Senior Analyst, Third-Party Risk Management

DoorDash, Inc

Confirmed live yesterday High trust
Remote

Quick summary

Work type
Remote
Location
Remote
Salary
$132,600–$195,000 / yr
Posted
60 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $150k
This role $164k
$112k most similar roles pay here $204k

This role pays more than 64% of similar roles. Most pay $122,275–$176,758 — the shaded band above. At the midpoint, this role pays about $164k versus about $150k for comparable roles.

Based on 239 similar postings.

Employer

About DoorDash, Inc

DoorDash, Inc. is an American company operating online food ordering and food delivery. It trades under the symbol DASH. With a 56% market share, DoorDash is the largest food delivery platform in the United States.

DoorDash, Inc currently has 187 open roles on FindRole.

Listed pay typically runs $144,800–$212,950 across 166 roles with salary data.

Most-posted roles

View all roles at DoorDash, Inc

At a glance

TL;DR · Senior Analyst, Third-Party Risk Management

Senior Analyst, Third-Party Risk Management (TPRM) joins the Global Governance, Risk, and Compliance team to manage security risks within a multi-sided marketplace infrastructure. This role focuses on maturing the TPRM program from a reactive function into a proactive strategic partnership by architecting security strategies for BPO and contingent worker ecosystems. The analyst will build process automations, establish centralized reporting dashboards, and pioneer a Supplier Security AI Governance framework to evaluate third-party AI risks. Key responsibilities include performing risk assessments, conducting due diligence on cloud, SaaS, and infrastructure vendors, and managing the end-to-end remediation tracking process. Required expertise includes evaluating CAIQ, SIG, SOC 2 Type 2 reports, and penetration tests while navigating NIST and ISO frameworks. The role requires technical proficiency in assessing API integrations, cloud-native services across AWS, Azure, and GCP, and identifying risks like model poisoning or data leakage in AI/ML models.

What you'll do

  • Drive the continuous maturation of the Third-Party Risk Management (TPRM) program into a proactive security partnership.
  • Architect and govern the security strategy for the BPO and contingent worker ecosystem.
  • Design and build process automations to optimize and scale the TPRM program.
  • Lead the Supplier Security AI Governance framework to evaluate and secure third-party AI tools.
  • Establish core program governance and a centralized reporting function with risk dashboards for leadership.
  • Manage the end-to-end issues and remediation tracking process for all security findings.
  • Execute the full TPRM lifecycle including risk assessments, due diligence, and contract reviews.

What we're looking for

  • Bachelor’s or Master’s degree in Information Security, Computer Science, Business Administration, or a related field.
  • 7+ years of progressive experience in security-focused TPRM methodologies and leading programs for high-growth companies.
  • Experience building programs, conducting security/assurance audits, managing controls, and overseeing risk assessments and remediation.
  • Technical expertise in assessing risks for cloud, SaaS, infrastructure, and Artificial Intelligence (AI) solutions.
  • Proficiency in reviewing security documentation such as CAIQ, SIG, SOC 2 Type 2 reports, and various compliance attestations.
  • Experience evaluating complex vendor solutions including API integrations, cloud-native services, and generative AI platforms.
  • Experience implementing major information security, privacy, and risk management frameworks like NIST, ISO, or SOC 2.
  • CISA, CISSP, CISM, or other industry certifications are preferred.

More like this

Similar roles

Security Risk Management Specialist II

Affirm

Remote 24 days ago $130,000$180,000
Python Cursor Claude Agentic Coding Platforms AWS GCP Azure Low-code Platforms NIST ISO 27001 SOC 2 PCI DSS GRC Third Party Risk Management Security Governance Automation
3+ yrs exp Remote

Senior Business Analyst, Third Party Risk Management

Capital One Financial

McLean, VA +3 18 days ago $101,100$115,400
SQL Snowflake Databricks QuickSight Google Sheets Microsoft Excel Market Research Business Analysis Data Manipulation Reporting Risk Management
2+ yrs exp

Risk Management Analyst

General Dynamics

Fort Bragg, NC 34 days ago $79,220$107,180
Risk Management Threat Analysis Risk Mitigation Intelligence Analysis Program Management Joint Planning
5+ yrs exp

Senior Analyst, Capital Markets & Risk

Capital One Financial

McLean, VA 8 days ago $111,200$126,900
SQL Python Amazon QuickSight Tableau Generative AI LLMs QRM Excel PowerPoint Data Pipelines Business Intelligence Asset Liability Management Fixed Income Analysis Corporate Finance
1+ yrs exp

Threat Exposure Management Analyst

Fiserv

Berkeley Heights, NJ +2 15 days ago $110,000$186,000
Attack Surface Management Vulnerability Management MITRE ATT&CK CVSS EPSS CISA KEV breach-and-attack simulation Offensive Security Penetration Testing Threat Intelligence SaaS CTEM
8+ yrs exp

Analyst, Risk Analytics

Sony Group Corporation

London, United Kingdom 28 days ago
SQL Python R ETL Data Modeling Power BI Tableau Looker Domo Git GitHub GitLab SIEM Cloud Security Vulnerability Management Identity and Access Management Data Visualization Statistics
2+ yrs exp