Third-Party Risk Management Analyst IV
Samsara · Remote - Houston · Posted 2026-09-03
Remote-friendly
Job description
Who we are Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, which is a platform that enables organizations that depend on physical operations to harness Internet of Things (IoT) data to develop actionable insights and improve their operations. At Samsara, we are helping improve the safety, efficiency and sustainability of the physical operations that power our global economy. Representing more than 40% of global GDP, these industries are the infrastructure of our planet, including agriculture, construction, field services, transportation, and manufacturing — and we are excited to help digitally transform their operations at scale. Working at Samsara means you’ll help define the future of physical operations and be on a team that’s shaping an exciting array of product solutions, including Video-Based Safety, Vehicle Telematics, Apps and Driver Workflows, and Equipment Monitoring. As part of a recently public company, you’ll have the autonomy and support to make an impact as we build for the long term. About the role: The Samsara Governance, Risk, and Compliance team keeps our organization and customers safe by managing risk across our vendor and partner ecosystem. As a Third-Party Risk Management Analyst, you will own security risk assessments for critical Samsara vendors and partners. You will oversee the complete lifecycle—from tiering and onboarding to ongoing reassessments and remediation. In this role, you will partner closely with Legal, Procurement, and system owners across the business to ensure every vendor relationship meets our security standards. This is a remote position open to candidates residing in the US except the San Francisco Bay Metro Area, NYC Metro Area, and Washington, D.C. Metro Area. You should apply if: • You want to impact the industries that run our world: Your efforts will result in real-world impact – helping to keep the lights on, get food into grocery stores, reduce emissions, and most importantly, ensure workers return home safely. • You are the architect of your own career: If you put in the work, this role won’t be your last at Samsara. We set up our employees for success and have built a culture that encourages rapid career development, countless opportunities to experiment and master your craft in a hyper growth environment. • You’re energized by our opportunity: The vision we have to digitize large sectors of the global economy requires your full focus and best efforts to bring forth creative, ambitious ideas for our customers. • You want to be with the best: At Samsara, we win together, celebrate together and support each other. You will be surrounded by a high-calibre team that will encourage you to do your best. In this role, you will: • Lead end-to-end third-party security risk assessments — using both qualitative and quantitative methods — for Samsara's vendors and partners, and recommend risk ratings and tiering in line with Samsara's Vendor Risk Management Policy. • Own the vendor reassessment cadence and track remediation of any security gaps throughout the full lifecycle of the vendor. • Partner with Legal, Procurement, and system/relationship owners to review vendor contracts and onboarding requests submitted through Zip, ensuring security requirements (e.g. incident notification, data training, compliance, etc.) are in place before a vendor goes live. • Escalate unresolved vendor risk to Security leadership, legal, procurement, and business owners as necessary. • Support internal and external audits of the vendor risk program (e.g. ISO, SOC, FedRAMP). • Build and maintain the metrics, dashboards, and reporting that give Security leadership visibility into Samsara's third-party risk posture and program performance. • Support the GRC team's efforts to bring automation and AI-enabled tools into vendor risk workflows, such as using AI to triage vendor security questionnaires, flag high-risk contract terms, and incorporate industry learnings into the lifecycle. • Mentor junior TPRM resource(s) to ensure Samsara’s TPRM program is matching the pace of innovation and velocity of Samsara. • Champion, role model, and embed Samsara's cultural principles (Focus on Customer Success, Build for the Long Term, Adopt a Growth Mindset, Be Inclusive, Win as a Team) as we scale globally and across new offices. Minimum requirements for the role: • 5+ years of experience in third-party/vendor risk management, GRC, or information security compliance. • Experience using automation, scripting, or low-code workflows to help scale a vendor risk program. • Hands-on experience running vendor security assessments and administering a vendor tiering program. • Experience partnering with Legal and Procurement on vendor contract security and privacy terms (e.g., Security addendums, DPAs, etc.). • Must reside in the US, outside the San Francisco Bay Area, New York City, and Washington, D.C. metro areas. An ideal candidate also has: • Familiarity with implementing and/or operating a risk assessment framework such as NIST CSF, ISO 27001, or SOC 2. • Experience with a GRC or vendor risk management platform (e.g., Vanta, ServiceNow, OneTrust, Archer, or similar). • A relevant certification such as CTPRP, CISA, CRISC, or CISSP. The range of annual base salary for full-time employees for this position is below. Please note that base pay offered may vary depending on factors including your city of residence, job-related knowledge, skills, and experience. This role is also eligible for an initial RSU grant with no vesting cliff, and ongoing refresh opportunities tied to performance, subject to plan terms and conditions. Learn more about our total rewards and benefits below. Annual Base Salary $110,670—$167,400 USD Total Rewards At Samsara, we build for the people who keep the global economy moving. We want owners, not passengers, which is why our rewards are designed to fuel high-impact builders. Our compensation program delivers above-market total compe