OnePay Logo

OnePay

Third Party Risk Analyst

Reposted 16 Days Ago
Remote
Hiring Remotely in United States
125K-190K Annually
Senior level
Remote
Hiring Remotely in United States
125K-190K Annually
Senior level
As a Third Party Risk Analyst at OnePay, you'll assess vendor risks, review security attestations, and ensure compliance with audit standards to maintain customer trust.
The summary above was generated by AI
About OnePay

OnePay is the consumer fintech trusted by millions of Americans to make money better.

Our financial system is broken. High fees, low rates, and too few ways to actually grow your money. We’re fixing it. And we’re moving fast.

We’re an all-in-one financial services platform that brings together banking, high-yield savings, credit cards, point-of-sale lending, investing, and crypto in one place. We also partner with employers, HCM providers, gig platforms, and others to deliver embedded financial services to millions of employees and frontline workers.

We’re backed by Walmart, the world’s largest retailer, and Ribbit Capital, one of fintech’s most respected investors, giving us rare scale, distribution, and the opportunity to build something truly category-defining.

But what really sets OnePay apart is how we move. Our customers don’t have time to wait… and neither do we. This place moves fast, and we’re looking for people who are:

  • Ready to run

  • Hungry and driven by urgency

  • Exceptional at what they do, with low ego

  • Comfortable operating in motion

As a TPRM (Third Party Risk) Analyst at OnePay, you will play a critical role in safeguarding our ecosystem from third-party security risks. You’ll assess the posture of high-risk vendors, review security attestations and contracts, and ensure compliance with our audit and regulatory standards. Your work will directly impact our ability to prevent breaches and maintain customer trust!

What You’ll Do

  • Conduct vendor risk reviews and evaluate third-party attestations such as SOC 2, ISO 2700x, and other security certifications.

  • Analyze vendor contracts and identify potential risk clauses or data security implications.

  • Support annual high-risk vendor audits and maintain documentation to meet compliance requirements.

  • Collaborate cross-functionally with Legal, Procurement, Engineering, and Compliance teams to assess risk exposure and mitigation plans.

  • Provide technical insight into vendor integrations, authentication, and infrastructure security controls.

You Bring

  • 5–8+ years of experience in information security, vendor risk management, or related technical risk roles.

  • Strong understanding of security frameworks and certifications (SOC 2, ISO 2700x, NIST, etc.).

  • Familiarity with authentication, disaster recovery, and infrastructure security concepts.

  • Ability to interpret and challenge vendor-provided attestations and control summaries.

  • Comfort reviewing contracts and identifying clauses impacting data handling or access control.

  • Excellent communication and analytical skills, with the ability to ask critical questions and present findings clearly.

  • Drive and proactivity – everyone here is a builder and executor.

Standard Interview Process
  • Initial Interview with Talent Partner

  • Technical or Hiring Manager Interview

  • Team Interview

  • Executive Interview

  • Offer!

Equal Employment Opportunity

To build technology and products that are used and loved by people and solve real-world problems, we need to build a team with many different perspectives and experiences. We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We encourage candidates from all backgrounds to apply. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us at [email protected].

Top Skills

Iso 2700X
Nist
Soc 2

Similar Jobs

2 Hours Ago
Remote or Hybrid
Santa Clara, CA, USA
191K-334K Annually
Senior level
191K-334K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Lead and manage software development teams, coordinate with product, design, and support, oversee daily development activities, mentor staff, integrate AI into workflows, enforce coding standards and best practices, and deliver high-quality solutions aligned with company priorities.
Top Skills: Java,C++,Ruby,Shell,Javascript,Servicenow,Ai
2 Hours Ago
In-Office or Remote
Long Beach, CA, USA
105K-198K Annually
Senior level
105K-198K Annually
Senior level
Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
Design, build, and maintain secure CI/CD pipelines and tooling for safety-critical avionics software. Automate deployment, integration, testing, and security controls across cloud, container, and hybrid environments while supporting certification and cross-functional teams.
Top Skills: AWSAzureCi/CdDevsecopsDockerGCPJavaKubernetesLinuxPythonWindows
2 Hours Ago
In-Office or Remote
Centennial, CO, USA
92K-178K Annually
Mid level
92K-178K Annually
Mid level
Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
Develop and maintain Python-based DevOps tools, implement and update GitLab CI pipelines, create Bazel modules, and support migration and orchestration/packaging/testing automation for Boeing Software Factory. Collaborate with teams to integrate embedded software and CI/CD tooling across the organization.
Top Skills: Python,Gitlab Ci,Bazel,Java,Rust,C,C++,Rtos,Ci/Cd,Embedded Systems,Agile

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account