ONE (one.app) Logo

ONE (one.app)

Third Party Risk Analyst

Reposted 16 Days Ago
Remote
Hiring Remotely in United States
125K-190K Annually
Senior level
Remote
Hiring Remotely in United States
125K-190K Annually
Senior level
As a Third Party Risk Analyst at OnePay, you'll assess vendor risks, review security attestations, and ensure compliance with audit standards to maintain customer trust.
The summary above was generated by AI
About OnePay

OnePay is an all-in-one financial platform driven by a simple mission: better money makes life better.

Tens of millions of Americans today are unbanked or underbanked, meaning they don’t have enough money in savings to cover a minor emergency. They pay too much in fees, don’t have access to credit at affordable rates, and have little ability to grow their wealth. OnePay’s vision is to create a single app for consumers to save, spend, borrow, and grow their money, bringing our mission to life with simple and accessible banking, credit, and payments products that deliver a best-in-class experience to millions of customers. Our products include:

  • Checking and high-yield savings accounts

  • Domestic and international peer-to-peer payments

  • Credit Builder and credit score monitoring

  • Digital wallet / contactless payment solutions

  • Credit card program

  • Buy-now-pay-later installment loans at Walmart

  • Prepaid mobile service

Why do we have a right to win? We have the backing of Walmart (a Fortune 1) and Ribbit Capital (a preeminent fintech investor), are deeply embedded with the distribution of the world’s largest omnichannel retailer, and have an industry-leading multi-product value proposition — all in addition to having some of the best people and talent in the industry.

There’s never been a better time to build a category-defining business and there has rarely been a team better positioned for the opportunity. Join us!

As a TPRM (Third Party Risk) Analyst at OnePay, you will play a critical role in safeguarding our ecosystem from third-party security risks. You’ll assess the posture of high-risk vendors, review security attestations and contracts, and ensure compliance with our audit and regulatory standards. Your work will directly impact our ability to prevent breaches and maintain customer trust!

What You’ll Do

  • Conduct vendor risk reviews and evaluate third-party attestations such as SOC 2, ISO 2700x, and other security certifications.

  • Analyze vendor contracts and identify potential risk clauses or data security implications.

  • Support annual high-risk vendor audits and maintain documentation to meet compliance requirements.

  • Collaborate cross-functionally with Legal, Procurement, Engineering, and Compliance teams to assess risk exposure and mitigation plans.

  • Provide technical insight into vendor integrations, authentication, and infrastructure security controls.

You Bring

  • 5–8+ years of experience in information security, vendor risk management, or related technical risk roles.

  • Strong understanding of security frameworks and certifications (SOC 2, ISO 2700x, NIST, etc.).

  • Familiarity with authentication, disaster recovery, and infrastructure security concepts.

  • Ability to interpret and challenge vendor-provided attestations and control summaries.

  • Comfort reviewing contracts and identifying clauses impacting data handling or access control.

  • Excellent communication and analytical skills, with the ability to ask critical questions and present findings clearly.

  • Drive and proactivity – everyone here is a builder and executor.

Standard Interview Process
  • Initial Interview with Talent Partner

  • Technical or Hiring Manager Interview

  • Team Interview

  • Executive Interview

  • Offer!

Equal Employment Opportunity

To build technology and products that are used and loved by people and solve real-world problems, we need to build a team with many different perspectives and experiences. We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We encourage candidates from all backgrounds to apply. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us at [email protected].

Top Skills

Iso 2700X
Nist
Soc 2

Similar Jobs

3 Days Ago
Remote
2 Locations
152K-190K Annually
Senior level
152K-190K Annually
Senior level
Consulting
The Sr. Director Analyst will lead research in IT vendor risk management, advise clients on best practices, and create written research deliverables while collaborating with various teams.
Top Skills: ExcelMicrosoft PowerpointMicrosoft Word
An Hour Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
150K-290K Annually
Senior level
150K-290K Annually
Senior level
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
The Senior Software Engineer will build and operate connectivity features for Samsara’s Vehicle Gateway, focusing on end-to-end product delivery across various domains and ensuring device connectivity for IoT solutions.
Top Skills: GoGraphQLJavaScriptKotlinPythonReactReact-NativeSQLSwiftTypescript
An Hour Ago
Remote or Hybrid
United States
76K-90K Annually
Junior
76K-90K Annually
Junior
Cloud • Fintech • Information Technology • Machine Learning • Software • App development • Generative AI
The Mid-Market Account Executive is responsible for achieving sales quotas, converting prospects to clients, and maintaining accurate sales pipelines while collaborating with marketing and demand generation efforts. The role involves traveling, building client relationships, and effectively communicating the value of BlackLine's SaaS solutions.
Top Skills: SaaSSalesforce

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account