Search by job, company or skills

Ernst and young LLP

GMS-Senior-TPRaaS

4-8 Years
new job description bg glownew job description bg glownew job description bg svg
  • Posted 7 hours ago
  • Be among the first 10 applicants
Early Applicant
Quick Apply

Job Description

Your key responsibilities

  • Lead and work closely with the manager in the delivery of Third-Party Risk Management (TPRM) engagements.
  • Assist / Mentor team members in vendor calls / client interactions by providing delivery updates.
  • Perform Quality Checks on work products before delivering it to the end clients.
  • Follow policies and procedures that support the successful implementation of TPRM operating models.
  • Facilitate process walkthrough discussions to document end-to-end business processes and functional requirements.
  • Assess the application of legal and regulatory requirements to clients TPRM practices.
  • Lead/Participate in technology enhancement requirements such as Automation, Data Analytics, AI to support TPRM processes.
  • Assist in the selection and tailoring of approaches, methods, and tools to support service offering or industry projects.
  • Build and nurture positive working relationships with clients to achieve exceptional client service.
  • Contribute to Identifying opportunities to improve engagement profitability.
  • Assist leadership in driving business development initiatives and account management.
  • Participate in building strong internal relationships within GMS Services and with other services across the organization.

 

Skills and attributes for success

  • Maintain an educational program to develop personal skills continually.
  • Constantly upskilling as per market trends.
  • Understand and follow workplace policies and procedures.
  • Exhibit initiative and participate in corporate social and team events.

 

To qualify for the role, you must have

  • 4 to 8 years of demonstrated experience with Risk Management across the Third-Party engagement lifecycle (pre-contracting, contracting, and post contracting) and an understanding of the associated organizational infrastructure (e.g., relevant internal controls, business processes, governance structures).
  • Strong understanding of the TPRM framework, Risk Management, Information Security practices.
  • Demonstrate a good understanding of the Contract Risk Review management process.
  • Hands-on exposure to TPRM tools and technology solutions (e.g., GRC enablement solutions, such as Process Unity, Prevalent, Archer, ServiceNow, etc.).
  • Demonstrated knowledge of standards such as ISO 27001/2, ISO 22301, ISO 27018, PCI – DSS, HITRUST, etc.
  • Good knowledge of privacy regulations such as GDPR, CCPA, etc.
  • Good knowledge of regulations such as FISMA, HIPAA, Reg SCI, MAS, etc.
  • Good knowledge of TCP/IP, concepts of OSI layer and protocols, networking and security concepts, Physical & Environmental Security, Asset Security and Identity & Access Management.
  • Good knowledge of OS (Windows / Linux) security, Database security, IT infrastructure (switches, routers, firewalls, IDS, IPS, etc.), Security architecture design, and review.
  • Good familiarity with OWASP, and Secure SDLC standards/frameworks, anti-virus solutions (e.g., Symantec, McAfee, etc.).
  • Good experience in LAN/WAN architectures and reviews.
  • Good knowledge of incident management, disaster recovery, and business continuity management, cryptography.
  • Good to have prior Big-4 experience.
  • Good to have certifications - CISSP, CISA, CISM, CTPRP, CIPP, ISO 27001 Lead Auditor or Lead Implementer

 

Ideally, you'll also have

  • Project Management skills.
  • Exposure to tools like ProcessUnity, ServiceNow, Archer.

More Info

Job Type:
Industry:
Function:
Employment Type:
Open to candidates from:
Indian

About Company

Job ID: 107212899