XX
Vendor Security AnalystPinterestUnited States
XX

Vendor Security Analyst

Pinterest
  • US
    United States
  • US
    United States

Über

Vendor Security Analyst Pinterest's Security team (Pinfosec) is seeking an experienced Vendor Security Analyst to conduct assessments of our vendors and help drive vendor and third-party security initiatives to keep our users, employees, and infrastructure safe from third‑party security risk. The role provides an opportunity to support the improvement of our vendor security program and GRC initiatives and deliver meaningful impact in minimizing risk for Pinterest.
What you'll do:
Perform vendor security assessments to minimize risk from third‑party services.
Support the Vendor Security lead to maintain and improve the vendor security program while working closely with Security, Legal, IT and other internal stakeholders.
Ensure vendor security issues are identified, communicated, and remediated to an acceptable level of risk.
Act as the SME for high‑priority vendor security reviews (e.g., AI‑related tooling).
Interface with other teams and take a leadership role in driving vendor security initiatives.
Manage the MSSP for Vendor Security when the Vendor Security Lead is unavailable.
Act as the Vendor Security SME for the Onspring Risk Register and manage the maintenance and updating of Vendor Security related exceptions.
Support Pinterest's Security Governance, Risk & Compliance program on an ad‑hoc basis such as; be responsible for the monthly review and maintenance of security awareness training metrics, assist in the update of security policies from time to time, assist in the audit evidence gathering for SOC 2 Type 2 compliance as required, and assist in the completion of security questionnaires from Pinterest's advertisers.
Have a thorough understanding of security concepts; coding experience is not required.
What we are looking for:
3+ years experience performing vendor security risk analysis for new and existing vendors.
Experience supporting the design, management, and building of security programs and best practices.
Familiarity with compliance frameworks (e.g., PCI, GDPR, SOC 2, ISO 27001, NIST CSF).
Good understanding of various security domains.
Strong sense of ownership and comfortable with autonomy and ambiguity.
Great communicator who is comfortable leading meetings and audit‑type interviews with vendors.
Bachelor's degree in a relevant field such as Computer Science, Engineering, or equivalent experience.
In‑Office Requirement Statement:
This role will need to be in the office for in‑person collaboration 1–2 times per quarter and can be situated anywhere in the country.
Relocation Statement:
This position is not eligible for relocation assistance.
US based applicants only – $123,696 — $216,468 USD.
Our Commitment to Inclusion: At Pinterest we believe the workplace should be equitable, inclusive, and inspiring for every employee. In an effort to provide greater transparency, we are sharing the base salary range for this position. The position is also eligible for equity. Final salary is based on a number of factors including location, travel, relevant prior experience, or particular skills and expertise.
Pinterest is an equal opportunity employer and makes employment decisions on the basis of merit. All qualified applicants will receive consideration for employment without regard to race, color, ancestry, national origin, religion, sexual orientation, gender identity, gender expression, age, marital status, status as a protected veteran, physical or mental disability, medical condition, genetic information or characteristics (or those of a family member) or any other consideration made unlawful by applicable federal, state or local laws. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.
#J-18808-Ljbffr
  • United States

Sprachkenntnisse

  • English
Hinweis für Nutzer

Dieses Stellenangebot stammt von einer Partnerplattform von TieTalent. Klick auf „Jetzt Bewerben”, um deine Bewerbung direkt auf deren Website einzureichen.