Job Title : Associate Director – Third Party Risk Management (TPRM)
Location : Mumbai
Experience : 9+ Years
Joining : Immediate joiners preferred
Preference : Big 4 experience; GCC experience highly desirable
Role Overview :
We are seeking an experienced Associate Director – TPRM to lead and strengthen our Third-Party Risk Management practice. The ideal candidate will bring strong expertise across TPRM, GRC, ISMS, and ISO 27001 , with demonstrated experience in managing large-scale risk programs, stakeholder engagement, and delivering high-quality advisory engagements.
Key Responsibilities :
- Lead and manage end-to-end Third-Party Risk Management programs, including onboarding, due diligence, assessments, monitoring, and reporting.
- Oversee risk assessments across domains such as information security, operational risk, compliance, financial risk, and business continuity.
- Design, enhance, and implement TPRM frameworks, policies, methodologies, and assessment templates.
- Drive advisory engagements related to ISO 27001, ISMS implementation, and GRC processes .
- Work closely with global and regional teams, including stakeholders from GCCs, to deliver integrated risk solutions.
- Conduct maturity assessments and develop roadmaps for TPRM and GRC transformation initiatives.
- Manage client relationships, lead presentations, and provide insights for risk mitigation and process improvement.
- Supervise and mentor team members, ensuring project quality, timely delivery, and compliance with internal standards.
- Support business development activities, including proposals, solutioning, and client discussions.
Required Skills & Experience :
9+ years of experience in TPRM , GRC , ISMS , and ISO 27001 implementations or audits.Prior experience in the Big 4 is strongly preferred.Exposure to GCC environments and large global organizations is highly desirable.Strong understanding of regulatory requirements, cybersecurity controls, and third-party lifecycle management.Experience with TPRM platforms / tools (e.g., Archer, MetricStream, OneTrust, ServiceNow VRM, ProcessUnity) is an advantage.Excellent communication, stakeholder management, and leadership skills.Ability to manage multiple projects, lead teams, and drive risk transformation initiatives.