Senior Third-Party Risk Specialist

Mistral
Paris, New York
Workplace: OnsiteFull timeFunction: Legal, Risk & ComplianceExperience: 7+ yearsSkills: ["Organizational skills","Attention to detail","Written communication","Verbal communication","Analytical problem-solving","Cross-functional collaboration"]

Own Mistral’s third-party risk management program by designing and maintaining a framework to identify, assess, and monitor vendor, partner, and subcontractor risks. Conduct security, compliance, and contractual reviews; manage non-compliance and incident follow-ups; and keep documentation audit-ready. Partner with Legal, Procurement, Security, and Operations to embed requirements into onboarding and ongoing monitoring, while tracking evolving regulations and standards and improving tools and processes.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Mistral
Mistral
1 month ago

Senior Third-Party Risk Specialist

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 40 minutes agoStatus: Live

Job Summary

Own Mistral’s third-party risk management program by designing and maintaining a framework to identify, assess, and monitor vendor, partner, and subcontractor risks. Conduct security, compliance, and contractual reviews; manage non-compliance and incident follow-ups; and keep documentation audit-ready. Partner with Legal, Procurement, Security, and Operations to embed requirements into onboarding and ongoing monitoring, while tracking evolving regulations and standards and improving tools and processes.
Location: Paris, New York
Workplace: Onsite
Employment Type: Full time
Job Function: Legal, Risk & Compliance
Seniority: Mid level

Key Responsibilities

  • •Develop and maintain a third-party risk management program, including structured identification, assessment, and monitoring.
  • •Perform due diligence, compliance assessments, security audits, and contractual reviews for regulatory and security requirements.
  • •Collaborate with Procurement, Legal, Security, and Operations to integrate third-party risk requirements into vendor selection and monitoring.
  • •Manage third-party incidents and non-compliance by coordinating corrective actions until resolution.
  • •Track regulatory and standards changes and continuously improve tools and methodologies; raise awareness through training and guidance.

Pay and Benefits

Perks:Health InsuranceParental LeaveRetirementRelocation SupportWellness StipendMeal AllowanceCommuter Benefits

Key Requirements

  • •7+ years in third-party risk management, cybersecurity compliance, information security governance, or a related field.
  • •Experience supporting cybersecurity compliance programs, certification processes, or external audits.
  • •Practical knowledge of standards and frameworks such as ISO 27001, SOC 2, NIST SP 800-53, and regulations like NIS2, DORA, and GDPR.
  • •Proficiency in risk assessment methodologies such as EBIOS RM and ISO 27005.
  • •Professional proficiency in English; French proficiency is a plus.
Experience:7+ yearsThird-party risk managementCybersecurity complianceInformation security governanceSecurity auditsRegulatory compliance
Skills:Organizational skillsAttention to detailWritten communicationVerbal communicationAnalytical problem-solvingCross-functional collaboration
Languages:EnglishFrench
Tech Stack:ISO 27001SOC 2NIST SP 800-53ISO 27036EBIOS RMISO 27005GDPRNIS2DORACyber Resilience ActLPMThird-party risk management platforms

Company Brief

Mistral
Develops state-of-the-art large language models and AI systems, offering models and developer tools for natural language understanding, generation, and enterprise AI integrations. Focuses on open research and production-ready model deployments.
Industry: AI & Machine Learning
Company Size: Medium (51 to 250 employees)
Growth: Early Stage Startup
Funding: Seed
Headquarters: Paris, France
Founded: 2023
WebsiteLinkedIn