Senior Third Party Risk Specialist
Paris-based AI company building frontier models, AI applications, developer tools, and compute infrastructure for enterprise and public-sector deployments.
About Mistral AI
Mistral AI develops open-weight and commercial language models and provides a full-stack AI platform spanning agents, application development, custom-model training, APIs, and AI cloud infrastructure.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will develop and manage a third-party risk management framework. You will conduct vendor due diligence, compliance assessments, security audits, and contractual reviews; coordinate corrective actions; train stakeholders; maintain audit-ready records; track regulatory changes; and improve risk-management tools and processes.
Requirements
- 7+ years of experience in third-party risk management, cybersecurity compliance, information security governance, or a related field.
- Experience supporting cybersecurity compliance programs, certifications, or external audits.
- Knowledge of ISO 27001, SOC 2, NIST SP 800-53, NIS2, DORA, or GDPR.
- Proficiency with EBIOS RM, ISO 27005, or risk assessment methodologies.
- Knowledge of cybersecurity regulations including the Cyber Resilience Act and LPM.
- Professional English proficiency.
Responsibilities
- Develop and manage the third-party risk management program.
- Conduct third-party due diligence, compliance assessments, security audits, and contractual reviews.
- Integrate third-party risk requirements into vendor selection, negotiation, and monitoring.
- Address third-party incidents and non-compliance through corrective actions.
- Train stakeholders on third-party risk responsibilities.
- Document assessments, decisions, and actions for audits.
- Monitor relevant regulations and standards and adjust the risk framework.
- Improve third-party risk management tools and methodologies.
- Align third-party risk management with cybersecurity and compliance objectives.
- Review, edit, and negotiate contractual terms for security and compliance.
Benefits
- Healthcare coverage
- Parental leave
- Retirement plans
- Relocation support
- Wellness programs
- Meal allowances
- Transportation allowances
