that strong qualifications can come from both prior work experiences and lived experiences. We encourage you to apply to a role even if your experience doesn't fully match the job description. We are always looking for team members that will bring something unique to Plaid!

Plaid is proud to be an equal opportunity employer and values diversity at our company.

We do not discriminate based on race, color, national origin, ethnicity, religion or religious belief, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, military or veteran status, disability, or other applicable legally protected characteristics.

We also consider qualified applicants with criminal histories, consistent with applicable federal, state, and local laws.

Plaid is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process.

If you need any assistance with your application or interviews due to a disability, please let us know at accommodations@plaid.com.

Please review our Candidate Privacy Notice here.

Additional compensation in the form(s) of equity and/or commission are dependent on the position offered. Plaid provides a comprehensive benefit plan, including medical, dental, vision, and 401(k). Pay is based on factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience and skillset, and location. Pay and benefits are subject to change at any time, consistent with the terms of any applicable compensation or benefit plans.

#J-18808-Ljbffr