Overview
Join to apply for the Manager, Third Party Risk Inquires role at KPMG US . This is a remote work opportunity.
KPMG is known for being a great place to work and build a career. The firm provides audit, tax and advisory services, and growth is driven by delivering real results for clients. The culture encourages individual development, embraces an inclusive environment, rewards innovative excellence and supports communities. With these qualities, KPMG is consistently ranked among the best companies to work for by Fortune Magazine, Consulting Magazine, Seramount, Fair360 and others. If you are as passionate about your future as we are, join our team.
Responsibilities
- Apply a thorough understanding of security to complete client-provided security questionnaires in an accurate, timely and consistent manner as well as establish and maintain effective business relationships with IT control owners throughout the firm.
- Maintain and contribute to the Client Security Inquiry (CSI) Evidence Bank by gathering client-facing evidence in support of KPMG's controls from a wide variety of stakeholders inside and outside of ESS and IT.
- Assist in the annual refresh process for CSI artifacts (SIG, whitepapers), successfully incorporating feedback from multiple stakeholders.
- Help maintain the CSI workflow as documented through the ticket tracking system.
- Collaborate with security and technology teams on various initiatives, projects, and strategies.
- Provide active coaching, mentoring, and knowledge-sharing with junior staff to advance their career development; manage and review those team members' work product; may have people management responsibility for a small to mid-sized team of entry level through intermediate level professionals.
Qualifications
- Minimum five years of recent risk and compliance experience within a large professional services environment specializing in physical and cyber security.
- Bachelor's degree from an accredited college or university is preferred; CISSP, CISA, or similar certification(s) preferred.
- Experience in security and interactions with and support of clients within a large IT organization, preferably within a professional services firm or in a similar environment.
- Familiarity with the AICPA Service Organizations Control reports and their purpose; aware of concepts in Audit testing, evaluation of control evidence, identification of control deficiencies and facilitating the remediation processes; familiarity with NIST, ISO, HIPAA, GDPR, and other IT, Privacy and Information Security Frameworks and laws.
- Solid problem solving, organizational and independent judgment skills to support an environment driven by customer service and teamwork and ability to build successful and productive relationships with peers.
- Strong verbal / written communication, problem solving, analytical and independent judgment skills to support an environment driven by customer service and teamwork; ability to positively influence, mentor and be a credible source of knowledge to less experienced team members.
- Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa).
Additional information
KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. No phone calls or agencies please.
KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled.
J-18808-Ljbffr