Job Search and Career Advice Platform

Enable job alerts via email!

Third Party Risk Management - Risk Reporting

Ploy Asia

Kuala Lumpur

On-site

MYR 80,000 - 100,000

Full time

3 days ago
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A financial services organization is seeking a TPRM - Risk Reporting Specialist in Kuala Lumpur, Malaysia. This role focuses on supporting third-party risk governance and reporting activities across Technology & Operations. The successful candidate will leverage 3-5 years of experience in risk management to drive consistent risk practices and reporting. Additional expertise with tools like MetricStream or ServiceNow is essential, alongside strong analytical and stakeholder management abilities.

Qualifications

  • 3-5 years’ experience in risk management, operational risk, or third-party risk governance.
  • Strong understanding of risk frameworks (RCSA, KRIs, KCIs, CSTs).
  • Hands-on experience with risk reporting or governance tools.

Responsibilities

  • Develop and maintain a comprehensive third-party risk profile.
  • Drive a consistent RCSA approach for TPRM.
  • Support lifecycle management of third-party contracts.
  • Deliver accurate and consistent risk reporting.
  • Establish and maintain a RACI framework.
  • Support the T&O Third-Party Risk Governance Forum.
  • Prepare reports for relevant risk governance committees.

Skills

Risk management
Operational risk
Risk reporting
Stakeholder management

Tools

MetricStream
ServiceNow
Job description

We are seeking a TPRM - Risk Reporting Specialist to support third-party risk governance and reporting activities across Technology & Operations (T&O). This role is responsible for ensuring consistent risk practices, metrics, and reporting across various risk types, supporting the bank's overall third-party risk management (TPRM) framework.

What’s on the offer
  • Duration: 12 months – with a view of extension
  • Location: Malaysia
Key Responsibilities
  • Develop and maintain a comprehensive third-party risk profile covering all risk types across T&O.
  • Drive a consistent RCSA approach for TPRM, including the definition and implementation of key metrics, CSTs, KCIs, and KRIs, with alignment across countries.
  • Support the end-to-end lifecycle management of third-party contracts (vendor, non-vendor, and intra-group arrangements).
  • Deliver accurate and consistent risk reporting across key control areas such as Security, Resilience, Third Party, Data, and other relevant domains.
  • Establish and maintain a RACI framework to support governance and clarify roles and responsibilities across T&O.
  • Support the T&O Third-Party Risk Governance Forum, ensuring effective oversight, coordination, and issue management.
  • Prepare and present the T&O third-party risk profile reports to relevant risk governance committees (e.g. GTPRMC, NFRC), including updates on control breaches, exceptions, and remediation actions.
Key Requirements
  • 3-5 years’ experience in risk management, operational risk, or third-party risk governance, preferably within the banking or financial services industry.
  • Strong understanding of risk frameworks (RCSA, KRIs, KCIs, CSTs) and third-party lifecycle management.
  • Hands‑on experience with risk reporting or governance tools (e.g., MetricStream, ServiceNow, or similar GRC platforms).
  • Solid analytical, reporting, and stakeholder management skills, with attention to detail and process discipline.
  • Ability to collaborate effectively across Technology, Operations, Risk, and Compliance teams.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.