910 KPMG India Jobs
Technology Consulting-DT TPRM- Senior
KPMG India
posted 8hr ago
Flexible timing
Key skills for the job
We are seeking a highly skilled Senior Consultant to join our Technology Consulting team specializing in Third-Party Risk Management (TPRM) . As a Senior Consultant in TPRM , you will work with clients to assess, manage, and mitigate risks associated with third-party vendors, suppliers, and service providers. You will help clients develop and implement robust third-party risk management strategies, ensuring their vendors and partners comply with relevant regulations, industry standards, and cybersecurity best practices. Your expertise in TPRM will enable organizations to safeguard their operations, data, and reputation while driving business value through effective third-party relationships.
Third-Party Risk Assessment: Lead the identification, assessment, and management of third-party risks. Work with clients to evaluate their vendors’ cybersecurity, compliance, and operational risks, and provide actionable insights to strengthen their risk management frameworks.
TPRM Strategy Development: Develop and implement comprehensive third-party risk management strategies tailored to the client’s unique business needs and regulatory environment. Guide clients in establishing processes for vendor selection, due diligence, onboarding, ongoing monitoring, and offboarding.
Vendor Risk Management Frameworks: Design and implement vendor risk management frameworks that align with industry standards, regulatory requirements (such as GDPR , SOX , HIPAA , ISO 27001 , NIST ), and best practices. Help clients integrate these frameworks into their overall risk management strategies.
Cybersecurity & Compliance Risk: Advise clients on assessing and managing cybersecurity risks posed by third parties. Ensure that clients' vendors meet the required cybersecurity standards, including evaluating data protection , network security , incident response , and business continuity plans.
Due Diligence & Vendor Audits: Conduct vendor due diligence and risk assessments, including evaluating vendors' financial stability, security posture, compliance with legal and regulatory requirements, and operational risks. Lead vendor audits and provide insights into improving vendor performance and risk mitigation efforts.
Ongoing Monitoring & Reporting: Develop and implement systems for continuous monitoring of third-party risks, ensuring that clients can proactively identify and address emerging risks. Create regular risk reports and dashboards to communicate vendor risk status to senior leadership.
Regulatory Compliance & Reporting: Ensure that third-party risk management practices comply with relevant regulations, including GDPR , CCPA , SOX , and PCI DSS . Help clients maintain up-to-date compliance with evolving regulatory requirements through proactive vendor risk assessments and documentation.
Stakeholder Engagement & Communication: Collaborate with key stakeholders across client organizations, including legal, compliance, IT, procurement, and business units. Effectively communicate TPRM strategies, risks, and remediation actions to both technical and non-technical stakeholders.
Technology Integration & Tooling: Work with clients to select, implement, and optimize TPRM technology solutions (such as RSA Archer , Archer Third-Party Risk Management , MetricStream , or ServiceNow ). Help automate vendor risk management processes and integrate TPRM tools with other business systems (e.g., procurement, finance, IT security).
Incident Response & Crisis Management: Assist clients in developing incident response plans related to third-party breaches or disruptions. Support crisis management teams in the event of a third-party failure or data breach, ensuring that necessary actions are taken to minimize business impact.
Continuous Improvement: Stay up to date on industry trends, emerging risks, and evolving regulatory requirements in third-party risk management. Advise clients on new tools, processes, and technologies that can improve their TPRM practices and overall risk posture.
Employment Type: Full Time, Permanent
Read full job descriptionPrepare for Technology roles with real interview advice
KPMG I love mine very much to work here. Excelling here is very good.
KPMG I love mine very much to work here. Excelling here is very good.
Read 1 review6-10 Yrs
Mumbai, Gurgaon / Gurugram, Bangalore / Bengaluru
2-7 Yrs
₹ 10 - 20L/yr
Mumbai
3-6 Yrs
Mumbai