GMS-Staff-MS-RSS
EY
EY
Embark on a career journey at EY, where global scale, inclusive culture, and cutting-edge technology empower you to reach your full potential. Join our Risk Supplier Services (RSS) team as a Staff member, contributing to enhancing client business performance by transforming strategies into actionable realities. You will collaborate with high-performing EY teams to help clients achieve growth, innovation, and operational optimization.
This role presents a significant opportunity to join a leading firm and play an instrumental part in expanding a new service offering focused on Third-Party Risk Management (TPRM). We are seeking individuals with specialized expertise to join the leadership group of our RSS team.
Engage in comprehensive Third-Party Risk Management (TPRM) engagements, including walkthroughs, testing, and documentation. Participate in vendor and client interactions, providing crucial delivery updates. Uphold established policies and procedures to ensure the successful implementation of TPRM operating models.
Facilitate process walkthrough discussions to document end-to-end business processes and functional requirements. Assess the application of legal and regulatory requirements to client TPRM practices. Contribute to technology enhancement initiatives, such as Automation, Data Analytics, and AI, to bolster TPRM processes. Identify process gaps and recommend preventive or corrective actions. Develop a strong understanding of market trends, competitor activities, and EY's service lines.
Deliver exceptional client service by strictly adhering to project activities and effectively collaborating within the team. Share responsibilities, provide support, maintain open communication, and update senior team members on progress. Conduct research and assist in preparing client presentations and information memorandums. Consistently aim to exceed client and team expectations by tackling increasingly complex assignments. Support proposal preparation and business development efforts. Apply innovative thinking and analytical capabilities to elevate service delivery.
We are looking for candidates with a strong educational foundation, including a B.Tech (IT/Computer Science), BSc.(IT), BE, or MCA from a tier 1 or tier 2 college. A minimum of 1 to 4 years of hands-on experience in Risk Management, with a preference for experience within the Third-Party engagement lifecycle (pre-contracting, contracting, and post-contracting), is required.
Candidates should possess a foundational understanding of the TPRM framework, general Risk Management principles, and Information Security practices. Exposure to Contract Risk Reviews is beneficial. Familiarity with TPRM tools and technology solutions, such as GRC enablement platforms (e.g., Process Unity, Prevalent, Archer, ServiceNow), is highly valued.
Basic knowledge of industry standards like ISO 27001/2, ISO 22301, ISO 27018, PCI-DSS, HITRUST, and privacy regulations such as GDPR and CCPA is expected. A basic understanding of regulations like FISMA, HIPAA, Reg SCI, and MAS, along with fundamental knowledge of TCP/IP, OSI layer concepts, networking and security concepts, Physical & Environmental Security, Asset Security, and Identity & Access Management, is also necessary.
Relevant certifications such as CISSP, CISA, CISM, CTPRP, CIPP, or ISO 27001 Lead Auditor/Implementer are considered advantageous. Ideally, candidates will also have exposure to tools like ProcessUnity, ServiceNow, or Archer.
EY Global Delivery Services ( EY GDS)
Management Consulting