← Back to results

Third-Party Risk Management (TPRM) Risk Analyst

Join MongoDB as a TPRM Risk Analyst to manage third-party risks and enhance risk management processes in a hybrid work environment.

Location
Dublin, Ireland
Compensation
Not disclosed
Level
mid
Type
full time · Hybrid

Posted by employer 3 days ago

First seen on Joblaze 3 days ago

Last verified on the company career page 7 hours ago

What you'll build

  • Validate inherent risk rating for third-party relationships
  • Review third-party documentation for compliance
  • Lead communication to remediate gaps in high-risk relationships
  • Conduct portfolio-level trend analysis and reporting
  • Mentor junior team members

Must have

  • 7-10 years of experience in Third-Party Risk Management
  • Experience performing substantive risk assessments
  • Bachelor’s degree in a relevant field
  • Proficiency with a well established TPRM platform
  • Deep operational understanding of standard control frameworks

Nice to have

  • Certifications like CRISC, CISM, CTPRP, or CRVPM
  • Working knowledge of heightened regulatory requirements

Requirements

Experience
7–10 years
Education
Bachelor's degree

Not disclosed in this posting: compensation, visa sponsorship.

Benefits

Health Insurance Parental Leave

Joblaze summary

The TPRM Risk Analyst at MongoDB is responsible for assessing and managing third-party risks throughout the vendor lifecycle, ensuring timely communication and remediation of any identified issues. This role requires expertise in risk assessment methodologies and a strong understanding of regulatory frameworks, as well as proficiency with TPRM platforms. Ideal candidates will have 7-10 years of experience in risk management and the ability to mentor junior team members while engaging with various stakeholders. The position supports MongoDB's growth by enhancing the effectiveness of its third-party risk management processes.

Joblaze insights

  • Listed 3 days ago — first seen on Joblaze September 22, 2026. Last confirmed on MongoDB's careers page September 25, 2026.

Quick facts

Is the Third-Party Risk Management (TPRM) Risk Analyst role remote?
It's hybrid — MongoDB expects some on-site time in Dublin, Ireland.
How much experience is required?
7–10 years of relevant experience for this Third-Party Risk Management (TPRM) Risk Analyst role.
Where is the role based?
MongoDB is hiring for this position in Dublin, Ireland.
What seniority level is this role?
MongoDB targets mid-level candidates for this position.
Is this full-time or contract?
Full-time for this Third-Party Risk Management (TPRM) Risk Analyst role at MongoDB.

From the original posting

Description:

The key objectives of the TPRM Program are to:

  • Assess the risk of third-party relationships which drive the rigor of risk management activities both during the third-party onboarding and ongoing monitoring lifecycle phases using the TPRM Program’s formula-based risk methodology
  • Act as a liaison across key internal stakeholder teams (Procurement, Legal, Enterprise Security and the Business) to ensure clear and accurate communication of third-party risks aligned to risk management activities in order to complete risk assessments in a timely manner
  • Identify TPRM program enhancements aimed at the effective and efficient management of third-party risk in order to support Business strategic initiatives

Reporting to the TPRM Manager, the TPRM Risk Analyst will be expected to have strong experience operating in a risk-based, data-driven model that will accommodate the business’s need to onboard vendors in a shortened timeframe, all while managing expectations and heightened scrutiny of both internal and external stakeholders including our customers. The TPRM Risk Analyst will understand and clearly communicate not only the “What” but also the “Why” in terms of third-party risk management activities in order to support efficient and effective third-party risk management as MongoDB continues to grow. This role requires substantial ability to interpret data and apply risk knowledge and judgment as the TPRM Risk Analyst manages a complex ecosystem of data, regulations, and stakeholder relationships while continuously identifying areas of enhancement to support effective third-party risk management.

We are looking to speak to candidates who are based in Dublin for our hybrid working model.

Responsibilities:

Risk Assessment Validation & Remediation

  • Strong experience in managing the full lifecycle of a Third Party from Sourcing to Payment
  • Independently validate inherent risk rating and Criticality designation for all third-party relationships with minimal intervention while proactively flagging any concerns to the TPRM Manager
  • Review third-party provided information and documentation for all third-party relationships in accordance with TPRM assessment methodology, proactively flagging any gaps or follow-up questions
  • Lead communication to third parties to remediate gaps for all High Risk and Critical third-party relationships, including documentation of remediation plans

Reporting & Trend Analysis

  • Independently lead portfolio-level trend analysis, build leadership- and audit-facing reporting, and translate findings into risk-based recommendations

Oversight & Periodic Review

  • Lead identification, tracking, and review of the adequacy of completion of SME reviews and assessments for all third-party relationships at onboarding with minimal oversight from manager
  • Independently provide oversight of the periodic review process, including identification and escalation of higher-risk findings or gaps

Mentorship & Stakeholder Support

  • Mentor the Associate TPRM Risk Analyst and support the TPRM Manager in audit and customer discussions

Requirements:

Experience & Education:

  • 7-10 years of experience in Third-Party Risk Management (TPRM) or Governance, Risk & Compliance (GRC)
  • Demonstrated experience performing substantive risk assessments and applying formula-based or quantitative risk methodologies
  • Bachelor’s degree in a relevant field (Cybersecurity, Business, Information Systems)
  • Certifications (at least one required): CRISC (Certified in Risk and Information Systems Control), CISM (Certified Information Security Manager), CTPRP (Certified Third-Party Risk Professional), or CRVPM (Certified Regulatory Vendor Program Manager) up to or in process of Level V

Technical & Operational Proficiency:

  • Proficiency with a well established TPRM platform, including the ability to interpret intake data, Data Level classifications, and inherent risk scoring logic
  • Deep operational understanding of standard control frameworks (NIST SP 800-53, ISO 27001, SOC 2, SIG Core/Lite, CAIQ)
  • Working knowledge of heightened regulatory requirements relevant to the third-party population (e.g., DORA, GDPR, NIS2, FedRAMP, PCI-DSS, OCC, CCPA)

Core Competencies:

  • Analytical Rigor: ability to interpret data and apply risk knowledge and judgment to validate risk ratings and Criticality designations, not just process tickets
  • Communication: ability to translate portfolio-level findings into clear, leadership- and audit-facing risk recommendations
  • Check-and-Challenge: comfort with constructive challenge of third-party or SME responses to ensure gaps are identified and remediated
  • Leadership: ability to mentor junior team members and represent TPRM in audit and customer-facing discussions

With offices worldwide and over 67,000 customers, including AI-native startups and approximately 75% of the Fortune 100, relying on MongoDB for their most important applications, we’re powering the next era of software.

MongoDB is an equal opportunities employer.

Req. ID: 426442

Standard company text repeated across MongoDB's postings is omitted here.

Similar positions

MongoDB
MongoDB
Staff Technical Program Manager
MongoDB · Cork, Ireland; Dublin, Ireland
MongoDB
Staff Technical Program Manager, Site Reliability Engineering
MongoDB · Cork, Ireland; Dublin, Ireland; Ireland
MongoDB
Senior Technical Program Manager Atlas Clusters
MongoDB · Cork, Ireland; Dublin, Ireland
MongoDB
Program Manager 3
MongoDB · Dublin