Lead third-party risk assessments and due-diligence activities across operational, financial, trade, supply-chain, legal, and other risk domains.
Own end-to-end vendor lifecycle workflows—onboarding, monitoring, incident response, and off-boarding.
Coordinate investigations of third-party incidents to ensure timely resolution.
Build dashboards, scorecards, and reporting to give leadership real-time visibility into vendor risk posture.
Partner with the Head of TPRM to refine frameworks, policies, and methodologies that scale with OpenAI’s rapid growth.
Lead implementation of the operating model, cross-functional expansion, and automation initiatives.Identify gaps and propose enhancements to processes, tooling, and reporting.
Drive adoption of risk accountability across Security, Legal, Compliance, Finance, and Procurement.
Monitor industry developments and regulatory changes to keep OpenAI ahead of external expectations.
Act as delegate for the Head of TPRM in cross-functional discussions, risk reviews, and senior-level briefings.
Deliver training and awareness programs to promote risk ownership across the business.
Communicate risk insights clearly to audiences ranging from technical teams to executive leadership.
Requirements
7+ years in third-party risk management, vendor risk, or a related field (high-growth tech preferred). Hands-on assessment and workflow execution required; leadership of projects or initiatives strongly desired.
A strong grasp of privacy, cyber risk, data security, operational resilience, and financial/vendor risk principles.
The proven ability to manage complex processes and deliver results in a fast-paced environment.
Exceptional communication and can influence, educate, and collaborate across functions.
Analyzed risk data, identified trends, and produced actionable reporting.
A CISA, CTPRP, CRISC, or similar credentials preferred.
Ability to work from our San Francisco office three days per week.
Benefits
Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts
Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)
401(k) retirement plan with employer match
Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)
Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees
13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick or safe time (1 hour per 30 hours worked, or more, as required by applicable state or local law)
Mental health and wellness support
Employer-paid basic life and disability coverage
Annual learning and development stipend to fuel your professional growth
Daily meals in our offices, and meal delivery credits as eligible
Relocation support for eligible employees
Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.
Business Unit Risk Advisor managing business continuity and disaster recovery program requirements at Truist. Collaborating with leadership to mitigate risk and ensuring compliance in a financial context.
Business Unit Risk Advisor managing risks and controls within Technology Business Unit at Truist. Executing risk program requirements and advising leadership on risk management strategies.
Lead Governance Operations at lemon.markets, ensuring compliance and operational excellence. Drive innovation in European FinTech with a focus on secure infrastructure.
Data Governance Consultant at iKnowHow S.A. shaping data governance initiatives and working closely with clients. Designing, implementing, and optimizing governance strategies for data quality and management.
SAP System Management and Governance Tool Specialist managing batch job automation and compliance within Airbus ERP systems and landscapes. Collaborating in an international team to enhance data security and process improvements.
Senior Analyst managing operational risk compliance and controls for Mastercard's Vocalink in the UK. Collaborating with teams to ensure robust operational risk practices.
Head of Risk Products driving risk strategy and delivering risk platform solutions at fintech startup. Collaborating with teams to prevent fraud and abuse in payment ecosystems.
Senior Manager in High Risk Client Management at RBC, overseeing EDD risk assessment processes for high risk clients. Partnering with Financial Intelligence and Compliance teams to ensure timely management and oversight of risk assessments.
Governance Analyst for IT at Catupiry, implementing IT frameworks and managing governance policies. Responsible for financial oversight and internal compliance in a hybrid work model.
IT - Risk & Governance Chief Officer ensuring strategic IT risk management process at LBBW bank. Leadership in global IT risk projects and compliance management with deep expertise in regulatory requirements.