Chicago, IL, 60684, USA
19 hours ago
Sr. GRC Access Governance Analyst
About the Team Come help us build the world's most trusted on-demand, logistics engine for delivery! We're building a team of great minds to help us secure and maintain a 24x7, no downtime, global infrastructure system that powers DoorDash’s multi-sided marketplace of consumers, merchants, and drivers. About the Role The Governance, Risk, and Compliance (GRC) team is looking for a Third-Party Risk (TPR) Analyst who is smart, fast and a hard worker to help us ensure our employee and customer data is secure, wherever it lives. If you are comfortable taking ownership of assessment results and making room at the table to improve our security posture, we want to talk to you! You’re excited about this opportunity because you will… + Engage and manage our BPO program from a security and compliance perspective + Conduct in-person annual audits and assessments of our BPO partners to assure compliance with our security program + Engage with vendors and partners in potential security incidents and act as the primary point of contact for incident investigations involving vendors + Perform intake and periodic security risk and business impact assessments of incidents caused by vendors and third-party partners, including creating a post-mortem with gaps, process and remediation + Work with strategic sourcing and legal to review contracts and provide recommendations regarding security riders + Follow-up with vendors and partners post incidents to drive remediation + Maintain the inventory of information assets and third parties + Create process documentation, including workflows, process maps, & controls + Provide periodic reporting, including key performance indicators (KPIs), to ensure process health and continued ability to meet business needs We’re excited about you because… + 5+ years of experience with third party risk management methodologies, including performing security risk assessments + Fluent in process improvement methodologies + Ability to travel a couple of times a year to support on-site audits + Experience with regulatory compliance frameworks (e.g. PCI-DSS, SOX, SOC 2, ISO, NIST) + Experience with third party risk systems, including survey techniques and scoring systems + Solid understanding of how systems work, what security risks affect a variety of data, applications, and infrastructure, and how those risks translate to third parties + Experience solving complex, systemic issues that require creative thinking and solutions + Excellent verbal and written communication skills - you are able to easily translate business requirements into technical solutions and vice versa + CISA, CISSP, or other industry certifications are a plus Compensation The successful candidate's starting pay will fall within the pay range listed below and is determined based on job-related factors including, but not limited to, skills, experience, qualifications, work location, and market conditions. Base salary is localized according to an employee’s work location. Ranges are market-dependent and may be modified in the future. In addition to base salary, the compensation for this role includes opportunities for equity grants. Talk to your recruiter for more information. DoorDash cares about you and your overall well-being. That’s why we offer a comprehensive benefits package for all regular employees that includes a 401(k) plan with an employer match, paid time off, paid parental leave, wellness benefits, and several paid holidays. Additionally, for full-time employees, DoorDash offers medical, dental, and vision benefits, disability and basic life insurance, family-forming assistance, a commuter benefit match, and a mental health program, among others. To learn more about our benefits, visit our careers page here (https://careers.doordash.com/) . The base pay for this position ranges from our lowest geographical market up to our highest geographical market within California, Colorado, District of Columbia, Hawaii, Maryland, New Jersey, New York and Washington. $119,000 — $175,000 USD About DoorDash At DoorDash, our mission to empower local economies shapes how our team members move quickly, learn, and reiterate in order to make impactful decisions that display empathy for our range of users—from Dashers to merchant partners to consumers. We are a technology and logistics company that started with door-to-door delivery, and we are looking for team members who can help us go from a company that is known for delivering food to a company that people turn to for any and all goods. DoorDash is growing rapidly and changing constantly, which gives our team members the opportunity to share their unique perspectives, solve new challenges, and own their careers. We're committed to supporting employees’ happiness, healthiness, and overall well-being by providing comprehensive benefits and perks including premium healthcare, wellness expense reimbursement, paid parental leave and more. Our Commitment to Diversity and Inclusion We’re committed to growing and empowering a more inclusive community within our company, industry, and cities. That’s why we hire and cultivate diverse teams of people from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has room at the table and the tools, resources, and opportunity to excel. Statement of Non-Discrimination : In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital/domestic partner status, sexual orientation, gender identity or expression, disability status, or veteran status. Above and beyond discrimination and harassment based on “protected categories,” we also strive to prevent other subtler forms of inappropriate behavior (i.e., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at DoorDash. We value a diverse workforce – people who identify as women, non-binary or gender non-conforming, LGBTQIA+, American Indian or Native Alaskan, Black or African American, Hispanic or Latinx, Native Hawaiian or Other Pacific Islander, differently-abled, caretakers and parents, and veterans are strongly encouraged to apply. Thank you to the Level Playing Field Institute for this statement of non-discrimination. Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation. If you need any accommodations, please inform your recruiting contact upon initial connection.
Confirm your E-mail: Send Email