- Join a growing IT Risk team to build a Third Party Risk Management capability.
- Conduct risk assessments across the organisation's vendor portfolio.
- Establish and mature the Third Party Risk Management framework.
Third Party Risk Management
Third Party Risk Management (TPRM) AnalystJoin a growing IT Risk team and help build a Third Party Risk Management capability from the ground up.Your new companyThis organisation is investing in its risk and governance capabilities and is establishing a dedicated Third Party Risk Management (TPRM) function within the IT Risk team. As part of a newly created team, you'll have the opportunity to shape the framework, influence key vendor risk decisions, and play a pivotal role in strengthening the organisation's risk posture.Your new roleReporting to the IT Risk Manager, you will be responsible for establishing and maturing the Third Party Risk Management framework while conducting risk assessments across the organisation's vendor portfolio.
Key responsibilities include:
- Designing, implementing and maintaining the Third Party Risk Management (TPRM) framework.
- Conducting technology, cyber security and operational risk assessments of third-party vendors.
- Managing vendor due diligence reviews and ongoing risk monitoring activities.
- Identifying, assessing and reporting third-party risks and recommending mitigation strategies.
- Partnering with Technology, Cyber Security, Procurement, Compliance and business stakeholders.
- Supporting vendor onboarding and periodic reassessment processes.
- Assisting in the evaluation and implementation of TPRM tools and platforms.
- Preparing risk reports and presenting findings to key stakeholders and governance forums.
What you'll need to succeedTo be successful in this role, you will possess:
- 5-7 years' experience in Third Party Risk Management, Technology Risk, IT Risk or Cyber Risk.
- Experience conducting vendor, supplier or third-party risk assessments.
- Strong understanding of risk management frameworks and controls assurance practices.
- Experience working within highly regulated environments such as Financial Services, Banking, Telecommunications, Government or Consulting.
- Excellent stakeholder engagement and communication skills.
- Experience with TPRM platforms such as UpGuard, SecurityScorecard, BitSight, OneTrust or similar tools will be highly regarded.
- Knowledge of frameworks such as ISO 27001, NIST, CPS 230 and CPS 234 would be advantageous.
- Must hold or be eligible to obtain NV1 Security Clearance.
What you'll get in return
- Opportunity to build and shape a greenfield Third Party Risk Management function.
- High-profile role with exposure to senior stakeholders across the business.
- Career growth within a newly established and expanding IT Risk team.
- Collaborative and supportive working environment.
- Exposure to enterprise-wide technology, cyber and vendor risk initiatives.
What you need to do now
If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now.
If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion on your career.
#3016366
We vet all employer accounts and do our best to keep job ads safe, but scams can still occur. Be cautious when sharing personal information — never provide financial details or make payments during the application process. For extra security, use the Apply button on our site when proceeding.
Skills
0 of 12 matchedHays
