Job Specifications
Software Guidance & Assistance, Inc., (SGA), is searching for a Third Party Risk Management Consultant for a remote opportunity with one of our premier clients.
Job Summary
The Third Party Risk Management (TPRM) Specialist role will be responsible for assessing, monitoring and managing risks associated with global third-party relationships to ensure compliance with internal policies, standards and regulatory requirements. The ideal candidate will have a strong understanding of risk management practices and excellent analytical, reporting and communication skills. Additionally, the candidate should have prior experience working in a third party risk management program and can demonstrate proficiency in assessment, management and remediation of third party risk issues and is knowledgeable of enterprise risk management and/or global third party risk management principles. Additionally, the role will include assisting Businesses and coordinating with Subject Matter Specialist (SMS) risk teams and international Risk Officers during the on-boarding and on-going risk assessment processes as well as serve as an escalation point for overdue risk issues and risk acceptance requests and other responsibilities as it pertains to overseeing Business and SMS team on-going monitoring activities.
Job Responsibilities
Monitoring and Reporting: Support the Global Head of Third Party Risk by preparing and reviewing control reporting as well as preparing regular metrics and other risk reports for management and risk experts (e.g. aggregate KPIs, KRIs and other risk metrics through reporting and dashboards to stakeholders and leadership on a regular basis). Oversee completion of Business on-going risk management activities and report on instances of non-compliance or other areas of concern.
Incident Management: Facilitate issue escalation processes to ensure appropriate stakeholders and executives across the enterprise are involved based on defined risk thresholds. Escalation point to support Risk Experts' incident response plans for third-party issues.
Support Stakeholders: Provide stakeholder guidance throughout the lifecycle and facilitate escalations regarding identified third party related risks or events. Respond to business and risk group's reporting needs and system-related queries.
Training and Awareness: Maintain training plans for the business and provide support to internal stakeholders regarding third-party risk management policies and processes. Manage the creation and update of program procedures, reporting and templates.
Due Diligence: Work with internal risk teams and international Risk Officers to facilitate due diligence risk activities and ensure coordination of efforts in a timely manner. Ensure appropriate due diligence is sent to third parties as per each risk team's requirements.
Preparation, Training & Experience
Bachelor`s Degree or equivalent work experience. 5+ years of experience in Third Party Risk Management, Risk Management, or a related field and professional certification required (e.g. Certified Third-party Risk Professional Certification (CTPRP), Certified Third-party Risk Assessor (CTPRA), Certified in Risk and Information Systems Control (CRISC), Certified Third-party Risk Management Professional (C3PRMP), Certified Regulatory and Compliance Manager (CRCM), and Certified Information Systems Security Professional (CISSP). Knowledge of Third Party Risk principles and best practices and relevant regulatory frameworks (e.g.; GDPR, NIST, DORA). Risk Assessment skills required. Proficiency in risk management software, Microsoft Office Suite (Excel, PowerPoint, Word, Copilot) required. Audit background, including familiarity with SOC I (SSAE16) and SOC II, ISO 27001, etc. preferred. Detail oriented with strong organizational skills. Ability to independently manage and prioritize workload. Good judgment and strong analytical and problem-solving skills. Excellent oral and written communication skills. Knowledge of insurance or financial industry preferred. Ability to work independently and as part of a team.
SGA is a technology and resource solutions provider driven to stand out. We are a women-owned business. Our mission: to solve big IT problems with a more personal, boutique approach. Each year, we match consultants like you to more than 1,000 engagements. When we say let's work better together, we mean it. You'll join a diverse team built on these core values: customer service, employee development, and quality and integrity in everything we do. Be yourself, love what you do and find your passion at work. Please find us at https://sgainc.com/ .
SGA is an Equal Opportunity Employer and does not discriminate on the basis of Race, Color, Sex, Sexual Orientation, Gender Identity, Religion, National Origin, Disability, Veteran Status, Age, Marital Status, Pregnancy, Genetic Information, or Other Legally Protected Status. We are committed to providing access, equal opportunity, and reasonable a
About the Company
SGA is the technology and resource solutions provider driven to stand out. We are a certified women-owned business. We provide contingent staffing, direct placement, and professional and managed services to help businesses and people succeed. Each year, we match professionals to more than 1,000 engagements across multiple skillsets. Be yourself, love what you do and find your passion at work.
When we say let's work better together, we mean it. Technology and resource solutions have the power to transform business and evolve...
Know more