Propose improvement initiatives and adjustments to the TPRM program to reflect changes in overall third-party risk profile, evolving security standards, regulatory requirements, and operating environment
Conduct reviews on existing TPRM-related policies and procedures to assess ongoing effectiveness and compliance with regulatory and legal requirements
Serve as Subject Matter Expert (SME) in third-party risk, providing advisory and guidance to business and IT stakeholders on matters such as due diligence assessments, ongoing risk monitoring, service level agreements, and contractual clauses to meet regulatory requirements
...