HOW YOU WILL CONTRIBUTE AND WHAT YOU WILL LEARN
- Develop and implement processes and governance framework related to supplier risk management in collaboration with other BG process owners, Supply Chain organization and respective risk sub-processes.
- Establish policies, procedures, and controls to manage supplier risks.
- Assess and monitor suppliers for financial health, sustainability, anti-corruption, health & safety, quality, information security and operational risks.
- Develop and maintain supplier risk profiles, tracking key risk indicators and emerging threats.
- Ensure supplier compliance with regulatory requirements, such as data privacy laws, anti-corruption measures and industry standards.
- Stay updated on regulatory changes and emerging risks impacting third-party relationships.
- Streamline workflows and drive automation for risk reporting. Prepare and present risk reports, dashboards, and executive summaries to leadership.
- Provide training and awareness programs on supplier risk management and resilience best practices.
KEY SKILLS AND EXPERIENCE
You have :
- Bachelor's or Master's degree in engineering, risk management, information security or a related field.
- 5-10 years of experience in risk management, supplier risk, third-party risk management (TPRM), or supply chain resilience within large, complex organizations
- Experience in identifying third-party risk domains, including financial risk, operational risk, cybersecurity risk, ESG (Environmental, Social, and Governance) risk, and regulatory compliance.
- Experience working in risk assessment methodologies, supplier risk scoring models, and key risk indicators (KRIs).
- Experience working in regulatory frameworks such as GDPR, NIST, ISO 27001, SOC 2, and anti-corruption laws.
It would be nice if you also had:
- Strategic thinking with the ability to balance risk mitigation with business objectives.
- Effective stakeholder management to collaborate with procurement, legal, compliance, IT security, and business leaders.
- Certifications related to Enterprise Risk Management, ITIL, Info Security risk management are an added advantage.