Startups

Senior Technical Program Manager, Third Party Risk Management

CoreWeave · Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA · On-site

← All jobs
About CoreWeave

CoreWeave is the force multiplier that empowers pioneers with momentum, magnitude, and mastery—enabling them to innovate with confidence. Explore the #1 AI Cloud.

About the role

The CISO organization at CoreWeave is responsible for executing and delivering security, trust, and assurance across our products, platforms, and operations. Within this organization, the Security Trust & Assurance team is building leading Governance, Risk and Compliance (GRC) programs, including third party risk management (TPRM).

What they're looking for

  • 5+ years of experience in third-party risk management, data governance, privacy, or information security risk, with at least 2 years focused on external data sharing
  • Demonstrated experience building or maintaining data inventories/data maps, including data classification, processing purpose, legal basis, and cross-border transfer mechanisms
  • Experience implementing continuous or automated monitoring of data flows
  • Relevant certifications such as CIPP/E, CIPM, CIPT, CISSP, CISA, CISM, or CRISC
  • Working knowledge of major privacy regulations (GDPR, CCPA/CPRA) and transfer mechanisms such as SCCs, DPAs, and adequacy decisions
  • Hands-on experience conducting third-party security risk assessments, including evaluation of security controls, contractual security/privacy terms, and compliance artifacts (SOC 2, ISO 27001, penetration test reports)
More about this role

CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at www.coreweave.com .

The CISO organization at CoreWeave is responsible for executing and delivering security, trust, and assurance across our products, platforms, and operations. Within this organization, the Security Trust & Assurance team is building leading Governance, Risk and Compliance (GRC) programs, including third party risk management (TPRM).

As a TPRM Technical Program Manager, you will work with cross-functional teams, including engineering, procurement, IT, and Legal to govern CoreWeave’s external data sharing. This is a hands-on and operational role that will directly contribute to CoreWeave’s security and privacy objectives.

If you are passionate about cloud...

Read the full posting on CoreWeave's site ↗

Technology

Build your edge while you search

Free tools for founders and investors, plus VC Unfiltered, our take on startups, venture and the people who build them.