Risk Assessment Support : Assist in assessing risks including Geographical, Reputational, Cyber Security, Sanctions, Human Resources, Business Continuity, Anti-Bribery/Anti-Corruption, Artificial Intelligence, ESG, and Privacy.
Daily Operations : Support day-to-day responsibilities of the SCRM program, including intake and handling of requests for new third parties, gathering documentation for due diligence and onboarding tasks, and maintaining the SCRM database.
Monitoring : Help monitor third parties for changes in their risk profile, including mergers and acquisitions, regulatory changes, and other external factors.
Risk Assessment : Conduct preliminary risk assessments on new and existing third parties under supervision.
Database Maintenance : Ensure the integrity of the SCRM database by accurately documenting and consistently updating contact information, products, and services to maintain reliable and trustworthy data.
Reporting : Assist in generating standardized reports to inform business owners and management on third-party risk and performance.
Risk Management : Support effective risk management change initiatives.
Support : Provide support and expertise to business owners on third-party relationship management.
Incident Management : Assist in the ongoing management of escalations and incidents related to due diligence and monitoring of third parties.
Remediation : Help facilitate or assist in the remediation of any third-party-related findings or issues.
Program Improvement : Contribute to the improvement of the Supply Chain Risk Management Program.
Vendor Communication : Communicate with third-party vendors to address identified risks and ensure compliance with contractual obligations and regulatory requirements.
Industry Trends : Stay abreast of industry trends and best practices related to Supply Chain Risk Management.
Special Projects : Assist with any special projects as needed.
OTHER DUTIES
Additional duties as directed by management.
JOB QUALIFICATIONS
Education
Bachelor s degree in Information Security, Business Administration, or a related field.
Relevant internships or up to 1 year of experience in third-party risk management or a related field.
Other Knowledge, Skills, Abilities, or Certifications :
Analytical Skills : Basic ability to evaluate data and identify potential risks and vulnerabilities.
Communication Skills : Proficient in effectively conveying information to various stakeholders.
Regulatory Knowledge : Basic familiarity with regulatory requirements related to third-party risk management, such as GDPR, HIPAA, ESG, or PCI-DSS.
Technical Proficiency : Skilled in Microsoft Office Suite and willingness to learn risk management software.
Organizational Skills : Strong organizational and time management abilities.
Attention to Detail : Keen attention to detail, with the ability to prioritize tasks and manage multiple projects simultaneously.
Teamwork and Independence : Capable of working both independently and collaboratively to deliver high-quality work in a fast-paced environment.