Smartsheet logoSmartsheet logo

Senior Analyst, Third Party Risk Management (Remote Eligible - Costa Rica)

SmartsheetSan Jose, CR
Remote Full-time

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Experience Level

Senior

Qualifications

Lead comprehensive Third Party Risk Assessments for both new and existing vendors, including tiering, scope definition, questionnaire management, and documentation of findings. Oversee the ongoing monitoring and assessment of vendor risk across Smartsheet's third-party portfolio, ensuring timely follow-up on remediation actions and risk acceptance decisions. Review vendor security documentation such as SOC 2 reports, penetration testing results, ISO certifications, and other relevant attestations — translating findings into clear, actionable risk summaries for stakeholders. Initiate process improvement projects within the TPRM program, identifying opportunities to enhance scalability and maturity through better tooling, automation, and workflow optimization. Collaborate cross-functionally with Legal, Procurement, Information Security, Privacy, and business stakeholders to integrate vendor risk considerations into sourcing and renewal processes. Utilize AI tools (including Claude and Microsoft Copilot) to enhance efficiency in vendor reviews and documentation, applying sound judgment to validate and assume accountability for the outcomes.

About the job

Role overview

Smartsheet is hiring a Senior Analyst, Third Party Risk Management (TPRM) to join its Risk team. This role focuses on managing vendor risk and supporting the growth of the TPRM program for Smartsheet’s global SaaS platform. The position is open to candidates based in Costa Rica and offers the flexibility to work remotely.

What you will do

  • Act as a main point of contact for vendor risk topics, working closely with Legal, Procurement, Privacy, Information Security, and system owners.
  • Manage a portfolio of vendor risk assessments, ensuring each third-party is thoroughly evaluated and documented.
  • Help advance and strengthen the TPRM program, recognizing risk management as fundamental to building trust with customers and partners.
  • Take visible ownership of third-party risk activities, supporting Smartsheet’s commitment to secure and scalable operations.

Reporting structure

This position reports to the Third Party Risk Integration Manager, who is located in the United States.

Location requirements

  • Remote work is available within Costa Rica.
  • Applicants must reside in Costa Rica.

About Smartsheet

Smartsheet is a leading platform for work management and automation, helping teams across various industries achieve their goals with innovative solutions. With a strong commitment to productivity and collaboration, we empower organizations to unlock their potential and foster meaningful work.

Similar jobs

Browse all companies, explore by city & role, or SEO search pages. View directory listings: all jobs, search results, location & role pages.

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.