Third Party RIsk management consultant

Visionet Systems Inc.

Bengaluru

On-site

INR 3,500,000 - 5,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Visionet Systems Inc. in Bengaluru is seeking a Senior Lead for Third-Party Risk Management to own onboarding, ongoing monitoring, risk reviews, and exit management.

You will collaborate with procurement, legal, IT, and compliance to weave TPRM into sourcing and contracts, and to scale the program using top GRC platforms. The ideal candidate has 10–12 years in TPRM or related GRC roles, with deep knowledge of cybersecurity, data privacy, business continuity, and regulatory standards such as

Qualifications

  • 10–12 years of professional experience in Third-Party Risk Management, IT Risk, InfoSec, Audit, or related GRC functions.
  • In-depth understanding of third-party risk domains: cybersecurity, data privacy, business continuity, and compliance.
  • Experience developing or managing TPRM frameworks and governance structures across global enterprises.
  • Hands-on experience with TPRM tools such as ServiceNow GRC, Archer, OneTrust, Prevalent, or ProcessUnity.
  • Strong knowledge of risk and control frameworks including NIST, ISO 27001, SIG, SOC 2, and GDPR.

Responsibilities

  • Lead the execution and continuous improvement of the TPRM lifecycle across onboarding, monitoring, risk reviews, and exit management.
  • Oversee TPRM policy and framework development aligned with regulatory standards (NIST, ISO 27001, SOC 2, GDPR, DORA, PCI DSS).
  • Conduct inherent and residual risk assessments for vendors across multiple risk domains.
  • Collaborate with procurement, legal, IT, and compliance to integrate TPRM into sourcing and contracts.
  • Drive automation and scalability of the TPRM program using GRC platforms (ServiceNow GRC, Archer, OneTrust, ProcessUnity).
  • Manage third-party due diligence questionnaires (DDQs) and track remediation for identified issues.
  • Prepare executive dashboards and reporting on vendor risk posture, remediation, and compliance status.
  • Stay current on regulatory requirements and supply chain threats to inform program strategy.
  • Support internal and external audits and regulatory reviews involving vendor risk management.

Skills

TPRM
IT Risk
InfoSec
Audit
GRC
Vendor Risk
Regulatory Compliance
NIST
ISO 27001
SOC 2
GDPR
DORA
PCI DSS
ServiceNow GRC
Archer
OneTrust
ProcessUnity
Prevalent
Contract Compliance
Risk Assessment

Tools

ServiceNow GRC
Archer
OneTrust
ProcessUnity
Prevalent

Job description

  • Lead the execution and continuous improvement of the Third-Party Risk Management lifecycle, including on boarding assessments, ongoing monitoring, risk reviews, and exit management.
  • Oversee the development and implementation of TPRM policies, frameworks, and procedures, aligned with regulatory standards such as NIST, ISO 27001, SOC 2, GDPR, DORA, and PCI DSS.
  • Conduct and review inherent and residual risk assessments for new and existing vendors across multiple risk domains (information security, compliance, financial, operational, etc.).
  • Collaborate with procurement, legal, IT, business units, and compliance teams to integrate TPRM into sourcing and contract processes.
  • Drive the automation and scalability of the TPRM program through use of GRC platforms (e.g., ServiceNow, Archer, ProcessUnity, OneTrust).
  • Manage third-party due diligence questionnaires (DDQs), control gap analysis, and track remediation efforts for identified issues.
  • Prepare and deliver executive-level reporting and dashboards related to vendor risk posture, risk acceptance, and compliance status.
  • Stay current on emerging regulatory requirements, supply chain risks, and third-party threats to inform program strategy.
  • Support internal/external audits and regulatory reviews involving vendor risk management.
  • 10–12 years of professional experience in Third-Party Risk Management, IT Risk, InfoSec, Audit, or related GRC functions.
  • In-depth understanding of third-party risk domains, including cybersecurity, data privacy, business continuity, and compliance.
  • Experience developing or managing TPRM frameworks and governance structures across global enterprises.
  • Hands-on experience with TPRM tools such as ServiceNow GRC, Archer, OneTrust, Prevalent, or ProcessUnity.
  • Strong knowledge of risk and control frameworks including NIST, ISO 27001, SIG, SOC 2, and GDPR.
  • Proven ability to assess and report on third-party risk posture, remediation plans, and contract compliance.
  • Excellent written and verbal communication skills with ability to influence technical and non-technical audiences.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

TPRM Analyst (Third Party Risk Management)
TPRM Analyst (Third Party Risk Management)

HGS • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Third-Party Risk Analyst
Third-Party Risk Analyst

Simfluent • India

On-site
INR 1,200,000 - 2,000,000
Third-Party Risk Analyst
Third-Party Risk Analyst

Simfluent • Dadri

On-site
INR 600,000 - 900,000
Third Party Risk Management
Third Party Risk Management

Orcapod Consulting Services • Bengaluru

On-site
INR 600,000 - 1,200,000
TPRM Manager / Senior Manager - Cyber
TPRM Manager / Senior Manager - Cyber

Cubical Operations LLP • Bengaluru

On-site
INR 2,800,000 - 5,200,000
Third Party Risk Management (TPRM) - Risk Management
Third Party Risk Management (TPRM) - Risk Management

SBI Life • Mumbai

On-site
INR 1,200,000 - 1,800,000
Architect I - Enterprise Solutions
Architect I - Enterprise Solutions

UST • Hyderabad

On-site
INR 1,800,000 - 2,400,000
TPRM Advisor
TPRM Advisor

ISG (Information Services Group) • Bengaluru

On-site
INR 2,500,000 - 3,500,000
Third-Party Risk Management (TPRM) Analyst
Third-Party Risk Management (TPRM) Analyst

Gratitude India • Chennai District

On-site
INR 1,200,000 - 1,800,000
TPRM Analyst
TPRM Analyst

IDFC FIRST Bank • Mumbai

On-site
INR 1,200,000 - 1,800,000