Logo
Smartsheet

Third Party Risk Analyst

Smartsheet, San Jose, California, United States, 95199


Smartsheet is a tech company with a human story to tell. We're here to empower teams to manage projects, automate workflows, and rapidly build new secure solutions, using simple no-code tools. We're revolutionaries - so for us changing the way the world works is all in a day's work.

We are looking for an outstanding team member to drive results and help build and operate a next generation Third Party Risk Management (TPRM) program on Smartsheet's Risk team. In this role, you will support and collaborate with team members in the development and implementation of new TPRM capabilities aligned with our goals.

This position reports to the Manager, Third Party Risk Management located in WA state and is remote-eligible.

You Will:

Assess risk exposure related to third parties through enhanced risk management practices and help provide transparency into Smartsheet's third party risk exposure.Support the day to day execution of the Information Security Risk Assessment process for existing and potential vendors.Document, organize, and track activities that result from vendor security assessments.Gather and organize vendor review results and data to support risk reporting and monitoring processes.Identify process improvement initiatives to support the Vendor Risk Management Program and related activities, and help implement and improve on the program.Support additional activities related to the broader risk program and team.Have an understanding of emerging technologies including, but not limited to, mobile and cloud technology.You Have:

2+ years prior work experience in risk management, information security, third party risk management, audit and/or compliance efforts.2+ years prior work experience with the review of vendors, systems, or solutions as part of an internal risk assessment, procurement process, or other program.2+ years practical experience with one or more risk or other industry regulatory frameworks (NIST, ISO, COSO, COBIT, AICPA TSP/SOC, PCI, etc).Experience with vendor risk management tools (e.g. Coupa, Archer, AuditBoard)Experience assessing or reviewing SOC reports, penetration testing results, or other security control attestations.Experience working with operational risks across multiple lines of business, legal entities, and/or jurisdictions.Ability to build strong internal relationships.Ability to assess the potential risk of an escalated issue and use business skills to evaluate impact and alternatives.Effective judgment, decision making, and critical thinking skills.Adaptability to the changing landscape of regulatory compliance requirements.This full-time position reports to a Manager of Solution Services.

You Will:

Lead multiple concurrent engagements to implement Smartsheet across a variety of client industries and use cases, ensuring your clients are gaining the most value from the Smartsheet platformCollaborate with customer stakeholders to drive timelines, manage scope, and change requestsDesign, demonstrate, and build Smartsheet solutions that fit within new & existing customer business needsGain and maintain deep technical knowledge of Smartsheet including premium productsIdentify product and services expansion opportunities for Smartsheet with the customer's user baseServe as an advisor on best practices and capabilities of the Smartsheet platform at scale across a variety of industries and business functionsMeet or exceed key performance indicator (KPI) targets aligned to the roleAccomplish other tasks as assignedYou Have:

Bachelor's degree or equivalent combination of relevant work experience and education (minimum 2 years)Hands-on working experience in the configuration, customization, and implementation of SaaS applicationsProject Management skills: timeline, scope management, project execution.Strong communication skills with the ability to explain technical subjects to non-technical end user personnelExperience with problem solving and risk resolutionHighly motivated and resourceful team-playerWilling to travel periodically (up to 10%) based on customer and business needPerks & Benefits:

Fully paid Health & Life insurance for full-time employees and family membersEquity - Restricted Stock Units (RSUs) for eligible rolesMonthly stipend to support your work and productivityAsociacion Solidarista with employee and employer contributions as well as potential alliances with entities such as universities, gyms, etc.12 days paid Vacation + Flexible Time Away Program20 weeks fully paid Maternity Leave12 weeks fully paid Paternity/Adoption LeavePersonal paid Volunteer Day to support our communityOpportunities for professional growth and development including access to Udemy online coursesCompany Funded Perks including a counseling membership and your own personal Smartsheet accountTeleworking options from any registered location in Costa Rica (role specific)

Get to Know Us:

At Smartsheet, we've created a place where everyone is welcome - people from all over the world, all backgrounds, all ages, all colors, and all beliefs working side by side. Here, everyone can make a difference and empower others to do the same. You're encouraged to apply even if your experience doesn't precisely match our job description-if your career path has been nontraditional, that will set you apart. At Smartsheet, we empower everyone, everywhere to change the way the world works-join us!

Equal Opportunity Employer:

Smartsheet is an Equal Opportunity (EEO) employer committed to fostering an inclusive environment with the best employees. It is our policy to provide equal employment opportunities to all qualified applicants in accordance with applicable laws in the US, UK, Australia, Germany, Costa Rica, and Japan. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information.

If there are preparations we can make to help ensure you have a comfortable and positive interview experience, please let us know.

#LI-Remote