T&T | Cyber: CST | Manager | Third Party Risk Management | Bengaluru (Bengaluru, IN)
Deloitte
Deloitte
Join our Cyber team as a Third-Party Risk Management (TPRM) Manager in Bengaluru. You will play a crucial role in safeguarding client assets by assessing and managing risks associated with third-party vendors. This position offers the opportunity to work within a leading cybersecurity practice, contributing to robust risk management strategies and client success.
As part of Deloitte, you will contribute to a culture that prioritizes security, vigilance, and resilience. We empower organizations to not only prevent and respond to cyber threats but also to leverage cyber risk management for strategic advantage and opportunity realization. Learn more about our Cyber services and how we help clients navigate the complex landscape of information and technology risks.
Your core responsibilities will include managing client engagements focused on comprehensive third-party risk assessments, thorough vendor due diligence, and compliance reviews. You'll be instrumental in tracking remediation efforts and overseeing ongoing monitoring activities for vendors.
Establishing and maintaining strong collaborative relationships with client teams and external stakeholders is key. Delivering clear, detailed, and high-quality project outputs consistently is expected.
This role demands professional English proficiency and mandatory business proficiency in either Spanish or Portuguese. This is essential for effective communication with diverse clients and stakeholders across English-speaking, Latin American, or Portuguese-speaking regions, ensuring seamless collaboration and deliverable completion.
We are seeking an experienced professional with at least 8 years in Third-Party Risk Management (TPRM) or vendor risk management. Your expertise should cover the end-to-end TPRM lifecycle, including onboarding, inherent risk assessments, due diligence, risk documentation, reassessments, and ongoing monitoring.
Key skills include conducting vendor risk and compliance reviews, analyzing security, privacy, business continuity, financial, and operational risks. You must excel at coordinating due diligence, tracking actions, following up with stakeholders, and documenting risk decisions to ensure timely closure of findings.
Candidates must possess strong stakeholder management abilities, with a proven track record of engaging effectively with vendors, client teams, and various internal departments across different regions. Proficiency in English is required, with a mandatory business-level proficiency in Spanish or Portuguese.
Educational qualifications include a Bachelor’s degree in business, Commerce, Risk Management, Information Systems, Technology, Law, or a related field. A Bachelor’s or Master’s degree in Computer Science, Information Security, or Engineering is also acceptable. Relevant certifications such as ISO 27001 or ISO 22301 are advantageous.
Deloitte
Information Technology & Services