05 Aug
|
HCL Technologies
|
Noida
05 Aug
HCL Technologies
Noida
Vendor Risk Mgmt. Regional Manager
Experience: 12 to 15 years
Location: Noida, India
Skills: Information Security, Cybersecurity, Risk Management, Vendor Risk Management, Third-Party Risk Management, Data Privacy, Regulatory Compliance, Business Continuity, ISO 27001 Lead Auditor, CISA, CISM, CISSP, CRISC
Job Summary
The individual will contribute to the overall maturity and effectiveness of the VRM program, including:
Driving the third-party risk management program to understand, evaluate and report on the risk exposure HCLTech as an organization has by virtue of using various vendors, their services and/or products to meet our business objectives.
Contribute towards enhancing the VRM program to address the ever-evolving threat landscape posed by vendor partners including but not limited to the risk domains of Cyber Security, Regulatory Compliance, Data Privacy, ESG, Geo-Political, Financial, etc.
Self-motivated to hit the ground running with strategic thinking acumen to not only execute the current program but take it to the next level in spirit of continuous improvement.
Overseeing project management, governance, risk profiling and assessment of vendors at relevant stages of vendor life cycle.
Acting as a Subject Matter Expert (SME) across key risk domains such as Information Security, Data Privacy, Business Continuity, Regulatory Compliance, etc.
Identifying applicable risk domains based on vendor service scope, including emerging risk areas.
Conducting and reviewing vendor risk assessments based on the defined VRM framework.
Developing risk profiles and periodic assessment plans based on third-party risk categorization.
Collaborating with vendors to define appropriate remediation and mitigation strategies for identified risks.
Performing ongoing monitoring, updating risk profiles, and tracking remediation efforts.
Reviewing and enhancing risk assessment questionnaires and tools.
Cross collaboration with internal stakeholders and external vendors to ensure program alignment and risk mitigation.
Generating and presenting reports to leadership and cross-functional teams.
Supporting queries from clients, business units, and sales / pre-sales teams related to vendor risk posture.
Present VRM program and its tenets in various audits (internal & external) to provide assurance that third party risk is well managed within the firm.
Qualifications and Experience Required
Education & Professional Qualifications
Graduate or postgraduate degree in Computer Science, Information Technology, Cybersecurity, or a related field.
Skilled certifications such as ISO 27001 Lead Auditor, CISA, CISM, CISSP, CRISC, or equivalent.
Experience
12–15 years of overall experience in Information Security, Cybersecurity, and Risk Management.
Minimum 8-10 years of hands-on experience in Vendor Risk Management / Third-Party Risk Management.
Minimum 5 years of experience in team or people management.
Ability to analyse the data and create various reports for senior management.
Demonstrated experience working with senior stakeholders and external clients.
Key Responsibilities
1. Drive Efficiency And Strategic Initiatives For Improving Maturity Of The Vrm Program,
• Oversee Vrm Due-Diligence & Risk Assessment Program
• Vrm Policies, Procedures & Guidelines Creation
2. To Design And Deploy Vendor Risk Management Modules In Egrc And Training Modules.
3. To Design, Develop And Implement Third Party Risk Management Framework And Supporting Tools (Vendor Profiling, Assessment Methodology, Assessment Questionnaires)(30) Risk Management Policy Framing Etc.
4. To Execute Remote And Onsite Risk Assessments In Adherence To The Shared Assessments Methodology (Sig) As Per Defined Audit Calendar And Publish Reports Appropriately
5. To Monitor And Ensure That All Team Deliverables Meet The Quality Standards And Vendor Risk Management Operational Priorities.
6. To Work Closely With Support Groups To Ensure Integration Of Vrm Process With Procurement & Sourcing; And Present Hcl’s Vendor Risk Management Process To Clients And Auditors.
📌 Vendor Risk Mgmt. Regional Manager (Noida)
🏢 HCL Technologies
📍 Noida