CareerPlanGet AI match score →

Third Party Risk Management and Customer Trust Lead

Foster City, CA💼 Full-time🗓 2026-07-10 → 2026-07-31

Core

Architect and execute a substantive third-party risk management program for external services and AI model partners, evaluating actual risk profiles rather than processing checklists.

Role type

Senior IC Third-Party Risk Management (TPRM) and Security Vendor Risk Lead

Builds

A scalable vendor and AI/model risk assessment program and customer trust capabilities

Domain

Cybersecurity, Vendor Risk Management (GRC), AI/ML Vendor Risk

Deliverable

Production ML models | product features | dashboards & analysis | client delivery | infrastructure

Required skills

Third-party/vendor risk management, Security risk assessment, SOC 2 report analysis, Pen test findings review, Architecture documentation review, Contract redlining (security/data-handling), Data privacy fundamentals (GDPR/CCPA), Cross-functional collaboration, Process building

Preferred skills

Foundation model/AI/ML vendor assessment, Automated vendor monitoring workflows, NIST AI RMF/ISO 42001/EU AI Act familiarity, Paralegal experience, Contract review training, CTPRP/CISSP/CIPP/E certifications

Technologies

SOC 2, ISO, NIST AI RMF, ISO 42001, EU AI Act

Responsibilities

Independently evaluate real vendor risk, Review SOC 2 reports and security assessments, Partner with Legal on vendor and AI contract terms, Maintain vendor and AI/model risk register, Enable sales through maturing the customer trust program, Build capability for continuous monitoring of vendor ecosystem

Seniority

Senior, hands-on IC

Sourced via ashby · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.
Apply on Ashby ↗