The Job logo

What

Where

Third-Party Risk Management Professional

ApplyJoin for More Updates

You must Sign In before continuing to the company website to apply.

Smart SummaryPowered by Roshi
Unisys is looking for a candidate to lead the Third-Party Risk Management program. The candidate will be responsible for managing vendor evaluation, preparing dashboards and reports, and providing updates to the Leadership. The role also involves continuous improvement of the TPRM program, analyzing vendor responses, and supporting internal and external audits. The candidate should have 12-15 years of experience in TPRM and vendor evaluation, and a Bachelor's Degree in Engineering. Strong communication skills and knowledge of technical domains and certifications such as CISSP and ISO/IEC 27001 are required.

Job description 

What success looks like in this role:

 

Purpose:

In order to lead the Third-Party Risk Management, Unisys is looking for suitable candidature within the CSIO organization to be responsible for managing TPRM program with thorough understanding of the process and performing vendor evaluation. The candidate will also be required to prepare and/or review dashboards, report metrics and provide updates within the group and to the Leadership as per defined periodicity.

 

Key Responsibilities:

 

Third Party Risk Management (TPRM)

Lead the existing TPRM program in context to Unisys as an organization and the maintain the relationship between CIT, CISO, Data Privacy Office and global Procurement organization.

  • Continuous improvement of the TPRM program to support integration to Security Rating tools (BitSight or equivalent) to have a robust Continuous Monitoring program of the vendor base.
  • Ability to comprehend vendor services and contextualize the same against vendor classification or risk tiering.
  • Perform and supervise day-to-day actions which will include, but not limited to, review risk tiering/classification, create and send questionnaire based on level of due-diligence, evaluate vendor responses, seek additional information from vendors, issue creation and review remediation plans, provide outcome against decision-matrix.
  • Analyze responses relating to data privacy, information security, business continuity, fourth party and subcontracting, cloud security and raise escalations where needed to the Business Unit or Procurement teams as the case may be.
  • Lead the function with research and designated TPRM related project assignments, process improvements and automation opportunities.
  • Provide weekly and monthly metrics and be able to produce dashboards and reports for team and Leadership consumption.
  • Support the internal audit team towards validation checks, perform remote or on-site vendor assessments and assist with external audit requirements around TPRM.
  • Perform the role of TPRM Case Manager for high-risk vendors to provide oversight and end-to-end liaison between fellow members and analysts towards timely closure and/or escalation for vendor evaluation.

 

#LI-SP2

 

 

You will be successful in this role if you have:

Experience

  • The candidate should have 12-15 years of work experience with at least 8-10 years in the relevant domain of leading the TPRM program and hands-on experience in vendor evaluation/vendor risk assessment.
  • Should have good understanding of vendor risk management solutions in the market and tools including Security Rating Solutions and Security Exchange (BitSight or equivalent)

 

Qualifications and Certifications

 

  • A Bachelor’s Degree in Engineering from a reputed institute. MTech or MBA will be an added advantage
  • Excellent verbal and written communication skills
  • Ability to communicate with Senior stakeholders and conduct governance meetings independently.
  • Have knowledge of technical domains such as Windows, Unix/Linux, Database, Network, Backup and Storage, Application, Cloud platforms, licensing software
  • Understanding of Data Privacy controls, GDPR, Privacy Shield, governing laws and regulations
  • CISSP/CISA and CTPRP is a must
  • Certified as a Lead auditor/implementer for ISO/IEC 27001 is a must
  • Knowledge of other certifications PCI DSS, NIST 800-53, CIS Benchmarks, ISO 22301 is preferable.
  • Cloud certification CCSP or equivalent is preferable
  • Working knowledge of MS-Project, Power BI tools
Set alert for similar jobsThird-Party Risk Management Professional role in Bengaluru, India
Unisys Logo

Company

Unisys

Job Posted

a year ago

Job Type

Full-time

WorkMode

On-site

Experience Level

13-17 Years

Category

IT Services and IT Consulting

Locations

Bengaluru, Karnataka, India

Qualification

Bachelor or Master

Applicants

Be an early applicant

Related Jobs

Unisys Logo

Third-Party Risk Management Professional

Unisys

Bengaluru, Karnataka, India

Posted: a year ago

Lead the Third-Party Risk Management program, evaluate vendors, create dashboards, and report metrics. Improve the program and integrate Security Rating tools. Communicate with stakeholders and support audits. 12-15 years experience required. CISSP/CISA and CTPRP certifications are a must. Knowledge of technical domains, data privacy controls, and certifications preferred. Working knowledge of MS-Project and Power BI tools.

ISG (Information Services Group) Logo

Third Party Risk Management

ISG (Information Services Group)

Bengaluru, Karnataka, India

Posted: a year ago

Job description  POSITION SUMMARY: ISG seeks an experienced Third Party Risk Management professional to manage all Third-Party Risk Management and Provider Profile (Risk Monitor) activities for ISG. ESSENTIAL JOB FUNCTIONS: Overall responsibility of Third-Party Risk Management and Provider Profile (Risk Monitor). Experience in operationalising Third Party Risk Management frameworks. Experience with Third Party Risk Management portals and platforms. Experience in all Third Party Risk Domains including Cyber Security, Financial Viability, Environmental, Social and Governance risk, Sanctions, Geo-Political, Litigation and reputational risk as well as Human Exploitation in supply chains In-depth knowledge of Third Party Due Diligence processes (onboarding, ongoing and termination). Excellent research, analysis, and reporting skills. Knowledge of data research and reporting in relation to Point-in-Time Third Party Risk Assessments. Ability to analyse data to better understand potential risks, concerns, and outcomes of decisions. Aggregate data from multiple sources to provide a comprehensive information. Ability to develop reports that summarize complex data into meaningful analysis that can be used by decision makers. Experience in identifying solutions while working collaboratively with others. Display an intense focus on achieving short- and long-term goals. Should be able to drive and execute an agenda in an uncertain and fluid environment.  Critical thinking skills with the ability to independently solve problems with data.  Quantitative and analytical skills with a demonstrated ability to understand new analytical concepts. Own the day-to-day operations independently. People Management experience.    REQUIREMENTS: Bachelor’s Degree in Finance, Risk or Research discipline. 10-12 years relevant experience. Preferred experience in understanding Risk Management. High Level proficiency in Microsoft (Excel, PowerPoint, Word, Visio). Excellent organisation, strong written/verbal communications and writing styles with an eye for detail. Strong English language proficiency.