TPRM Program Manager
About Us: We are a leading staffing company, dedicated to connecting talented professionals with exceptional opportunities. Currently, we are partnering with a regional healthcare organization that operates multiple hospitals and clinics. They are seeking an experience Third Party Risk Management (TPRM) Program Manager plays a crucial role in safeguarding an organization by helping implement a TPRM framework that will enable to organization to better assess and manage risks associated with third-party relationships.
This role involves working closely with various departments to ensure the appropriate risk assessments, continuous monitoring, and effective mitigation strategies are in place. The TPRM Program Manager will also be responsible for developing and implementing policies, procedures, and controls to manage third-party risks, ensuring compliance with regulatory requirements and industry standards.
This is a hybrid full-time staffed role with potential for direct hire.
Key Responsibilities
Risk Assessment and Management
- Identify the appropriate balance and performance of risk assessments for all third-party relationships.
- Develop and implement strategies that can be implemented to mitigate identified risks and managing residual risks.
- Designs and maintains a TPRM reporting framework that provides actionable insights to executive leadership and stakeholders, including dashboards, maturity models, key performance indicators (KPIs), and key risk indicators (KRIs).
- Supports the evaluation of organizational maturity using industry benchmarks and frameworks, and drives improvement efforts across people, process, and technology.
- Supports integration of TPRM activities with related enterprise risk domains such as information security, business continuity, data privacy, and financial risk.
- Establish expectations, policies and education for monitoring third-party performance and compliance with contractual obligations and regulatory requirements.
- Serves as a thought leader and subject matter expert in third-party risk, fostering a culture of shared accountability across the organization.
- Help develop a comprehensive risk register with associated processes to ensure all risk assessments are documented and up-to-date.
- May provide coaching or mentorship to functional owners involved in third-party oversight.
Policy and Procedure Development
- Develop, implement, and maintain third-party risk management policies and procedures.
- Ensure all policies and procedures are aligned with regulatory requirements and industry best practices.
- Conduct regular reviews and updates of policies and procedures to ensure their continued relevance and effectiveness.
Stakeholder Collaboration and Communication
- Facilitates a cross-functional third-party risk oversight workgroup, ensuring alignment and collaboration across Cybersecurity, Legal, Supply Chain, Compliance, and business units.
- Work closely with internal departments to ensure comprehensive risk management.
- Communicate risk assessment findings and mitigation strategies to senior management and relevant stakeholders.
- Provide training and guidance to internal teams on third-party risk management policies and procedures.
Regulatory Compliance and Reporting
- Ensure compliance with all relevant regulatory requirements and industry standards.
- Prepare and submit regular reports on third-party risk management activities to senior management and regulatory authorities.
- Stay up-to-date with changes in regulatory requirements and industry best practices.
Qualifications and Skills
Education and Experience
- Bachelor’s degree in risk management, business, finance, or a related field. A master’s degree is preferred.
- Preferred 5 years of experience in risk management, compliance, or a related field, with a focus on third-party risk management.
- Experience in developing and implementing risk management frameworks, policies, and procedures.
- Experience working in a regulated industry, such as financial services, healthcare, or pharmaceuticals, is highly desirable.
Skills and Competencies
- Strong analytical and problem-solving skills, with the ability to assess complex risks and develop effective mitigation strategies.
- Excellent communication and interpersonal skills, with the ability to build strong relationships with internal and external stakeholders.
- Strong project management skills, with the ability to manage multiple tasks and priorities effectively.
- Knowledge of relevant regulatory requirements and industry best practices.
- Proficiency in using risk management software and tools.