Job Title : Associate Director – Third Party Risk Management (TPRM)
Location : Mumbai
Experience : 9+ Years
Joining : Immediate joiners preferred
- Preference : Big 4 experience;
GCC experience highly desirable
Role Overview :
We are seeking an experienced Associate Director – TPRM to lead and strengthen our Third-Party Risk Management practice. The ideal candidate will bring strong expertise across TPRM, GRC, ISMS, and ISO 27001 , with demonstrated experience in managing large-scale risk programs, stakeholder engagement, and delivering high-quality advisory engagements.
Key Responsibilities :
Lead and manage end-to-end Third-Party Risk Management programs, including onboarding, due diligence, assessments, monitoring, and reporting.Oversee risk assessments across domains such as information security, operational risk, compliance, financial risk, and business continuity.Design, enhance, and implement TPRM frameworks, policies, methodologies, and assessment templates.Drive advisory engagements related to ISO 27001, ISMS implementation, and GRC processes .Work closely with global and regional teams, including stakeholders from GCCs, to deliver integrated risk solutions.Conduct maturity assessments and develop roadmaps for TPRM and GRC transformation initiatives.Manage client relationships, lead presentations, and provide insights for risk mitigation and process improvement.Supervise and mentor team members, ensuring project quality, timely delivery, and compliance with internal standards.Support business development activities, including proposals, solutioning, and client discussions.Required Skills & Experience :
9+ years of experience in TPRM , GRC , ISMS , and ISO 27001 implementations or audits.Prior experience in the Big 4 is strongly preferred.Exposure to GCC environments and large global organizations is highly desirable.Strong understanding of regulatory requirements, cybersecurity controls, and third-party lifecycle management.Experience with TPRM platforms / tools (e.G., Archer, MetricStream, OneTrust, ServiceNow VRM, ProcessUnity) is an advantage.Excellent communication, stakeholder management, and leadership skills.Ability to manage multiple projects, lead teams, and drive risk transformation initiatives.