Job Title : TPRM – Consultant / Senior Consultant
Location : Coimbatore, India
Experience : Minimum 2 years in Third-Party Risk Management
Joining : Immediate / Early joiners preferred
About the Role
We are seeking a skilled Third-Party Risk Management (TPRM) Consultant / Senior Consultant to join our growing team in Coimbatore. The ideal candidate will have hands-on experience in vendor risk assessment, risk governance, and compliance processes, with the ability to independently handle third-party onboarding, assessment, and monitoring activities.
Key Responsibilities
- Conduct end-to-end third-party risk assessments , including due diligence, control testing, evidence reviews, and risk reporting.
- Evaluate vendor risks across domains such as information security, data privacy, cyber risk, financial risk, operational risk, and regulatory compliance .
- Review and validate vendor documentation such as SOC reports, certifications, questionnaires, and security policies.
- Support TPRM lifecycle processes , including onboarding, periodic assessments, contract reviews, and continuous monitoring.
- Coordinate with internal stakeholders and vendors to gather required information and close open issues.
- Document assessment findings, risk ratings, and remediation plans in line with organizational standards.
- Track remediation and ensure closure within defined SLAs.
- Contribute to TPRM program improvements, process enhancements, and tool optimization.
- Prepare dashboards, MIS reports, and executive summaries for leadership reviews.
Required Skills & Qualifications
2–5 years of experience in Third-Party Risk Management, Vendor Risk Assessment, or related domains (InfoSec, Compliance, Cyber Risk).Strong understanding of frameworks such as ISO 27001, SOC 1 / SOC 2, NIST CSF, GDPR, PCI-DSS , etc.Experience with TPRM tools / platforms (e.g., Archer, ProcessUnity, OneTrust, ServiceNow VRM, MetricStream) is preferred.Solid analytical, documentation, and communication skills.Ability to manage multiple assessments and work in a deadline-driven environment.Good stakeholder engagement and vendor management skills.Preferred Qualifications
Certifications such as ISO 27001 LA / LI, CISA, CRISC, CEH, CCSK (nice to have).Experience working in shared services / consulting environments.Immediate joiners or candidates with ≤30 day's notice period strongly preferred.