Senior Analyst, Procurement (Third-Party Risk & Vendor Management)
IT, Operations
Madrid, Spain
Posted on Jun 24, 2026
Strength in Trust
OneTrust’s mission is to enable innovation through the responsible use of data and AI. We believe that ensuring data is trusted shouldn’t slow teams down—it should accelerate what’s possible. This led us to develop the first technology platform for responsible data use in 2016. Today, with AI representing the latest and most impactful expansion of data yet, OneTrust is once again redefining what responsible innovation looks like. OneTrust, the AI‑Ready Governance Platform™, unifies regulatory intelligence, automation, and connected governance workflows so businesses can continue to move at the speed of AI while ensuring good governance to prevent data misuse at scale. Trusted by thousands of organizations worldwide, OneTrust is shaping the future where trusted data becomes a transformative force for business and society.The Challenge
OneTrust is looking for a Senior Analyst, Procurement focused on Third-Party Risk and Vendor Management to join our Global Procurement organization in Madrid.This role will sit at the intersection of Procurement, Trust Center / TPRM, and Strategic Sourcing, helping strengthen Procurement’s contribution to third-party risk intake, vendor governance, renewal planning, and software lifecycle management. The role is intended to be a strong individual contributor with hands-on experience in TPRM operations, Procurement workflows, and cross-functional coordination.The Senior Analyst will work closely with Trust Center / TPRM stakeholders, Strategic Sourcing, IT, Security, Legal, Finance, and business owners to improve risk visibility, intake execution, renewal readiness, utilization tracking, and vendor accountability. This role will also help mature Procurement’s operating model and provide stronger local support in Madrid, where key TPRM stakeholders are based.Your Mission
- Support and help mature Procurement’s role in the third-party risk lifecycle, including intake coordination, workflow follow-through, stakeholder alignment, and issue escalation.
- Partner closely with Trust Center / TPRM stakeholders to ensure Procurement is operating effectively within the intended process, RACI, and handoff model.
- Act as a key Madrid-based Procurement partner for third-party risk requests, helping improve responsiveness, visibility, and execution quality.
- Coordinate handoffs across TPRM, Legal, and Strategic Sourcing when risk reviews create contract or liability implications.
- Manage procurement and vendor intake workflows through Procurement, TPRM, and related systems.
- Track and maintain upcoming supplier renewals, key dates, ownership, status updates, and decision dependencies.
- Prepare concise renewal summaries for Procurement and Strategic Sourcing leadership, including spend context, utilization inputs, business owner feedback, operational considerations, and notable risks.
- Partner with Strategic Sourcing, IT, and business stakeholders on software vendor management activities, including utilization review, license visibility, software asset management coordination, and supplier follow-through.
- Help evaluate whether suppliers continue to meet business needs based on cost, utilization, risk posture, service quality, and operational performance.
- Support supplier governance and performance management activities, including business reviews, action tracking, issue follow-up, and escalation where needed.
- Maintain accurate vendor, contract, renewal, and workflow data to improve reporting, auditability, and decision-making.
- Produce Procurement KPIs, dashboards, status updates, and operational reporting related to renewals, intake activity, risk coordination, and vendor ownership.
- Contribute to SOPs, process mapping, documentation, governance routines, and continuous improvement efforts across Procurement and TPRM-related workflows.
- Identify opportunities to improve OneTrust’s internal use of Trust Center, TPRM, Ironclad, Workday, and related Procurement systems.
- Build strong working relationships across Procurement, Strategic Sourcing, Trust Center / TPRM, IT, Security, Legal, Finance, and business teams to ensure a high-quality internal customer experience.
You Are
- 4–6 years of relevant experience across Procurement, Procurement Operations, vendor management, third-party risk management, strategic sourcing support, supplier governance, or related functions.
- Practical experience supporting or operating within third-party risk management processes, including intake, due diligence coordination, review workflows, stakeholder routing, and follow-through.
- Strong working knowledge of Procurement operations, vendor governance, renewals, and cross-functional workflow management.
- Experience with software vendor management, SaaS renewals, utilization analysis, or software asset management in partnership with IT is strongly preferred.
- Strong analytical capability, including comfort with reporting, spreadsheets, summarizing data, and turning information into clear recommendations.
- Strong written and verbal communication skills, with the ability to work effectively across teams and escalate clearly when needed.
- Experience improving processes, documentation, reporting, or governance mechanisms in a scaling environment.
- Ability to manage multiple priorities and operate effectively in a fast-moving, cross-functional environment.
- Experience with OneTrust, Trust Center, TPRM workflows, Ironclad, Workday, or similar platforms strongly preferred.
- Experience in a SaaS or high-growth technology company preferred.
- Strong operator who can balance day-to-day execution with process improvement.
- More experienced and independent than an entry-level analyst, but still hands-on and execution oriented.
- Credible partner to Trust Center / TPRM stakeholders and able to work effectively across Procurement and Strategic Sourcing.
- Detail-oriented, dependable, and proactive in follow-up.
- Comfortable surfacing blockers, driving clarity, and improving handoffs across teams.
- Able to synthesize commercial, operational, and risk inputs into clear summaries for leadership review.
- Collaborative, service-oriented, and effective in a matrixed environment.